Category Archives: Security

Piriform CCleaner victim of MOVEit transfer vulnerability

[German]The vulnerability in Progress Software's Managed File Transfer (MFT) solution MOVEit, which was disclosed in May 2023, has also affected CCleaner customers of the vendor Priform (bought by AVAST and owned by Gen Digital). Piriform has just admitted to a … Continue reading

Posted in Security, Software | Tagged | Leave a comment

Citrix Bleed: Vulnerability CVE-2023-4966 leaks session tokens in NetScaler ADC and Gateway, PoC available

[German]I would guess that Citrix users on unpatched instances are "under fire" once again, because more information is now available on the recently disclosed vulnerability CVE-2023-4966. Under the term "Citrix Bleed", security researchers have described how Citrix NetScaler ADC and … Continue reading

Posted in devices, Security | Tagged , | Leave a comment

0patch Micropatches for Microsoft Office security feature bypass (CVE-2023-33150)

[German]ACROS Security released a micropatch on Oct. 24, 2203, to address a Microsoft Office Security Feature Bypass (CVE-2023-33150) vulnerability in Office versions 2010 and 2013, which are no longer in support.

Posted in Office, Security | Tagged , | Leave a comment

Google Chrome 118.0.5993.117/.118

[German]Google has released updates to Google Chrome Browser 118 in the Stable and Extended channels for Mac, Linux, and Windows as of October 24, 2023. The Chrome browser's Android app has also been updated. The updates include a security fix,. … Continue reading

Posted in browser, Security, Update | Tagged | Leave a comment

Exchange Online show foreign address lists (GAL) – a GDPR violation

[German]A reader pointed out to me a strange and dubious behavior of Exchange Online. It has been observed that users are offered global address lists (GAL) from other tenants as soon as people try to fill out the To field … Continue reading

Posted in Cloud, Security | Tagged , , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Thunderbird 115.4/115.4.1

[German]The developers of Thunderbird have released another update of the email client to version 115.4 on October 24, 2023 (thanks to reader for the tip). It is an update, which is supposed to fix some bugs, as well as contains … Continue reading

Posted in Security, Software, Update | Tagged | 1 Comment

Firefox 119 and 115.4 ESR released

[German]As of October 24, 2023, Mozilla developers have released the new Firefox 119 as well as the Firefox 115.4 ESR maintenance update. Firefox 119 is a new development branch. Here is a brief overview of the updates in question along … Continue reading

Posted in browser, Security, Update | Tagged , | Leave a comment

Okta support hack also affects 1Password account

[German]On October 21, yes, the hack of the Okta support platform had become known (see Okta support system hacked with stolen credentials). Two days later, on Oct. 23, 2023, 1Password issued a terse announcement that it had already detected suspicious … Continue reading

Posted in Security | Tagged | Leave a comment

Cisco: New 0-day vulnerability (CVE-2023-20273) in IOS XE; already being exploited

[German]US vendor Cisco has publicly disclosed another 0-day vulnerability (CVE-2023-20273) in IOS XE as of October 20, 2023. This vulnerability is already being exploited in the wild to compromise systems. The vendor plans to provide fixes for the CVE-2023-20198 and … Continue reading

Posted in devices, Security, Software | Tagged , , | Leave a comment

Customer data from genome analysis provider 23andMe leaked on the web

[German] Provider 23andMe (creates analyses of the human genome) has suffered a cyber incident in which millions of customer data were stolen. At first, the provider denied everything. A few days ago, one million records of Ashkenazi Jews were published … Continue reading

Posted in Security | Tagged | Leave a comment