Category Archives: Security

Vulnerabilities (CVE-2023-40481, CVE-2023-31102) in 7-ZIP; fixed in version 23.00 (August 2023)

[German]A short update from the end of August 2023. Security researchers have found two vulnerabilities in the 7-Zip program, which is used to pack and unpack ZIP archive files. The vulnerabilities CVE-2023-40481 and CVE-2023-31102 are classified as high-risk from a … Continue reading

Posted in Security, Software, Update | Tagged , , | Leave a comment

Decryptor for Key Group Ransomware Available

Security researchers at ElectricIQ have discovered a vulnerability in the routines of the Key Group ransomware that allowed decryption tools to recover encrypted files. The decryption tool only works on a specific version of the ransomware developed around Aug. 3, … Continue reading

Posted in Security | Tagged | Leave a comment

MalDoc: Malicious Word files in PDF documents bypass malware detection

[German]Another small addendum from this week: The Japanese CERT warns of a new technique used by cyber attackers who take malicious Word files and embed them in PDF documents. This "packaging" is intended to bypass the detection of the malicious … Continue reading

Posted in Office, Security, Software | Tagged , , | 1 Comment

Vulnerabilities in Notepad ++ (Sept. 2023)

[German]Several vulnerabilities (CVE-2023-40031, CVE-2023-40036, CVE-2023-40164, CVE-2023-40166) are believed to exist in the popular Notepad ++ editor and have been reported to the developer by a security researcher. The vulnerability ratings range from medium to high. Although this report was made … Continue reading

Posted in Security, Software, Windows | Tagged , | Leave a comment

Exchange 2016/2019 get HSTS support; Extended Protection will also be enabled soon

[German]With CU14, Microsoft pans to enable the Windows Server Extended Protection feature by default for Exchange Server 2019 for improved protection. However, it will be possible to deactivate this feature when installing the CU14 if required. Redmond has announced this … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Edge 116.0.1938.69

[German]Microsoft has updated the Edge browser to versions 116.0.1938.69 as of August 31, 2023. The security release notes for Edge 116.0.1938.69 state that the update includes the latest Chromium browser security fixes (CVE-2023-4572) in addition to bug fixes and stability … Continue reading

Posted in browser, Security | Tagged | 1 Comment

Unfixed Skype bug allows attackers to query victims' IP address (August 2023)

[German]A security researcher has come across a way to determine the IP address of a Skype user without the target person even having to click on a link (IP address spoofing). This could be used to spy on people (e.g. … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Google Chrome 116.0.5845.140/.141

[German]Google has released updates to Google Chrome browser 116 in the stable channel for Mac, Linux and Windows as of August 29, 2023. These are security updates that are being rolled out and are intended to eliminate a vulnerability (classified … Continue reading

Posted in browser, Security, Update | Tagged | Leave a comment

Firefox 117, 115.2 ESR, 102.15 ESR

As of August 29, 2023, the Mozilla developers have released the new Firefox 117 as well as the maintenance updates of Firefox 115.2 ESR and Firefox 102.14 ESR. With the updates, some vulnerabilities have been closed. Here is a brief … Continue reading

Posted in browser, Security, Update | Tagged , | 1 Comment

FBI and Europol dismantle with partners Qakbot network

[German]In an international operation, the U.S. FBI and Europol, together with local partners, dismantled the Qabot network. The action succeeded after law enforcement managed to take over the PC of a Qakbot administrator. The infected devices were instructed to download … Continue reading

Posted in Security | Tagged | Leave a comment