Microsoft Paint 3D will be retired on November 4, 2024

Windows[German]A small note to users of Windows 10 and Windows 11 who may rely on the Paint 3D program. Paint 3D, which was announced with great fanfare in 2016, will soon be buried without a sound. On November 4, 2024, Paint 3D will no longer be supported by Microsoft and will no longer receive updates. A logical step now that Microsoft no longer finds mixed reality sexy and has scrapped it.

Continue reading

Posted in Software, Windows | Tagged , | Leave a comment

Windows: NVidia graphics driver triggers BSOD on old processors

Windows[German]Small addendum to a topic that has already been known for a few days. On June 25, 2024, NVidia published the support article EOL Windows driver support for older CPUs without POPCNT instruction. There the end-of-life (EOL) for Windows driver support on older CPUs without support for the POPCNT instruction was announced.

Continue reading

Posted in issue, Windows | Tagged , , | Leave a comment

MS Edge update distribution via WSUS a bit chaotic again?

Update[German]Question for administrators who distribute their updates for the Edge browser via the WSUS: Are there any inconsistencies at the moment (August 8, 2024). A user has left a comment at this time that points to a somewhat chaotic situation with the Edge updates. Here is a brief overview of what information I have.

Continue reading

Posted in Update, Windows | Tagged , , , | Leave a comment

Windows Server at risk from PoC exploit for CVE-2024-38077

Windows[German]Another follow-up to the July 2024 patchday, in which Microsoft closed the vulnerability CVE-2024-38077 in the Windows Remote Desktop Licensing (RDL) service of Windows Server. This is a Remote Code Execution (RCE) vulnerability that has been rated with a CVSS 3.1 score of 9.8. Anyone who has not yet patched should do so immediately. A proof of concept (PoC) for this vulnerability has been published. Although this publication was taken offline again after a few hours, attacks can be expected soon.

Continue reading

Posted in Security, Update, Windows | Tagged , , , | 2 Comments

Vulnerability in Windows Update allows downgrade attacks (August 2024)

Windows[German]A security researcher from SafeBreach has taken a closer look at the Microsoft Windows update architecture. He discovered vulnerabilities in the operating system's update function (which are basically serious design flaws) that enable a downgrade attack. An attacker can thus roll back security updates that have already been installed and even prevent the installation of further updates, so that the supposedly patched vulnerabilities continue to exist. This manipulation is not recognizable and is not shown. Microsoft has been aware of this since February 2024, but has not yet provided any update to close the vulnerability – only some advisories has been published yesterday.

Continue reading

Posted in Security, Update, Windows | Tagged , , | 2 Comments

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Office Updates from August 6, 2024

[German]Small addendum from Tuesday this week. On August 6, 2024 (first Tuesday of the month), Microsoft released non-security updates for Microsoft Office 2016. I'll summarize some information about these updates here in the blog.

Continue reading

Posted in Office, Update | Tagged , | Leave a comment

CrowdStrike: New report, current status, lawsuits and more

Sicherheit (Pexels, allgemeine Nutzung)[German]After the CrowdStrike Falcon software paralyzed 8.5 million Windows computers some time ago, the provider has now issued a second statement. According to the statement, 99% of the sensors are now back in operation. Otherwise, some of those affected are threatening to sue for damages. Delta Air Lines' approach has made it into the media. Now there is the first counterattack: Microsoft had offered Delta Air Lines free support, but this was rejected. Here is a summary of the relevant information.

Continue reading

Posted in Security, Update, Windows | Tagged , , | Leave a comment

Attention: Microsoft's UEFI certificate expires on Oct. 19, 2026 – Secure Boot affected

Windows[German]I'm posting a topic here in the blog that still has "a few days to go" but could have very unpleasant consequences. In the fall of 2026, a certificate in Windows will expire, which ensures that Secure Boot can be executed in the UEFI. At that time, the certificate was valid for 15 years, but all machines that are not updated will no longer be able to start in Secure Boot mode by the deadline.

Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Windows SmartScreen and Smart App Control exploited since 2018

Windows[German]There are vulnerabilities in Windows SmartScreen and Smart App Control that are based on design errors. It has now become public that these vulnerabilities have been exploited by attackers since 2018. Security researchers at Elastic Security Labs have compiled and published an overview of the problems and design weaknesses of the security functions used in Windows.

Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Microsoft's analysis of the CrowdStrike incident and recommendations

Windows[German]One more addendum, on a topic taken up in my German blog at the end of July 2024. Microsoft has recently published an analysis of the CrowdStrike incident, which confirms the statements made by Crowdstrike. And there are recommendations on how third-party providers of security software should work. The use of kernel drivers, as was the case with CrowdStrike, is not recommended. It also states that Microsoft wants to improve the "security of Windows".

Continue reading

Posted in issue, Security, Windows | Tagged , , | Leave a comment