Camera for facial recognition discovered in Invenda vending machines (Mars, Coca-Cola)

Stop - Pixabay[German]An unpleasant story that went public come to light in Canada. An error message on the display of a vending machine from which you can buy sweets such as MMs or Mars bars prompted a student at a Canadian university to investigate. The result: vending machines from the Swiss company Invenda, which are installed in Canada by M&M or Coca-Cola, may contain cameras to recognize people. Anyone who buys something from the vending machine is recorded and evaluated by the camera. The aim is for the machine to be able to show the buyer targeted advertising on the display.

Continue reading

Posted in devices, Security | Tagged , | Leave a comment

New Teams 2.0 client will be mandatory later – but some "chaos"

Teams[German]Will the forced switch to the new Microsoft Teams 2.0 client in companies not be mandatory on 1 April 2024 after all? While this date is still valid, Redmond is now giving corporate customers a three-month grace period. The background to this is probably that some customers are having problems with the changeover. Here is an overview about some "Teams 2.0" shenanigans.

Continue reading

Posted in Software | Tagged | Leave a comment

Windows 11 24H2: Is Microsoft planning "hotpatching" (Update installation without reboot)?

Windows[German]A small addendum from last week regarding the development of Windows 11. There are reports (rumors) that the upcoming Windows 11 version 24H2 could or should get something like "hotpatching". This would mean that updates can be installed and take effect without the need for a reboot. However, the concept, as it currently appears to me, has some limitations that you should be aware of.

Continue reading

Posted in Update, Windows | Tagged , | 1 Comment

SSH snake steals SSH keys

Sicherheit (Pexels, allgemeine Nutzung)[German]Warning about the Snake worm, which is designed to steal SSH keys. The SSH-Snake malware was discovered by the Sysdig Threat Research Team (TRT). The self-modifying worm uses SSH credentials discovered on a compromised system to spread throughout the network. The worm automatically scans known locations for credentials and shell history files.

Continue reading

Posted in Security, Software | Tagged | Leave a comment

LockBit ransomware group back? And new findings

Sicherheit (Pexels, allgemeine Nutzung)[German]Recently, international law enforcement agencies have announced the dismantling of the LockBit ransomware group's infrastructure. However, this appears to have been only a brief success – the LockBit ransomware group has set up new servers and appears to be back in business. Meanwhile, new findings have emerged following the dismantling of the LockBit ransomware group's infrastructure by the FBI and the UK's National Crime Agency (NCA).

Continue reading

Posted in Security | Tagged | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Mailboxes are currently flooded by password reset, newsletter or account confirmation mails – it's an attack

Sicherheit (Pexels, allgemeine Nutzung)[German]A German blog reader contacted me this week and reported a worrying observation made by one of his customers. The customer is receiving a flood of requests to reset his passwords, to confirm a newsletter or a now user account. The messages really do come from the services in question. At the moment, it is still somewhat unclear what exactly is behind this. But my suspicion is, that this email flood shall hide a breach of an account.

Continue reading

Posted in Security | Tagged | Leave a comment

Attacks on OpenVPN servers (Synology and others) since Feb. 2024

Sicherheit (Pexels, allgemeine Nutzung)[German]It seems that products, that using OpenVPN servers, are now under (Brute Force) attacks. A blog reader contacted me by email the other day because he had observed strange behavior. His logs showed access attempts from the same IP addresses to the Synology OpenVPN server on his systems. It seems to him that the DDNS domains registered with Synology are being attacked. But I got now reports, that a other products with OpenVPN servers also see this access attempts from South Africa.

Continue reading

Posted in devices, Security | Tagged , , | Leave a comment

Vulnerabilities in HP Laser printers (Feb. 2024)

Sicherheit (Pexels, allgemeine Nutzung)[German]Printer manufacturer Hewlett Packard has published security messages warning of vulnerabilities in various HP Laserjet printers. These vulnerabilities can be used to inject code. The manufacturer has provided firmware updates to close the vulnerabilities in its devices. Thanks to the reader for the tip.

Continue reading

Posted in devices, Security | Tagged , | Leave a comment

Edge 122.0.2365.52 

Edge[German]Microsoft has released another update of the Edge (Chromium) browser with version 122.0.2365.52 in the stable channel on 23 February 2024. It is a maintenance update that is intended to fix problems and bring new features. Thanks to the reader for the hint.

Continue reading

Posted in browser | Tagged , | 1 Comment

Google Chrome 122.0.6261.69/.70

Chrome[German]Google has released another update of the Google Chrome browser (branch 122) in the stable channel on 22 February 2024 (one day after the release of Chrome 122.0.6261.57/.58). The Extended Stable Channel has also received an update. Both updates fix bugs. Here is an overview of these updates. Continue reading

Posted in browser, Update | Tagged | Leave a comment