nginx for Windows affected by OpenSSL privilege vulnerability

Sicherheit (Pexels, allgemeine Nutzung)[German]Those who use nginx on Windows as a web server, reverse proxy and email proxy may have a problem. Sombody just found out that nginx for Windows in various versions like 1.22.1 has a vulnerability that allows privilege elevation for normal users. The reason is that the used OpenSSL library is loaded from a path that can be manipulated.

Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

Windows 11 22H2: Network printers communitcate now via RPC over TCP by default

Windows[German]Note to administrators in corporate environments who manage Windows 11 clients and are upgrading to version 22H2. There is a change in the connection of network printers, the connections are now done with RPC over TCP, as Microsoft has disclosed in a post.

Continue reading

Posted in Windows | Tagged , , | 1 Comment

Windows PowerShell backdoor discovered, mimicking as part of Windows Update process

Windows[German]Security researchers from SafeBreach recently came across a previously unknown PowerShell backdoor in Windows. This uses a malicious Word document to inject the PowerShell scripts. The backdoor can list Active Directory users and remote desktops, and is presumably intended to allow network propagation at a later date.

Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Edge 107.0.1418.26 and 106.0.1370.61 fixes CVE-2022-3723

Edge[German]Microsoft has updated the Edge browser in the stable channel to version 107.0.1418.26 as of October 29, 2022. This is a security update that fixes the CVE-2022-3723 vulnerability (Type Confusion in the V8 JavaScript engine). In addition, the Edge browser in the Extended Stable Channel has been updated to 106.0.1370.61 to fix the same vulnerability. Continue reading

Posted in browser, Security, Update | Tagged , | Leave a comment

IIS Crypto 3.3 released

[German]Nartac Softwarehas released version 3.3 of its small tool IIS Crypto on October 31, 2022. New additions include support for TLS 1.3 on Windows Server, but also support for new cipher suites.

Continue reading

Posted in Software, Windows | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


OpenSSL 3.0.7 with patch for vulnerability on Nov. 1, 2022 announced

Sicherheit (Pexels, allgemeine Nutzung)[German]A small advance notice for users of OpenSSL – there seems to be a vulnerability in the implementation of this software. Now the team of OpenSLL developers has announced that they will release an update to version 3.0.7 on November 1, 2022. Now there is speculation that this will include the fix for an OpenSLL vulnerability and how critical it will be.

Continue reading

Posted in Security, Software, Update | Tagged , , | Leave a comment

Instagram has issues on Oct. 31, 2022 – Helloween?

[German]The platform Instagram, which belongs to Meta (Facebook), seems to have technical problems. Users cannot log in or receive a message that their Instagram account is deactivated.

Continue reading

Posted in Cloud, issue | Tagged , | Leave a comment

Firefox 106.0.3 released

Mozilla[German]At the" last day", the Mozilla developers have released versions 106.0.3 of the Firefox browser this month, still on October 31, 2022 (thanks to the user for the tip).

Continue reading

Posted in browser, Software, Update | Tagged | 1 Comment

Windows Server 2022: Support for MS 365 Apps till October 2026

Windows[German]Brief information to administrators in the enterprise environment who are running Windows Server 2022. It is now final, there will be support for Microsoft 365 apps until October 2026. This affects support for Microsoft 365 apps (Word, Excel, etc.) on Windows Server 2022. As recently as December 2021, Microsoft had emphasized that there would be no support for the MS 365 apps in question on the operating system. I had reported on the U turn from Microsoft.

Continue reading

Posted in Office, Windows | Tagged , | Leave a comment

Expedited Updates for Windows as preview in Microsoft Intune

Windows[German]In enterprise environments, how can you ensure that (certain) security updates and quality updates are rolled out to and reach all devices as quickly as possible? Microsoft is working on "accelerated updates" for this purpose. The whole thing has now been released in a preview for enterprise customers using Intune.

Continue reading

Posted in Update, Windows | Tagged , , | Leave a comment