Microsoft Edge 100.0.1185.29 fixes vulnerabilities

Edge[German]Microsoft has updated the Chromium Edge browser to version Edge 100.0.1185.29 on 1 April 2022 (no April Fool's joke). This is a maintenance update that closes a number of vulnerabilities and initiates the 100 development branch.

Continue reading

Posted in browser, Security, Software, Update | Tagged , , | Leave a comment

Deep Panda: Targets VMware Horizon Server via Log4Shell

Sicherheit (Pexels, allgemeine Nutzung)[German]Security researchers from Fortinet have come across a malware campaign that they attribute to the Chinese APT group Deep Panda. The malware uses the Log4Shell vulnerability in VMware Horizon servers to exploit. A backdoor and a new type of rootkit is installed on the infected machines. Here are some notes on the details of this threat.

Continue reading

Posted in Security | Tagged | Leave a comment

Microsoft renames Windows/Android Apps "Your Phone" etc.

Windows[German]Microsoft ships with Windows 10/11 an app for communication between Android and Windows. This allows the screen of certain Android devices to be displayed on a Windows 10 system and the smartphone to be accessed. In a new blog post, Microsoft has now announced a name change for these apps.

Continue reading

Posted in Android, Windows | Tagged , , | Leave a comment

Microsoft Security Update Revisions (March 31, 2022)

Windows[German]Microsoft has issued a Security Update Revisions on March 31, 2022, because CVE-2022-23295 (Raw Image Extension Remote Code Execution Vulnerability) has undergone a revision increment. The reason for Revision of the CVE from March 8, 2021 (which is quoted as important): Added platform designations to Security Updates table because the version of the raw extension is different for Windows 10 operating systems and Windows 11 operating systems. This is an informational change only.

Posted in Security | Tagged | Leave a comment

USA: Sanctions against Kaspersky could increase cyber risk from Russia

Sicherheit (Pexels, allgemeine Nutzung)[German]Interesting report from the Wall Street Journal regarding the Russian antivirus provider Kaspersky. The proposal from the White House to sanction Russian security vendor Kaspersky over the invasion of Ukraine is dividing the Biden administration. Some members of the staff fear that sanctioning Kaspersky Lab could increase the risk of a Russian cyber attack. The background is that Kaspersky products are still widely used.

Continue reading

Posted in Security | Tagged | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Security updates: iOS 15.4.1 and macOS Monterey 12.3.1

[German]Apple has released two security updates for macOS 12.3.1 (Monterey) and iOS/iPad OS 15.4.1. These patches close vulnerabilities CVE-2022-22675 (in AppleAVD for iOS and macOS) and CVE-2022-22674 in the macOS Intel graphics driver. Apple has received reports that the vulnerabilities are already being actively exploited. Details can be found in the linked articles. Arstechnica has published this article on the topic.

Posted in ios, macOS, Security, Update | Tagged , , | Leave a comment

Rumor: Microsoft supports "Windows Mode" in Linux

[German]This is a cool thing that Microsoft and the Linux developer community around Linus Torvalds are planning for the future. Up to now, Microsoft's developers have been tinkering with a Windows Subsystem for Linux (WSL) in Windows, so that the poor Windows users were allowed to practice a bit of Linux in a console. Linux will eventually get a clean Windows subsystem so that Linux users will finally be able to use Windows 32 applications without any problems.

Continue reading

Posted in Linux, Windows | Tagged , | 2 Comments

Got lost in Defender? There is something like a Defender Cheat Sheet available

Sicherheit (Pexels, allgemeine Nutzung)[German]Indiscreet question to the readers of this blog: Do you still have an overview of exactly what Microsoft is currently doing with its Defender? I confess that I got lost a long time ago and get confused when blogging because Windows Defender still slips into my texts instead of Microsoft Defender for Endpoint (I hope that's still correct). I have just come across a cheat sheet helping to survive the jungle of Microsoft Defender terms.

Continue reading

Posted in Security | Tagged , | Leave a comment

New security feature allows driver block lists in Windows 10, 11 and Windows Server

Windows[German]Microsoft is working on improving the protection of the current versions of Windows 10, Windows 11 and Windows Server 2016 and their successors against harmful drivers. For this purpose, Windows Defender Application Control (only available in Enterprise editions) or HVCI or the S-Mode will support a driver block list with which the execution of drivers can be controlled and, if necessary, prevented.

Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Vulnerabilities in Wyze Cam IoT camera firmware (March 2022)

Sicherheit (Pexels, allgemeine Nutzung)[German]Security researchers from Bitdefender are drawing attention to vulnerabilities they have discovered in the firmware of Wyze CAM IP video cameras. According to Bitdefender, attackers can bypass the authentication process, gain complete control over the device and read information and configuration data from the camera's SD card or install malicious code. The gap can be closed with an update starting with the Wyze Cam V2. However, patching is not possible for the first version of the camera.

Continue reading

Posted in devices, Security | Tagged , , | 1 Comment