Bye bye WhatsApp: Swiss Army uses Threema

[German]The Swiss Armed Forces has banned its military personnel from using messengers like WhatsApp while on duty. Instead, all army personnel are to use the Swiss messaging app for official business. The decision was made for security reasons in order to comply with data protection. The costs will be borne by the army.

Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Strange: Norton 360 installs crypto miner

Stop - Pixabay[German]The security and antivirus solution Norton 360 installing a crypto miner on the user's Windows system. Although this can be controlled by the user, it is (in a time we are facing climate change) still questionable. I have become aware of this case on Twitter a couple of day ago. Symantec have had documented it within a FAQ published in the Norton community.

Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

WordPress 5.8.3 released

WordPress version 5.8.3 has been released on January 6, 2022. This new version fixes 4 security issues affect WordPress versions between 3.7 and 5.8. If you haven't yet updated to 5.8, all WordPress versions since 3.7 have also been updated to fix a few security issues. Details may be read here.

Posted in Software, Update | Tagged , | Leave a comment

Access Lock Bug: Where the December 2021 Fixes Fail

[German]The security updates that Microsoft rolled out for Microsoft Office in December 2021 cause problems with Microsoft Access. Only one user can still access the databases. Microsoft did release fixes for the affected Office versions at the end of December 2021. However, there are users for whom these fix updates do not help. I briefly document here what is known about this and then try to report it to Microsoft.

Continue reading

Posted in issue, Office | Leave a comment

ZLoader malware abuses Microsoft's file signatures

Sicherheit (Pexels, allgemeine Nutzung)[German]The ZLoader banking Trojan is on the rise again. A new ZLoader malware abuses Microsoft's digital signature verification to spread. The goal is to steal user data from thousands of victims from 111 countries. Security experts from Check Point suspect that the MalSmoke group is behind it. Evidence of a new campaign was discovered in November 2021.

Continue reading

Posted in Security | Tagged | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Chrome 97.0.4692.71 released, contains fixes for 37 security vulnerabilities

[German]Google has released an update to Google Chrome 97.0.4692.71 for Windows, Mac and Linux (and version 97.0.4664.104 for Android) as of January 4, 2022. It's an update to a new development branch that closes vulnerabilities. Here's a quick overview.

Continue reading

Posted in browser, Security, Software, Update | Tagged , | Leave a comment

Microsoft Office Updates (January 4, 2022)

[German]On January 4, 2022 (first Tuesday of the month, Office Patchday), Microsoft releases non-security updates for still-supported versions of Microsoft Office. This month, however, there is only one update for Microsoft Office 2016. Here is a brief overview.

Continue reading

Posted in Office, Update | Tagged , | Leave a comment

Windows Server: Out-of-Band Update fixes Remote Desktop issues (2022/01/04)

Windows[German]Microsoft has released a special update (out of band update) for Windows Server on January 4, 2022. This is supposed to eliminate massive problems that can occur with remote desktop connections. The problem actually affects all Windows Server versions, but updates are not available for all variants.

Continue reading

Posted in Update, Windows | Tagged , | 2 Comments

VMware security advisory about vulnerability CVE-2021-22045 in VMware Workstation & Co.

Sicherheit (Pexels, allgemeine Nutzung)[German]Vendor VMware has issued a security alert for vulnerability CVE-2021-22045 as of January 4, 2022. This vulnerability, located in the CD-ROM driver, threatens the security of VMware Workstation, Fusion and ESXi Server through a heap overflow. However, updates are available to close this vulnerability. In addition, as a workaround, the CD-ROM feature can be disabled. Here is some information on this.

Continue reading

Posted in Security, Software, Update, Virtualization | Tagged , , , | Leave a comment

Security: Windows Format command allows DLL loading abuse

Sicherheit (Pexels, allgemeine Nutzung)[German]It is almost unbelievable what can be hidden behind Windows functions and commands. The format command for formatting disks, which has been available in the command prompt for ages, has a side effect. With a parameter the call of an arbitrary DLL can be forced, which is then loaded from the search path. I could hardly believe this when it was brought to my attention.

Continue reading

Posted in Security, Windows | Tagged , | 1 Comment