Windows January 2022 security updates for cURL vulnerability CVE-2021-22947 – a tough task for security reporters

Sicherheit (Pexels, allgemeine Nutzung)[German]As of January 11, 2022, Microsoft has closed the CVE-2021-22947 vulnerability in Windows 10, Windows 11 and their server counterparts with various security updates. The CVE-2021-22947 vulnerability affects the Curl library and was reported by German security researcher Stefan Kanthak back in the summer of 2021. I have the tenacious correspondence between Kanthak and the MSRC, so I can rehash this case here in the blog.

Continue reading

Posted in Security, Update, Windows | Tagged , , | Leave a comment

Access lock bug caused by Microsoft Office updates (January 11, 2022)

[German]The security updates that Microsoft rolled out for Microsoft Office in January 2022 are once again causing problems with Microsoft Access. Only one user can still access the databases. This problem already existed with the December 2021 updates for Office. But Microsoft had released fixes for the affected Office versions at the end of December 2021. However, there were users for whom these fix updates did not help.

Continue reading

Posted in issue, Office | Tagged , | Leave a comment

Firefox 96.0.2 released

Mozilla[German]On January 20, 2022, Mozilla developers released version 96.0.2 as a maintenance update of the Firefox browser to correct various bugs.

Continue reading

Posted in browser, Update | Tagged | Leave a comment

Out-of-Band Updates for Windows (Jan. 17/18, 2022) doesn't fixes ReFS Issues complete

Windows[German]The security updates for Windows released by Microsoft on January 11, 2022 resulted in the loss of support for the ReFS file system and disks being displayed as RAW. As of January 17 and 18, 2022, Microsoft has released special updates to fix this bug as well. However, the updates do not seem to completely fix this ReFS issue.

Continue reading

Posted in issue, Update, Windows | Tagged , , , | 7 Comments

Cyberattack on Red Cross, data of 515,000 vulnerable people compromised

Sicherheit (Pexels, allgemeine Nutzung)[German]This week, a sophisticated cyberattack on servers storing information belonging to the International Committee of the Red Cross (ICRC) was discovered week. The attack compromised personal data and confidential information on more than 515,000 vulnerable people. The data came from at least 60 Red Cross and Red Crescent National Societies around the world.

Continue reading

Posted in Security | Tagged | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Chrome 97.0.4692.99 released, fixes 26 vulnerabilities

[German]Google has released an update to Google Chrome 97.0.4692.99 for Windows, Mac and Linux (and version 97.0.4664.98 for Android) as of January 19, 2022. It's an update that closes 26 vulnerabilities. Here's a quick overview.

Continue reading

Posted in browser, Software, Update | Tagged , | Leave a comment

Operation Falcon II: Interpol and Nigerian police arrest 11 cybercriminals

Sicherheit (Pexels, allgemeine Nutzung)[German]Interpol and the Nigerian Police Force (NPF) have arrested eleven Nigerian business email compromise (BEC) actors in a joint operation. Many of the suspects are said to be members of "SilverTerrier." This is a network known for Business Email Compromise scams that have harmed thousands of businesses worldwide. These arrests were also possible thanks to information and resources from Palo Alto Networks Unit 42.

Continue reading

Posted in General, Security | Tagged | Leave a comment

Review: Fix for Windows IPSec VPN Connection Issues

Windows[German]The security updates for Windows released by Microsoft on January 11, 2022 resulted in IPSec VPN connections no longer working with on-board tools. On January 17 and 18, 2022, Microsoft released special updates to fix this bug as well. Here's a wrap-up with notes on what updates are available for the fixes and what, if any, collateral damage there is.

Continue reading

Posted in Update, Windows | Tagged , , , | Leave a comment

Windows 7/8.1; Server 2008R2/2012R2: Out-of-band Updates with Fixes for Jan. 2022 Patch day Issues (2022/01/17)

Windows[German]Microsoft has released some updates for Windows 7 and 8.1 as well as for their server counterparts on January 17, 2022. These are supposed to fix the DC boot loop problem, as well as the IPSec VPN connection problem, which are caused with the security updates from Jan. 11, 2022. Here is an overview of these special updates for Windows 7/8.1 and the corresponding Windows Server versions 2008 R2 and 2012/R2.

Continue reading

Posted in Update, Windows | Tagged , , , , , , | Leave a comment

Out-of-band Updates for Windows Server 2019 fixes Jan. 2022 Patch day issues (Jan. 18, 2022)

Windows[German]On January 18, 2022, Microsoft also released the special update for Windows Server 2019. This is to fix the various issues (DC boot loop, IPSec VPN connection issue, ReFS support, Hyper-V boot issue) caused by the security update of Jan 11, 2022. Here is an overview of this special update for Windows Server 2019.

Continue reading

Posted in Update, Windows | Tagged , | Leave a comment