Astra Group has developed a software stack with an Exchange Server replacement for Russia

Mail[German]The russian Astra Group has developed a replacement for Microsoft's Exchange Server that fully implements its functionality. The product is scheduled to hit the Russian market at the end of the first quarter of 2022. The company intends to fully replace Microsoft with a range of "Astra" solutions, from operating systems to cloud services.

Continue reading

Posted in Software | Tagged , | Leave a comment

Cyber attack on IKEA's mail system, Trojan distributed?

Sicherheit (Pexels, allgemeine Nutzung)[German]IKEA has experienced a cyber attack on its email system, the company said in an internal email alert to employees. Attackers are attempting a reply-chain email attack on IKEA employees' inboxes by replying to legitimate emails from the company but attaching links or attachments with the goal of installing malware on recipients' devices.

Continue reading

Posted in Security | Tagged | Leave a comment

0patch fixes LPE vulnerability (CVE-2021-24084) in Mobile Device Management Service

Windows[German]There is an unpatched Local Privilege Escalation vulnerability (CVE-2021-24084) in Windows Mobile Device Management Service. The vulnerability has been known since 2020, but has not yet been patched by Microsoft. ACROS Security has therefore developed a free 0patch solution to mitigate this vulnerability.

Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Nextcloud files competition complaint against Microsoft over OneDrive and Teams in Windows 11

Paragraph[German]Stuttgart-based software company Nextcloud has filed a competition complaint against Microsoft with the German Federal Cartel Office. The accusation is that Microsoft has a dominant market position and is exploiting it. It is about the integration of OneDrive and Microsoft Teams in Windows 11. In the meantime, a competition complaint has also been submitted to the EU Commission by 30 EU organizations because of the same accusations.

Continue reading

Posted in Cloud, General, Windows | Tagged , , , | Leave a comment

Did Adobe blocked my Twitter account via an DMCA complaint after a critical report about issues?

[German]So now it's happened: Twitter has suspended my account because Adobe filed a DMCA (Digital Millennium Copyright Act) complaint against a tweet of mine about bugs in the Adobe Acrobat DC installer. I has see this coming, since it hit a blog reader two days earlier and I alerted Adobe's social media teams about this false case via Twitter. Stupidity? Ignorance? Or simply keeping unwelcome coverage off the Internet?

Continue reading

Posted in General | Tagged , | 1 Comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


SentinelLabs finds three vulnerabilities in Oracle VirtualBox

Sicherheit (Pexels, allgemeine Nutzung)[German]Security researchers from SentinelLabs have taken a closer look at Oracle's virtualization solution Virtualbox, which runs on Windows, macOS and Linux. They found three vulnerabilities in the virtualization tool. A vulnerability in Oracle VM VirtualBox allows program takeover and denial-of-service (DoS) attacks by attackers. However, an update for Virtualbox is now available.

Continue reading

Posted in Security, Virtualization | Tagged , | Leave a comment

Printjack: Security researchers warn against attacks on printers

Sicherheit (Pexels, allgemeine Nutzung)[German]Printers are widespread, even if the paperless office is the goal. Printers are networked, but rarely protected against attacks. People don't think the devices are really worth protecting. But in times of IoT and under the General Data Protection Regulation (GDPR), this can lead to significant problems and nasty surprises. Researchers from Italy have tackled the issue and found three attack possibilities at once, labeled Printjack, that can lead to security problems and GDPR violations for printers.

Continue reading

Posted in devices, Security | Tagged , | Leave a comment

Security vulnerabilities in iDRAC8/9 software put Dell servers at risk

Sicherheit (Pexels, allgemeine Nutzung)[German]Multiple vulnerabilities existed in the iDRAC8 and iDRAC9 management software used on Dell servers. The vulnerabilities allowed remote attackers to control the execution of processes and gain access to the underlying operating system via a stack buffer overflow flaw. Dell has since closed these vulnerabilities.

Continue reading

Posted in Security | Tagged , | Leave a comment

Sophos XG – Mail delivery blocked by antivirus pattern (Nov. 25, 2021)

Mail[German]Brief note to administrators who use Sophos XG as a firewall and security solution. On November 25, 2021, there was probably an update to the antivirus pattern that blocked at least one user from sending mail. The IT administrator in question pointed this out to me and I am posting it here on the blog for your information.

Continue reading

Posted in issue, Security, Software | Tagged , , | Leave a comment

WordPress Plugin Hide My WP with SQL Injection Vulnerability

[German]One of the most popular "security" plugins for WordPress, Hide My WP, has just attracted negative attention due to a fat SQL injection vulnerability. Another bug allows an attacker to simply disable the plugin

Continue reading

Posted in Security, Software | Tagged , | Leave a comment