Sophos XG – Mail delivery blocked by antivirus pattern (Nov. 25, 2021)

Mail[German]Brief note to administrators who use Sophos XG as a firewall and security solution. On November 25, 2021, there was probably an update to the antivirus pattern that blocked at least one user from sending mail. The IT administrator in question pointed this out to me and I am posting it here on the blog for your information.

Continue reading

Posted in issue, Security, Software | Tagged , , | Leave a comment

WordPress Plugin Hide My WP with SQL Injection Vulnerability

[German]One of the most popular "security" plugins for WordPress, Hide My WP, has just attracted negative attention due to a fat SQL injection vulnerability. Another bug allows an attacker to simply disable the plugin

Continue reading

Posted in Security, Software | Tagged , | Leave a comment

RATDispenser: JavaScript-Loader dispenses Remote Access Trojaners (RAT) in Windows

Sicherheit (Pexels, allgemeine Nutzung)[German]Another short addendum concerning security, which came to my attention the other day. Security researchers at HP Thread-Research have discovered a loader written in JavaScript that installs Remote Access Trojans (RATs) on Windows systems. The developer now appears to be working with eight malware groups.

Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Windows Server 2019/2022: Microsoft Defender for Endpoint fails after Nov. 2021 updates

Windows[German]Short message for administrators who are already productive with Windows Server 2019 or even Windows Server 2022 and use Microsoft Defender for Endpoint as virus protection. Microsoft has admitted that after installing certain updates on these Windows Server versions, problems can occur and Defender no longer starts.

Continue reading

Posted in issue, Security, Update, Windows | Tagged , , , | Leave a comment

Windows attacks via 0-day in installer and vulnerability in MSHTML

Windows[German]Attackers are exploiting a now-patched CVE-2021-40444 vulnerability in Microsoft's MSHTML routines to attack Windows systems. And the 0-day vulnerability in Windows Installer that I addressed here on the blog the other days is being exploited by malware for privilege escalation. Here's an overview of the threats to Windows users via these two rails.

Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


GoDaddy hack also affects hosting resellers

Sicherheit (Pexels, allgemeine Nutzung)[German]A few days ago, the US registrar and hoster GoDaddy made public a major hack in which the attacker had access to 1.2 million customer records. My mind immediately went "is HostEurope as a subsidiary also affected". In the meantime, I read reports that HostEurope was also affected. A request to the support has the night adhoc nothing, but the answer of the specialist department is still pending.

Continue reading

Posted in Security | Tagged | Leave a comment

Black Friday spam campaigns in the starting blocks

Sicherheit (Pexels, allgemeine Nutzung)[German]November 26, 2021 is Black Friday – almost everything is free – and some people's brains are also out. This also attracts cyber criminals, who increasingly attack consumers with online shopping scams. The telemetry data from Bitdefender Labs also documents an increased incidence of shopping spam messages in Germany in November. Further highlights of such mailings can be expected for Black Friday and for Cyber Monday, which is also becoming increasingly popular in Germany. I am posting the information provided by Bitdefender here on the blog.

Continue reading

Posted in Security | Tagged | Leave a comment

Does the User State Migration Tool corrupt the Windows Start menu?

Windows[German]Do any of you use the User State Migration Tool to transfer data in the profile to other machines? It looks like the User State Migration Tool (USMT) corrupts the start menu settings in the user profile. Has anyone made any observations to this effect?

Continue reading

Posted in Software, Windows | Tagged , | Leave a comment

Max Schrems and noyb file criminal report against Irish DPC

[German]Something is escalating right now. The Irish data protection authority DPC demanded that the Austrian organization noyb draw up and sign a "non-disclosure agreement" (NDA) within one working day. Otherwise, the complainant would no longer be heard. Max Schrems reported the DPC or the incident to the Austrian Public Prosecutor's Office for Corruption via the organization noyb.

Continue reading

Posted in General | Tagged , | Leave a comment

Vulnerability in MediaTek chips used in Android smartphones

Sicherheit (Pexels, allgemeine Nutzung)[German]Security researchers from Check Point have discovered a vulnerability in an Android APU, the APU is the AI Processing Unit in MediaTek chips. The security researchers warn that users can be eavesdropped via the audio processor. The Mediatek chips are installed in 37% of all Android devices. The incident is reminiscent of the vulnerability in Qualcomm chips.

Continue reading

Posted in Android, devices, Security | Tagged , | Leave a comment