Windows: Update from 2019 for VMware offered again (Jan. 5, 2021)

win7[English]Just a short information from a blog reader who is being re-offered a 2019 update for VMware as of January 5, 2021. I am interested in whether this is an isolated case or affects more users.

Continue reading

Posted in Software, Update, Virtualization, Windows | Tagged , , | 5 Comments

0patch fixes a Local Privilege Escalation 0-day in Sysinternals PsExec

win7[German]ACROS Security has released a micropatch for a Local Privilege Escalation 0-day vulnerability in the SysInternals tool PsExec for its 0patch agent. PsExec is used by administrators to perform tasks with system privileges.

Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

FortiGuard: Vulnerabilities in FortiWeb (Jan. 2021)

[German]FortiGuard Labhas released a security alert covering several vulnerabilities, ranging from SQL injection to buffer ofverflow bugs. The vulnerabilities are found in FortiWeb Web Application Firewalls and are of medium severity.

Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Chrome 87.0.4280.141 with security fixes

[German]Google has updated the Google Chrome browser for Windows, macOS and Linux to version 87.0.4280.141 as of January 6, 20201. This update fixes 16 vulnerabilities.

Continue reading

Posted in browser, Security, Software, Update | Tagged , , | Leave a comment

Firefox 84.0.2 and 78.6.1 ESR released

Mozilla[German]Mozilla developers have released version 84.0.2 and 78.6.1 ESR of the Firefox browser on January 6, 2021. These are security updates for the browser. Here is an overview of the updates.

Continue reading

Posted in browser, Security, Software, Update | Tagged , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


File Read Vulnerability in VMware vCenter Prior to Version 6.5u1

Small note for users of VMware vCenter before version 6.5u1. If you are using older versions, you should update to 6.5u1. This is because there is a vulnerability that allows files to be read without authentication.

Continue reading

Posted in Security, Virtualization | Tagged , | Leave a comment

Zyxel backdoor (CVE-2020-29583) is actively exploited

In late December 2020, I had blogged about an undocumented user in Zyxel products (CVE-2020-29583), see my the blog post Undocumented User in Zyxel Products (CVE-2020-29583). The vendor has provided an update to remove this undocumented user that's a backdoor. Now I read that cyber criminals are actively scanning the Internet for vulnerable Zyxel products to exploit the backdoor.

Posted in Security | Tagged | Leave a comment

Windows 10: Attention, driver signing changes in 2021, cross-signed drivers no longer usable

[German]Microsoft will end support for root certificates with kernel-mode signing capabilities in the Microsoft Trusted Root program in the first half of 2021. This means that cross-signed drivers from vendors, that have not been updated, will no longer be able to be loaded or installed under Windows 10.

Continue reading

Posted in Windows | Tagged , , | Leave a comment

Windows 7: ESU licenses for support extension 2021 are shipped

win7[German]Quick information for administrators who still maintain Windows 7 systems and need an ESU license for 2021. Renewal licenses are now available and are starting to ship.

Continue reading

Posted in Windows | Tagged , | Leave a comment

New storage policies for Google accounts from June 1, 2021

Paragraph[German]Google is changing its terms of use for Google accounts (Gmail, Google Drive) etc. as of June 1, 2021. This also affects the question of what happens when such an account is not used for a longer period of time. Here is a brief overview of this issue.

Continue reading

Posted in Cloud | Tagged , | Leave a comment