Cell phone fraud: millions stolen from banks in the U.S. and EU

[German]Security researchers from IBM Trusteer have openly lived a large-scale fraud campaign. Those behind it were able to steal millions from banks in the US and EU using cell phone emulator farms.

Continue reading

Posted in Security | Tagged , | Leave a comment

Critical 0-day vulnerability in HPE Systems Insight Manager (SIM) 7.6.x

[German]Hewlett Packard Enterprise (HPE) has issued a security advisory. There is a critical vulnerability (0-day bug) in HPE Systems Insight Manager (SIM) that affects Linux and Windows versions.

Continue reading

Posted in Security, Software | Tagged , | Leave a comment

SUNBURST malware: Analytic Tool SolarFlare, a 'Kill Switch' and EINSTEIN's fail

[German]Small additions in the matter of hacking of companies and US authorities by the SUNBURST malware delivered via update for the Orion software. There is an analysis tool SolarFlare, to determine what permissions the Orion software had. The domain of the hackers with the C&C server has been taken over – Microsoft and FireEye have established 'a killswitch'. And the software Einstein, which was developed at a cost of billions, did not notice anything about this hack.

Continue reading

Posted in Security | Tagged | Leave a comment

SUNBURST malware was injected into SolarWind's source code base

[German]An analysis of the supply chain attack on the Orion product line of the US security vendor SolarWinds suggests that the attackers had access to the source code base. For months, they prepared the insertion of the Trojan, which acted as a backdoor, and injected it into the source code.

Continue reading

Posted in Security | Tagged | 1 Comment

Windows 10 2004/20H2: Thunderbolt NVMe BSOD bug fixed

[German]Another topic I like to cover. With the update KB4586853 for Windows 10 2004 and 20H2, Microsoft also addressed the bug that caused bluescreens on Thunderbolt NVMe SSD units. The upgrade block has therefore been lifted as of December 11, 2020.

Continue reading

Posted in Windows | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Microsoft revisions to various Office CVEs (December 15, 2020)

[German]Microsoft has published an overview of revisions of various CVEs as of December 15, 2020. I received the whole thing by mail last night, and I'm posting it here for your information.

Continue reading

Posted in Office, Security | Tagged , | Leave a comment

News in the fight against SUNBURST infection, domain seized

[German]The knowledge about the cyber attack against US authorities and companies via the SUNBURST backdoor is growing. The U.S. State Department and other government agencies may have been hacked as well. Meanwhile, Microsoft and other industry partners have seized the domain with the C&C server and hope to be able to track down infected systems.

Continue reading

Posted in Security | Tagged , | Leave a comment

Firefox 84.0.0 and 78.6.0 ESR released

Mozilla[German]Mozilla's developer have released version 84.0.0 and 78.6.0 ESR of the Firefox browser as of December 15, 2020. These are new development branches for the browser. Here is an overview of the new features.

Continue reading

Posted in browser, Software, Update | Tagged , , | 1 Comment

Thunderbird 78.6.0 released

[German]The developers of the Thunderbird email client have released Thunderbird 78.6.0 on December 15, 2020. This is a maintenance update for the 78 main version of the email client, which fixes bugs and closes security holes.

Continue reading

Posted in Security, Software, Update | Tagged , | Leave a comment

Sloppiness at SolarWinds responsible for compromised software?

[German]Was sloppiness or at least a lax security culture at the US software manufacturer SolarWinds possibly responsible for their compromised updates of the Orion products, that has been shipped for months with the SUNBURST Trojan? This Trojan has been used to hack numerous US government agencies and the security vendor FireEye in recent months. Here is a look into a security abyss …

Continue reading

Posted in Security | Tagged | Leave a comment