Tag Archives: Azure

Azure Virtual Desktop is generally available (February 1, 2024)

[German]A small addendum to a topic that has been on my list for a few days. Microsoft has made Azure Virtual Desktop generally available (GA) on the Azure Stack HCI platform. Here is some information on this topic. Advertising

Posted in Cloud, Software, Virtualization | Tagged , , | Leave a comment

Advertising

Microsoft has fixed Azure vulnerability faster (in August 2023) after Tenable criticism

[German]Microsoft surprisingly fixed a vulnerability in the Azure environment as reported of Aufugst 4, 2023, with a patch originally scheduled for end of September 2023. Microsoft has been aware of the vulnerability since March 2023. The harsh criticism of the … Continue reading

Posted in Cloud, Security | Tagged , , | Leave a comment

Microsoft as a Security Risk? Azure vulnerability unpatched since March 2023, heavy criticism from Tenable – Part 2

[German]Security vendor Tenable has made serious accusations against Microsoft. A critical vulnerability in Azure Active Directory (AAD, recently EntraID) has been known since March 2023, but has not yet been patched. The CEO of security vendor Tenable, Amit Yoran, sharply … Continue reading

Posted in Cloud, Security | Tagged , , | 1 Comment

Stolen AAD key allowed (Storm-0558) wide-ranging access to Microsoft cloud services

[German]Microsoft had to admit on begin of July 2023 that suspected Chinese hackers from the Storm-0558 group were able to forge security tokens using a stolen private MSA key. Then then gain broad access to Microsoft cloud services, as Wiz … Continue reading

Posted in Cloud, Security | Tagged , , | Leave a comment

Azure Virtual Desktop: Private Link available

[German]A small addendum for administrators of Microsoft's Azure Virtual Desktop: Redmond announced last week that so-called "private links" are now generally available in Azure Virtual Desktop. This should increase the security of connections to Azure Virtual Desktop instances. This is … Continue reading

Posted in Cloud, Security | Tagged , , | Leave a comment
Advertising

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Microsoft Azure outage (June 9, 2023); what's going on?

[German]Microsoft has been struggling with outages in its cloud services (Exchange Online, Outlook.com) for days. As of June 9, 2023, the services of Microsoft Azure (probably worldwide) were disrupted. May be technical in nature – but rumor persists that attackers … Continue reading

Posted in Cloud, issue | Tagged , | Leave a comment

Advertising

Azure Virtual Desktop: RDP connection issues due to SxSStackListener

[German]Anyone in the readership having issues with RDP connections to Azure Virtual Desktop (AVD) these days? It looks like a particular version of SxSStackListener is causing the problem. A user wrote a PowerShell script to determine the problematic version. Advertising

Posted in Allgemein, Cloud, issue, Software | Tagged , | Leave a comment

3 vulnerabilities discovered in MS Azure API management

[German]Security researchers from Israeli security vendor Ermetic have discovered three vulnerabilities in Microsoft's Azure API management. Two server-side request forgery (SSRF) vulnerabilities and an unrestricted file upload issue create risks for the Microsoft cloud environment. The vulnerabilities could be abused … Continue reading

Posted in Cloud, Security | Tagged , , | Leave a comment

Advertising

Bi(n)gBang: Microsoft Azure vulnerability allows Bing search hijacking and Office 365 data theft

[German]A nice case about the risk of the cloud. Microsoft 's Azure may have allowed a misconfiguration of some apps or services. As a result, attackers could potentially inject malicious code into Bing search results pages to manipulate them. It … Continue reading

Posted in Cloud, Security | Tagged , , , | Leave a comment

Azure AD Connect (AADConnect) Bug Fix Update (August 2, 2022)

Quick note for administrators who have Azure AD Connect in use. As of August 2, 2022, the developers have probably released version 2.1.16.0. The reason for this release was a bug where auto-upgrade fails if the service account is in … Continue reading

Posted in Cloud, Software | Tagged , | Leave a comment