Tag Archives: Security

MDaemon Technologies (AltN) has become a victim of a cyber attack (Ransomware)

[German]Quick note for people who use AltN (MDaemon Technologies) email servers. The provider has fallen victim to a cyberattack – the systems have been infected by ransomware. At the moment, their entire business operations should be at a standstill. Here … Continue reading

Posted in Security | Tagged | 1 Comment

Windows: 0Patch Micropatch for MOTOW ZIP file bug (0-day, no CVE)

[German]Since May 2022, a bug has been known to exist in Windows that prevents the "Mark of the Web" flag from being set for files extracted from ZIP archives. Microsoft itself has not yet released a patch for this 0-day … Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Warning: Phishing Mail from "Microsoft" suggesting a password change

[German]Warning regarding a new phishing campaign that a blog reader alerted me to via email today (October 17, 2022). The mail apparently comes from Microsoft and claims that the password for the email account has been changed. If one had … Continue reading

Posted in Security | Tagged , | Leave a comment

Windows Update KB5012170 (Secure Boot DBX) re-released for WSUS (Oct. 2022)

[German]Brief information for administrators in the Windows environment. A reader just informed me that Windows Update KB5012170 has been re-released in WSUS. This update was released on Patchday, August 9, 2022 to fix issues in Secure Boot DBX. However, this … Continue reading

Posted in Security, Update, Windows | Tagged , , , , | 2 Comments

Microsoft confirms: Windows fails to detect dangerous drivers – block lists not updated

[German]Windows 10/11 and its server pendants should block known, malicious drivers when they are loaded, so that they cannot cause any damage, as Microsoft has claimed for years. Now, Microsoft has secretly admitted that they made a mistake there. Because … Continue reading

Posted in Security, Windows | Tagged , , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


BlackByte ransomware disables security solutions via Windows drivers

[German]The developers of the BlackByte ransomware exploit a vulnerability in a legitimate Windows driver (from Micro-Star's MSI AfterBurner 4.6.2.15658) to bypass security solutions. Security researchers from Sophos recently pointed this out in a report. This technique is known as BYOVD … Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Security vendor Dream Security foundet by Sebastian Kurz and ex-NSO chief Shalev Hulio

[German]It is a start-up in the security sector that makes you sit up and take notice, but at the same time (at least for me) makes you shake your head. There is a new security company Dream Security that wants … Continue reading

Posted in General | Tagged , | Leave a comment

Microsoft back ports brute force protection of administrator accounts for Windows

[German]Microsoft has back ported a group policy from Windows 11/Windows Server 2022, to protect local administrator accounts against brute-force attacks, to all supported Windows versions. This feature will be available with the Windows security updates released on October 11, 2022. … Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Fortinet Advisory about an authentication bypass vulnerability CVE-2022-40684

[German]There is an authentication bypass vulnerability CVE-2022-40684 in the FortiGate firewalls, FortiProxy web proxies and FortiSwitch Manager (FSWM) that allows attackers to access the products without authentication. Fortinet had already warned in early October 2022 – but attacks on the … Continue reading

Posted in Security | Tagged | Leave a comment

Windows 7/Server 2008 R2 receive 0patch micropatches in 2023 and 2024

[German]Tip for people who are still running Windows 7 SP1 and/or Windows Server 2008 R2 and want to continue securing the system. ACROS Security will continue to support these systems in 2023 and 2024 with micropatches that close known vulnerabilities.

Posted in Security, Windows | Tagged , , , | Leave a comment