Translate
Blogs
Links
Social networks
Awards
Sponsors
(Paypal-Donations)
Tag Archives: Security
Sloppiness at SolarWinds responsible for compromised software?
[German]Was sloppiness or at least a lax security culture at the US software manufacturer SolarWinds possibly responsible for their compromised updates of the Orion products, that has been shipped for months with the SUNBURST Trojan? This Trojan has been used … Continue reading
UK Tax Relief Company Exposes Customers' Personal Information In Data Leak
Security Researchers from Website Planet found, that an UK Tax Relief Company Exposes Customers' Personal Information due to a misconfigured web server. Here are a few details about this Data Leak.
SolarWinds products with SunBurst backdoor, cause of FireEye and US government hacks?
[German]Suspected state hackers have succeeded in tampering with SolarWinds' widely deployed networking and security products worldwide. Through a supply chain attack, a Trojan or the SunBurst backdoor was rolled out with a software update.
US Treasury and US NTIA hacked
[German]According to a report, the U.S. Treasury Department and another U.S. agency responsible for Internet and telecommunications have fallen victim to a sophisticated cyber attack. Suspected government hackers were able to pull documents. Addendum: It seems, that a backdoor in … Continue reading
IoT Inspector and the 7,339 vulnerabilities under the Christmas tree
[German]Security experts from IoT-Inspector have tracked down a total of 7,339 dangerous vulnerabilities in popular gifts such as connected children's toys, smart speakers or hobby drones. In terms of security, that's likely to be the collective horror under the Christmas … Continue reading
Why ISL Online: Critical factors when choosing a remote desktop solution
[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...
Adrozek malware campaign targets popular browsers
[German]The Microsoft 365 security team points out a malware campaign called Adrozek. The malware targets popular browsers such as Google Chrome, Microsoft Edge, Firefox, etc. and tries to manipulate the browser in such a way that advertisements are played during … Continue reading
Gaming platform Steam with serious vulnerabilities
[German]The gaming platform Steam have had serious vulnerabilities. Security researchers from Check Point have discovered that attackers can exploit the bugs found to repeatedly crash a player's session. Taking over a victim's computer or infecting all other computers connected to … Continue reading
Exploit for Kerberos authentication vulnerability CVE-2020-17049
[German]A security researcher from NetSPI, who discovered the Kerberos authentication vulnerability CVE-2020-17049, has now published the details as well as an exploit. Anyone running an affected environment on Windows Server should react and patch now at the latest.
Sophos fixes SQL injection vulnerability in Cyberoam OS
[German]Note for people running Sophos firewalls or similar with Cyberoam OS. Sophos has deployed a hotfix for its Cyberoam firewalls and routers to address an SQL injection vulnerability.
Microsoft Update and Security Advisories Dez. 8, & 10, 2020
[German]Microsoft has published some notes about security updates and revisions on December 8 and again on December 10, 2020. I am posting them here on the blog without comment.


