Tag Archives: Security

0patch fixes Windows 7 LNK vulnerability CVE-2020-0729

[German]ACROS Security has released a micro patch for the "Stuxnet-like" LNK RCE vulnerability CVE-2020-0729. This is micro patch is available via the 0patch agent for unpatched Windows 7 SP1 and Windows Server 2008 R2 systems.

Posted in Security, Windows | Tagged , , , , | Leave a comment

AdwCleaner 8.0.4 closes again a DLL Hijacking vulnerability

[German]On March 3, 2020, Malwarebytes released the tool AdwCleaner 8.0.4. It's a maintenance release.  The update fixes a DLL hijacking vulnerability that I reported to the developers.

Posted in Security, Software, Windows | Tagged , | 1 Comment

Chrome 80.0.3987.162 released (March 31, 2020)

[German]Google's developers have released version 80.0.3987.162 of the Chrome browser (heise specifies 80.0.3987.163 here). This is a security update which should close three vulnerabilities. The new Chrome version 80.0.3987.122 is available for Windows, Mac and Linux and is rolled out … Continue reading

Posted in browser, Security, Software, Update | Tagged , , | 1 Comment

Hackers infects thousands of MS SQL servers with backdoors

[German]Unknown hackers are running a campaign (running since May 2018) against Microsoft SQL-Server. The group succeeds in providing thousands of these SQL servers with a backdoor every day. There seems to be a whole botnet of infected SQL servers running … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Mitigating Windows 0-day ADV200006 via GPO

[German]Small hint for administrators of large Windows environments in the Active Directory environment who need to plug the ADV200006 0-day vulnerability. Mitigation is possible using Group Policy.

Posted in Security, Windows | Tagged , | 1 Comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Microsoft postpone the deactivation of TLS 1.0/1.1

[German]Microsoft has just announced to postpone the deactivation of TLS 1.0 and TLS 1.2 for its browser products (Microsoft Edge and Internet Explorer 11), originally planned for 1st half of 2020.

Posted in Security | Tagged , | Leave a comment

Zoom cuts data transfer to Facebook in iOS app

[German]he provider Zoom has just attracted attention because its iOS app for web and video conferencing transferred data to Facebook. As soon as it became known, the provider removed the corresponding framework from the app.

Posted in Security, Software | Tagged , , , | Leave a comment

Update the Intune Exchange Connector to TLS 1.2

[German]Today a shot tip for administrators who use Microsoft Intune to manage their devices and want to migrate this solution to TLS 1.2 for handling SSL connections

Posted in Security, Software | Tagged , | Leave a comment

Bug in iOS version 13.4 may bypass VPN encryption

[German]A bug in the freshly released iOS 13.4 can prevent all traffic from VPN connections from being properly encrypted. VPN provider Proton has just disclosed this.

Posted in ios, issue, Security | Tagged , , , | Leave a comment

0patch fixes 0-day Adobe Type Library bug in Windows 7

[German]The team from ACROS Security have released a micropatch for Windows 7 SP1 (without ESU) for the 0-day vulnerability in the Adobe Type 1 Library that is included in all versions of Windows. 

Posted in Security, Windows | Tagged , , , , | Leave a comment