Blogs
Links
Social networks
Awards
Sponsors
(Paypal-Donations)
Tag Archives: Security
Email bombing: A new spam campaign? Or a cover-up for a (black basta) attack?
[German]A German blog reader recently shared an observation from his IT department with me. An employee was bombed by a veritable wave of spam mail (more than 1,000/hour). All the emails had some kind of confirmation for a registration, which … Continue reading
Microsoft Exchange Server Nov. Updates Re-Release (27. Nov. 2024)
[German]Microsoft has re-released the pulled security updates for Microsoft Exchange Server 2016 and 2019 on November 27. With the first release, it turned out that the transport rules no longer worked after the update installation. Microsoft now believes it has … Continue reading
Deye deactivates solar inverters in USA, UK and Pakistan
[German]This is a critical issue that I have come across recently and illustrates the risk of IT shutdowns by vendors/manufacturers or countries. The Chinese manufacturer Deye, also represented in German balcony power plants and solar system installations with inverters, has … Continue reading
ChatGPT: Scam crypto API in source code proposal damages victims by $2,500
[German]Today, another incredible story that was passed on to me by a security expert. Someone tried to use ChatGPT to create code for an application that was supposed to be able to transfer cryptocurrency. Malicious code was built into it, … Continue reading
Windows: Microsoft's Bing wallpaper app as "adware"?
[German]I'm going to compile an information, that I've just come across, into a post – a second post on a similar topic will follow. Microsoft is offering a new Bing wallpaper app in the App Store that is supposed to … Continue reading
Why ISL Online: Critical factors when choosing a remote desktop solution
[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...
Exchange Online Delicensing Resiliency: Protection against unintentional delicensing actions
[German]Microsoft introduced the "Exchange Online Delicensing Resiliency" feature in Exchange Online at the beginning of November 2024. This allows administrators to protect Exchange Online mailboxes from unintentional de-licensing by granting a 30-day grace period for license removal. Here is some … Continue reading
Vulnerabilities in Netwrix PingCastle Pro/Enterprise (Nov. 2024)
[German]Brief information for administrators and IT service providers who use PingCastle (now part of Netwrix) to analyze Active Directory security. Due to vulnerabilities in the code, older versions of the Enterprise and Pro editions of the tool should no longer … Continue reading
CISA warns about attacks on 0 day vulnerability in Palo Alto Networks firewalls
[German]An unpatched vulnerability (0-day) exist in the firewalls of Palo Alto Networks. The management interface can be accessed via this vulnerability. This 0-day vulneability is already being exploited for attacks. Both the BSI and the US authority CISA have issued … Continue reading
Exchange 2016/2019 now warns against exploiting the spoofing vulnerability CVE-2024-49040 in emails
[German]Microsoft's November 2024 security updates for Exchange, has added a new feature to its Exchange 2016 and Exchange 2019 servers. Microsoft Exchange now warns when receiving emails that exploit a spoofing vulnerability (Exchange Server non-RFC compliant P2 FROM header detection … Continue reading
Posted in Security, Software, Update
Tagged Exchange, Patchday 11.2024, Security, Update
Leave a comment
Vulnerability in CrushFTP; update recommended
[German]Quick note to users who use CrushFTP. A blog reader has informed me that a serious vulnerability has been discovered ans has been made public on November 11, 2024. However, there are updates in which this vulnerability, for which no … Continue reading




