Tag Archives: Security

Facebook's moderation: Broken by design – how AI and community policy handling kick people

[German]Facebook recently changed its strategy regarding policy violations. With a lot of prose, users are supposed to be "educated" on policy violations in order to avoid such things – this is supposed to prevent the previous "blocks". Since "Facebook is … Continue reading

Posted in issue, Security | Tagged , | 1 Comment

Veeam warns of critical RCE vulnerability CVE-2024-4071 in Backup & Replication

[German]Veeam warns of a critical RCE vulnerability in Backup & Replication. Blog reader j. pointed out the vulnerability yesterday in the discussion area (thanks for that) – but I had already heard about it elsewhere. The vulnerability CVE-2024-4071 was classified … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Password spraying attacks on (Sophos) firewalls from IP 92.53.65.166

[English]Brief information for administrators of Sophos firewalls – a reader has informed me that since September 5, 2024, he has been observing increased attempts to attack his Sophos firewalls. And the VPN portal in particular is being flooded with login … Continue reading

Posted in Security | Tagged , | 2 Comments

Zyxel Security Advisory September 2024 – Vulnerabilities in routers

[German]Zyxel has released security updates to close a critical vulnerability in several of its business routers. These vulnerabilities, rated with a CVSS v3 score of 9.8, may allow unauthenticated attackers to inject operating system commands. Updates are available to close … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Windows 11/Server 2024 SMB Security-Hardening

[German]In anticipation of the upcoming releases of Windows 11 24H2 and Windows Server 2025 at the end of August 2024, Microsoft has published a tech community article on the topic of "SMB Security Hardening". The whole thing is part of … Continue reading

Posted in Security, Windows | Tagged , , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Scam-Warning: Fake Trojan alert (here shown via Facebook ads)

[German]Brief information for Facebook users. There are indications that a campaign is running via ads on Facebook, which pretends to be a fake Trojan in the browser and asks the user to call a "Microsoft support page". This is of … Continue reading

Posted in Security | Tagged | Leave a comment

Windows: Side-Loading DLL attacks via licensingdiag.exe

[German]I'm once again posting information here in the blog that I stumbled across recently. Anyone who is concerned about Windows security should keep an eye on the command line tool licensingdiag.exe. It is another "living of the land" tool that … Continue reading

Posted in Security, Windows | Tagged , | Leave a comment

Patch your Progress Kemp LoadMaster (Load-Balancer)

[German]Quick note for administrators who use the load balancer LoadMaster from Progress Kemp. The provider has released the next patch for August 2024. The new vulnerability CVE-2024-6658 is to be closed. There are currently no details for the public.

Posted in Security, Software | Tagged , | Leave a comment

Microsoft Authenticator required although MFA already set up?

[German]Microsoft has started to implement multifactor authentication for its cloud offerings. Among other things, the Microsoft Authenticator app is used as a second factor for authentication. A blog reader got in touch because he ran into a problem with a … Continue reading

Posted in Cloud, Security | Tagged , , | Leave a comment

Netherlands: Data center failure "grounds" Eindhoven Airport and other authorities

[German]In the Netherlands, a network malfunction in the data center of the Dutch Ministry of Defense have had drastical results. As a result, several Dutch authorities wasn't able to use their IT systems anymore. And even more serious: Eindhoven Airport … Continue reading

Posted in issue, Security | Tagged , | Leave a comment