Tag Archives: Security

Microsoft patches CVE-2024-21325 in Printer Metadata Troubleshooter Tool (KB5034510)

[German]In December 2023, Microsoft released the Printer Metadata Troubleshooter Tool (KB5034510) to fix the HP Smart App issue. Shortly afterwards, following a tip from Stefan Kanthak, I reported on security problems with this tool here in the blog. Microsoft has … Continue reading

Posted in issue, Security, Windows | Tagged , , , , | 1 Comment

Edge 120.0.2210.133

[German]Microsoft has released another security update for the Edge (Chromium) browser with version 120.0.2210.133 on January 11, 2024. It is a security update that is intended to close vulnerabilities.

Posted in browser, Security, Update | Tagged , , | Leave a comment

Windows WinRE update (for Bitlocker Bypassing vulnerability CVE-2024-20666) fails with installation error 0x80070643 (Jan. 2024, KB5034441)

[German]Microsoft has released security updates for Windows 10 and Windows 11 (and Windows Server 2016, 2019, 2022) on January 9, 2024. This update also includes a fix (according to KB5034441) to eliminate the BitLocker Security Feature Bypass vulnerability CVE-2024-20666 in … Continue reading

Posted in issue, Update, Windows | Tagged , , , , | 6 Comments

Windows 7/Server 2008 R2; Server 2012 R2: Updates (January 9, 2024)

[German]Various security updates for Windows Server 2008 R2 (in the 4th ESU year) and for Windows Server 2012/R2 (1st ESU year) were released on January 9, 2024 (the updates can also be installed under Windows 7 SP1). Here is an … Continue reading

Posted in Security, Update, Windows | Tagged , , , , | Leave a comment

Patchday: Windows 11/Server 2022 Updates (January 9, 2024)

[German]On January 9, 2024 (second Tuesday of the month, patch day at Microsoft), Microsoft also released cumulative updates for Windows 11 23H2 to 21H2. Windows Server 2022 also received an update. Here are some details about these updates, which are … Continue reading

Posted in Security, Update, Windows | Tagged , , , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Patchday: Windows 10 Updates (January 9, 2024)

[German]On January 9 (second Tuesday of the month, Patchday at Microsoft), various cumulative updates were released for the supported Windows 10 builds (from the RTM version to the current version) as well as for the Windows Server counterparts. Here are … Continue reading

Posted in Security, Update, Windows | Tagged , , , | 3 Comments

Microsoft Security Update Summary (January 9, 2024)

[German]On January 9, 2024, Microsoft released security updates for Windows clients and servers, for Office and for other products. The security updates eliminate 48 vulnerabilities (CVEs), two of which are critical vulnerabilities. Below is a compact overview of these updates … Continue reading

Posted in Office, Security, Software, Update, Windows | Tagged , , , , , | 2 Comments

Important dates for Windows hardening in 2024

[German]Brief short note before the first patchday in 2024: Microsoft is carrying out hardening measures for Windows (clients and servers) over longer periods of time, where functions are secured via Windows Update on certain dates. Some of these hardening measures … Continue reading

Posted in Security, Windows | Tagged , | 2 Comments

Swedish Coop Group fell victim to Cactus ransomware in December 2023

[German]The Swedish Coop supermarket group has probably fallen victim to another cyberattack. I read a few days ago that the ransomware group Cactus, which has been operating since 2023, listed Coop as a victim on its Tor leak page. In … Continue reading

Posted in Security | Tagged | Leave a comment

Undocumented Google OAuth function misused by malware for account hijacking

[German]There is an undocumented feature in Google's OAuth implementation that is being abused by several malware strains. These use an exploit that allows them to recover expired cookies. This allows them to then log in to online accounts, steal information … Continue reading

Posted in Security | Tagged | Leave a comment