Tag Archives: Security

Vulnerabilities (CVE-2023-40481, CVE-2023-31102) in 7-ZIP; fixed in version 23.00 (August 2023)

[German]A short update from the end of August 2023. Security researchers have found two vulnerabilities in the 7-Zip program, which is used to pack and unpack ZIP archive files. The vulnerabilities CVE-2023-40481 and CVE-2023-31102 are classified as high-risk from a … Continue reading

Posted in Security, Software, Update | Tagged , , | Leave a comment

Decryptor for Key Group Ransomware Available

Security researchers at ElectricIQ have discovered a vulnerability in the routines of the Key Group ransomware that allowed decryption tools to recover encrypted files. The decryption tool only works on a specific version of the ransomware developed around Aug. 3, … Continue reading

Posted in Security | Tagged | Leave a comment

MalDoc: Malicious Word files in PDF documents bypass malware detection

[German]Another small addendum from this week: The Japanese CERT warns of a new technique used by cyber attackers who take malicious Word files and embed them in PDF documents. This "packaging" is intended to bypass the detection of the malicious … Continue reading

Posted in Office, Security, Software | Tagged , , | 1 Comment

Vulnerabilities in Notepad ++ (Sept. 2023)

[German]Several vulnerabilities (CVE-2023-40031, CVE-2023-40036, CVE-2023-40164, CVE-2023-40166) are believed to exist in the popular Notepad ++ editor and have been reported to the developer by a security researcher. The vulnerability ratings range from medium to high. Although this report was made … Continue reading

Posted in Security, Software, Windows | Tagged , | Leave a comment

Exchange 2016/2019 get HSTS support; Extended Protection will also be enabled soon

[German]With CU14, Microsoft pans to enable the Windows Server Extended Protection feature by default for Exchange Server 2019 for improved protection. However, it will be possible to deactivate this feature when installing the CU14 if required. Redmond has announced this … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Unfixed Skype bug allows attackers to query victims' IP address (August 2023)

[German]A security researcher has come across a way to determine the IP address of a Skype user without the target person even having to click on a link (IP address spoofing). This could be used to spy on people (e.g. … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Firefox 117, 115.2 ESR, 102.15 ESR

As of August 29, 2023, the Mozilla developers have released the new Firefox 117 as well as the maintenance updates of Firefox 115.2 ESR and Firefox 102.14 ESR. With the updates, some vulnerabilities have been closed. Here is a brief … Continue reading

Posted in browser, Security, Update | Tagged , | 1 Comment

FBI and Europol dismantle with partners Qakbot network

[German]In an international operation, the U.S. FBI and Europol, together with local partners, dismantled the Qabot network. The action succeeded after law enforcement managed to take over the PC of a Qakbot administrator. The infected devices were instructed to download … Continue reading

Posted in Security | Tagged | Leave a comment

WinRAR vulnerability CVE-2023-40477: Also third-party software affected?

In my blog post WinRAR Code Execution Vulnerability CVE-2023-40477 I had mentioned a vulnerability in WinRAR, which has been fixed with the update to WinRAR version 6.23. Andreas Marx from AV-Test recently pointed out that basically all software that uses … Continue reading

Posted in Security, Software, Windows | Tagged , , | Comments Off on WinRAR vulnerability CVE-2023-40477: Also third-party software affected?

Palo Alto: Ivanti Endpoint Manager Mobile Vulnerabilities Readback (August 2023)

[German]Vendor Ivanti has had to warn about critical vulnerabilities in its Endpoint Manager Mobile (EPMM) several times in recent weeks and issue security updates. The starting point for this flood of security reports was that Norway's government was hacked via … Continue reading

Posted in Security, Software | Tagged , | Leave a comment