Tag Archives: Software

Microsoft Defender blocks Anydesk clients (since 28 February 2024)

[German]Brief information for everyone. I have just heard from blog readers that the clients of the remote maintenance provider AnyDesk will probably be blocked by Microsoft Defender under Windows from today (28 February 2024). The whole thing is related to … Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

Advertising

TeamViewer password vulnerability CVE-2024-0819

[German]A short warning to readers who use the TeamViewer remote maintenance software still with a "personal password". The client for Windows should urgently be updated to version 15.51.5. The manufacturer has published a security notice stating that older software versions … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

How to find weak passwords in Active Directory and eliminate them with PowerShell

[Sponsored Post]Weak or compromised passwords are a known gateway for attackers. If you are able to identify which users in Active Directory (AD) are threatened by this, then PowerShell can help to remedy it. However, PowerShell scripts cannot eliminate basic AD deficits, other tools are needed for this. More ...

Critical vulnerability in ConnectWise remote software Screenconnect (Feb. 2024)

[German]Does anyone use Screenconnect from the provider ConnectWise? A critical vulnerability (CVSS 3.1 10.0) has been discovered in the remote desktop software, which should be closed immediately. An initial exploit for this vulnerability is already available. Here is a quick … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Advertising

Ivanti Endpoint Manager vulnerability CVE-2021-44529: Code injection or backdoor?

[German]New scandal surrounding Ivanti Endpoint Manager. In 2021, Ivanti closed a security vulnerability CVE-2021-44529 in the product known as "code injection". There were rumors that it was a backdoor in an open source project. A security researcher then took another … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Progress Kemp LoadMaster (Load-Balancer) vulnerabilityCVE-2024-1212

On February 8, 2024, administrators using the Progress Kemp LoadMaster load balancer were advised to update its firmware. The information on the vulnerability CVE-2024-1212 in the Progress Kemp LoadMaster firmware was not released until February 21, 2024. I have updated … Continue reading

Posted in Security, Software | Tagged , | Comments Off on Progress Kemp LoadMaster (Load-Balancer) vulnerabilityCVE-2024-1212

Advertising

AnyDesk hack: Newly signed clients available; what are your experiences? – Part 12

[English]At the begin of February 2024, it became known that the provider of remote maintenance software, AnyDesk, was the victim of a hack of its production environment. I pointed out early on that the hack had already taken place in … Continue reading

Posted in Security, Software | Tagged , , | Leave a comment

Critical FortiOS-Bug (Feb. 8., 2024)

[German]A very brief note, which was also pointed out to me by a blog reader. Forti has re-released all FortiOS versions on February 8, 2024. The release notes do not say what has been fixed in these versions. The reader … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

JetBrains TeamCity: Critical vulnerability CVE-2024-23917 (on-premises)

[German]A small addendum from yesterday regarding security. There is a critical vulnerability in JetBrains TeamCity Server that endangers on-premises servers. There is probably a security update available, which should be installed as soon as possible. I don't know who among … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

Advertising

Ivanti Connect Secure: New vulnerabilities CVE-2024-21888 and CVE-2024-21893 patched

[German]Security issues in Ivanti products are ongoing. In January 2024, the provider had to disclose two new security vulnerabilities in Ivanti Connect Secure. These are CVE-2024-21888 (privilege escalation to admin) and CVE-2024-21893 (SSRF to access "restricted resources"). So far, there … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

AnyDesk: Be careful in using that remote support software

[German]A short warning to IT supporters who use the AnyDesk remote maintenance software for remote support. A few days ago, I reported some issues with this product (see my German blog post Störung bei AnyDesk, jemand betroffen?). AnyDesk web site … Continue reading

Posted in Security, Software | Tagged , | 3 Comments