Tag Archives: Windows

Microsoft Microsoft Januar 2022 Patchday Revisions (2022/01/14)

[German]As of January 11, 2022, Microsoft has released a number of security updates for Windows and Office that are supposed to eliminate vulnerabilities. However, some of these updates caused problems, disrupting functions in Windows. On January 14, 2022, Microsoft released … Continue reading

Posted in Office, Security, Update, Windows | Tagged , , , , | Leave a comment

0patch fixes RemotePotato0 vulnerability in Windows

[German]The ACROS Security team around founder Mitja Kolsek has just developed a micro-patch to close a Local Privilege Escalation vulnerability of Windows. The patch is available free of charge for all customers with the 0patch agent until Microsoft closes this … Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Microsoft patch day issues Jan. 2022: bugs confirmed, but updates not pulled

[German]The January patch day 2022 (January 11, 2022) brought administrators of Windows Server systems into serious trouble: Hyper-V is bricked, DCs are force into boot loops, ReFS has been removed, IPSec VPN connections are broken, and so on. Microsoft has … Continue reading

Posted in issue, Security, Update, Windows | Tagged , , , , | 8 Comments

Microsoft Security Update Summary (January 11, 2022)

[German]On January 11, 2022, Microsoft released security updates for Windows clients and servers, for Office, etc. – as well as for other products – were released. Below is a compact overview of these updates that were released on Patchday.

Posted in Office, Security, Software, Update, Windows | Tagged , , , , , | Leave a comment

Windows Terminal Emulator: DoS and "White Screen of Death" via Escape Characters to Change the Title

[German]Windows offers the possibility to change the window title of windows of a terminal emulator via control characters (ANSI Escape Characters). Some blog readers still know this, was used to adjust colors of a DOS window for example. A security … Continue reading

Posted in issue, Windows | Tagged , , | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


Strange: Norton 360 installs crypto miner

[German]The security and antivirus solution Norton 360 installing a crypto miner on the user's Windows system. Although this can be controlled by the user, it is (in a time we are facing climate change) still questionable. I have become aware … Continue reading

Posted in Security, Software, Windows | Tagged , , | Leave a comment

Security: Windows Format command allows DLL loading abuse

[German]It is almost unbelievable what can be hidden behind Windows functions and commands. The format command for formatting disks, which has been available in the command prompt for ages, has a side effect. With a parameter the call of an … Continue reading

Posted in Security, Windows | Tagged , | 1 Comment

Sophos: Thread actors test CAB-less 40444 (MSHTL vulnerability) attacks in Windows

[German]Security vendor Sophos published information about a new attack scenario in a series of tweets just before Christmas. Attackers are currently testing a new attack vector via RAR attachments with Word documents and scripts in mails. However, this involves distributing … Continue reading

Posted in Office, Security, Windows | Tagged , , | Leave a comment

0patch fixes ms-officecmd RCE vulnerability in Windows

[German]The security team of ACROS Security around founder Mitja Kolsek has just developed a micro patch to close a remote code execution vulnerability in the ms-officecmd handler of Windows and released it for customers with a 0patch PRO or Enterprise … Continue reading

Posted in Security, Windows | Tagged , , | Leave a comment

Microsoft warns against Active Directory domain takeover due to unpatched vulnerabilities

[German]Microsoft warned of a new threat in a Techcommunity post on December 20, 2021. In November 2021 patchday, vulnerabilities CVE-2021-42287 and CVE-2021-42278 were fixed by Windows updates. Since December 2021, a proof of concept (PoC) has been available that abuses … Continue reading

Posted in Security, Update, Windows | Tagged , | Leave a comment