Sophos UTM: New update (9.703-3)

Sophos has released the update for the UTM to version 9.703 in a bug-fixed version. The update initially caused various serious problems and was withdrawn by Sophos. The update is now available with the version number 9.703-3. This update is intended to fix the following problems: [NUTM-9381]: [Access & Identity] WebAdmin user getting an error while ... Read more

Sophos UTM: Very slow connection via WAF / Sensor for PRTG

A reader recently told me about a problem with the Sophos UTM web application firewall. Due to the Corona crisis, many of the employees have moved to the home office and have since been using more connections to the Exchange server, which are protected by the WAF of the Sophos UTM. So after there was a higher load on the UTM during the day ... Read more

QuickTip: Posh-SSH module on Windows Server 2019

On several Windows 2019 servers, I have already had the problem that the PowerShell module "Posh-SSH" only returns an error message when establishing an SSH connection. I had this problem with Windows Server 2019 and the Posh-SSH module in version 2.2. Here is a quick tip on how to fix the problem. The error message is as follows: ... Read more

QuickTip: "Reply to all" to prevent a flood of emails

Who isn't familiar with the evil "Reply all" function in Outlook? An important piece of information is quickly sent to the whole company, and then there's a flood of replies because the recipients use the "reply all" function: Depending on the size of the organization, such a flood of emails can generate a few million emails and thus ... Read more

New update for Exchange Server 2016 / 2019 (CVE-2020-0903)

Microsoft released a new security update for Exchange Server 2016 and 2019 yesterday. The update closes a vulnerability classified as "Important". Description of the vulnerability: A cross-site scripting (XSS) vulnerability exists when Microsoft Exchange Server does not properly sanitize a specially crafted web request to an affected Exchange server. An authenticated attacker could exploit the vulnerability by ... Read more

Exchange Server: Install updates now

On February 13, 2020, Microsoft released updates for all Exchange Server versions for the vulnerability CVE-2020-0688. If you have not already done so, you should install the update as soon as possible, as it is now known how the vulnerability can be exploited. Although an attacker must first authenticate themselves on the Exchange Server, it is then possible to take control of the ... Read more