Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Search Bar Is Now More Secure

Your Search Bar Is Now More Secure

August saw yet another Patch Tuesday designed to resolve security issues in Microsoft products. Out of the 48 vulnerabilities resolved, 15 affected Windows, while 25 were rated as critical, 21 as important, and 27 that allowed for remote code execution. This might sound a little overwhelming, so we’ll try to simplify it a bit--a lot of flaws were fixed, and the majority of them can be considered dangerous for your organization.

Since only 15 affected Windows itself, you might be wondering where the others were applied. Other Microsoft products, including Internet Explorer, Microsoft Edge, Sharepoint, SQL Server, Hyper-V, and Kernel, all required a response from the developer. Only two of these flaws affected all versions of Windows and Windows Server, yet none of them were being exploited in the wild by hackers trying to find their next victim.

There is one vulnerability, however, that should require your immediate attention, and this is the one which targets the Windows Search function in your device. The vulnerability in question, CVE-2017-8620, can be exploited remotely via Server Management Block (SMB) to take over a system. This includes both a Windows workstation or a Windows Server unit. Thankfully, the flaw doesn’t exist in SMB itself, and is unaffected by the dangerous threats like the WannaCry ransomware and NotPetya.

According to the Windows advisory, the vulnerability is exploited through the way that Windows Search handles objects in memory. Basically, hackers can send specialized messages through Windows Search to change user permissions. Once they have done so, the possibilities are limitless. Hackers could install, remove, or change applications on the targeted device, as well as view, change, or delete data stored on it. Even scarier is the ability to create an entirely new account with full administrator privileges.

This type of vulnerability is something out of a hacker’s dream, allowing them to take full advantage of a victim’s computer with relatively little trouble. The good news is that as long as you apply the required patches and security updates, the issue can be resolved easily enough. How does your organization combat vulnerabilities? You need to implement patches and security updates in at least some capacity, as not doing anything at all is a recipe for disaster--especially with a threat as thorough as the one mentioned above. Thankfully, there is a solution for organizations that either don’t have the time or the resources to implement patches in a timely manner.

Outsourced IT services, including remote patching and maintenance, can be acquired by organizations of all sizes, without breaking your budget or dragging down operations due to maintenance. You can take advantage of enterprise-level solutions designed to help your organization optimize security, without hiring an internal IT department and adding new salaries to your budget. Voyage Technology can help your business identify and repair weaknesses in its computing infrastructure. To learn more, reach out to us at 800.618.9844.

Our clients that are subscribed to our Managed IT services will be covered and will be getting the Windows updates once it has been fully tested.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 06 May 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Efficiency Hardware Network Security User Tips Internet IT Services Malware Phishing IT Support Google Email Workplace Tips Privacy Computer Workplace Strategy Collaboration Small Business Hosted Solutions Backup Users Ransomware AI Managed Service Mobile Device Productivity Microsoft Quick Tips Passwords Saving Money Communication Cybersecurity Data Backup Smartphone Disaster Recovery Data Recovery Android VoIP Upgrade Business Management Smartphones Mobile Devices communications Windows Browser Social Media Microsoft Office Managed IT Services Current Events Network Tech Term Internet of Things Remote Miscellaneous Information Facebook Holiday Automation Artificial Intelligence Compliance Gadgets Cloud Computing Covid-19 Training Outsourced IT Server Remote Work Managed Service Provider IT Support Encryption Spam Employee/Employer Relationship Office Windows 10 Government Data Management Business Continuity Virtualization Blockchain Wi-Fi Vendor Business Technology Windows 10 Bandwidth Managed Services Data Security Apps Two-factor Authentication Mobile Office WiFi Voice over Internet Protocol Apple Networking App Employer-Employee Relationship BYOD Mobile Device Management Tip of the week Chrome Gmail Budget Managed IT Services How To BDR HIPAA Computing Physical Security Hacker Applications Information Technology Avoiding Downtime Marketing Access Control Office 365 Conferencing Password Bring Your Own Device Healthcare Big Data Operating System Computers Router Virtual Private Network Risk Management Website Health Help Desk Analytics Office Tips 2FA Augmented Reality Retail Storage The Internet of Things Scam Data loss Remote Workers Social Cooperation Going Green Patch Management Free Resource Save Money Project Management Remote Monitoring Windows 7 End of Support Vulnerability Vendor Management Customer Service Microsoft 365 Cybercrime Solutions Display Printer Paperless Office Infrastructure Monitoring Windows 11 Firewall Document Management Excel Managed IT Service Telephone Mouse Licensing Administration Entertainment iPhone Vulnerabilities Robot Telephone System Data Privacy Cost Management Customer Relationship Management Settings Images 101 Wireless Printing Mobility Content Filtering Multi-Factor Authentication Hacking IT Management Presentation VPN YouTube Meetings Cryptocurrency Wireless Technology User Tip Modem Computer Repair Mobile Security Employees Processor Integration Virtual Desktop LiFi Data storage Smart Technology Word Holidays Outlook Machine Learning Data Storage Money Saving Time Supply Chain Humor Video Conferencing Managed Services Provider Virtual Machines Maintenance Professional Services Safety Antivirus Sports Downloads Education Connectivity Evernote Paperless Social Engineering Break Fix Regulations Compliance Browsers Memes Upload Co-managed IT Remote Computing Multi-Factor Security Net Neutrality Mobile Computing Social Network SQL Server Technology Care Tablet IoT Business Communications Search Dark Web Financial Data History IT Application Best Practice Trends Scams Alert Smartwatch Dark Data Google Calendar Procurement Managed IT Customer Resource management Azure Hybrid Work Buisness File Sharing Regulations IT solutions Star Wars Tech Human Resources How To Microsoft Excel Telework IBM Legal Data Analysis Cyber security Communitications Business Growth Gamification Cables Notifications Staff CES Legislation Supply Chain Management Travel Social Networking Google Maps Term Google Apps Cortana FinTech Techology Fileless Malware IT Assessment Alt Codes Content IT Maintenance Wearable Technology Comparison Flexibility Competition Health IT Value Business Intelligence Downtime Unified Threat Management Motherboard Hosted Solution Assessment Shortcuts Permissions Organization Unified Threat Management Directions Smart Devices Typing Ransmoware Digital Security Cameras Network Congestion Specifications Remote Working Memory Vendors User Internet Exlporer Google Play Be Proactive Knowledge Fraud Google Drive User Error Microchip Data Breach Videos Electronic Health Records Username Workforce 5G Black Friday Wasting Time Threats Point of Sale Trend Micro Unified Communications Database Security Cameras Workplace Strategies Experience IP Address Google Docs Software as a Service Bitcoin Network Management Meta Running Cable Tech Support IT Technicians Monitors Cyber Monday Google Wallet Proxy Server Managing Costs Amazon Cookies eCommerce Recovery Tactics SSID Hotspot Surveillance Hard Drives Windows 8 Virtual Assistant Outsource IT Laptop Websites Mirgation Media Domains Drones Virtual Machine Environment Nanotechnology Addiction Medical IT Electronic Medical Records Language Reviews SharePoint Development Refrigeration Management Transportation Small Businesses Halloween Chatbots Writing Distributed Denial of Service Public Speaking Lenovo Hypervisor Displays Screen Reader Optimization Service Level Agreement PowerPoint Virtual Reality Computing Infrastructure Shopping Lithium-ion battery Hacks Server Management Employer/Employee Relationships Outsourcing Entrepreneur Scary Stories Private Cloud Identity Navigation Fun PCI DSS Superfish Bookmark Identity Theft Smart Tech Deep Learning Download Workplace Twitter Alerts Gig Economy Internet Service Provider Undo Teamwork Hiring/Firing Error

Blog Archive