Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Search Bar Is Now More Secure

Your Search Bar Is Now More Secure

August saw yet another Patch Tuesday designed to resolve security issues in Microsoft products. Out of the 48 vulnerabilities resolved, 15 affected Windows, while 25 were rated as critical, 21 as important, and 27 that allowed for remote code execution. This might sound a little overwhelming, so we’ll try to simplify it a bit--a lot of flaws were fixed, and the majority of them can be considered dangerous for your organization.

Since only 15 affected Windows itself, you might be wondering where the others were applied. Other Microsoft products, including Internet Explorer, Microsoft Edge, Sharepoint, SQL Server, Hyper-V, and Kernel, all required a response from the developer. Only two of these flaws affected all versions of Windows and Windows Server, yet none of them were being exploited in the wild by hackers trying to find their next victim.

There is one vulnerability, however, that should require your immediate attention, and this is the one which targets the Windows Search function in your device. The vulnerability in question, CVE-2017-8620, can be exploited remotely via Server Management Block (SMB) to take over a system. This includes both a Windows workstation or a Windows Server unit. Thankfully, the flaw doesn’t exist in SMB itself, and is unaffected by the dangerous threats like the WannaCry ransomware and NotPetya.

According to the Windows advisory, the vulnerability is exploited through the way that Windows Search handles objects in memory. Basically, hackers can send specialized messages through Windows Search to change user permissions. Once they have done so, the possibilities are limitless. Hackers could install, remove, or change applications on the targeted device, as well as view, change, or delete data stored on it. Even scarier is the ability to create an entirely new account with full administrator privileges.

This type of vulnerability is something out of a hacker’s dream, allowing them to take full advantage of a victim’s computer with relatively little trouble. The good news is that as long as you apply the required patches and security updates, the issue can be resolved easily enough. How does your organization combat vulnerabilities? You need to implement patches and security updates in at least some capacity, as not doing anything at all is a recipe for disaster--especially with a threat as thorough as the one mentioned above. Thankfully, there is a solution for organizations that either don’t have the time or the resources to implement patches in a timely manner.

Outsourced IT services, including remote patching and maintenance, can be acquired by organizations of all sizes, without breaking your budget or dragging down operations due to maintenance. You can take advantage of enterprise-level solutions designed to help your organization optimize security, without hiring an internal IT department and adding new salaries to your budget. Voyage Technology can help your business identify and repair weaknesses in its computing infrastructure. To learn more, reach out to us at 800.618.9844.

Our clients that are subscribed to our Managed IT services will be covered and will be getting the Windows updates once it has been fully tested.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 04 February 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Efficiency Hardware Network Security User Tips Internet Malware IT Support Privacy IT Services Google Email Workplace Tips Computer Phishing Collaboration Hosted Solutions Workplace Strategy Users Ransomware Small Business Mobile Device Productivity Microsoft Backup Managed Service Quick Tips Passwords Saving Money Cybersecurity Communication Data Backup Smartphone Android AI Data Recovery Upgrade Disaster Recovery Business Management VoIP Smartphones Mobile Devices communications Windows Social Media Browser Microsoft Office Managed IT Services Network Current Events Tech Term Remote Internet of Things Holiday Information Automation Artificial Intelligence Facebook Miscellaneous Cloud Computing Training Covid-19 Gadgets Server Managed Service Provider Remote Work Compliance IT Support Outsourced IT Employee/Employer Relationship Encryption Spam Office Windows 10 Government Data Management Business Continuity Wi-Fi Blockchain Business Technology Windows 10 Bandwidth Virtualization Two-factor Authentication Vendor Mobile Office Data Security Apps BYOD Mobile Device Management Tip of the week Chrome Gmail Budget WiFi Managed Services Voice over Internet Protocol Apple Networking App Employer-Employee Relationship Computing Hacker Information Technology Avoiding Downtime HIPAA Access Control Marketing Applications Office 365 Conferencing How To BDR Operating System Computers Virtual Private Network Risk Management Website Router Health Analytics Office Tips Augmented Reality 2FA Retail Help Desk Storage Password Bring Your Own Device Big Data Managed IT Services Healthcare Cooperation Free Resource Remote Monitoring End of Support Project Management Vulnerability Windows 7 Customer Service Vendor Management Cybercrime Microsoft 365 Physical Security Display Solutions Printer Paperless Office Infrastructure Windows 11 Firewall Document Management Monitoring Excel The Internet of Things Scam Data loss Remote Workers Social Telephone Going Green Patch Management Save Money Data Privacy Settings Wireless Printing Content Filtering Images 101 Hacking IT Management YouTube Meetings Telephone System Multi-Factor Authentication Mobility Presentation VPN Cost Management Cryptocurrency Wireless Technology Computer Repair Virtual Desktop Employees Integration Data storage LiFi Word User Tip Modem Mobile Security Outlook Processor Machine Learning Money Holidays Humor Data Storage Smart Technology Supply Chain Video Conferencing Safety Maintenance Sports Managed Services Provider Antivirus Professional Services Mouse Saving Time Virtual Machines Managed IT Service Administration Downloads iPhone Licensing Robot Vulnerabilities Customer Relationship Management Entertainment Trends Supply Chain Management Alt Codes Downtime Unified Threat Management Customer Resource management FinTech Regulations Google Calendar Term Google Apps Competition Microsoft Excel IT Maintenance Unified Threat Management Hosted Solution Data Analysis Star Wars IT Assessment Gamification Flexibility Staff Value Business Intelligence Typing Network Congestion Organization Social Networking Legislation Shortcuts Ransmoware Google Drive User Error User Knowledge Fileless Malware Digital Security Cameras Smart Devices Content Remote Working Wearable Technology Memory Vendors Point of Sale 5G Health IT Motherboard Data Breach Comparison Google Play Be Proactive Assessment Electronic Health Records Permissions Workforce IP Address Google Docs Unified Communications Experience Directions Videos Running Cable Tech Support Wasting Time Threats Bitcoin Network Management Specifications Security Cameras Workplace Strategies Google Wallet Monitors Trend Micro Internet Exlporer Software as a Service Fraud Meta Recovery Microchip Laptop Websites Username Managing Costs Amazon Hard Drives Windows 8 Black Friday SSID Domains Drones eCommerce Database Surveillance Virtual Assistant Outsource IT SharePoint Electronic Medical Records Halloween IT Technicians Virtual Machine Environment Media Refrigeration Cyber Monday Medical IT Public Speaking Lenovo Writing Proxy Server Reviews Cookies Tactics Development Hotspot Transportation Small Businesses Lithium-ion battery Virtual Reality Entrepreneur Scary Stories Private Cloud Mirgation Hypervisor Displays Hacks Server Management PowerPoint Superfish Identity Theft Fun Shopping Nanotechnology Optimization Addiction Language Employer/Employee Relationships Outsourcing Deep Learning Twitter Error Management PCI DSS Chatbots Navigation Undo Distributed Denial of Service Workplace Education Social Engineering Gig Economy Screen Reader Service Level Agreement Internet Service Provider Computing Infrastructure Teamwork Hiring/Firing Remote Computing Regulations Compliance Identity Evernote Paperless Mobile Computing Co-managed IT Tablet Search Bookmark Smart Tech Memes Download Net Neutrality Alerts SQL Server Technology Care Application Best Practice Alert Buisness File Sharing Dark Data Financial Data History Business Communications Managed IT Break Fix Scams IBM Legal IT solutions How To Browsers Smartwatch Connectivity IT Upload Procurement Azure Hybrid Work Business Growth Notifications Travel Social Network Telework Cyber security Multi-Factor Security Tech Human Resources Dark Web Cables Techology Google Maps Cortana CES IoT Communitications

Blog Archive