Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Search Bar Is Now More Secure

Your Search Bar Is Now More Secure

August saw yet another Patch Tuesday designed to resolve security issues in Microsoft products. Out of the 48 vulnerabilities resolved, 15 affected Windows, while 25 were rated as critical, 21 as important, and 27 that allowed for remote code execution. This might sound a little overwhelming, so we’ll try to simplify it a bit--a lot of flaws were fixed, and the majority of them can be considered dangerous for your organization.

Since only 15 affected Windows itself, you might be wondering where the others were applied. Other Microsoft products, including Internet Explorer, Microsoft Edge, Sharepoint, SQL Server, Hyper-V, and Kernel, all required a response from the developer. Only two of these flaws affected all versions of Windows and Windows Server, yet none of them were being exploited in the wild by hackers trying to find their next victim.

There is one vulnerability, however, that should require your immediate attention, and this is the one which targets the Windows Search function in your device. The vulnerability in question, CVE-2017-8620, can be exploited remotely via Server Management Block (SMB) to take over a system. This includes both a Windows workstation or a Windows Server unit. Thankfully, the flaw doesn’t exist in SMB itself, and is unaffected by the dangerous threats like the WannaCry ransomware and NotPetya.

According to the Windows advisory, the vulnerability is exploited through the way that Windows Search handles objects in memory. Basically, hackers can send specialized messages through Windows Search to change user permissions. Once they have done so, the possibilities are limitless. Hackers could install, remove, or change applications on the targeted device, as well as view, change, or delete data stored on it. Even scarier is the ability to create an entirely new account with full administrator privileges.

This type of vulnerability is something out of a hacker’s dream, allowing them to take full advantage of a victim’s computer with relatively little trouble. The good news is that as long as you apply the required patches and security updates, the issue can be resolved easily enough. How does your organization combat vulnerabilities? You need to implement patches and security updates in at least some capacity, as not doing anything at all is a recipe for disaster--especially with a threat as thorough as the one mentioned above. Thankfully, there is a solution for organizations that either don’t have the time or the resources to implement patches in a timely manner.

Outsourced IT services, including remote patching and maintenance, can be acquired by organizations of all sizes, without breaking your budget or dragging down operations due to maintenance. You can take advantage of enterprise-level solutions designed to help your organization optimize security, without hiring an internal IT department and adding new salaries to your budget. Voyage Technology can help your business identify and repair weaknesses in its computing infrastructure. To learn more, reach out to us at 800.618.9844.

Our clients that are subscribed to our Managed IT services will be covered and will be getting the Windows updates once it has been fully tested.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Monday, 30 March 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Hardware Efficiency Network Security User Tips Internet IT Services Malware IT Support Privacy Workplace Tips Email Computer Phishing Google Workplace Strategy Collaboration Hosted Solutions Small Business Backup Users Ransomware Managed Service Mobile Device Productivity Microsoft Quick Tips Passwords Saving Money AI Communication Cybersecurity Smartphone Data Backup Data Recovery Disaster Recovery Android VoIP Upgrade Business Management Smartphones communications Mobile Devices Windows Browser Social Media Microsoft Office Managed IT Services Current Events Network Tech Term Remote Internet of Things Information Facebook Miscellaneous Holiday Artificial Intelligence Automation Compliance Cloud Computing Gadgets Training Covid-19 Outsourced IT Managed Service Provider Remote Work Server IT Support Encryption Spam Employee/Employer Relationship Windows 10 Office Data Management Government Business Continuity Windows 10 Wi-Fi Virtualization Blockchain Business Technology Bandwidth Mobile Office Managed Services Data Security Two-factor Authentication Apps Vendor App Mobile Device Management Networking Voice over Internet Protocol Gmail WiFi BYOD Employer-Employee Relationship Chrome Budget Tip of the week Apple Marketing Managed IT Services Conferencing How To BDR Computing Information Technology Physical Security Office 365 HIPAA Access Control Applications Hacker Avoiding Downtime 2FA Website Help Desk Operating System Healthcare Risk Management Big Data Virtual Private Network Analytics Office Tips Augmented Reality Health Router Computers Storage Password Bring Your Own Device Retail Monitoring Scam Excel Data loss Going Green Firewall Remote Workers Managed IT Service Telephone Cybercrime Patch Management Save Money The Internet of Things Remote Monitoring Vulnerability End of Support Cooperation Free Resource Vendor Management Project Management Windows 7 Social Microsoft 365 Display Printer Solutions Paperless Office Infrastructure Customer Service Document Management Windows 11 Data Storage Maintenance Antivirus Smart Technology Supply Chain Video Conferencing Word Managed Services Provider Saving Time Virtual Machines Professional Services Settings Wireless Printing Content Filtering Downloads YouTube Safety Robot iPhone Licensing Cryptocurrency Vulnerabilities Entertainment Data Privacy IT Management VPN Virtual Desktop Meetings Images 101 Data storage LiFi Telephone System Multi-Factor Authentication Mobility Cost Management Outlook Computer Repair Customer Relationship Management Money Humor Employees Integration Hacking Presentation Sports Machine Learning User Tip Modem Mouse Mobile Security Processor Wireless Technology Holidays Administration Twitter Mirgation Hypervisor Displays Best Practice Buisness Error Shopping Recovery Nanotechnology Optimization PowerPoint Legal Language Employer/Employee Relationships Outsourcing IT solutions Hard Drives Social Engineering Addiction Remote Computing Management PCI DSS Chatbots Business Growth Navigation Domains Gig Economy Screen Reader Distributed Denial of Service Workplace Computing Infrastructure Teamwork Hiring/Firing Tablet Cortana Refrigeration Service Level Agreement Internet Service Provider Public Speaking Alert Regulations Compliance Identity Alt Codes Evernote Paperless Managed IT Downtime Lithium-ion battery File Sharing Bookmark Dark Data Smart Tech Memes Co-managed IT Entrepreneur Alerts SQL Server Technology Care Hosted Solution How To Download Net Neutrality Notifications Financial Data History Typing Business Communications Travel Browsers Smartwatch Connectivity IT Break Fix Scams Upload Procurement Google Drive Azure Hybrid Work Techology Google Maps Knowledge Undo Social Network Telework Cyber security Multi-Factor Security Tech Human Resources Dark Web Cables Unified Threat Management 5G CES IoT Communitications Trends Supply Chain Management Google Docs Unified Threat Management Unified Communications Experience Running Cable Customer Resource management FinTech Regulations Bitcoin Google Calendar Term Google Apps Google Wallet Microsoft Excel IT Maintenance Data Analysis Application Network Congestion Star Wars IT Assessment Gamification Flexibility Staff Value Business Intelligence User Error Laptop IBM Organization Social Networking Windows 8 Legislation Shortcuts Drones Ransmoware Point of Sale Fileless Malware Digital Security Cameras Smart Devices Content Remote Working Wearable Technology Memory Vendors Network Management Halloween Tech Support Health IT Motherboard Data Breach Comparison Google Play Be Proactive Permissions Workforce Directions Videos Monitors Assessment Electronic Health Records Wasting Time Threats Competition Scary Stories Websites Trend Micro Hacks Specifications Security Cameras Workplace Strategies Fraud Meta Fun Microchip Internet Exlporer Software as a Service Electronic Medical Records Username Managing Costs Amazon SharePoint Deep Learning User eCommerce Black Friday SSID Virtual Assistant Outsource IT Lenovo Education Writing Database Surveillance Virtual Reality IT Technicians Virtual Machine Environment Media Server Management IP Address Private Cloud Proxy Server Reviews Cookies Mobile Computing Cyber Monday Medical IT Hotspot Transportation Small Businesses Superfish Identity Theft Search Tactics Development

Blog Archive