Updates 2020-12-08

Welcome back, Folks!

Today is Patch Tuesday for December, 2020. It’s a big one and huge updates are available for over a hundred applications. A new OpenSSL released today means that there will be even more updates released in the near future, so this is only the first of at least two update series’ to top off December.

This Month in Technology

Apple (and others) are trying to make slavery legal, Apple’s cloud services choked this month as a result of their new on-demand certification and telemetry collection nightmare, Big Sur even bricks some MacBook Pro models, but they’re admitting that they intentionally throttled their older hardware, and Apple had a major security issue that allowed total control of their iPhones over Wi-Fi. While Apple has fixed that bug, their hardware is vulnerable to new forensic tools used by foreign (and likely US) governments to clone all the data from your device. This is “Epic.” Apple is cutting their App Store fees to 15% for small developers.

K12 Inc, Foxconn electronics, the City of Long BeachTransLink (Vancouver public transit), EmbraerKopterShirbitRandstad NVAdvantechBowie and Miller Counties (TX), and Baltimore County Public Schools have all been hit with ransomware. If you leave your backup drives connected (tethered or networked) then there’s growing evidence that the backups will be targeted by ransomware before your active data. And some ransomware gangs are cold-calling if you try to restore from backups.

Millions of IoT devices are vulnerable to a newly discovered vulnerability, thousands of PickPoint lockersLSU Health New OrleansAspenPointe, and PlutoTV have been hacked. Dell was hacked years ago which resulted in their data being abused for scam calls to Dell customers. Class action happening now.

Walmart routers and many TCL TVs have backdoorsGionee implanted malware in 21 million phones, and battery backups are used to infect mobile devices. Google Services are still being used to distribute malware, Google ads are being used to steal MetaMask. A year after the US Army’s Stryker armored vehicles were hacked the Army is finally building security defenses, and in other US military news, the military violates your privacy through third-party apps.

Social media icons are being used to inject web skimmers that are now using WebSockets to exfiltrate data using secure CloudFlare services.

If you trust your choice of password simply because a poorly designed study says that it would take thousands or millions of years to brute force a password then you should take a look at how a single quantum computer process the equivalent of 2.6 billion (with a “b”) years of computation in only 4 minutes, but using the latest quantum hardware isn’t even necessary for the vast majority of passwords since humans are so predictable.

In a random collection of news: MBAM is disabling Windows Printers. HMRC (the UKs equivalent of the IRS) has been abused to send phishing and malware messages (I warned them about this months ago). There is no end to PayPal’s hypocrisy, nor their censorship. GitHub reversed it’s decision about YouTube-dl. Twitch has failed basic EnglishComcast is capping data in 12-ish more states next year, but giving service away for free to many others. The running joke about how social censorship would be similar to your phone company preventing you from talking about certain subjects has proven to be more prescient than humorous. Cannibalism is coming to a grocery store near you. A few years ago I found that a number of IT and HVAC services in the SF bay area had their Google listings hijacked and reassigned as Korean Restaurants. It was only the beginning.

The “sciencebehind masks has never been scientific, but that won’t stop petty tyrants from mandating their use even while actively eating or drinking, or censoring dissenting voicesFalse positive tests are still leading the charge, but lockdown-related homicides are still exceeding “COVID” deaths. Censors will always target studies that demonstrate overreaching government intervention.

California is pushing out the Orwellian exposure tracking and notifications across the state.

Now for the good news:

When this election is finally resolved it’s unlikely to get to this point again any time in the near future.

As a perfect example of what 2020 has brought us – the South African lottery drew 5, 6, 7, 8, 9 and 10, which is insane enough, but the real story is that 20 people had actually selected those numbers.

Let’s Get Busy

Now back to our regularly scheduled program.

Patch Tuesday this month is huge. The typical computer should see roughly 2.5 GB in updates today. Let’s get started.

Microsoft released updates for Windows, Edge, and Servicing Stack (~ 1.5 GB). This includes security updates. A reboot is required.

Apple released updates for iCloud for Windows 11.5, and iOS 14.2.1. Expect an update to iTunes, too, in the next few days. These are security updates.

iOS 14.2.1 is a security update. Use Settings, General, Software Update to install the most current version.

Adobe Flash Player 32.0.0.465 is a security update. Since Flash is going the way of the dodo along with the Year from Hell, this could very well be the last time you may have to install a Flash update. You’re still better off removing it yourself instead of updating. 🙂
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac

Google Chrome OS 87.0.4280.88 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.

Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.

Important Notes

Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.

The release of macOS Big Sur (11.0) means that macOS High Sierra (10.13) and older are no longer supported. If you can not install at least macOS Mojave (10.14) on your Mac then you should immediately remove it from the Internet and use it offline only. It will no longer receive patches or updates and can now no longer be secured.

The now-current release of the Windows 10 (v2009) is huge (about 18% larger than v2004, which was 25% larger than any prior build) so will take a long time to download on slower connections. Windows 10 pushes you to get the latest Windows 10 release every 6 months. If you don’t let it finish and you’re on a slow connection, this process kill your Internet performance forever. If you don’t have the bandwidth to download the bits, I’m happy to provide loaner USB drives to our local clients, or, if you prefer to have me mail it to you please contact me for information.

Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.

It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need or use, reducing the attack surface.

Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.

Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com

Driver Updates

If you’re using this hardware – these updates are for you.

BullZip PDF Printer 12.0.0.2872 adds several new features, including improved email support, compatibility, and concurrent printing. This is not a security update.
https://www.bullzip.com/products/pdf/info.php#download

Crucial Storage Executive 6.09 doesn’t provide a changelog so should be treated as a security update.
https://www.crucial.com/support/storage-executive

Logitech Options 8.36.86 allows changing function keys, customizing mouse buttons, and adds on-screen battery notifications. This is not a security update.
https://www.logitech.com/en-us/product/options

Logitech Options for macOS 8.36.76 adds Big Sur support, allows changing function keys, customizing mouse buttons, gesture controls, and adds on-screen battery notifications. This is not a security update.
https://www.logitech.com/en-us/product/options

nVidia 457.51 adds support for new hardware, updates SLI profiles, and resolves several bugs. This is not a security update.
https://www.nvidia.com/Download/index.aspx?lang=en-us

Browser Updates

One or more of these are likely to be of interest to everyone.

Brave 1.17.75 is a security update. Use Menu, Help, About to install the most current version.
https://brave.com/

Google Chrome 87.0.4280.88 is a security update. Use Menu, Help, About to install the most current version.
https://www.google.com/chrome/

Microsoft Edge 87.0.664.57 is a security update. Use Menu, Help, About to install the most current version.
https://www.microsoft.com/en-us/edge/business/download

Firefox 83.0 is a security update. Use Menu, Help, About to install the most current version.
https://www.mozilla.org/en-US/firefox/new/

Firefox ESR 78.5.0 is a security update. Use Menu, Help, About to install the most current version.
https://www.mozilla.org/en-US/firefox/organizations/all/

SeaMonkey 2.53.5.1 is a security update. Use Menu, Help, About to install the most current version.
https://www.seamonkey-project.org/

Vivaldi 3.5.2115.73 is a security update. Use Menu, Help, About to install the most current version.
https://vivaldi.com/

Email Updates

One or more of these are likely to be of interest to everyone.

Thunderbird 78.5.1 is a security update.
https://www.thunderbird.net/en-US/

Internet Updates

One or more of these are likely to be of interest to everyone.

Dropbox 111.4.472 doesn’t provide a changelog so should be treated as a security update. This version is not reliable on Windows 8.
https://www.dropbox.com/

FreeFileSync 11.4 resolves several bugs, and improves compatibility. This is not a security update.
https://www.freefilesync.org/download.php

iCloud for Windows 11.5 is a security update.
https://apple.com/icloud

Technitium DNS Server 5.5 adds support for SRV records and resolves several bugs. This is not a security update.
https://technitium.com/dns/

WinSCP 5.17.9 resolves several bugs. This is not a security update.
https://winscp.net/eng/index.php

Zoom 5.4.59296.1207 adds meeting reminders, warnings for meetings that are only partially encrypted, and resolves several bugs. This is a security update.
https://zoom.us/

Media Updates

These are unlikely to be of interest to most people.

3tene 2.0.8 updates libraries, improves sync and face tracking, adds ability to call shortcuts, and resolves several bugs. This is not a security update.
https://en.3tene.com/

iTunes 12.11 doesn’t provide a changelog so should be treated as a security update.
https://www.apple.com/itunes/download/

Picard 2.5.2 resolves several bugs. This is not a security update.
https://picard.musicbrainz.org/

Game Updates

These are unlikely to be of interest to most people.

Steam 2020.12.07 is a security update.
https://www.steampowered.com/platform/update_history/index.php?skin=0&id=0

PlayStation PS4 8.01 improves reliability. This is not a security update. Note that Sony changed the URLs without adding redirects, so the new location to download updates has changed:
https://www.playstation.com/en-us/support/hardware/ps4/system-software/

Office Updates

One or more of these are likely to be of interest to most people.

Blender 2.91.0 adds several new features and controls. This is not a security update.
https://www.blender.org/download/

Adobe Acrobat (version yet to be announced) is a security update. Use Help, Check for updates to get the most current version…when it’s released.

Adobe Reader (version yet to be announced) is a security update. Use Help, Check for updates to get the most current version…when it’s released.

Adobe Lightroom 10.1 is a security update.
https://creativecloud.adobe.com/apps/all/desktop

Adobe Experience Manager 6.5.7.0 and 6.4.8.3 are security updates.
https://helpx.adobe.com/security/products/experience-manager/apsb20-72.html

Adobe Prelude 9.0.2 is a security update.
https://creativecloud.adobe.com/apps/all/desktop

Security Software Updates

One or more of these is likely to be of interest to most people.

Gpg4win 3.1.14 updates libraries and resolves several bugs. This is not a security update.
https://www.gpg4win.org/download.html

Nmap 7.90 adds 1,200 new fingerprints, resolves over 70 bugs, and provides several new features. It also removes silent install. 🙁 This is a security update.
https://nmap.org/download.html

Npcap 1.00 is the first stable release of Npcap. This is not a security update.
https://nmap.org/npcap/

RogueKiller 14.8.0 resolves several bugs. This is a security update.
https://www.adlice.com/download/roguekiller/

uBlock Origin 1.31.2 resolves reliability in Chromium. This is not a security update.
https://github.com/gorhill/uBlock/releases/latest

Tails 4.13 is a security update.
https://tails.boum.org/install/dvd-download/index.en.html

OpenSSL 1.1.1i is a security update. Releases of OpenSSL always trigger updates for every other platform that uses networking in any way, so expect a series of updates for every other web platform you use in the near future.
https://www.openssl.org/

Capture Updates

These are unlikely to be of interest to most people.

SnagIt 2021.0.2 resolves several bugs. This is not a security update.
https://download.techsmith.com/snagit/enu/snagit.exe

Converter Updates

These are unlikely to be of interest to most people.

DVDFab 12.0.0.9 adds support for new encodings, resolves several bugs, and improves stability. This is not a security update.
https://www.dvdfab.cn/download.htm

Utility Updates

These are unlikely to be of interest to most people.

1Password for Mac 7.7 adds Privacy integration, unlock with Apple Watch, MDM integration, improved password generator, and resolves over 100 bugs. This is a security update.
https://1password.com/downloads/mac/

Agent Ransack 2019.2951 improves performance at idle and resolves several bugs. This is not a security update.
https://www.mythicsoft.com/agentransack/download/

Bitwarden 1.23.1 resolves bugs with SSO and improves GDPR compliance. This should be treated as a security update.
https://bitwarden.com/

DesktopOK 8.08 resolves several bugs and updates language support. This is not a security update.
https://www.softwareok.com/?seite=Freeware/DesktopOK

Etcher 1.5.112 updates libraries, and resolves several bugs. This is not a security update.
https://www.balena.io/etcher/

Everything 1.4.1.1000 resolves a bug with silent installation, wide-character comparison, name munging and other bugs. This is not a security update.
https://www.voidtools.com/

FileLocator Pro 8.5.2951 improves performance when idle and resolves several bugs. This is not a security update.
https://www.mythicsoft.com/filelocatorpro/download

GoodSync 11.4.9 resolves dozens of bugs. This is not a security update.
https://12pd.com/click?goodsync

Homedale 1.90 adds support to load access points from CSV and improves frequency usage chart. This is not a security update.
https://www.the-sz.com/products/homedale/

HWMonitor 1.43 adds support for new hardware. This is not a security update.
https://www.cpuid.com/softwares/hwmonitor.html

MS ISO Downloader 8.44 adds support for new media (including Win10 20H2v2) and resolves several bugs. This is not a security update.
https://www.heidoc.net/joomla/technology-science/microsoft/67-microsoft-windows-and-office-iso-download-tool

NTLite 2.0.0.7726 resolves several bugs. This is not a security update.
https://www.ntlite.com/download/

Aomei Partition Assistant 9.0 adds shred files support. This is not a security update.
https://www.diskpart.com/

PointerStick 4.88 updates language support. This is not a security update.
https://www.softwareok.com/?seite=Freeware/PointerStick

Rufus 3.13 adds support for a 20H2v2, adds support to cheat certain disk images, improves error handling, and resolves several bugs. This is not a security update.
https://rufus.ie/en_IE.html

Sysmon 12.03 fixes reporting and a possible crash condition for certain rules. This should be treated as a security update.
https://live.sysinternals.com/

SDelete 2.04 provides a new switch to avoid file/directory ambiguity. This should be treated as a security update.
https://live.sysinternals.com/

WinObj 2.23 resolves several bugs. This is not a security update.
https://live.sysinternals.com/

TaskSchedulerView 1.60 adds support for exporting tasks to JSON, and updates HTML export to HTML5. This is not a security update.
https://www.nirsoft.net/utils/task_scheduler_view.html

TeamViewer 15.12.4 resolves several bugs, improves performance, and adds support for more web cameras. This is not a security update.
https://www.teamviewer.com/en/download/windows/

WinScan2PDF 6.33 improves detection and operation with some hardware, updates language support, and resolves several bugs. This is not a security update.
https://www.softwareok.com/?seite=Microsoft/WinScan2PDF

Developer Updates

These are unlikely to be of interest to most people.

DB Browser for SQLite 3.12.1 resolves several bugs. This is a security update.
https://sqlitebrowser.org/

Inno Setup 6.1.2 adds Print support and resolves several bugs. This is not a security update.
https://www.jrsoftware.org/isdl.php

Node.js 12.20.0 updates libraries and resolves several bugs. This is a security update.
https://nodejs.org/en/

Node.js 14.15.1 is a security update.
https://nodejs.org/en/

Node.js 15.3.0 updates libraries and resolves several bugs. This is a security update.
https://nodejs.org/en/

SQLite 3.34.0 resolves several bugs. This is not a security update.
https://www.sqlite.org/download.html

Web Package Updates

These are likely to be of interest only to web developers.

Adminer 4.7.8 adds support for PHP 8 and disallows connecting to privileged ports. This is not a security update.
https://www.adminer.org/en/

Drupal 9.0.10 is a security update.
https://drupal.org/download

Drupal 9.1.0 resolves several bugs. This is not a security update.
https://drupal.org/download

HumHub 1.7.1 resolves several bugs. This is not a security update.
https://www.humhub.com/en/download

Joomla 3.9.23 is a security update.
https://www.joomla.org/

Nextcloud Server 20.0.2 resolves dozens of bugs. This is not a security update.
https://nextcloud.com/

phpList 3.5.8 adds new functionality to AJAX form and updates libraries. This is not a security update.
https://www.phplist.org/

ScreenConnect 20.12.1734.7640 resolves several bugs. This is not a security update.
https://www.connectwise.com/software/control/download

WordPress 5.6 updates libraries, adds several new features and blocks, a new theme, and more. This is not a security update.
https://wordpress.org/download/

BuddyPress 6.4.0 is a security update.

Contact Form 7 5.3.1 now passes last_contacted based on submission timestamp. This is not a security update.

Multisite Enhancements 1.5.4 fixes favicon. This is not a security update.

Theme My Login 7.1.2 improves stability and resolves several bugs. This is not a security update.

WooCommerce 4.8.0 resolves several bugs. This is not a security update.

That’s all for now folks. Keep it clean out there. 😉

Regards,

Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/

Updates 2020-11-10

Welcome back, Folks!

Today is Patch Tuesday for November, 2020. It’s a big one and many Windows computers will be pushed into v2009 unless they’ve recently installed v2004. With the release of v2009 and the election, there’s a lot going on this month.

This Month in Technology

Aetna has been hacked again, dozens of hospitals (again), Mashable has been hacked, Cisco AnyConnect zero-day still isn’t patched, a Solaris zero-day is being used to hack corporate networks, and billions of credentials have been leaked after a data breach website contents are leaked online, Google Drive is being used to infect hospitals, Cloud Hospitality has exposed customer data for millions of users, Mattel has been hacked, BigBasket has been hacked, WordPress pushed out a sorely broken security update and fixed it the next day, Waze can be used to track you by nearby drivers, and X-Cart sites were hit by ransomware.

Cadillac Fairview has been illegally using secret facial recognition cameras throughout their shopping centres.

Apple has had several outages this month, and their hardware manufacturer was hit by ransomware, while they abandon another for exposed labor abuses (not for the labor abuses themselves, since that’s really within Apple’s wheelhouse), iOS apps will work on Apple Silicon Macs, but many developers are already abandoning the App Store.

Microsoft is blocking upgrades to v2004 and v2009 due to a Thunderbolt compatibility & reliability bug.

Starlink’s beta shows impressive performance (135 Mbps/25 Mbps).

It’s usually best to dismiss anything a politician says, but Biden’s assertion that he has the “most extensive and inclusive voter fraud organization in the history of American politics” should not be taken with a grain of salt.

After all, there is plenty of evidence of fraud including voter intimidationterrorism (the “use of violence and intimidation, especially against civilians, in the pursuit of political aims”), foreign nation interference, varioussoftware” “glitches” and “bugs,” fake ballotsfake voters, invalidating sharpie ballotsbackdating ballots arriving late, an untrustworthy postal systemfalse witnesses, (literally) blocking access to ballot observersnetwork and “accidentally mislabeled” ballots, throwing away ballots that poll-workers disagree with, the inability to trust even election judges, and government “open integrity” websites, but the Main Stream Media continues to preach the mantra that there is no evidence of voter fraud (mostly because big tech is censoring most of the evidence) even while Democrat representatives declare voter fraud a “time-honored tradition.”

Awkward: Joe Biden’s (77) Coronavirus task force is being lead by a man that believes people shouldn’t live past 75.

It’s not just the vote tally that’s false, the US Census faked data, too.

Fox News has lost the faith of their viewers and Judge Jeanine.

Twitter continues to demonstrate why you shouldn’t use them.

NetMarketShare had a good run. After 14 years they’ve pulled the plug due to changes in the chromium source, reasonably accurate browser identification will no longer be possible.

The Cult of Branch Covidians continues to demonstrate that science has never been their goal. Medical staff know the truth, and their efforts to save family and the world from masked parasites based on faulty tests and high false-positive rates with severe costs for a virus they’ve never isolated are being blocked and ignored. By the way, did you know that the PCR false-positive rate is as much as 4% and the number of “positive tests” in CA averages 3.7%? A judge that treats people as adults is being investigated for daring not to wear a mask in his own courtroom.

5G is finally being investigated.

The Internet Archive has surrendered to censorship.

0patch to the rescue, again. Microsoft isn’t supporting Office 2010 but don’t let that dissuade you. 0patch has been offering security fixes for many vendors of otherwise unsupported applications.

There’s a workaround for some HP printers that allow you to bypass the ban on third-party ink and toner. This is especially useful since HP Instant Ink is now demanding a ransom to keep using the ink you’ve already paid for.

Now for the good news:

The best news, to me anyway, is that scientists have now regrown optic nerves.

Let’s Get Busy

Now back to our regularly scheduled program.

Patch Tuesday this month is very big. The typical computer should see roughly 2.5 GB in updates today. Let’s get started.

Microsoft released updates for Windows, Edge, .NET, Servicing Stack, Flash, Internet Explorer, and MSRT (~ 1.1 GB). This includes security updates. A reboot is required.

Apple released updates for macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update, iOS 14.2, iPadOS 14.2, iOS 12.4.9, watchOS 5.3.9, watchOS 6.2.9, watchOS 7.1, and tvOS 14.2. Expect an update to iTunes, too, in the next few days. These are security updates.

iOS 14.2 and 12.4.9 are security updates. Use Settings, General, Software Update to install the most current version.

iPadOS 14.2 is a security update. Use Settings, General, Software Update to install the most current version.

watchOS 5.3.9, 6.2.9 and 7.1 are security updates. Use your updated iPhone to install the most current version through the Watch app.
https://support.apple.com/en-us/HT204641

tvOS 14.2 is a security update. Use Settings, General, Updates to install the most current version.

Adobe Flash Player 32.0.0.453 is a security update. Since Flash is going the way of the dodo along with the Year from Hell, this could very well be the last time you may have to install a Flash update. You’re still better off removing it instead of updating. 🙂
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac

Google Chrome OS 87.0.4280.47 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.

Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.

Important Notes

Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.

The release of macOS Catalina (10.15) means that macOS Sierra (10.12) and older are no longer supported. If you can not install at least macOS High Sierra (10.13) on your Mac then you should immediately remove it from the Internet and use it offline only. It will no longer receive patches or updates and can now no longer be secured.

The now-current release of the Windows 10 (v2009) is huge (about 18% larger than v2004, which was 25% larger than any prior build) so will take a long time to download on slower connections. Windows 10 pushes you to get the latest Windows 10 release every 6 months. If you don’t let it finish and you’re on a slow connection, this process kill your Internet performance forever. If you don’t have the bandwidth to download the bits, I’m happy to provide loaner USB drives to our local clients, or, if you prefer to have me mail it to you please contact me for information.

Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.

It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need or use, reducing the attack surface.

Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.

Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com

Driver Updates

If you’re using this hardware – these updates are for you.

nVidia 457.30 adds support for CUDA 11.1, new hardware, new game profiles, and resolves several bugs. This is not a security update.
https://www.nvidia.com/Download/index.aspx?lang=en-us

Daemon Tools Lite 10.14.0 resolves several bugs and adds streaming and theme controls. This is not a security update.
https://www.daemon-tools.cc/products/dtLite

Browser Updates

One or more of these are likely to be of interest to everyone.

Brave 1.16.72 is a security update. Use Menu, Help, About to install the current version.
https://brave.com/

Google Chrome 86.0.4240.193 is a security update. Use Menu, Help, About to install the current version.

Microsoft Edge 86.0.622.63 is a security update. Use Menu, Help, About to install the current version.
https://www.microsoft.com/en-us/edge/business/download

Firefox 82.0.3 is a security update. Use Menu, Help, About to install the current version.

Firefox ESR 78.4.1 is a security update. Use Menu, Help, About to install the current version.

Iridium 2020.11.85 is a security update, but Iridium runs behind with chromium so should be avoided.
https://iridiumbrowser.de/

Vivaldi 3.4.2066.99 is a security update. Use Menu, Help, About to install the current version.
https://vivaldi.com/

Email Updates

One or more of these are likely to be of interest to everyone.

Thunderbird 78.4.2 is a security update. Use Menu, Help, About to install the current version.
https://www.thunderbird.net/en-US/

Internet Updates

One or more of these are likely to be of interest to everyone.

Dropbox 109.4.517 doesn’t provide a changelog so should be treated as a security update.
https://www.dropbox.com/

FreeFileSync 11.3 resolves several bugs and improves cosmetics. This is not a security update.
https://www.freefilesync.org/download.php

Zoom 5.4.58740.1105 is a security update.
https://zoom.us/

Media Updates

These are unlikely to be of interest to most people.

iTunes 12.10.10.2 doesn’t provide a changelog so should be treated as a security update.
https://www.apple.com/itunes/download/

Office Updates

One or more of these are likely to be of interest to most people.

Adobe Reader DC 20.013.20064 is a security update. Use Help, Check for updates to install the most current version.

Atom 1.53.0 resolves several bugs. This is not a security update.
https://atom.io/

Krita 4.4.1 resolves several bugs. This is not a security update.
https://krita.org/en/download/krita-desktop/

LibreOffice Fresh 7.0.3 resolves over 90 bugs. This is not a security update. Remember that ‘Fresh’ is the beta version, so should be avoided by most users.
https://www.libreoffice.org/

Nextcloud Desktop 3.0.3 resolves over a dozen bugs. This is not a security update.
https://nextcloud.com/

Notepad++ 7.9.1 resolves over 20 bugs, including several stability and reliability issues, and adds several new features. This is not a security update.
https://12pd.com/click?npp

Security Software Updates

One or more of these is likely to be of interest to most people.

TinyWall 3.0.10 resolves several bugs. This is not a security update.
https://tinywall.pados.hu/

Capture Updates

These are unlikely to be of interest to most people.

SnagIt 2021.0.1 adds new quick styles, direct theme access, resolves compatibility with YouTube and several bugs. This is not a security update.
https://download.techsmith.com/snagit/enu/snagit.exe

Converter Updates

These are unlikely to be of interest to most people.

DVDFab 12.0.0.5 improves hardware support, resolves several bugs, and adds support for new encodings. This is not a security update.
https://www.dvdfab.cn/download.htm

Utility Updates

These are unlikely to be of interest to most people.

CCleaner 5.74.8184 improves application compatibility, automatic update controls, and resolves several bugs. This is not a security update.
https://www.ccleaner.com/

DesktopOK 7.99.1 resolves several bugs. This is not a security update.
https://www.softwareok.com/?seite=Freeware/DesktopOK

DMDE 3.8.0.790 adds APFS support, image preview, and resolves several bugs. This is not a security update.
https://dmde.com/

Eraser 6.2.0.2991 doesn’t provide a changelog so should be treated as a security update.
https://eraser.heidi.ie/download/

Etcher 1.5.110 resolves several bugs. This is not a security update.
https://www.balena.io/etcher/

GoodSync 11.4.5 resolves dozens of bugs. This is not a security update.
https://12pd.com/click?goodsync

RoboForm 8.9.5 resolves several bugs and improves Most Popular calculations. This is not a security update.
https://12pd.com/click?rf

AD Explorer 1.50 adds support for exporting data from the “Compare” dialog. This is not a security update.
https://live.sysinternals.com/

Disk Usage 1.62 adds support for the MFT and removes the MAX_PATH limitation. This is not a security update.
https://live.sysinternals.com/

VMMap 3.31 fixes a Thread Environment Block bug on Windows 10 systems. This is not a security update.
https://live.sysinternals.com/

Sysmon 12.02 fixes several configuration parsing bugs. This is not a security update.
https://live.sysinternals.com/

Developer Updates

These are unlikely to be of interest to most people.

ADB 30.0.5 improves performance and error handling. This is not a security update.
https://developer.android.com/studio/releases/platform-tools

Android Studio 4.1.1.0 resolves over a dozen bugs. This is not a security update.
https://developer.android.com/studio

Node.js 15.1.0 adds diagnostics_channel (experimental), new spawn event, DNS resolver control, and several V8 options. This is not a security update.
https://nodejs.org/en/

Redemption 5.25.0.5826 resolves 9 bugs and adds several new objects. This is not a security update.
http://www.dimastr.com/redemption/

Visual Studio Code 1.51 integrates a terminal, improves intellisense, Git, tab pinning and more. This is not a security update.
https://code.visualstudio.com/

Web Package Updates

These are likely to be of interest only to web developers.

Docker Desktop 2.5.0.1 updates libraries, system requirements, and resolves several bugs. This is not a security update.
https://www.docker.com/products/docker-desktop

HumHub 1.7.0 resolves two minor bugs. This is not a security update.
https://www.humhub.com/en/download

OpenPetra 2020.10 resolves several bugs. This is not a security update.
https://www.openpetra.org/

ScreenConnect 20.11.1479.7606 resolves several bugs. This is not a security update.
https://www.connectwise.com/software/control/download

WordPress 5.5.3 resolves several security issues and automatic update failures.

bbPress 2.6.6 doesn’t have a current changelog, so should be treated as a security update.

Multisite Enhancements 1.5.3 resolves several bugs and improves cosmetics. This is not a security update.

Redirection 4.9.2 improves compatibility and cosmetics. This is not a security update.

WooCommerce 4.6.2 resolves an account creation bug. This is not a security update.

That’s all for now folks. Keep it clean out there. 😉

Regards,

Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/

Updates 2019-12-10

Merry Christmas, Folks!

Today is Patch Tuesday for December 2019.

Note: shortly after publishing, Google released Chrome 79.0.3945.79.

Windows 10, version 1909, is available. This version is minor compared to previous Windows 10 upgrades. Nevertheless, don’t do it yet. There is nothing so critically important in 1909 that the update can’t wait a month. Wait for it.
https://www.microsoft.com/en-us/software-download/windows10

Windows 7 will fall completely out of support in only 35 days. Don’t run out the clock. If you are running a licensed version of Windows 7 or 8 you can still upgrade to Windows 10 and have a supported version of Windows for the foreseeable future. Get it done before it’s too late. Don’t want to do it yourself? Call me!

There is a lot of talk right now about enabling POSready mode to gain additional time for Windows 7. This *does* work, but I recommend against it. POSready mode is designed to allow existing third-party software to continue to operate in the Windows 7 ecosystem, but Microsoft and most third-party developers will stop support when Windows 7 is end-of-life (EOL). This means that while your OS itself will continue to receive security updates, most other apps will not. If your device is used as a typical PC this means your risk will still significantly increase by relying on POSready with unmaintainable third-party applications.

Christmas is only a couple weeks away which means it’s that time of year when the best and worst of humanity is exposed. This time of year brings stress and urgency to everything, and that means people are more likely to be targeted for common phishing schemes, malicious attachments (invoices and holiday letters), end-of-year insurance scams, and advance fee fraud. You’ll be targeted by phone and email and the deluge won’t subside until mid-to-late January. Don’t be afraid to hang up and delete. It really is better to be safe than sorry.

If you’ve read more than a couple of my newsletters you’ve seen me hate on Avast regularly. Last week I was actually considering easing off and giving them another chance. Then I received diet spam FROM AVAST BUSINESS! I’ve reconsidered. If you’re using any of this software you should remove it immediately. Avast can’t be trusted. Having any of their software installed significantly increases the risk to your devices, and should be treated as a malware infection as far as I’m concerned.

Now back to our regularly scheduled program. The typical computer should see roughly 2 GB in updates today. Let’s get started.

Microsoft released updates for Windows, Internet Explorer, .NET, Servicing Stack, hardware drivers, and MSRT (~1 GB). This includes security updates. A reboot is required.

Apple released updates for macOS Catalina 10.15.2, Mojave Security Update 2019-002, and High Sierra Security Update 2019-007, iOS 13.3, iOS 12.4.4, iPadOS 13.3, Safari 13.0.4, Xcode 11.3, watchOS 5.3.4, watchOS 6.1.1, and tvOS 13.3. These are security updates. Use Apple Software Update to install the most current versions.

watchOS 6.1.1 and watchOS 5.3.4 are security updates. Use the Watch app on your iPhone to install the most current version.

tvOS 13.3 is a security update. Use System, Software Update to install the most current version.

macOS Catalina (10.15) is available. If you don’t have to, don’t install it. Mojave (10.14) will be supported for almost 2 more years.

iOS 13.3, iOS 12.4.4, and iPadOS 13.3 are security updates. Use Settings, General, Software Update to install the most current update.

Google Chrome OS 78.0.3904.106 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.

Adobe Flash Player 32.0.0.303 is a security update.
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac

Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.

Important Notes

Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.

The release of macOS Catalina (10.15) means that macOS Sierra (10.12) and older are no longer supported. If you can not install at least macOS High Sierra (10.13) on your Mac then you should immediately remove it from the Internet and use it offline only. It will no longer receive patches or updates and can now no longer be secured.

The now-current release of the Windows 10 (1909) is a pretty small update so will install quickly. Windows 10 pushes you to get the latest Windows 10 release every 6 months. If you don’t let it finish and you’re on a slow connection, this process kill your Internet performance forever. If you don’t have the bandwidth to download the bits, I’m happy to provide loaner USB drives to our local clients, or, if you prefer to have me mail it to you please contact me for information.

Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.

It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need or use, reducing the attack surface.

Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.

Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com

Driver Updates

If you’re using this hardware – these updates are for you.

BullZip PDF Printer 11.11.0.2804 adds High-DPI support, printing page range, and copy+paste support for UTF16 characters. This is not a security update.
https://www.bullzip.com/products/pdf/info.php#download

Display Driver Uninstaller 18.0.2.0 improves Nvidia cleanup.
https://www.wagnardsoft.com/display-driver-uninstaller-ddu

Dymo Label 8.7.3 doesn’t provide a changelog, so should be treated as a security update.
https://www.dymo.com/en-US/online-support/dymo-user-guides

MS Mouse and Keyboard Center 20191127 adds support for newer hardware. This is not a security update.
https://www.microsoft.com/accessories/en-us/downloads/mouse-keyboard-center

Nvidia 441.66 adds image sharpening for Vulkan and OpenGL, support for newer hardware, and multiple security fixes. This is a security update.
https://www.nvidia.com/Download/index.aspx?lang=en-us

Browser Updates

One or more of these are likely to be of interest to everyone.

Google Chrome 79.0.3945.79 is a security update. Use Menu, Help, About to get the most current version.

Firefox 71.0 is a security update. Use Menu, Help, About to get the most current version.

Firefox ESR 68.3.0 is a security update. Use Menu, Help, About to get the most current version.

Email Updates

One or more of these are likely to be of interest to everyone.

Thunderbird 68.3.0 is a security update. Use Menu, Help, About to get the most current version.

Internet Updates

One or more of these are likely to be of interest to everyone.

BrowsingHistoryView 2.30 adds History File and Record ID columns. This is not a security update.
https://www.nirsoft.net/utils/browsing_history_view.html

FileZilla Client 3.46.0 resolves a crash, and updates dependencies. This is a security update.
https://filezilla-project.org/

FreeFileSync 10.18 adds parallel processing, grid sort, filter counts, improved responsiveness and bug fixes. This is not a security update.
https://www.freefilesync.org/download.php

MaxMind GeoIP2 201912 is a data refresh.
https://dev.maxmind.com/geoip/

WinSCP 5.15.9 is a security update.
https://winscp.net/eng/index.php

Media Updates

These are unlikely to be of interest to most people.

CDBurnerXP 4.5.8.7128 improves error handling. This should be treated as a security update.
https://cdburnerxp.se/

Game Updates

These are unlikely to be of interest to most people.

Steam 2019.12.05 resolves several bugs, returns Small Mode, updates libraries, and adds GUI improvements. This should be treated as a security update.

Office Updates

One or more of these are likely to be of interest to most people.

Adobe Acrobat DC 19.021.20058 is a security update. Use Menu, Help, Check for updates to get the most current version.

Adobe Reader DC 19.021.20058 is a security update. Use Menu, Help, Check for updates to get the most current version.

Adobe Photoshop CC 20.0.8 and 21.0.2 are security updates. Use Adobe Creative Cloud to install the most current version.

Artweaver 7.0.3 resolves several bugs. This is not a security update.
https://www.artweaver.de/

Krita 4.2.8 improves disk write reliability, and resolves several bugs. This is not a security update.
https://krita.org/en/download/krita-desktop/

Notepad++ 7.8.2 resolves several bugs and returns the hotkeys to the save prompt. This is not a security update.
https://12pd.com/click?npp

Paint.net 4.2.8 updates libraries, improves performance, resolves several bugs, and adds self-repair with /repair. This should be treated as a security update.
https://www.getpaint.net/

Security Software Updates

One or more of these is likely to be of interest to most people.

Caine 11.0 adds several new features and apps, updates libraries, and updates core. This is a security update.
https://www.caine-live.net/

HTTP Toolkit 0.1.17 doesn’t provide a changelog so should be treated as a security update.
https://httptoolkit.tech/

RogueKiller 14.0.0.16 updates core engine, resolves several bugs, adds real time protection and documents protection. This should be treated as a security update.
https://www.adlice.com/softwares/roguekiller/

Capture Updates

These are unlikely to be of interest to most people.

SnagIt 2020.0.3 resolves an Editor launch bug. This is not a security update.
https://download.techsmith.com/snagit/enu/snagit.exe

Converter Updates

These are unlikely to be of interest to most people.

MKVToolnix 41.0.0 adds many new features, improves meta storage, resolves several bugs. This is not a security update.
https://www.fosshub.com/MKVToolNix.html

DVDFab 11.0.6.4 adds support for new encodings, new hardware, adds Enlarger AI and resolves several bugs. This is not a security update.
https://www.dvdfab.cn/download.htm

MakeMKV 1.14.7 adds support for new encodings, resolves a file name variable expansion bug. This is not a security update.
https://12pd.com/click?makemkv

Utility Updates

These are unlikely to be of interest to most people.

Beyond Compare 4.3.3.24545 resolves several bugs. This is not a security update.
https://www.scootersoftware.com/download.php?zz=dl4

Bitcoin 0.19.0.1 integrates a tool to analyze and reduce memory consumption, adds and updates many RPC functions. This is not a security update.
https://bitcoin.org/en/download

CPU-Z Installer 1.91 adds support for newer hardware. This is not a security update.
https://www.cpuid.com/softwares/cpu-z.html

Dell Command Update 3.1 adds CLI support, automatic suspension of BitLocker for BIOS updates, enhances return codes for CLI, update scheduling, and resolves several bugs. This is not a security update.
https://www.dell.com/support/article/us/en/04/sln311129/dell-command-update?lang=en

DesktopOK 6.79 resolves a false AV alert. This is not a security update.
https://www.softwareok.com/?seite=Freeware/DesktopOK

DevManView 1.65 adds shortcut creation, and adds option to start remote registry service for automation. This is not a security update.
https://www.nirsoft.net/utils/device_manager_view.html

Drive Snapshot 1.48 adds support for newer OSes, resolves encryption bugs. This is a security update.
http://www.drivesnapshot.de/en/

Etcher 1.5.69 updates libraries, resolves several bugs, and improves compatibility. This is not a security update.
https://www.balena.io/etcher/

GoodSync 10.10.15 resolves several bugs, improves and weakens security options (yes, really). This version should be avoided until they get their stuff together.
https://www.goodsync.com/

Homedale 1.86 improves the dot-chart. This is not a security update.
https://www.the-sz.com/products/homedale/

MS ISO Downloader 8.24 adds support for new media. This is not a security update.
https://www.heidoc.net/joomla/technology-science/microsoft/67-microsoft-windows-and-office-iso-download-tool

NTLite 1.8.0.7240 adds several options for new features, resolves bugs. This is not a security update.
https://www.ntlite.com/download/

OSForensics 7.1.1002 resolves several bugs and improves reliability. This should be treated as a security update.
http://www.osforensics.com/download.html

Password Security Scanner 1.50 adds support for Windows Credentials passwords, and resolves a couple bugs. This is not a security update.
https://www.nirsoft.net/utils/password_security_scanner.html

RoboForm 8.6.5 resolves an upgrade data conversion bug, improves experience when changing Master password, improves login from RF behavior, and resolves several other bugs. This is not a security update.
https://12pd.com/click?rf

SearchMyFiles 3.07 resolves a bug. This is not a security update.
https://www.nirsoft.net/utils/search_my_files.html

TraceRouteOK 1.61 adds window position saving, resolves several bugs. This is not a security update.
https://www.softwareok.com/?seite=Microsoft/TraceRouteOK

USBDeview 2.85 adds option to create shortcuts. This is not a security update.
https://www.nirsoft.net/utils/usb_devices_view.html

WinScan2PDF 5.11 improves WIA reliability, performance. This is not a security update.
https://www.softwareok.com/?seite=Microsoft/WinScan2PDF

WirelessKeyView 2.11 improves output formatting and adds explore from here option. This is not a security update. Note that downloads are not password protected. This is not a security update.
https://www.nirsoft.net/utils/wireless_key.html

WSUS Offline 11.8.3 updates supercedence list, resolves several bugs. This is not a security update.
http://download.wsusoffline.net/

Developer Updates

These are unlikely to be of interest to most people.

AutoHotkey 1.1.32.00 resolves several bugs, adds InputHook OnKeyUp callback, adds support for PixelSearch in fast mode. This is not a security update.
https://www.autohotkey.com/download/

Android Studio 3.5.3.0 improves stability and performance, resolves several bugs. This is not a security update.
https://developer.android.com/studio/index.html

Godot 3.1.2 resolves over 400 bugs. This is a security update.
https://godotengine.org/

Node.js 13.3.0 resolves several bugs, and updates libraries. This should be treated as a security update.
https://nodejs.org/en/

StrawberryPerl 5.30.1.1 updates core to 5.30.1 and updates libraries. This is not a security update.
http://strawberryperl.com/

Web Package Updates

These are likely to be of interest only to web developers.

Drupal 8.8.0 makes several feature-level and requirements changes (recommended PHP is now 7.2+), removes several features and modules, updates libraries, and improves code consistency. This should be treated as a security update.
https://drupal.org/download

Brackets 1.14.1 is a security update.
http://brackets.io/

MailEnable 10.28 resolves several bugs, and adds recurring tasks and custom special folders. This is not a security update.
https://www.mailenable.com/

phpMyAdmin 4.9.2 resolves several bugs and improves compatibility. This is a security update.
https://www.phpmyadmin.net/

ScreenConnect 19.5.26030.7282 improves server compatibility. This is not a security update.
https://www.connectwise.com/software/control/download

ColdFusion 2018 Update 7 is a security update.
https://helpx.adobe.com/coldfusion/kb/coldfusion-2018-update-7.html

bbPress 2.6.2 resolves several bugs. This is not a security update.

BuddyPress 5.1.0 resolves several bugs. This is not a security update.

Contact Form 7 5.1.6 resolves an incompatible CSS bug. This is not a security update.

Custom Facebook Feed 2.12.2 resolves a bug. This is not a security update.

FV Top Level Categories 1.9.1 improves compatibility. This is not a security update.

Multisite Enhancements 1.5.2 resolves several bugs. This is not a security update.

Redirection 4.5.1 resolves broken canonical redirects. This is not a security update.

NextScripts Social Networks Auto-Poster 4.3.11 adds WordPress 5.3 support, resolves several bugs. This is not a security update.

Sucuri Security 1.8.22 adds several new checks. This is not a security update.

W3 Total Cache 0.11.0 resolves several bugs, improves compatibility and performance, and adds lazy loading. This is not a security update.

WooCommerce 3.8.1 resolves several bugs. This is not a security update.

That’s all for now folks. Keep it clean out there. 😉

Regards,

Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/

 

Updates 2019-03-12

Happy St. Patrick’s Day, Folks!

Today is Patch Tuesday for March 2019, which means that the next build of Windows (v1903) is just around the corner. You can delay it by installing v1809 if you haven’t done so yet, which will grant you a 3 month reprieve. Among other features and fixes, v1903 will add automatic boot repair after failed updates. This should resolve the #1 issue plaguing the Windows Update platform: not knowing whether your computer will boot after installing updates. Even so, don’t be the guinea pig. Postpone v1903 for a couple months to let people that don’t know any better be the victims of whatever flaws v1903 inevitably brings.

The typical computer should see roughly 1 GB in updates today. Let’s get started.

Microsoft released updates for Windows, .NET, Edge, Internet Explorer, Flash, POSReady, and MSRT (~600 MB). This includes security updates. A reboot is required.

Adobe Flash Player 32.0.0.156 is a security update.
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac

Google Chrome OS 72.0.3626.122 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.

Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.

Important Notes

Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.

The now-current release of Windows 10 (1809) will cause your computer to feel unusually slow until it is installed and v1903 will be coming soon. This is a side-effect of the Windows 10 upgrade cycle, which pushes out 3-6gb through Windows update to get you to the latest Windows 10 release every 6 months. If you don’t let it finish and you’re on a slow connection, it will kill your Internet performance forever. If you don’t have the bandwidth to download the bits, I’m happy to provide loaner USB drives to our local clients, or, if you prefer to have me mail it to you please contact me for information.

Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.

It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need.

Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.

Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com

Driver Updates

If you’re using this hardware – these updates are for you.

BullZip PDF Printer 11.9.0.2735 is a security update.
https://www.bullzip.com/products/pdf/info.php#download

Display Driver Uninstaller 18.0.0.9 resolves several bugs. This is not a security update.
https://www.wagnardsoft.com/display-driver-uninstaller-ddu

Intel Driver & Support Assistant 19.2.8 adds self-update, installer improvements, and resolves several bugs. This is not a security update.
https://www.intel.com/p/en_US/support/detect

nVidia 419.35 adds several new game profiles, G-SYNC improvements, CUDA 10.1, and resolves several bugs. This is not a security update.
https://www.nvidia.com/Download/index.aspx?lang=en-us

Browser Updates

One or more of these are likely to be of interest to everyone.

Google Chrome 73.0.3683.75 is a critical security update, resolving an bug that is being actively exploited in the wild. Use Menu, Help, About to install the most current version.

Firefox 65.0.2 resolves a geolocation bug. This is not a security update. Use Menu, Help, About to install the most current version.

Firefox ESR 60.5.2 resolves a crash bug. This is not a security update. Use Menu, Help, About to install the most current version.

Vivaldi 2.3.1440.60 is a security update. Use Menu, Help, About to install the most current version.

Email Updates

One or more of these are likely to be of interest to everyone.

Mailspring 1.5.7 resolves several bugs and improves performance. This is not a security update.
https://getmailspring.com/

Thunderbird 60.5.1 is a security update. Use Menu, Help, About to install the most current version.

Internet Updates

One or more of these are likely to be of interest to everyone.

Skype 8.41.0.54 adds call merge and caller-id, improved diagnostics, live captions, draft reviews, and notifications. This is not a security update.
https://12pd.com/click?skype

uTorrent 3.5.5.45146 resolves several bugs. This is not a security update.
http://www.utorrent.com/downloads

FreeFileSync 10.10 adds several new features and resolves bugs. This is a security update.
https://www.freefilesync.org/download.php

IPNetInfo 1.85 adds CSV export and export header control. This is not a security update.
https://www.nirsoft.net/utils/ipnetinfo.html

MaxMind GeoIP 201903 is a data refresh.
https://dev.maxmind.com/geoip/

Technitium DNS Server 3.0 adds TLS configuration and DNS-over-HTTPS, DNS-over-HTTP, DNS-over-TLS, additional settings and log improvements. This is not a security update.
https://technitium.com/dns/

WinSCP 5.13.8 updates libraries and resolves bugs. This is a security update.
https://winscp.net/eng/index.php

Media Updates

These are unlikely to be of interest to most people.

MusicBrainz Picard 2.1.3 resolves several bugs. This is not a security update.
https://picard.musicbrainz.org/

Game Updates

These are unlikely to be of interest to most people.

EA Origin 10.5.32.22222 improves the GUI and resolves several bugs. This is not a security update.
https://www.origin.com/en-us/download

Steam 2018.02.19 resolves several bugs. This is not a security update.

PlayStation PS3 4.84 improves performance. This is not a security update.
https://www.playstation.com/en-us/support/system-updates/ps3/

PlayStation PS4 6.50 adds Remote Play support for iOS. This is not a security update.
https://www.playstation.com/en-us/support/system-updates/ps4/

Office Updates

One or more of these are likely to be of interest to most people.

Scribus 1.4.8 resolves several bugs. This is not a security update.
https://www.scribus.net/

LibreOffice Fresh 6.2.1 resolves over 170 bugs. This is not a security update.
https://www.libreoffice.org/

Notepad++ 7.6.4 resolves several bugs. This build also adds horizontal scrolling (yay!). This is not a security update.
https://12pd.com/click?npp

Adobe Reader DC 19.010.20098 is a security update. Use Help, Check for Updates to get the most current version.

Photoshop CC 19.1.8 and Photoshop CC 20.0.4 are security updates.
https://helpx.adobe.com/security/products/photoshop/apsb19-15.html

Adobe Digital Editions 4.5.10.186048 is a security update.
https://helpx.adobe.com/security/products/Digital-Editions/apsb19-16.html

Security Software Updates

One or more of these is likely to be of interest to most people.

OpenSSL 1.0.2r is a security update.
https://indy.fulgan.com/SSL/

DNSQuerySniffer 1.75 adds wildcard support in the host name filter. This is not a security update.
https://www.nirsoft.net/utils/dns_query_sniffer.html

Avast! Home Edition 19.3.2369 adds UEFI scanning, separates VPN product, and resolves several bugs. This is not a security update.
https://www.avast.com/free-antivirus-download

Wireshark 3.0.0 is a major update adding several new features, switching to npcap, and resolves several bugs. This is not a security update.
https://www.wireshark.org/

RogueKiller 13.1.8 resolves several bugs. This is not a security update.
https://www.adlice.com/softwares/roguekiller/

Capture Updates

These are unlikely to be of interest to most people.

SnagIt 2019.1.1 resolves over a dozen bugs. This is a security update.
https://12pd.com/click?snagit

Converter Updates

These are unlikely to be of interest to most people.

CDex 2.15 resolves several bugs. This is not a security update.
https://cdex.mu/?q=download

DVDFab 11.0.1.8 adds support for new encodings, resolves several bugs. This is not a security update.
https://www.dvdfab.cn/download.htm

MakeMKV 1.14.3 adds support for new encodings and resolves several bugs. This is not a security update.
https://12pd.com/click?makemkv

Utility Updates

These are unlikely to be of interest to most people.

NTLite 1.7.3.6761 adds support for newer builds, new components, and resolves several bugs. This is not a security update.
https://www.ntlite.com/download/

1Password for Mac 7.2.5 resolves several bugs. This is a security update.
https://1password.com/downloads/mac/

7-Zip 19.00 resolves several bugs and improves encryption strength. This is not a security update.
https://www.7-zip.org/

Autoruns 13.94 resolves a bug. This should be treated as a security update.
https://docs.microsoft.com/en-us/sysinternals/downloads/autoruns

Sysmon 9.0 introduces rule groups that enable the specification of AND or OR matching logic across a set of rules. This is a security update.
https://live.sysinternals.com/

BulkFileChanger 1.60 adds EXIF timestamp changing support. This is not a security update.
https://www.nirsoft.net/utils/bulk_file_changer.html

Carbonite 6.3.4 excludes OneDrive Files On-Demand and improves GUI messaging. This is not a security update.
https://account.carbonite.com/

CintaNotes 3.13 adds new actions to rules, resolves several bugs. This is not a security update.
https://cintanotes.com/download

ControlMyMonitor 1.12 adds option to disable header line in exports. This is not a security update.
https://www.nirsoft.net/utils/control_my_monitor.html

Cygwin 3.0.3 resolves several bugs. This is not a security update.
https://cygwin.com/

DesktopOK 6.11 resolves several bugs. This is not a security update.
https://www.softwareok.com/?seite=Freeware/DesktopOK

Everything 1.4.1.935 fixes bugs with long file names and exclusions. This is not a security update.
https://www.voidtools.com/

GoodSync 10.9.26 resolves several bugs. This is not a security update.
https://12pd.com/click?goodsync

ImageUSB 1.4.1002 resolves bitlocker detection bug. This is not a security update.
https://www.osforensics.com/tools/write-usb-images.html

NetworkTrafficView 2.20 adds port filtering, Always On Top, and option to disable header line in exports. This is not a security update.
https://www.nirsoft.net/utils/network_traffic_view.html

PointerStick 3.44 improves cosmetics. This is not a security update.
https://www.softwareok.com/?seite=Freeware/PointerStick

RoboForm 8.5.7 resolves several bugs. This is a security update.
https://12pd.com/click?rf

Seagate DiscWizard 23.0.17160 doesn’t provide a changelog so should be treated as a security update.
https://www.seagate.com/support/downloads/item/discwizard-master-dl/

WSUS Offline 11.6 resolves several bugs, corrects superseded updates, and adds new hooks. This is not a security update.
http://download.wsusoffline.net/

Developer Updates

These are unlikely to be of interest to most people.

Node.js 11.11.0 resolves dozens of bugs. This is a security update.
https://nodejs.org/en/

SQLite 3.27.2 resolves several bugs. This is not a security update.
https://www.sqlite.org/download.html

DB Browser for SQLite 3.11.1 resolves several bugs. This should be treated as a security update.
https://sqlitebrowser.org/

Web Package Updates

These are likely to be of interest only to web developers.

TinyMCE 5.0.2 resolves several bugs. This is not a security update.
https://www.tiny.cloud/get-tiny/

Drupal 8.6.10 is a security update.
https://drupal.org/download

Joomla 3.9.4 is a security update.
https://www.joomla.org/

Nextcloud Server 15.0.5 is a security update.
https://nextcloud.com/

ColdFusion 2018 Update 3, ColdFusion 2016 Update 10, and ColdFusion 11 Update 18 are security updates.
https://helpx.adobe.com/security/products/coldfusion/apsb19-14.html

WordPress 5.1 resolves several bugs, improves the block editor, and adds Site Health. This is not a security update.
https://wordpress.org/

BuddyPress 4.2.0 is a security update.

Multisite Enhancements 1.5.1 resolves several bugs. This is not a security update.

Postie 1.9.32 resolves several bugs. This is not a security update.

Simple Lightbox 2.7.1 improves block editor compatibility. This is not a security update.

Sucuri Security 1.8.20 resolves several bugs. This is not a security update.

Theme My Login 7.0.13 adds several filters and action hooks, improves reliability and form-field controls. This is not a security update.

WooCommerce 3.5.6 resolves dozens of bugs. This is not a security update.

WPtouch 4.3.35 resolves the sms link stripping bug. This is not a security update.

That’s all for now folks. Keep it clean out there. 😉

Regards,

Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/

Updates 2018-06-12

Hi, Folks!

If you’re running Windows 10 Home you’ve either already received v1803, or it’s been eating away at your bandwidth for the last month. It’s stable enough now to install, but you might still have issues afterwards. Need help? Call me.

Now back to our regularly scheduled program. Today is Patch Tuesday and it’s a big one.

The typical computer should see roughly 2.5gb in updates today. Let’s get started.

Microsoft released updates to Windows, Edge, Internet Explorer, Flash, and MSRT (~1.2gb). This includes security updates. A reboot is required.

Apple released macOS 10.13.5, macOS Security Update 2018-003, Safari 11.1.1, iOS 11.4, watchOS 4.3.1, tvOS 11.4, iTunes 12.7.5 for Windows, and iCloud for Windows 7.5. This includes security updates. Use Apple Software Update to install these updates. A reboot is required.

iOS 11.4 is a security update. Use Settings, General, Software Update to install the most current version.

watchOS 4.3.1 is a security update. Use the Watch app on your iPhone to install the most current version.

tvOS 11.4 is a security update. Use System, Software Update to install the most current version.

Google Chrome OS 67.0.3396.78 is a security update. Use Menu, Help, About to install the most current version. A reboot is required.

Adobe Flash Player 30.0.0.113 is a security update.
Win: https://12pd.com/click?flash
Win: https://12pd.com/click?flashie
Mac: https://12pd.com/click?flashmac

Don’t forget to check your mobile devices, too! Many updates will also apply to your tablet, phone, kindle or television – so check your device-appropriate App Store and install updates.

Important Notes

Everything above this section should be checked by everyone on every computer. Chances are good that close to every single computer you touch will be affected by those updates. This is not the case with the items below, though you should still check each line item below to see if it applies to software you have installed.

The now-current release of Windows 10 (1803) will cause your computer to feel unusually slow until it is installed. This is a side-effect of the Windows 10 upgrade cycle, which pushes out 6gb through Windows update to get you to the latest Windows 10 release every 6 months. If you don’t let it finish and you’re on a slow connection, it will kill your Internet performance forever. If you don’t have the bandwidth to download the bits, I’m happy to provide loaner USB drives to our local clients at The Farmory, or, if you prefer to have me mail it to you please contact me for information.

Please remember that while I list many different applications within these updates, most people should ONLY install updates for a program if they already have a previous version of that program installed.

It is essential to maintain all the applications you have installed on your computer, but often you can minimize the time investment and the potential for exploitation simply by uninstalling software you do not need.

Also note that using the applications own “check for updates” function, when available, will best preserve your current settings, and often avoid any crapware that might come with a fresh installer. Use this option if it’s available to you.

Finally, if you’re sick of doing this all yourself, let me! Call or email me any time, and we can set you up with subscription SaferPC updates which will be installed each month whenever necessary. Click, call or email for more details:
https://saferpc.info/updates/
209-565-12PD
shawn@12pointdesign.com

Driver Updates

If you’re using this hardware – these updates are for you.

Crucial Storage Executive 3.55 does not provide a changelog so should be treated as a security update.
http://www.crucial.com/usa/en/support-storage-executive

Intel Driver Update 3.4 improves compatibility, stability, and reliability. This is not a security update.
https://www.intel.com/p/en_US/support/detect

Logitech Options 6.90.130 adds support for newer hardware and resolves several bugs. This is not a security update.
https://support.logitech.com/en_us/software/options

Logitech SetPoint 6.68.250 resolves several bugs. This is not a security update.
https://support.logitech.com/en_us/software/setpoint

Citizen Driver 2018.2 adds support for newer hardware, improves compatibility, and resolves issues when USB printer is turned off during a print job.
http://www.seagullscientific.com/drivers/citizen-windows-printer-drivers/

CognitiveTPG Driver 2018.2 improves compatibility, and resolves issues when USB printer is turned off during a print job.
http://www.seagullscientific.com/drivers/cognitivetpg-windows-printer-drivers/

Zebra Driver 2018.2 adds support for newer hardware, improves compatibility, and resolves issues when USB printer is turned off during a print job.
http://www.seagullscientific.com/drivers/zebra-windows-printer-drivers/

Browser Updates

One or more of these are likely to be of interest to everyone.

Google Chrome 67.0.3396.79 is a security update. Use Menu, Help, About to get the most current version.

Firefox 60.0.2 is a security update. Use Menu, Help, About to get the most current version.

Firefox ESR 52.8.1 is a security update. Use Menu, Help, About to get the most current version.

Adobe AIR 30.0.0.107 is a security update.
Win: https://12pd.com/click?air
Mac: https://12pd.com/click?airmac

Adobe Shockwave 12.3.4.204 is a security update.
Win: https://12pd.com/click?shockwave

Opera 53 is a security update. Use Menu, Help, About to get the most current version.

Email Updates

One or more of these are likely to be of interest to everyone.

OutlookAttachView 3.13 improves reliability and adds logging. This is not a security update.
https://www.nirsoft.net/utils/outlook_attachment.html

Thunderbird 52.8.0 is a security update. Use Menu, Help, About to get the most current version.

Internet Updates

One or more of these are likely to be of interest to everyone.

Skype 7.41.0.101 resolves several bugs. This is not a security update.
https://12pd.com/click?skype

Prosody 0.10.2 is a security update.
https://prosody.im/download/start

Trillian 6.1.0.16 resolves several bugs. This is not a security update.
https://www.trillian.im/

Connectify Hotspot 2018.4.1 is a security update.
https://www.connectify.me/

FreeFileSync 10.1 resolves several bugs. This is not a security update.
https://www.freefilesync.org/download.php

MaxMind GeoIP Data 201806 is a data refresh.
https://dev.maxmind.com/geoip/

IPInfoOffline 1.47 updates internal database. This is not a security update.
https://www.nirsoft.net/utils/ip_country_info_offline.html

Media Updates

These are unlikely to be of interest to most people.

iTunes 12.7.5 is a security update. Use Apple Software Update to install the most current version.

VLC Media Player 3.0.3 resolves several bugs and updates libraries. This is a security update.
https://www.videolan.org/vlc/

Game Updates

These are unlikely to be of interest to most people.

PlayStation PS4 5.55 improves performance. This is not a security update.
https://www.playstation.com/en-us/support/system-updates/ps4/

EA Origin 10.5.20.63112 resolves several bugs. This is not a security update.
https://www.origin.com/en-us/download

Office Updates

One or more of these are likely to be of interest to most people.

LibreOffice Still 5.4.7 resolves several bugs. This is not a security update.
https://www.libreoffice.org/

Security Software Updates

One or more of these is likely to be of interest to most people.

Wireshark 2.6.1 is a security update.
https://www.wireshark.org/

RogueKiller 12.12.21 adds detections. This is not a security update.
http://www.adlice.com/softwares/roguekiller/

SanDisk SecureAccess 3.02 improves performance and stability. This is not a security update.
https://kb.sandisk.com/app/answers/detail/a_id/2399

Converter Updates

These are unlikely to be of interest to most people.

CDex 2.04 improves compatibility and resolves several bugs. This is not a security update.
https://cdex.mu/?q=download

Utility Updates

These are unlikely to be of interest to most people.

RoboForm 8.5.0 is a security update.
https://12pd.com/click?rf

GoodSync 10.9.1 is a security update.
https://12pd.com/click?goodsync

1Password for Mac 6.8.9 restores compatibility with Opera. This is not a security update.
https://1password.com/downloads/

NTLite 1.6.2.6220 improves cleanup and compatibility, and resolves several bugs. This is not a security update.
https://www.ntlite.com/download/

DesktopOK 5.31 resolves several bugs. This is not a security update.
https://www.softwareok.com/?seite=Freeware/DesktopOK

FileLocator Pro 8.4.2831 resolves several bugs. This is not a security update.
https://www.mythicsoft.com/filelocatorpro/download

WifiInfoView 2.34 adds country code column and resolves channel width bug. This is not a security update.
https://www.nirsoft.net/utils/wifi_information_view.html

Rufus 3.0 redesigns the interface, resolves several bugs, drops support for old operating systems, and improves performance. This is not a security update.
https://rufus.akeo.ie/

RAMMap 1.51 improves compatibility with the latest build of Windows 10. This is not a security update.
https://sysinternals.com/

QuickSetDNS 1.21 adds ability to set connection name from command line. This is not a security update.
https://www.nirsoft.net/utils/quick_set_dns.html

TraceRouteOK 1.31 improves compatibility. This is not a security update.
https://www.softwareok.com/?seite=Microsoft/TraceRouteOK

WizTree 3.23 adds the ability to dump the MFT from the command line, and resolves several bugs. This is not a security update.
https://antibody-software.com/web/software/software/wiztree-finds-the-files-and-folders-using-the-most-disk-space-on-your-hard-drive/

WSUS Offline 11.4 includes a complete rewrite of the Linux scripts, resolves supersedence issues, and improves stability. This is not a security update.
http://download.wsusoffline.net/

Developer Updates

These are unlikely to be of interest to most people.

Redemption 5.17.0.5062 resolves several bugs and adds support for Outlook Centennial. This is not a security update.
https://www.dimastr.com/redemption/

SQLite 3.24.0 adds several new features, improves compatibility and performance, and resolves several bugs. This is not a security update.
https://www.sqlite.org/download.html

Virtual Machine Updates

These are unlikely to be of interest to most people.

PPSSPP 1.6.3 doesn’t provide a changelog, so should be treated as a security update.
http://ppsspp.org/downloads.html

VMware Player 14.1.2 is a security update.
https://www.vmware.com/products/player/

Web Package Updates

These are likely to be of interest only to web developers.

phpList 3.3.3 adds GDPR support, user interface improvements, and resolves several bugs. This is not a security update.
https://www.phplist.com/download

TinyMCE 4.7.13 resolves several bugs. This is not a security update.
http://www.tinymce.com/download/

Drupal 8.5.4 resolves several bugs. This is not a security update.
http://drupal.org/download

phpMyAdmin 4.8.1 resolves several bugs.
https://www.phpmyadmin.net/home_page/news.php

Joomla 3.8.8 is a security update.
https://www.joomla.org/

WordPress 4.9.6 improves GDPR support, resolves several bugs, and updates libraries. This is not a security update.
https://wordpress.org/

Akismet 4.0.7 improves compatibility and makes several cosmetic changes. This is not a security update.

Antispam Bee 2.8.1 improves compatibility, resolves several bugs. This version removes SFS support asserting GDPR issues. This is not a security update.

BuddyPress 3.1.0 improves performance and adds several new features. This is not a security update.

Contact Form 7 5.0.2 resolves bugs and improves GDPR compatibility. This is not a security update.

Custom Facebook Feed 2.7 resolves compatibility issues. This is not a security update.

FV Top Level Categories 1.9 resolves several bugs. This is not a security update.

Multisite Enhancements 1.4.3 resolves several bugs. This is not a security update.

NextScripts Social Networks Auto-Poster 4.2.4 resolves several bugs. This is not a security update.

Postie 1.9.23 improves handling malformed attachments. This is not a security update.

Simple Lightbox 2.7.0 improves compatibility and performance. This is not a security update.

Sucuri Security 1.8.17 adds GDPR compliance.

Theme My Login 7.0 is a full rewrite, adding several options, and switching many features to commercial upgrades. This is not a security update.

WooCommerce 3.4.2 resolves several bugs and adds GDPR compliance. This is not a security update.

WPtouch 4.3.28 resolves several bugs. This is not a security update.

That’s all for now folks. Keep it clean out there. 😉

Regards,

Shawn K. Hall
https://SaferPC.info/
https://12PointDesign.com/