Month: March 2024
Data tampering is an underrated threat — get your backup ready
World Backup Day is an annual reminder of how important it is to have an up-to-date, readily accessible copy of everything that matters to your business. Resilient backups allow you to recover more quickly from data damage, disruption, or loss, particularly...
Tech Time Warp: The wicked ways of the Witty Worm
Although the goal of the Witty Worm wasn’t widespread damage—its entire target population was only 12,000 computers the world over—the malware made its presence known with a vengeance. Within 45 minutes of its first appearance at approximately 8:45 p.m. PST...
Cybersecurity Threat Advisory: AWS ‘FlowFixation’ vulnerability
The AWS “FlowFixation” vulnerability, while patched in September 2023, may still pose account hijacking risks within its Amazon Managed Workflows Apache Airflow (MWAA) service. Read this Cybersecurity Threat Advisory to learn the impact and security measures to mitigate risks associated...
Cybersecurity Threat Advisory: GitHub supply chain attack
Malicious actors have launched a software supply chain attack targeting developers on the GitHub platform. Barracuda MSP recommends taking proactive measures detailed in this Cybersecurity Threat Advisory to mitigate the risk. What is the threat? A variety of techniques were...
CISA and NSA weigh in on best cybersecurity practices for MSPs
The Cybersecurity and Infrastructure Security Agency (CISA), along with the National Security Agency (NSA), have defined a set of best cloud security practices that specifically call for managed services providers (MSPs) to provide more visibility into their IT operations. The...
Cybersecurity Threat Advisory: New vulnerability in Apple M-chip
A new security exploit, GoFetch, was found in Apple’s M-chip architecture. It takes advantage of data memory-dependent prefetchers (DMPs) and could use the device as a new attack vector. Continue reading this Cybersecurity Threat Advisory to learn how you can...
Cybersecurity Threat Advisory: StrelaStealer malware targets organizations
A new email threat, StrelaStealer malware, is targeting Europe and United States organizations. It spreads through phishing emails with attachments that execute its dynamic-link library (DLL) payload designed to steal email login data. This Cybersecurity Threat Advisory reviews the threat...
Tip Tuesday: Best practices for repurposing content
As a managed service provider (MSP), you have a lot on your plate. Creating fresh content to catch the attention of your audience isn’t always top of mind. Luckily for you, you can lift some of that weight off your...
DORA: What this means for MSPs
In many places, DORA (Designated Outdoor Refreshment Area) means you can walk the streets in designated areas with an adult beverage. But in cybersecurity circles, DORA has a completely different meaning. Landmark legislation aims to ensure digital operational resilience Managed...