Anika Jishan

All posts by Anika Jishan

Anika is a Cybersecurity Analyst at Barracuda MSP. She's a security expert, working on our Blue Team within our Security Operations Center. Anika supports our XDR service delivery and is highly skilled at analyzing security events to detect cyber threats, helping keep our partners and their customers protected.

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: EvilExtractor malware surge detected

Cybersecurity Threat Advisory: EvilExtractor malware surge detected

EvilExtractor malware has spiked in Europe and the US. EvilExtractor is distributed through phishing campaigns and can harvest various types of data, including browser history, passwords, and cryptocurrency wallets. This is a concern because of the malware’s ability to evade...

/ April 27, 2023

Cybersecurity Threat Advisory: 3CX supply chain attack updates

This is a follow-up to the 3CX supply chain attack threat advisory. A malware was found in the 3CX VoIP Desktop Application, which has been delivered to users through legitimate 3CX updates. 3CX has since released security updates, and below...

/ March 31, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New phishing campaigns

Cybersecurity Threat Advisory: New phishing campaigns

Cybercriminals have started new phishing campaigns that targets organizations and individuals who were members of affected banks. Fraudulent messages are being sent in an attempt to trick victims into revealing personal/account information such as social security numbers, passwords, and account...

/ March 15, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New Fortinet vulnerability

Cybersecurity Threat Advisory: New Fortinet vulnerability

Fortinet has released information concerning a FortiOS & FortiProxy Heap Buffer administrative interface vulnerability with a CVSS score of 9.3. The vulnerability allows an unauthenticated attacker to execute commands on the device and/or perform a denial-of-service (DoS) attack on the...

/ March 9, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: ConnectWise critical security release

Cybersecurity Threat Advisory: ConnectWise critical security release

A critical vulnerability was discovered within the ConnectWise Recover and R1Soft Server Backup Manager. The vulnerability is described by ConnectWise as “improper neutralization of special elements in output used by a downstream component”. Successful exploitation of the vulnerability would allow...

/ October 31, 2022
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zoho ManageEngine RCE bug

Cybersecurity Threat Advisory: Zoho ManageEngine RCE bug

A critical Zoho ManageEngine Remote Code Execution (RCE) flaw is being actively exploited according to The US Cybersecurity and Infrastructure Security Agency (CISA). This vulnerability allows remote attackers to execute arbitrary code on affected installations of Password Manager Pro, PAM360 and...

/ September 30, 2022