Jack Perry

All posts by Jack Perry

Jack is a Cybersecurity Analyst at Barracuda. He's a security expert, working on our Blue Team within our Security Operations Center. Jack supports Barracuda's Managed XDR service delivery and is highly skilled at analyzing security events to detect cyber threats, helping keep our partners and their customers protected.

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Active Microsoft 365 ‘Direct Send’ exploitation

Cybersecurity Threat Advisory: Active Microsoft 365 ‘Direct Send’ exploitation

Security researchers have identified an active phishing campaign that exploits Microsoft 365’s “Direct Send” feature to bypass email security controls. This tactic allows attackers to deliver malicious emails that appear to originate from internal users. Continue reading this Cybersecurity Threat...

/ July 30, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: FileFix attack weaponizes Windows File Explorer

Cybersecurity Threat Advisory: FileFix attack weaponizes Windows File Explorer

Security researchers have uncovered a new attack method known as “FileFix,” which exploits Windows File Explorer to execute stealthy PowerShell commands. By abusing legitimate Windows functionality, attackers can run malicious code while evading traditional security controls. Read this Cybersecurity Threat...

/ July 19, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Microsoft SQL server zero-day vulnerability

Cybersecurity Threat Advisory: Microsoft SQL server zero-day vulnerability

A critical information disclosure vulnerability has been identified in Microsoft SQL Server, designated as CVE-2025-49719 with a CVSS score of 7.5. This vulnerability allows unauthorized attackers to access sensitive data over a network, posing a serious risk to organizations that...

/ July 18, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Cisco Unified CM backdoor account removal

Cybersecurity Threat Advisory: Cisco Unified CM backdoor account removal

Cisco removed a backdoor account from its Unified Communications Manager (Unified CM) and Unified Communications Manager Session Management Edition (Unified CM SME), tracked as CVE-2025-20309. This critical vulnerability, with a CVSS score of 10, enabled unauthorized remote access to unpatched...

/ July 9, 2025