Category: Featured

Tech Time Warp
Tech Time Warp: Ransomware continues to make computer users WannaCry

Tech Time Warp: Ransomware continues to make computer users WannaCry

This month’s Canvas ransomware attack—in addition to making finals week more stressful for thousands of college students and their professors—was a stark reminder about the continued threat of ransomware. Consider it a bit of a Tech Time Warp. It’s enough...

/ May 15, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RedSun exploits Microsoft Defender real-time protection

Cybersecurity Threat Advisory: RedSun exploits Microsoft Defender real-time protection

A new proof of concept (PoC), RedSun, exploits Windows devices running Microsoft Defender real‑time protection on Windows 10, Windows 11, and Windows Server 2019+. It abuses Defender’s handling of cloud‑tagged files to achieve local privilege escalation to SYSTEM. Read this...

/ May 15, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: BitUnlocker attack

Cybersecurity Threat Advisory: BitUnlocker attack

A newly published proof of concept (PoC) tool called BitUnlocker demonstrates a dangerous downgrade attack that can bypass Microsoft’s BitLocker full‑disk encryption on Windows 11 devices. Continue reading this Cybersecurity Threat Advisory to minimize your risk. What is the threat? BitUnlocker...

/ May 15, 2026
cloud spend
Survey shows MSPs with cloud optimization expertise are in need

Survey shows MSPs with cloud optimization expertise are in need

A survey of 300 U.S. finance leaders at organizations with more than $50 million in revenue suggests companies are looking to fund artificial intelligence (AI) initiatives in part by optimizing cloud spending. Surging cloud costs A survey conducted by market...

/ May 14, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: GhostLock – A new denial-of-availability attack technique

Cybersecurity Threat Advisory: GhostLock – A new denial-of-availability attack technique

GhostLock is a newly disclosed attack technique that abuses the Windows CreateFileW API to lock enterprise files by requesting exclusive, deny‑share handles. Read this Cybersecurity Threat Advisory to learn how to limit your organization’s exposure to this attack. What is...

/ May 14, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RMM-based phishing attacks

Cybersecurity Threat Advisory: RMM-based phishing attacks

An ongoing phishing campaign has been observed targeting multiple vectors and leveraging legitimate Remote Monitoring and Management (RMM) tools to establish persistent remote access on compromised hosts. Read this Cybersecurity Threat Advisory to mitigate risk for you and your clients....

/ May 14, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Linux kernel vulnerabilities exploited by Dirty Frag

Cybersecurity Threat Advisory: Linux kernel vulnerabilities exploited by Dirty Frag

Dirty Frag is a newly disclosed Linux kernel local privilege escalation (LPE) exploit chain. It combines two independent kernel vulnerabilities—CVE‑2026‑43284 and CVE‑2026‑43500—to deliver reliable, first‑attempt root access across virtually all major Linux distributions. A working proof of concept (PoC) is...

/ May 13, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: PAN-OS Captive Portal zero-day vulnerability

Cybersecurity Threat Advisory: PAN-OS Captive Portal zero-day vulnerability

Threat actors are actively exploiting a PAN‑OS zero‑day that impacts the User‑ID Authentication (Captive) Portal. This exploit enables unauthenticated remote code execution with root privileges on PA‑Series and VM‑Series firewalls. Continue reading this Cybersecurity Threat Advisory to learn how to...

/ May 13, 2026
leads
If you’re an MSP owner who wants more consistent leads, start here

If you’re an MSP owner who wants more consistent leads, start here

As someone who’s spent the last 8+ years helping hundreds of MSPs generate leads and book real sales conversations, I hear the same frustration over and over again: “We’re doing some marketing… but leads are inconsistent.” Some months are busy. ...

/ May 13, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: MOVEit authentication bypass vulnerability

Cybersecurity Threat Advisory: MOVEit authentication bypass vulnerability

A vulnerability has been identified involving a critical authentication bypass in Progress MOVEit Automation, a widely used managed file transfer and automation platform. This flaw allows unauthenticated attackers to bypass authentication mechanisms and gain unauthorized access to MOVEit Automation environments....

/ May 12, 2026