Category: Featured

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zero-day Cisco vulnerability

Cybersecurity Threat Advisory: Zero-day Cisco vulnerability

CVE‑2026‑20045 is a critical zero‑day vulnerability impacting multiple Cisco Unified Communications products and Webex Calling Dedicated Instances. Successful exploitation allows an unauthenticated attacker to achieve remote code execution. Continue reviewing this Cybersecurity Threat Advisory to learn how to mitigate your...

/ January 27, 2026
MFA fatigue continues to be a threat in 2026

MFA fatigue continues to be a threat in 2026

MFA fatigue attacks are rising—and succeeding—because users are overwhelmed. Logging in no longer means simply entering a password. It often requires a code sent to a device, scanning a prompt, or approving an authentication request. According to recent Microsoft data,...

/ January 27, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical VMware vCenter Server vulnerability

Cybersecurity Threat Advisory: Critical VMware vCenter Server vulnerability

CISA has added a critical VMware vCenter Server vulnerability to its Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. The flaw is tracked as CVE‑2024‑37079 with a CVSS score of 9.8. It was originally patched in June 2024...

/ January 27, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical FortiCloud bypass remains unpatched

Cybersecurity Threat Advisory: Critical FortiCloud bypass remains unpatched

Fortinet has confirmed that critical authentication bypass vulnerabilities affecting FortiCloud Single Sign-On (SSO) remain exploitable, even in environments that have already applied recent patches. Attackers are actively abusing these flaws, and Fortinet expects to issue additional fixes within the next...

/ January 26, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Telnet authentication bypass flaw

Cybersecurity Threat Advisory: Telnet authentication bypass flaw

A critical security vulnerability has been identified in the GNU InetUtils Telnet daemon (telnetd) that allows unauthenticated attackers to obtain root-level access. The issue was introduced in 2015 and went undetected for nearly 11 years. Review this Cybersecurity Threat Advisory...

/ January 26, 2026
8 cybersecurity predictions for 2026: Barracuda leaders share their insights

8 cybersecurity predictions for 2026: Barracuda leaders share their insights

As we head into 2026, cybersecurity is changing faster than ever — thanks to big leaps in artificial intelligence, increasingly complex regulatory requirements and mounting pressure on critical infrastructure. To help organizations navigate these changes, three Barracuda executives share their top...

/ January 26, 2026 / 7 Comments
Tech Time Warp: Remembering the Brain virus, 40 years later

Tech Time Warp: Remembering the Brain virus, 40 years later

Revenge is a dish best served … via floppy disk? Forty years ago, two Pakistani brothers proved the floppy disk was a highly effective response to wrongdoing. Reports of the first PC virus, “Brain,” began circulating in January 1986. The...

/ January 23, 2026
Report shows slower MSP contract growth heading into 2026

Report shows slower MSP contract growth heading into 2026

The latest report from the Information Services Group (ISG) finds that global demand for managed services slowed in the fourth quarter, marking the second consecutive quarter of year-over-year decline in the value of large contracts. Contract growth shows signs of...

/ January 23, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: DLL sideloading backdoors via LinkedIn messages

Cybersecurity Threat Advisory: DLL sideloading backdoors via LinkedIn messages

A multi‑faceted phishing campaign is using LinkedIn private messages to deliver weaponized payloads that execute through DLL sideloading. The activity involves legitimate‑looking PDFs, a malicious sideloaded DLL, a Python interpreter PE, and decoy archives. Review the recommendations in this Cybersecurity...

/ January 22, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Malicious browser extension in ClickFix variant

Cybersecurity Threat Advisory: Malicious browser extension in ClickFix variant

Security researchers have uncovered an active malvertising campaign abusing a fake ad‑blocking extension that intentionally crashes Google Chrome and Microsoft Edge to trick users into executing malicious commands—a new evolution of the ClickFix technique known as “CrashFix.” Read the Cybersecurity...

/ January 21, 2026