Category: Security
Podcast: Adding ZTNA to your MSP’s security stack, Episode 4
In Episode 3 of the SmarterMSP Podcast, we discussed common MSP website mistakes that can hurt the sales efforts of service providers. In our latest episode, we turned our focus to managed security services, including zero-trust network access (ZTNA), which is...
Barracuda cited as leader in enterprise email security
Barracuda was among the companies invited to participate in The Forrester Wave™: Enterprise Email Security, Q2 2021. In this evaluation, Barracuda was cited as a Leader in the category. The Forrester Wave™: Enterprise Email Security, Q2 2021 is a guide...
Five cybersecurity mistakes MSPs are making in 2021
Over the years, the MSP business has evolved, but in most cases, it was still relatively “formulaic.” For example, there was a process and a protocol for ferreting out security issues, that stayed pretty much the same from MSP to...
Cybersecurity Threat Advisory: Pulse Secure Zero-Day Authentication Bypass
Threat Update A zero-day vulnerability has been discovered in Pulse Secure VPN appliances and has resulted in the compromise of several U.S governmental organizations and agencies. This vulnerability allows an attacker to bypass multi-factor authentication by modifying legitimate Pulse Secure...
Ask an MSP Expert: The 3 pillars of a security-centric approach
In today’s evolving cyberthreat landscape, it is vital for managed service providers (MSPs) to take a security-centric approach to their business. Highlighting the importance of this, but making it even more challenging, is today’s climate of remote workforces, shifting perimeters,...
Cybersecurity Threat Advisory: Windows RPC Protocol RemotePotato0 Exploit
Threat Update A new privilege escalation vulnerability has been discovered inside of the Windows RPC protocol. This vulnerability, known as RemotePotato0, is a NTLM relay attack which could allow attackers to escalate their privileges from a normal User all the...
Healthcare is one of the most vulnerable verticals in 2021
Hackers view personal healthcare information as the holy grail of data, mining this data in exchange for currency on the dark web. HealthTech sounded this alarm in April of this year: As the attacks mature and get increasingly sophisticated, healthcare...
Cybersecurity Threat Advisory: Exchange Vulnerabilities Being Exploited by Botnet
Threat Update The botnet “Prometei”, discovered in 2020, has been targeting Exchange servers across the United States using the vulnerabilities recently targeted by HAFNIUM. Technical Detail & Additional Information WHAT IS THE THREAT? The Prometei botnet, previously used for mining...
Cybersecurity Threat Advisory: Trend Micro Security Vulnerability Exploited
Threat Update On April 21st, US-Japanese cybersecurity company Trend Micro disclosed that a threat actor are exploiting a known vulnerability in several of its antivirus products (Apex One, Apex One as a Service, OfficeScan XG SP1, Worry-Free Business Security, and...
Cybersecurity Threat Advisory: Over 1 Million Windows RDP Credentials Leaked
Threat Update Hacker group UAS has had 1.3 million RDP credentials for Windows servers leaked by security researchers. The compromised credentials could possibly allow a malicious actor to log into a compromised RDP server. It is imperative to keep best...
