Category: Security
Cybersecurity Threat Advisory: TeamViewer breach
On June 26, RMM software designer TeamViewer announced a recent breach of their network. According to TeamViewer, no customer data has yet been compromised by this breach. Read this Cybersecurity Threat Advisory in detail to secure your network and devices....
Cybersecurity Threat Advisory: MOVEit Transfer vulnerability exploit
Progress Software has released a patch for a high-severity vulnerability in MOVEit Transfer, identified as CVE-2024-5806. This vulnerability is currently under active attack and allows attackers to bypass authentication mechanisms. Organizations using MOVEit Transfer should review this Cybersecurity Threat Advisory...
Cybersecurity Threat Advisory: Five new vulnerabilities found in Zyxel NAS
Zyxel has released a patch for their NAS326 and NAS542 to fix five new vulnerabilities that have been discovered. These vulnerabilities affect devices with versions 5.21 (AAZF16/ABAG13) and earlier. Barracuda MSP recommends customers using these devices to follow the steps...
Cybersecurity Threat Advisory: Active exploitation of Microsoft vulnerabilities
This Cybersecurity Threat Advisory highlights a new attack technique exploiting vulnerabilities in Microsoft Management Console (MMC). By creating malicious management saved console (MSC) files that appear legitimate, attackers can bypass traditional security measures and exploit the targeted MMC. Barracuda MSP...
Summer reading: Four must-read cybersecurity titles
As a journalist, I’m always writing. I also read a lot, and for someone who writes about cybersecurity, I read A LOT of cybersecurity books. While these are not precisely gripping beach reads, I have read some intriguing cybersecurity books...
Tip Tuesday: Overcoming the Patch Tuesday blues
Patch management serves as a key defense against cyberthreats and also ensures operating systems and business-critical software are maintained. However, it is not always a simple and straight-forward task for managed service providers (MSPs), especially in current times. With hybrid...
Cybersecurity Threat Advisory: VMware privilege escalation vulnerabilities
VMware has released patches to address critical vulnerabilities impacting Cloud Foundation, vCenter Server, and vSphere ESXi, which could be exploited to achieve privilege escalation and remote code execution. The flaws, identified as CVE-2024-37079, CVE-2024-37080, and CVE-2024-37081, have high CVSS scores....
Cybersecurity Threat Advisory: Critical ASUS vulnerability
ASUS released a product security advisory urging customers to update their firmware to address a critical authentication bypass vulnerability impacting multiple of its router models. Review this Cybersecurity Threat Advisory to learn which router models are impacted and how to...
Deepfake technology: Why it’s a risk to your business
Deepfake technology, sometimes colloquially named ‘deepfakes’, has been getting a lot of attention in the mainstream news media in recent years. But now, it’s no longer just a harmless entertainment medium, it poses a significant threat to your business if...
Blockchain: The cybersecurity tool MSPs should keep an eye on
With cyber threats coming from all directions, managed service providers (MSPs) need as many mitigation measures as possible. One often overlooked area is the emergence of blockchain technology as a cybersecurity tool. Several software solutions incorporate blockchain and have become...