Category: Security

Elevate your MSP: Invest in Sales Engineer training

Elevate your MSP: Invest in Sales Engineer training

When managed service providers (MSPs) talk to clients about their security or technology needs, the clients’ employees are a vital part of any proposed solution. Deploying technology without the proper user training and education can lead to underutilization, lower customer...

/ November 7, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Okta username flaw

Cybersecurity Threat Advisory: Okta username flaw

Researchers have discovered a critical vulnerability in Okta which allows an user to authenticate to an account with a username longer than 52 characters without multi-factor authentication (MFA) enabled. Read this Cybersecurity Threat Advisory to learn how this may impact...

/ November 7, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: CRON#TRAP phishing campaign

Cybersecurity Threat Advisory: CRON#TRAP phishing campaign

A new phishing campaign, identified as CRON#TRAP, are targeting Windows systems with a preloaded Linux virtual machine (VM) to evade detection to conduct malicious acts.  Continue reading this Cybersecurity Threat Advisory to learn how to protect against this phishing campaign....

/ November 6, 2024 / 1 Comment
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zero-click flaw in Synology NAS devices

Cybersecurity Threat Advisory: Zero-click flaw in Synology NAS devices

Synology, network-attached storage (NAS) maker, addressed critical security vulnerability,  CVE-2024-10443, which impacts their DiskStation and BeePhotos applications. This is an unauthenticated vulnerability that can allow attackers to obtain root-level code execution on Synology NAS devices. Review the details in this...

/ November 6, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Vulnerabilities found in Microsoft Azure AI

Cybersecurity Threat Advisory: Vulnerabilities found in Microsoft Azure AI

Significant vulnerabilities in Microsoft’s Azure AI Content Safety services have been discovered. These vulnerabilities enable attackers to bypass safeguards and deploy harmful AI-generated content. Continue reading this Cybersecurity Threat Advisory to learn the implications of these flaws and which security...

/ November 5, 2024
cybercriminals SMBs
Beyond phishing: How cybercriminals target SMBs vs. enterprises

Beyond phishing: How cybercriminals target SMBs vs. enterprises

Security-focused managed service providers (MSPs) know that small to midsize businesses (SMBs) often take a more cavalier approach to cybersecurity than larger organizations. They often believe that because they are small and less well-known, they’re less likely to draw the...

/ November 5, 2024
Beyond patches and firewalls: Advanced strategies for cyberthreat defense

Beyond patches and firewalls: Advanced strategies for cyberthreat defense

Threat mitigation is to managed service providers (MSPs) what preventative medicine is to doctors. In other words, threat mitigation is the first line – and often least expensive – defense against cybercriminals. Of course, some of the basic steps include...

/ November 4, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New Microsoft Windows vulnerabilities

Cybersecurity Threat Advisory: New Microsoft Windows vulnerabilities

Two new Microsoft vulnerabilities, CVE-2024-21302 and CVE-2024-38202, are impacting Windows systems. Read this Cybersecurity Threat Advisory to learn more about how these vulnerabilities can be leveraged to exploit Microsoft Windows and how to protect your systems. What is the threat?...

/ November 4, 2024
impersonate OpenAI
Cybercriminals impersonate OpenAI in large-scale phishing attack

Cybercriminals impersonate OpenAI in large-scale phishing attack

Since the launch of ChatGPT, OpenAI has sparked significant interest among both businesses and cybercriminals. While companies are increasingly concerned about whether their existing cybersecurity measures can adequately defend against threats curated with generative AI tools, attackers are finding new...

/ October 31, 2024
XDR
How MSPs can improve threat detection and response with XDR

How MSPs can improve threat detection and response with XDR

According to a Barracuda report, 62 percent of IT professionals surveyed believe cyberattacks are becoming more sophisticated and complex. This concern is mainly because traditional security measures often fail to address multifaceted threats in today’s rapidly evolving cybersecurity landscape. Furthermore,...

/ October 29, 2024 / 5 Comments