Category: Security

Cybersecurity Threat Advisory: RCE vulnerabilities in HPE Aruba Networking devices
HPE Aruba Networking has disclosed that critical remote code execution (RCE) vulnerabilities are impacting multiple versions of ArubaOS. Out of the ten vulnerabilities found, four pose critical risks of unauthenticated buffer overflows in various services. Read this Cybersecurity Threat Advisory...

MSPs are on the front lines of fighting deepfakes
Alarm bells went off in board rooms and C-suites across the globe last fall when an executive at a Hong Kong company was duped by deepfakes into wiring $25 million to criminals. According to CNN: A finance worker at a...

Cybersecurity Threat Advisory: R programming vulnerability
A critical security flaw known as CVE-2024-27322 with a CVSS score of 8.8, has been discovered within the R programming language. Attackers can craft malicious RDS files or R packages that embed arbitrary R code. Barracuda MSP recommends reading this...

Reducing our reliance on passwords to boost security
Data breaches remain a serious threat to every business. In 2023, about half of them reported experiencing a data breach, according to the Data Breaches Investigations Report. In the United States, more than 90 million accounts were breached in the third...

Threat Spotlight: The remote desktop tools most targeted by attackers in the last year
Remote desktop software allows employees to connect into their computer network without being physically linked to the host device or even in the same location. This makes it a useful tool for a distributed or remote workforce. Unfortunately, remote desktop...

Cybersecurity Threat Advisory: Credential stuffing attacks targeting Okta
Okta has observed an unprecedented spike in credential stuffing attacks targeting its identity and access management solutions. Attackers are leveraging the TOR anonymization network and residential proxies to compromise user accounts. To mitigate this risk, Barracuda MSP recommends reading this...

New CISA vulnerability warning pilot program is a success
The Cybersecurity and Infrastructure Security Agency (CISA) recently announced its vulnerability warning program has issued over 2,000 alerts since its inception. The agency’s director, Jen Easterly, delivered remarks recently at the Institute for Security and Technology, sharing that these alerts...