Category: Security

CISA forges a path toward cybersecurity excellence for all businesses

CISA forges a path toward cybersecurity excellence for all businesses

The gold standard of cybersecurity best practices in the USA comes from The Cybersecurity and Infrastructure Security Agency (CISA). Within CISA is the Cybersecurity Advisory Committee (CSAC) which is comprised of 22 of the nation’s leading experts on cybersecurity, technology,...

/ July 12, 2022
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New Microsoft Azure vulnerability

Cybersecurity Threat Advisory: New Microsoft Azure vulnerability

Researchers at Point 42 discovered a flaw in Microsoft Azure’s Fabric, dubbed ‘FabricScape’, propagating the ongoing series of vulnerabilities that the platform has been facing. This vulnerability allows bad actors using Linux to escalate their own privileges to the extent...

/ July 10, 2022
Barracuda MSP is coming to a city near you!

Barracuda MSP is coming to a city near you!

Since March 2020, every business has taken a pause with in-person interaction. As we turn a new page in the pandemic, Barracuda MSP is excited to be back on the road and meet with MSPs live once again!  

/ July 7, 2022
Alternate cloud service providers are on the rise

Alternate cloud service providers are on the rise

A much larger percentage of IT organizations appear to be less committed to the top three cloud service providers as it becomes more apparent that the compute and storage platforms being delivered have become commodities. A survey of 458 development...

/ July 6, 2022
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Mitel VoIP vulnerability

Cybersecurity Threat Advisory: Mitel VoIP vulnerability

A known remote code execution vulnerability, CVE-2022-29499, was discovered with the Linux-based Mitel VoIP (Voice over Internet Protocol) application. Once exploited, this vulnerability allows a threat actor to gain root privileges to the system and plant ransomware. Barracuda MSP recommends...

/ July 5, 2022
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: LockBit Ransomware Threat

Cybersecurity Threat Advisory: LockBit Ransomware Threat

The LockBit ransomware group has become the top ransomware group based on its volume of attacks in recent months. They are utilizing a new phishing email tactic by disguising the malware as copyright claim and creating a bug bounty program. Once...

/ July 4, 2022
SEC cyber rules: An MSP’s pivotal role and opportunity

SEC cyber rules: An MSP’s pivotal role and opportunity

Cyberattacks against financial services companies are on the rise. In 2021, the Financial Services Information Sharing and Analysis Center (FS-ISAC) raised the cyber threat level for U.S. financial institutions from “guarded” to “elevated” three times (it typically happens just once)....

/ July 4, 2022
Key cybersecurity trends to watch in the homestretch of 2022

Key cybersecurity trends to watch in the homestretch of 2022

Believe it or not, we are now halfway through 2022. Where has the time gone? Before we know it, we’ll be talking about Thanksgiving and Christmas. But right now, let’s pause, take stock of where we’ve been and make some...

/ June 30, 2022 / 6 Comments
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Apple Safari arbitrary code execution vulnerability

Cybersecurity Threat Advisory: Apple Safari arbitrary code execution vulnerability

Apple has had an existing arbitrary code execution vulnerability in their MacOS, iOS, iPadOS, and Safari in their past 3 zero-days known as CVE-2022-22620. Google and Barracuda MSP researchers are making sure users don’t forget this. The vulnerability could allow...

/ June 28, 2022
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: FastJson versions vulnerable to deserialization

Cybersecurity Threat Advisory: FastJson versions vulnerable to deserialization

A new version of FastJson has been released and has patched a vulnerability which allows malicious actors to utilize “AutoTypeCheck” mechanism and achieve remote code execution in FastJson. All Java applications that pass user-controlled data to either the JSON.parse or...

/ June 27, 2022