Category: Security

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Active exploitation of Microsoft vulnerabilities

Cybersecurity Threat Advisory: Active exploitation of Microsoft vulnerabilities

This Cybersecurity Threat Advisory highlights a new attack technique exploiting vulnerabilities in Microsoft Management Console (MMC). By creating malicious management saved console (MSC) files that appear legitimate, attackers can bypass traditional security measures and exploit the targeted MMC. Barracuda MSP...

/ June 26, 2024
Summer reading: Four must-read cybersecurity titles

Summer reading: Four must-read cybersecurity titles

As a journalist, I’m always writing. I also read a lot, and for someone who writes about cybersecurity, I read A LOT of cybersecurity books. While these are not precisely gripping beach reads, I have read some intriguing cybersecurity books...

/ June 26, 2024
Tip Tuesday: Overcoming the Patch Tuesday blues 

Tip Tuesday: Overcoming the Patch Tuesday blues 

Patch management serves as a key defense against cyberthreats and also ensures operating systems and business-critical software are maintained. However, it is not always a simple and straight-forward task for managed service providers (MSPs), especially in current times. With hybrid...

/ June 25, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: VMware privilege escalation vulnerabilities

Cybersecurity Threat Advisory: VMware privilege escalation vulnerabilities

VMware has released patches to address critical vulnerabilities impacting Cloud Foundation, vCenter Server, and vSphere ESXi, which could be exploited to achieve privilege escalation and remote code execution. The flaws, identified as CVE-2024-37079, CVE-2024-37080, and CVE-2024-37081, have high CVSS scores....

/ June 21, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical ASUS vulnerability

Cybersecurity Threat Advisory: Critical ASUS vulnerability

ASUS released a product security advisory urging customers to update their firmware to address a critical authentication bypass vulnerability impacting multiple of its router models. Review this Cybersecurity Threat Advisory to learn which router models are impacted and how to...

/ June 21, 2024
Deepfake technology
Deepfake technology: Why it’s a risk to your business

Deepfake technology: Why it’s a risk to your business

Deepfake technology, sometimes colloquially named ‘deepfakes’, has been getting a lot of attention in the mainstream news media in recent years. But now, it’s no longer just a harmless entertainment medium, it poses a significant threat to your business if...

/ June 20, 2024
Blockchain: The cybersecurity tool MSPs should keep an eye on

Blockchain: The cybersecurity tool MSPs should keep an eye on

With cyber threats coming from all directions, managed service providers (MSPs) need as many mitigation measures as possible. One often overlooked area is the emergence of blockchain technology as a cybersecurity tool. Several software solutions incorporate blockchain and have become...

/ June 20, 2024
Train employees
How MSPs can help clients build a human firewall

How MSPs can help clients build a human firewall

As cybercriminals step up their attacks, aided by AI and other technologies, it’s critical for managed service providers (MSPs) and their clients to reinforce cybersecurity awareness efforts among their employees to create a human firewall. According to the World Economic...

/ June 19, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Atlassian Confluence RCE vulnerability

Cybersecurity Threat Advisory: Atlassian Confluence RCE vulnerability

A new high-severity remote code execution (RCE) vulnerability known as CVE-2024-21683 has been discovered in Atlassian’s Confluence Data Center and Server. This vulnerability permits an attacker with an account on the service to gain server control. Review this Cybersecurity Threat...

/ June 18, 2024
New report: BEC accounts for 1 in 10 email attacks

New report: BEC accounts for 1 in 10 email attacks

Email-based social engineering threats are thriving as attackers continue to adapt and evolve their tactics to increase their chances of success. The latest analysis of email detection data by Barracuda researchers reveals that while the landscape remains dominated by mass phishing and general scamming attacks, there’s...

/ June 18, 2024