Category: Security

Barracuda RMM
Barracuda RMM named CRN Annual Report Card MSP RMM overall winner

Barracuda RMM named CRN Annual Report Card MSP RMM overall winner

We are excited to share that Barracuda Networks’ remote monitoring and management (RMM) platform has been named the top Managed Services – MSP RMM Platform in this year’s CRN Annual Report Card (ARC), with an overall score of 82.7.  The...

/ August 12, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Windows SAC and SmartScreen design flaws

Cybersecurity Threat Advisory: Windows SAC and SmartScreen design flaws

A design flaw within Windows Smart App Control (SAC) and SmartScreen has allowed attackers to launch programs without triggering a security warning. Review this Cybersecurity Threat Advisory to find out how to prevent attackers from exploiting this flaw and keep...

/ August 7, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical zero-day vulnerability in Apache OFBiz

Cybersecurity Threat Advisory: Critical zero-day vulnerability in Apache OFBiz

CVE-2024-38856 is a new Apache OFBiz ERP system critical zero-day vulnerability. If you are using this system, please continue reading this Cybersecurity Threat Advisory to learn which steps you should take to mitigate your risk. What is the threat? Researchers...

/ August 7, 2024
Predictions for the future of AI in cybersecurity

Predictions for the future of AI in cybersecurity

Threat actors are improving their attacks by leveraging artificial intelligence (AI) in every way. AI makes every attack from deepfakes to credential stuffing cheaper, better, and faster. The good news is that the security industry also has access to AI capabilities, and AI-enhanced...

/ August 6, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: VMware ESXi flaw exploited by ransomware group

Cybersecurity Threat Advisory: VMware ESXi flaw exploited by ransomware group

A VMware ESXi vulnerability, known as CVE-2024-37085, has been discovered and it is actively exploited by several ransomware groups. Review this Cybersecurity Threat Advisory to learn how to limit the impact of this flaw. What is the threat? CVE-2024-37085 is an...

/ August 1, 2024
Threat Spotlight: How company size affects the email threats targeting your business

Threat Spotlight: How company size affects the email threats targeting your business

It takes less than a minute for someone to fall for a phishing scam. According to the 2024 Data Breach Investigations Report, the median time for a recipient to click on a malicious link after opening the email is 21 seconds, followed by...

/ July 30, 2024
10 Essential steps to transition from VPN to Zero Trust Access

10 Essential steps to transition from VPN to Zero Trust Access

In today’s evolving digital landscape, remote work has become the norm, and cyber threats are growing more sophisticated. Traditional VPN solutions are struggling to keep pace with these changes, prompting IT leaders to consider adopting a more robust and adaptive...

/ July 29, 2024
Does your MSP portfolio need a new security vendor?

Does your MSP portfolio need a new security vendor?

Changing technology vendors can be a daunting and stressful proposition for a managed service provider. Not only do you risk internal operational disruption and performance issues during and after the transition, but you also need to make the switch without...

/ July 25, 2024
Mobile devices
MSPs must prioritize mobile device security

MSPs must prioritize mobile device security

Last week, we had an overview of the increasing concerns and security challenges surrounding mobile devices. This week, we continue the conversation about mobile devices with Eric O’Neill. Eric is a former FBI counterterrorism and counterintelligence operative, cybersecurity keynote speaker,...

/ July 25, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Fake CrowdStrike updates observed in the wild

Cybersecurity Threat Advisory: Fake CrowdStrike updates observed in the wild

Threat actors are exploiting the recent disruption from CrowdStrike’s software update to target companies with a fake update that injects malware, including data wipers and remote access tools. Phishing emails are being used to distribute these malicious programs under the...

/ July 24, 2024