Category: Security

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical security flaw in Styra’s OPA

Cybersecurity Threat Advisory: Critical security flaw in Styra’s OPA

A recent security vulnerability was found in Styra’s Open Policy Agent (OPA) that can lead to New Technology LAN Manager (NTLM) hashes exposure if exploited. Continue reading this Cybersecurity Threat Advisory to learn the implications of this flaw and the...

/ October 25, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: FortiManager API vulnerability exploited

Cybersecurity Threat Advisory: FortiManager API vulnerability exploited

Fortinet has publicly disclosed a vulnerability in the FortiManager API. The vulnerability, tracked as CVE-2024-47575 and dubbed ‘FortiJump,’ has been exploited as a zero-day since at least June 2024. Organizations using vulnerable FortiManager versions should review this Cybersecurity Threat Advisory...

/ October 25, 2024
Tips to help your customers master the art of online safety

Tips to help your customers master the art of online safety

Strong cybersecurity awareness should be a priority every day, but October serves as a great reminder for all of us to stay vigilant. The Cybersecurity and Infrastructure Security Alliance (CISA) recommends the following simple yet powerful tips to boost online...

/ October 24, 2024
Barracuda Managed XDR AI
The future is now: AI-driven innovation in Barracuda XDR

The future is now: AI-driven innovation in Barracuda XDR

The rapid proliferation of cyberthreats is forcing the cybersecurity industry to rethink defenses. Innovative, AI-powered security solutions are urgently needed to protect against evolving attacker tactics, techniques, and procedures (TTPs) and sophisticated and potentially business-crippling AI-enabled threats. Barracuda Managed XDR is...

/ October 23, 2024
QR code phishing
Threat Spotlight: The evolving use of QR codes in phishing attacks

Threat Spotlight: The evolving use of QR codes in phishing attacks

QR code phishing, also known as quishing, is a type of social engineering attack. Cybercriminals try to trick victims into using the camera on their mobile phone to scan a QR code that goes to a malicious website to steal sensitive...

/ October 22, 2024
Cybersecurity Awareness Month is an opportunity to recommit to training

Cybersecurity Awareness Month is an opportunity to recommit to training

The core of Cybersecurity Awareness Month is in its name: Awareness. Experts agree that user training is the most effective and cost-efficient way to raise awareness and deter cyberattacks. Key statistics from SANS Institute’s 2024 annual cybersecurity awareness report reinforce this...

/ October 21, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Windows Kernel vulnerability used in espionage campaign

Cybersecurity Threat Advisory: Windows Kernel vulnerability used in espionage campaign

Researchers have observed the well-known cyber espionage group OilRig exploiting a now-patched privilege escalation vulnerability (CVE-2024-30088) in the Windows Kernel to conduct espionage operations. Read this Cybersecurity Threat Advisory to learn more about the espionage campaign and how to avoid...

/ October 17, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Mozilla Firefox zero-day vulnerability

Cybersecurity Threat Advisory: Mozilla Firefox zero-day vulnerability

A Mozilla Firefox critical zero-day vulnerability, CVE-2024-9680, has emerged. This vulnerability allows an attacker to have unauthorized access and potential remote code execution on the affected OS. Continue reading this Cybersecurity Threat Advisory for recommendations to remediate this threat. What...

/ October 17, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical Ivanti CSA flaw actively exploited

Cybersecurity Threat Advisory: Critical Ivanti CSA flaw actively exploited

Three Ivanti Cloud Service Appliance (CSA) vulnerabilities are being exploited and weaponized in the wild. Read this Cybersecurity Threat Advisory to learn how you can mitigate your risk of being targeted. What is the threat? The Ivanti CSA vulnerabilities, catalogued...

/ October 17, 2024
What we can learn from top tech advice we never listen to

What we can learn from top tech advice we never listen to

October 2024 marks the 21st Cybersecurity Awareness Month – four weeks of themed activity designed to raise awareness of cybersecurity and the importance of staying safe online. For 21 years, this annual event has exhorted people and businesses to take steps such...

/ October 16, 2024