Category: Security

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Exploited Microsoft zero-day flaw

Cybersecurity Threat Advisory: Exploited Microsoft zero-day flaw

The hacker group Lazarus recently exploited a patched, zero-day flaw in Microsoft Windows. The vulnerability, tracked as CVE-2024-38193 with a CVSS score of 7.8, is a Bring Your Own Vulnerable Driver (BYOVD) vulnerability for Winsock. Continue reading this Cybersecurity Threat...

/ August 21, 2024
ransomware threat
Threat Spotlight: How ransomware for rent rules the threat landscape

Threat Spotlight: How ransomware for rent rules the threat landscape

This year’s annual review of ransomware attacks looks at the threat from two perspectives. First, for the third year running we’ve taken a global sample of reported ransomware attacks and analyzed what they tell us about ransomware attackers and their...

/ August 21, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical SAP vulnerabilities

Cybersecurity Threat Advisory: Critical SAP vulnerabilities

SAP issued its August 2024 security patch update which included two critical flaws that enable attackers to bypass authentication and fully compromise affected systems. Review the details in this Cybersecurity Threat Advisory to learn how you can protect your SAP...

/ August 19, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: EDRKillShifter, a growing threat

Cybersecurity Threat Advisory: EDRKillShifter, a growing threat

A cybercrime group associated with the RansomHub ransomware has been observed using a newly developed tool named “EDRKillShifter” to disable endpoint detection and response (EDR) software on compromised systems. This tool is the latest in a growing list of EDR-killing...

/ August 17, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Another zero-click Windows TCP/IP vulnerability

Cybersecurity Threat Advisory: Another zero-click Windows TCP/IP vulnerability

Another critical zero-click Windows vulnerability, identified as CVE-2024-38063, has been discovered in the Windows TCP/IP stack, affecting all systems with IPv6 enabled. Review this Cybersecurity Threat Advisory now to mitigate potential exploitation and protect your systems. What is the threat?...

/ August 16, 2024
cybersecurity
Will MSPs have more license requirements in their future?

Will MSPs have more license requirements in their future?

In 2019, Singapore became the first country in the world to require cybersecurity professionals to undergo a licensing and certification process. The trend has been slow to catch on. However, this year, Ghana and Malaysia joined Singapore in creating certification...

/ August 15, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical zero-click vulnerability in Microsoft Outlook

Cybersecurity Threat Advisory: Critical zero-click vulnerability in Microsoft Outlook

A critical zero-click remote code execution (RCE) vulnerability, identified as CVE-2024-30103, was recently discovered in Microsoft Outlook. This flaw allows malicious actors to execute arbitrary code on a victim’s system simply by opening a specially crafted email. Review the details...

/ August 15, 2024
Email security
Understanding email threats: The foundation of email security

Understanding email threats: The foundation of email security

In today’s digital landscape, email remains a fundamental communication tool for businesses. However, its ubiquity makes it a prime target for cyber threats. Understanding these threats is the first step in fortifying your email security. In this blog post, we’ll...

/ August 14, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Cisco Smart Install vulnerability

Cybersecurity Threat Advisory: Cisco Smart Install vulnerability

There has been a surge in malicious cyber activities exploiting the Cisco Smart Install (SMI) legacy feature. This legacy feature if enabled by default on many Cisco devices, allowing threat actors to gain unauthorized access to network devices, allowing them...

/ August 13, 2024
Barracuda RMM
Barracuda RMM named CRN Annual Report Card MSP RMM overall winner

Barracuda RMM named CRN Annual Report Card MSP RMM overall winner

We are excited to share that Barracuda Networks’ remote monitoring and management (RMM) platform has been named the top Managed Services – MSP RMM Platform in this year’s CRN Annual Report Card (ARC), with an overall score of 82.7.  The...

/ August 12, 2024