Category: Security

Cybersecurity Threat Advisory: Supply chain attack compromised 3CXDesktopApp
A recent compromise has caused trojanized versions of the 3CXDesktopApp executable to be distributed on 3CX’s website as well as pushed through updates. The malicious version of the 3CX application is used to sideload malicious .DLL files. These .DLL files...

Repeat ransomware attacks: What’s putting victims at risk?
Despite growing awareness of the risk and impact of ransomware, more effective security measures, and international collaborations to bring down attack groups and disrupt their criminal operations, ransomware remains an enduring and evolving cyberthreat. Every organization is a potential target.

The cybersecurity impact of recent bank failures
MSPs that have financial clients in their portfolios could well be forgiven for being a little jittery. Even industry experts were caught off guard by the sudden struggles in the banking sector. One bank sunk due to old-fashioned business practices,...

What is cyber liability insurance?
As the threat landscape evolves, an increasing number of businesses are turning to cyber liability insurance as a way to help mitigate risk. If you are considering cyber liability insurance for your organization, there are a few things that are...
Cybersecurity Threat Advisory: Microsoft Outlook elevation of privilege vulnerability
Last week, Microsoft Threat Intelligence discovered a critical elevation of privilege (EoP) vulnerability in Microsoft Outlook that allows for New Technology LAN Manager (NTLM) credentials to be stolen. Threat actors can potentially authenticate, escalate privileges, and gain access to the...

Navigating the National Cybersecurity Strategy for MSPs
Changes to cybersecurity policy and strategy at the Federal Government level means MSPs will have to navigate an increasingly complex regulatory environment in the years ahead. “That is not surprising as it often takes a little while for the law...

Threat Spotlight: 3 novel phishing tactics
As cybercriminals work to make phishing attacks more effective, they are continually introducing new techniques and tactics to try to trick victims, bypass security, and avoid detection.

Cybersecurity Threat Advisory: New phishing campaigns
Cybercriminals have started new phishing campaigns that targets organizations and individuals who were members of affected banks. Fraudulent messages are being sent in an attempt to trick victims into revealing personal/account information such as social security numbers, passwords, and account...