Category: Security

Threat Spotlight: Attackers use 15-year-old tactics to target security flaws

Threat Spotlight: Attackers use 15-year-old tactics to target security flaws

Attackers are quick to exploit new opportunities for attack. The reporting of the Log4J bug in December 2021, for example, is believed to have led to a 150% increase in exploit activity the following year. However, an analysis of Barracuda’s threat detection...

/ June 26, 2023 / 1 Comment
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New custom malware discovered

Cybersecurity Threat Advisory: New custom malware discovered

Researchers have uncovered a year-long, highly targeted cyber-attack utilizing custom malware called RDStealer. The bespoke malware campaign against an East Asian IT company has been active for more than a year with the intent to compromise credentials and exfiltrating data....

/ June 22, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical vulnerabilities with ASUS routers

Cybersecurity Threat Advisory: Critical vulnerabilities with ASUS routers

ASUS recently released critical security updates for several vulnerabilities across multiple router models. Two out of the nine vulnerabilities are categorized as Critical, including an out-of-bounds write vulnerability and a memory corruption flaw. Barracuda SOC recommends applying the latest security...

/ June 21, 2023
Bend, don’t break: How attackers and defenders learn from each other

Bend, don’t break: How attackers and defenders learn from each other

For more than 30 years, cyber attackers and security teams have battled it out across the digital landscape, one side looking for gaps and flaws to target, the other side fixing and protecting them. The pace of the conflict is...

/ June 21, 2023
MSPs and the next wave of cybersecurity AI solutions

MSPs and the next wave of cybersecurity AI solutions

While cybersecurity researchers tend to revel in discovering vulnerabilities, many of the ones that do get disclosed require cybercriminals to have extensive expertise to exploit. Most cybercriminals today remain focused on launching attacks that use tried and true techniques and...

/ June 19, 2023
An expert’s view for MSPs to stay ahead of the cybersecurity talent shortage

An expert’s view for MSPs to stay ahead of the cybersecurity talent shortage

While AI has been dominating the headlines in cyber circles throughout 2023, another less glamorous topic is just as acute: the cybersecurity talent shortage. We’ve covered this topic in the past, but the challenge continues. In the 2022 Cybersecurity Workforce...

/ June 15, 2023
Security is more than table stakes

Security is more than table stakes

Security has always seemed to be at the top of most organizations’ mind. At the same time, it is often a lower priority when setting aside discrete investment. Outsourcing functions to an MSP can be seen by many as a...

/ June 13, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New remote control escalation vulnerability – updated

Cybersecurity Threat Advisory: New remote control escalation vulnerability – updated

Fortinet recently released updates for several products utilizing SSL-VPN functionalities after discovering a critical vulnerability. The major flaw discovered gives the ability to an attacker to perform an unauthenticated remote code execution on devices. Barracuda SOC recommends updating Fortinet products...

/ June 12, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: “File Archiver in the Browser” exploits

Cybersecurity Threat Advisory: “File Archiver in the Browser” exploits

A new skilled and clever “File Archiver in the Browser” phishing trick that utilizes ZIP domains has surfaced. Bad actors can employ this technique to deceive users into downloading malicious files, compromise systems, and potentially gaining unauthorized access. What is...

/ June 7, 2023
5 Levels of security operations center maturity

5 Levels of security operations center maturity

For MSPs that offer cybersecurity services, the security operations center (SOC) has emerged as a critical strategy for protecting client networks. While security software tools can help prevent some types of attacks, the SOC offers the threat detection, investigation and...

/ June 7, 2023 / 9 Comments