Results for: ransomware

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RMM-based phishing attacks

Cybersecurity Threat Advisory: RMM-based phishing attacks

An ongoing phishing campaign has been observed targeting multiple vectors and leveraging legitimate Remote Monitoring and Management (RMM) tools to establish persistent remote access on compromised hosts. Read this Cybersecurity Threat Advisory to mitigate risk for you and your clients....

/ May 14, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Blue Hammer zero-day

Cybersecurity Threat Advisory: Blue Hammer zero-day

A researcher leaked a zero‑day vulnerability dubbed “BlueHammer” to protest Microsoft’s handling of the private disclosure process. Although the published code contains implementation bugs, attackers with local access can still use it to compromise affected systems. Read this Cybersecurity Threat...

/ May 8, 2026
How MSPs can convey threats without the panic

How MSPs can convey threats without the panic

Managed service providers encounter a steady stream of cyber threats, and communicating those risks to clients is both an art and a diplomatic exercise. “The fact is, if I told my clients about every single threat I saw every day,...

/ April 14, 2026
What does a “right-size” incident response plan look like?

What does a “right-size” incident response plan look like?

Often, when a cyber incident occurs, the response is ad hoc—a reactive, seat‑of‑the‑pants scramble. After all, every incident is different, so how can you plan for what you don’t know? But just as every building fire is different, there are...

/ April 7, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RoadK1ll Node.js WebSocket implant

Cybersecurity Threat Advisory: RoadK1ll Node.js WebSocket implant

Recent reporting has identified a Node.js–based post-exploitation implant known as RoadK1ll, observed in real-world intrusions as a lateral movement and network pivoting tool. Read this Cybersecurity Threat Advisory to protect you and your clients’ environments. What is the threat? RoadK1ll...

/ April 3, 2026
World Backup Day: A timely reminder for MSPs to lead with resilience

World Backup Day: A timely reminder for MSPs to lead with resilience

It’s World Backup Day! This is a global reminder that data loss is far more common—and more damaging—than many organizations realize. In fact, 21 percent of people have never backed up their data, while 29 percent of data loss incidents...

/ March 31, 2026 / 8 Comments
Making the case for a layered email security approach

Making the case for a layered email security approach

MSPs have a lot of ground to cover with their clients. In addition to providing protection, there’s also persuasion. Many MSPs find themselves needing to justify additional cybersecurity investments at a time when budgets are under scrutiny—and that can make...

/ March 30, 2026
How MSPs grow email lists using LinkedIn

How MSPs grow email lists using LinkedIn

Key Takeaways Treat LinkedIn as the top of a list-building strategy, not the destination. Offer practical resources MSP buyers care about to earn email opt-ins. Use a Pillar–Cluster–Dot–FAQ framework to turn one topic into ongoing LinkedIn engagement. Most IT providers...

/ March 25, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Interlock targets Cisco Secure FMC in zero-day

Cybersecurity Threat Advisory: Interlock targets Cisco Secure FMC in zero-day

Recent reporting from Amazon Threat Intelligence and multiple security researchers confirms that the Interlock ransomware group is actively exploiting a critical remote code execution vulnerability in Cisco Secure Firewall Management Center (FMC) Software. Read this Cybersecurity Threat Advisory to protect...

/ March 24, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Active exploitation of Microsoft SharePoint RCE

Cybersecurity Threat Advisory: Active exploitation of Microsoft SharePoint RCE

A critical remote code execution (RCE) vulnerability in Microsoft SharePoint caused by the deserialization of untrusted data has been discovered. Authentication is not required by attackers on unprotected systems. Review the Cybersecurity Threat Advisory now to protect you and your...

/ March 23, 2026