Tag: CISA

CISA looks to rally RMM community to improve MSP security

CISA looks to rally RMM community to improve MSP security

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is now focusing on fixing systematic risks in the remote monitoring and management (RMM) tools that most managed service providers (MSPs) employ. The agency, as part of a Joint Cyber Defense Collaborative...

/ September 6, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Microsoft .NET vulnerability

Cybersecurity Threat Advisory: Microsoft .NET vulnerability

This Cybersecurity Threat Advisory highlights a patched security flaw in Microsoft .NET and Visual Studio products that has been cited for active exploitation. To mitigate this vulnerability, users are advised to apply security updates as soon as possible. What is...

/ August 16, 2023
Ransomware continues to impact schools

Ransomware continues to impact schools

The city of Des Moines, Iowa, is accustomed to seeing its schools close in January, but the closings usually involve snow or ice, not a cyberattack. On January 10 and 11 of this year, however, Des Moines Public Schools were...

/ February 23, 2023
Tech Time Warp: The malware RAT known as Regin

Tech Time Warp: The malware RAT known as Regin

On Nov. 25, 2014, the Cybersecurity and Infrastructure Agency (CISA) issued an alert about Regin, a “sophisticated backdoor Trojan used to conduct intelligence-gathering campaigns.” Journalists reported the entities affected by Regin included airlines, telecom companies, energy companies and private individuals....

/ November 25, 2022
Hackers prey on holiday MFA fatigue

Hackers prey on holiday MFA fatigue

Multifactor authentication (MFA) is the gold standard in offices around the world. We all know the drill: you use your username (often, and inadvisably, your email address) and, perhaps, as the password, the name of your first dog and the...

/ November 8, 2022 / 5 Comments
CISA warns industrial clients are vulnerable

CISA warns industrial clients are vulnerable

MSPs with industrial clients in their portfolios have a set of security issues that often differ from other verticals, and each vertical brings its own baggage. With healthcare clients, for example, it’s PHI and HIPAA regulations. With finance clients, there...

/ September 28, 2022
Cybersecurity summits and tools to improve training

Cybersecurity summits and tools to improve training

Anytime an MSP can expose its engineers and technicians to free training and education, it’s an opportunity that shouldn’t be passed up. One such opportunity is the upcoming “5th Annual Cybersecurity Summit” hosted by CISA and Morehouse College in Atlanta....

/ September 21, 2022 / 6 Comments
MSPs should prepare now for a quantum computing leap

MSPs should prepare now for a quantum computing leap

Quantum computing has the potential to disrupt many industries with its, until now, unimaginable speed and ability to parse and interpret data. This gradual proliferation of quantum computing will not only result in unprecedented efficiencies, but also create both opportunity...

/ September 15, 2022
CISA forges a path toward cybersecurity excellence for all businesses

CISA forges a path toward cybersecurity excellence for all businesses

The gold standard of cybersecurity best practices in the USA comes from The Cybersecurity and Infrastructure Security Agency (CISA). Within CISA is the Cybersecurity Advisory Committee (CSAC) which is comprised of 22 of the nation’s leading experts on cybersecurity, technology,...

/ July 12, 2022
Why MSPs need a robust patching program

Why MSPs need a robust patching program

A robust patching regimen is a pillar of “Cybersecurity 101.” “But sometimes, believe it or not, that is such a basic task that it gets overlooked. For instance, checking the oil in your car frequently is a must, but that...

/ June 14, 2022