Tag: cybersecurity

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: SilverFox deploys ValleyRAT rootkit

Cybersecurity Threat Advisory: SilverFox deploys ValleyRAT rootkit

SilverFox threat actors are actively running a ValleyRAT campaign to bypass security controls, escalate privileges, and maintain deep system access while avoiding detection. Organizations should treat this as a high-priority threat. Continue reading this Cybersecurity Threat Advisory to protect against...

/ July 10, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Adobe ColdFusion exploited

Cybersecurity Threat Advisory: Adobe ColdFusion exploited

Adobe has confirmed that attackers are actively exploiting CVE-2026-48282, a maximum-severity vulnerability in Adobe ColdFusion. Threat intelligence reports indicate exploitation began within hours of disclosure. The flaw affects ColdFusion versions 2025.9, 2023.20, and earlier, allowing remote code execution on unpatched...

/ July 9, 2026
Incident management issues rising in the age of AI

Incident management issues rising in the age of AI

Managed service providers (MSPs) should take note: as the volume of code created using artificial intelligence (AI) coding tools continues to grow, so does the number of incidents that may require their attention. A survey of 406 IT decision-makers at...

/ July 9, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: EvilTokens targets Microsoft 365

Cybersecurity Threat Advisory: EvilTokens targets Microsoft 365

Recent research describes a phishing kit called EvilTokens. It is actively targeting organizations in the U.S. and Europe, especially those in finance and other high-value sectors. Barracuda recommends deploying browser-aware phishing analysis and strengthening Microsoft 365 OAuth and device-code controls....

/ July 8, 2026
How MSPs can fix burnout (hint: it’s not more people)

How MSPs can fix burnout (hint: it’s not more people)

SOC burnout has become a festering issue in the MSP world. Symptoms include analysts cycling through client environments, drowning in alerts, and quietly heading for the door. But the experts working closest to the problem say the conversation has been...

/ July 7, 2026
Nation-state tactics are now in criminal hands

Nation-state tactics are now in criminal hands

Government-backed hackers once reserved these techniques for targeted campaigns. Today, those techniques appear in everyday malware. For MSPs, the distinction between “targeted” and “opportunistic” attacks is disappearing. “The line between nation-state attacks and criminal attacks is disappearing faster than many...

/ June 30, 2026
Tech Time Warp: Nine years since the NotPetya nightmare

Tech Time Warp: Nine years since the NotPetya nightmare

With damages estimated at $10 billion worldwide, the NotPetya malware attack of late June 2017 was a nightmare scenario by any standard. But several aspects of the malware — the work of Russian military intelligence officers — were particularly fiendish:...

/ June 26, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: FortiBleed credential exposure campaign

Cybersecurity Threat Advisory: FortiBleed credential exposure campaign

Recent reporting has detailed an active credential exposure campaign dubbed “FortiBleed” that targets internet-facing FortiGate firewall devices. The activity involves a custom tool, often referred to as FortiGateSniffer, that enables attackers to harvest sensitive information. This includes VPN credentials and...

/ June 26, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: PAN-OS GlobalProtect exploit

Cybersecurity Threat Advisory: PAN-OS GlobalProtect exploit

Palo Alto Networks has confirmed that attackers are actively exploiting a security flaw in PAN-OS GlobalProtect, tracked as CVE-2026-0257 with a CVSS score of 7.8. The vulnerability affects both on-premises firewalls and Prisma Access. Review the Cybersecurity Threat Advisory for...

/ June 22, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: NinjaOne RMM phishing campaign

Cybersecurity Threat Advisory: NinjaOne RMM phishing campaign

A recent phishing campaign is using a legitimate remote access tool to take over victims’ computers, all without deploying malware. This active operation currently targets Brazilian organizations. Attackers trick employees into installing a legitimate software agent that hands over remote...

/ June 22, 2026