GoDaddy Hack Affecting Managed WordPress Service

On November 17th, it was discovered that the email addresses and customer numbers of 1.2 million active and inactive GoDaddy Managed WordPress customers had been exposed to a malicious actor who used a compromised password to gain access.   GoDaddy states that the malicious actor has now been blocked from their system. They are able to […]

Spotting Disinformation on Social Media

“You are entitled to your own opinions, but you are not entitled to your own facts”   – Senator Daniel Patrick Moynihan Disinformation is a form of social engineering that aims to play on emotions, and to deceive, mislead and divide people. The goals of malicious actors may be varied, and include creating chaos and doubt […]

Fight the Ransomware Phish!

What is ransomware?  Ransomware is a type of malware and an increasingly common and highly destructive cyber threat. Once a single system or device is infected, ransomware spreads quickly to other connected systems and mounted devices.  Ransomware is used to target individuals, corporations, universities, hospitals, utility companies, cities and nation-states. Ransomware encrypts data and locks […]

Apple Emergency Updates Address a Spyware Vulnerability

Users of Apple devices are advised to immediately update their devices:  iPhone, iPad & iPod Touch iOS update to 14.8 Here are the instructions on how to update any of the above listed devices    MacOS Big Sur 11.6 & Mac OS Catalina has an update available as well Here are the instructions for MacOS updates, […]

Critical Confluence Update

Please be advised that US Cybercom has issued a notification warning of mass and escalating exploitation of a Confluence OGNL Server Webwork injection vulnerability that would allow for the injection of arbitrary code on a Confluence Server or Data Center instance. This vulnerability is tracked as CVE-2021-26084. It’s recommended that IT teams update immediately to […]

T-Mobile Breach

T-Mobile is investigating a data breach that they estimate impacts 7.8 million postpaid customers, 850,000 prepaid customers and “just over” 40 million past or prospective customers. Hackers claim that the number of impacted individuals is 100 million. T-Mobile has stated that they are confident that the attack entry point has been closed and they will […]

Beware of Fake Copyright Violation Notifications

As you may know, when notified of an alleged copyright infringement, your response is required. In cases where no response is forthcoming and the violation is alleged to have taken place on social media, the content at issue may be removed or you may get locked out of your account. To avoid falling victim to […]

Critical Microsoft Updates

CISA (Cybersecurity & Infrastructure Security Agency) has issued an advisory encouraging users and administrators to apply available Microsoft updates that address critical vulnerabilities in Microsoft software, some of which can be exploited to take control of an affected system. For more information, see Microsoft’s August 2021 Security Update summary.

Critical Apple Zero-Day Patch; Update Now

Apple has patched a zero-day vulnerability, which is being tracked as CVE-2021-30807.  What Apple Reports: “An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.”  According to Sophos: “When Apple notes that “an application may be able to execute […]

It’s Amazon Prime Day; Beware of Scams!

Shoppers beware, Amazon Prime Day, like any online event, will be exploited by cybercriminals seeking to steal your sensitive information or infect your devices with malware.  Be on the lookout for:  Any variation in Amazon’s web address, https://www.amazon.com/, in your browser’s address bar. Variations, such as amazon.co, indicate you’re in a spoofed site, in which […]