SolarWinds Hackers Hacked Multi-factor Authentication!!

Wait a second … I thought that MFA (Multi-Factor Authentication) was set up to prevent some attacks? The Googleblog post from a couple of years ago: Security Google blog had some data that proved the efficacy of MFA in this image: So MFA (or 2FA Two Factor Authentication) does prevent a number of potential attacks. … Read more

Criminal Hackers Attacking Hospitals Using Ransomware

If you know how to search – the keywords are important, then you will find other interesting bits of information. Talos Blogpost:  Cisco Talos Advisory on Adversaries Targeting the Healthcare and Public Health Sector Use keywords:  Indicators of Compromise – and cobalt strike. Because interesting to note cobalt strike is a tool that the bad … Read more

What Are Top 3 Cybersecurity Worries For SMB?

Since it is October and it is Cybersecurity Awareness month, I like to acknowledge this event at least once – so why not do a top 3 items to be worried about? Out of the myriad of items to discuss from past discussions: #1   Phishing and spam attacks through email, text, or any level (social … Read more

VPN Vulnerabilities show Work From Home(WFH) Weakness

NSA has a cybersecurity  advisory It says that Pulse SecureTM, Palo Alto GlobalProtectTM, and Fortinet FortigateTM VPN(Virtual Private Network) products have vulnerabilities 3 of them VPN CVEs being currently exploited include but may not be limited to: CVE-2019-11510 and CVE-2019-1153 which allow for remote arbitrary file downloads and remote code execution on Pulse Connect Secure … Read more