Blog

Browse the latest cybersecurity guidance from the team.

SonicWall SMA 1000 Zero-Days: CVSS 10.0, Patch Now

Two critical SonicWall SMA 1000 flaws are being actively exploited in the wild. A CVSS 10.0 unauthenticated SSRF combined with a code injection bug gives attackers full appliance compromise from zero access. And yes, they are stealing your MFA seeds.

Categories

Threats

Tags

DetectionSMB SecurityIncident ResponseThreat Landscape
Read more

Patchageddon: 570 flaws, 2 zero-days in the wild

Microsoft just dropped the largest security update in company history, with 570+ vulnerabilities, two zero-days already being exploited, and a third publicly disclosed with no patch in sight. Here's what you need to patch first and why your triage list just got a lot longer.

Categories

Threats

Tags

Least PrivilegeIncident ResponseThreat LandscapeMicrosoft 365
Read more

Cyber Weekly: BlueHammer, JadePuffer, and the AI threat surge

AI ran a ransomware attack start to finish with no human help. A CVSS 10.0 in remote support software used by every MSP. A 55% spike in European ransomware. And that was just one week. Here's what you need to know from June 29 through July 5.

Categories

Threats

Tags

Incident ResponseRansomwareSMB SecurityThreat Landscape
Read more

A practical model designed for momentum.

See how we scope engagements to reduce risk quickly while keeping delivery predictable.

See how we do it