Blog

Browse the latest cybersecurity guidance from the team.

Cyber Weekly: Creds, signed drivers, and shutdowns

Three things happened this week that don't normally happen. A vendor told customers to physically shut down their servers. A ransomware strain used a Microsoft-signed driver to kill antivirus before encryption. And researchers confirmed that stolen FortiGate credentials are directly fueling ransomware deployments at industrial scale. That's not a normal Tuesday. Between July 1 and 13, we saw an AI agent run a complete ransomware attack without human help, 7 million driver's license records leak from one phished employee, and attackers calling businesses on Microsoft Teams pretending to be IT support. The credential-to-ransomware pipeline is no longer a theory. It's the operating model. Here's what happened and what you actually need to do about it.

Categories

Threats

Tags

Threat LandscapeSupply ChainRansomwareDetectionPhishingSMB Security
Read more

Cyber Weekly: BlueHammer, JadePuffer, and the AI threat surge

AI ran a ransomware attack start to finish with no human help. A CVSS 10.0 in remote support software used by every MSP. A 55% spike in European ransomware. And that was just one week. Here's what you need to know from June 29 through July 5.

Categories

Threats

Tags

Incident ResponseRansomwareSMB SecurityThreat Landscape
Read more

A practical model designed for momentum.

See how we scope engagements to reduce risk quickly while keeping delivery predictable.

See how we do it