Actively Exploited Zero-Day, Critical RCEs Lead Microsoft Patch Tuesday

December 10, 2024 at 06:09PM Microsoft’s December 2024 Patch Tuesday introduces a significant security update addressing a Windows zero-day vulnerability (CVE-2024-49138) and 71 patches, bringing the year’s total to 1,020. Critical issues involve exploits in LDAP, Hyper-V, and RDP services, necessitating immediate action from security administrators to mitigate risks. ### Meeting Takeaways – December 2024 … Read more

How to master endpoint security

November 22, 2024 at 06:20AM The “Secure Everything for Every Endpoint” webinar, hosted by Tim Phillips and featuring Sam Duckett from Kaseya, addresses the complexities of endpoint security. Key takeaways include the importance of integrated management, automation to diminish human error, and a unified strategy to enhance protection across diverse devices. The webinar is available … Read more

IT Security Centralization Makes the Use of Industrial Spies More Profitable

November 1, 2024 at 01:06PM Organizations are realizing the importance of IT security due to recent financial and reputational damages. Centralized IT security controls pose significant risks, enabling espionage and potential abuse. To combat these threats, systems should prioritize decentralization, promote a zero-trust culture, and address personal device access concerns. ### Meeting Takeaways #### Key … Read more

Google to let businesses create curated Chrome Web Stores for extensions

October 23, 2024 at 12:06PM Google will soon introduce an “Enterprise Web Store” for Chrome and ChromeOS, allowing organizations to curate browser extensions for improved productivity and security. The platform enables better management, standardizes tools, and offers insights into extension usage, alongside new AI features and security controls for Chrome Enterprise users. ### Meeting Takeaways: … Read more

Former IT manager pleads guilty to attacking high school network

December 18, 2023 at 10:03AM Former IT manager of a New Jersey high school, Conor LaHiff, admitted to cyberattacking his ex-employer following termination. He pleaded guilty to unauthorized damage to protected computers, targeting Apple and IT administrator accounts. His actions caused over $5,000 in losses to the school. LaHiff faces up to 10 years in … Read more