720-891-1663

Telcos Not Doing Good at Preventing SIM Swap Attacks

A SIM is the (usually) hardware card that gives your phone its “personality”.  The SIM is tied to the carrier and contains all the information that the phone needs to talk to your carrier. As users SLOOOOWLY migrate to using text messages as an extra layer of authentication for logging in to a variety of […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending January 10, 2020

Albany Int’l Airport Hit By Ransomware via MSP In what is becoming an all too common story, the Managed Service Provider that supported Albany, NY’s airport, Logical Net of Schenectady, NY, was hacked and from there, the hackers were able to connect to the airports administrative network and infect it with REvil ransomware, the same […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending January 3, 2020

Starbucks Leaves Their API Key in a Public Github Repository Vulnerability hunter Vinoth Kumar found a Starbucks API key in a public Github repo. The flaw was set to CRITICAL after they verified that the key gave anyone access to their Jumpcloud (An AD alternative) directory. The problem was reported on October 17th and it […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Cloud Hopper Attack Bigger Than Reported. MUCH Bigger

I hate to keep beating on this drum, but the message is important and the news keeps getting worse. Yesterday I wrote about yet another managed service provider that was hit by a ransomware attack and a number of their clients had their data encrypted. Today the Wall Street Journal is reporting that the Cloud […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Is This Becoming a Thing-Another MSP Ransomed

A couple of weeks ago it was a Managed Service Provider in Denver.  A few weeks before that, it was one in Wisconsin.  This week it is Irvine, CA based Synoptek with more than 1,100 customers including state and local governments, financial services and healthcare.  Their web site says that they did more than $100 […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending December 27, 2019

Russia Claims to Have Successfully Disconnected from the Internet Russia has been planning to install an Internet kill switch for a couple of years now.  Of course, we have no clue what that means.  Likely, it means that they have their own DNS servers so that they do not have to resolve web site addresses […]

Continue reading → [DISPLAY_ACURAX_ICONS]