Call Us Today! (866) 435-8364

Cyber

Critical Wormable Vulnerability Affecting Windows DNS Servers

Critical Wormable Vulnerability Affecting Windows DNS Servers On July 14, 2020 Microsoft publicly disclosed a critical vulnerability affecting Windows DNS Server. https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1350 As a reminder DNS (Domain Naming System) servers are used primarily to resolve IP addresses. DNS is used for locating and identifying computer services and devices on the internet, such as email servers,

2020-12-31T18:43:05-05:00July 15th, 2020|Cyber, Exploit|

OCIE issues a new Cybersecurity: Ransomware Alert

Today the OCIE issued a Ransomware Alert, highlighting an uptick in sophisticated social engineering and other cyber campaigns, designed to infiltrate the networks of financial institutions to access sensitive information and/or to deploy ransomware. As a reminder, ransomware actors typically demand monetary payment for the return of data. We can spend time regurgitating what was

Technology, security, and privacy in a Work From Home (WFH) environment

Will Work From Home (WFH) be an Alternative Asset Management Firm’ new norm? Firstly, let me address the question that comes to mind after reading the title, this isn’t just another article about how COVID-19 has affected us………now keep reading. I’m not writing this article to express my opinion about whether WFH is good or

Three UK-based Private Equity firms lose 1.3 million dollars to cyber criminals

  The team at Check Point identified that cyber criminals - dubbed the Florentine Banker - targeted three Private Equity firms and stole over $1.3 million dollars, with only about half the money recovered. The cyber criminals launched an email spear-phishing campaign targeting executives, and other high-profile employees in an attempt to gain access to

Are you considering fleeing Zoom? Don’t be so quick to do so.

Zoom has been under the spotlight over the past few weeks due to privacy and security issues. They were served with a class-action lawsuit over its data sharing practices, and come under scrutiny from the New York Attorney General’s Office. Headlines like this may make you want to “Zoom” for the hills, but hit the

Have you considered the work from home risks?

Have you made the decision to allow employees to work from home or are you still contemplating the idea? If work from home is or will be the preferred method for the unforeseeable future, there are some things you should do to maintain your compliance and security posture. Here are some risks you should be

Is your investment adviser business ready to deal with coronavirus?

When you hear coronavirus, what emotions does it invoke? Does it invoke any emotions whatsoever? Or is it just another thought that you pushed to the back of your mind? As an investment manager you are probably concerned about how it affects your portfolio, but have you thought about how it can affect your people

2020-12-31T18:43:33-05:00February 28th, 2020|Cyber, Hackers, Hedge Fund, Investment Adviser, Private Equity|

CDPwn – Cisco patches 5 critical vulnerabilities that affect millions of devices.

Five critical vulnerabilities found in various implementations of the Cisco Discovery Protocol (CDP) could allow attackers on a local network to take over enterprise devices, as discovered by IoT security company Armis. (It is important to note that attacks can not be performed remotely and requires attackers to have access to internal networks.) CDP is

2020-12-31T18:43:41-05:00February 6th, 2020|Cisco, Cyber, Vulnerability|

The SEC’s OCIE Releases Their Observations From Examinations

On January 27, 2020 the Securities and Exchange Commission Commission's Office of Compliance Inspections and Examinations issued examination observations related to cybersecurity and operational resiliency practices undertaken by market participants. We reviewed this alert and simplified it into major points that are easily digestible. The OCIE provided the following observations: Governance and Risk Management Senior leadership is

2020-12-31T18:43:45-05:00January 30th, 2020|Cyber, Regulatory, SEC|

Citrix ADC CVE-2019-19781 Public Exploits Available

On December 17, 2019, Citrix published an article describing vulnerability affecting the Citrix Application Delivery Controller (ADC) and Citrix Gateway formerly known as NetScaler ADC and Gateway. The vulnerability was assigned the following CVE number: CVE-2019-19781 : Vulnerability in Citrix Application Delivery Controller and Citrix Gateway leading to arbitrary code execution The vulnerability affects all product

2020-12-31T18:43:51-05:00January 12th, 2020|Cyber, Exploit|
Go to Top