CISA statement on mitigating MFA and “PrintNightmare” exploits UPDATED 17 March 2022

CISA cyber security advice

This article was first posted on 16 March 2022 Here is some good cyber security advice from the United States Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) regarding increased cyber threat activity from the Russia Ukraine conflict. “PrintNightmare” is an escalation of an MFA …

New US law to force critical companies to reveal when they have been breached

This story has been doing the rounds for the past few weeks, as the US Government goes about creating a law to make companies, that form part of the critical infrastructure, declare publicly when they have been hacked. US Critical Infrastructure Companies Will Have to Report When They Are Hacked …

Anatomy of a malicious email – what you should be looking out for

Cybersecurity email threat

Brad Duncan has a very good article, with an example of the phishing email and infected package on SANS Internet Storm Centre today. Qakbot infection with Cobalt Strike and VNC activity – SANS Internet Storm Centre Being familiar with these types of phishing email is your organisation’s best defence. At …

Cyber criminals take sides

One aspect of the Russia Ukraine conflict that has reached the wider internet is the falling out of rival cyber criminal gangs as they take sides: Ukraine invasion opens political rift between cybercriminals • The Register