November 2020 News & Updates

CTC NEWS, Industry News, Monthly Newsletters, Tech news
Executive Summary We will be closed Thursday, 26 November 2020 and Friday, 27 November 2020 to celebrate Thanksgiving with family and friends. We are currently beta testing our device to tether your office network to your mobile phone / hotspot to provide emergency / backup Internet access to your office network. We hope to have a production version available mid December.Microsoft patched 112 vulnerabilities this month, tipping the 100 vulnerabilities in a month scale again. One update, rated as Important by Microsoft, is being chained with a Google Chrome vulnerability and exploited in the wild. Microsoft patched 112 vulnerabilities this month, 17 were classified [by Microsoft] as CRITICAL, 93 rated important and 2 rated moderate. One vulnerability patched this month , CVE-2020-17087, is rated by Microsoft as important but is…
Read More
I moved my website and now my email doesn’t work?  Help!

I moved my website and now my email doesn’t work? Help!

Industry News, Tech news
So, you've hired an awesome website designer to create a new website, got the new website setup and running and all kinds of awesome but now your email doesn't work. Believe it or not, it's something that happens a lot and it's usually a pretty simple fix. First of all, what's happening? In many cases, web designers and marketing companies have preferred companies that they use for web hosting. It may be because that hosting company has better pricing, a preferred management console (cPanel, Plesk, etc.), that the designer is more familiar with or the hosting company offers high commissions but it's rare that the designer wants to or will put the new site wherever the old site was. Without getting too deep in the weeds here, what's happening is…
Read More

October 2020 News & Updates

CTC NEWS, Industry News, Monthly Newsletters, Tech news
Executive Summary The US Treasury Department released an interesting advisory earlier this month suggesting they were prepared to file civil charges against the victims of ransomware who pay the ransom and anyone offering material support.Microsoft released patches for 87 vulnerabilities this month, making it the first month in 8 with less than 100 (and the first in 5 with less than 120).Twelve of this months patches address vulnerabilities considered by Microsoft to be critical.Adobe released a patch for a critical vulnerability in Flash Player that affects Windows, Apple / Mac, Linux and ChromeOS. Microsoft releases regular updates the second Tuesday of each month, often referred to as ‘Patch Tuesday’. These updates are categorized as Low, Moderate, Important or Critical. Details on the categories are available here. The updates can include…
Read More

Interesting advisory from the Treasury Dept. regarding ransomware

CTC NEWS, Industry News, Tech news
If you are a potential ransomware victim, an insurance company who provides ransomware protection, an IT Services provider or financial institution who may provide services to a ransomware victim, the latest advisory from the U. S. Treasury Department suggesting that you may be subject to civil penalties if you pay, recommend paying or facilitate the payment of a ransom may be worth a read. The U.S. Department of the Treasure's Office of Foreign Assets Control (OFAC) released an advisory on 1 October 2020 that suggests that it can and may pursue civil penalties against victims of ransomware who pay the ransom as well as third parties who recommend or facilitate ransomware payments. I've linked the advisory below and have copy / pasted some of the pertinent sections of the advisory…
Read More

Zoom Outage

Industry News, Tech news
We have received a number of reports that Zoom is down. We have looked into the matter and it does appear that Zoom is having problems, it looks like the issue is specific to the Zoom Web Client and that it is not impacting the Zoom desktop clients. Additional information is available from Downtime Detector via the link below: https://downdetector.com/status/zoom/
Read More

OpSec is hard. Lessons learned from the Twitter hack arrests.

Industry News, Tech news
As many of you may already know, social media platform Twitter was attacked on 15 July 2020 and 130 high-profile accounts were taken over and used in a scam to collect Bitcoin. During the attack, there was a lot of discussion and marvel at the scope and complexity of the attack and a $1 million bounty was offered to "those who successfully track down and provide evidence for bringing to justice the hackers / people" [behind the attack]. Coverage of the attack and 'buzz' on social media continued for a couple of days. Fast forward to this morning and one of the first things in my news feed was an article that the 17 year old alleged mastermind of the attack was arrested after authorities tracked him down using a…
Read More
Adobe issues emergency update to multiple products

Adobe issues emergency update to multiple products

Industry News, Tech news
Adobe has released emergency updates to address critical vulnerabilities in multiple products including Photoshop, Bridge and Prelude. The vulnerabilities could be used by an attacker to gain access to unpatched systems. Additional Info https://threatpost.com/critical-adobe-photoshop-flaws-patched-in-emergency-update/157581/
Read More