Please update your FortiGate

Industry News, Tech news
What is this about? In February of this year, Fortinet disclosed multiple vulnerabilities in the FortiOS firmware, the operating system for their entire line of products. The vulnerability was highly publicized by Fortinet, The U.S. Cybersecurity and Infrastructure Security Agency (CISA), news outlets, message boards and on social media and we reached out directly to all of our MyIT Clients. The vulnerability is significant because it's position in a network, often running on the Internet facing firewall protecting that network from Internet borne threats, means it's exploitable from anywhere on the Internet and successful exploitation could give an attacker full access to a vulnerable device. It's also important to note that state sponsored threat actors are known to favor (and target) these types of vulnerabilities. What do I need to…
Read More

CDK Breach – Threat actors now contacting CDK customers directly.

CTC NEWS, Tech news
We are working with a number of clients who have been impacted by what is, I believe, now officially being referred to publicly by CDK as an attack and, specifically, multiple attacks. This latest development (the threat actors are reaching out to CDK Customers directly) confirms that there was data, at the very least customer lists and contact info, taken during the attack. Details are sketchy and there are a lot of moving parts behind the scenes so this post will be a) short, b) in no particular order and c) vague but there are a number of common questions / concerns / comments that we're getting that I'm hoping to address with this post. For those who don't know who CDK is or why this may be important, CDK…
Read More

February 2021 News & Updates

CTC NEWS, Industry News, Monthly Newsletters
Executive Summary A remote attacker was able to breach a water treatment facility in an attempt to poison the water supply. The facility was running Windows 7, using shared passwords, Teamviewer for remote access and had no firewall in place. Thankfully, the attack was thwarted. Additional information is available here and here.We are excited to announce that we will be looking into more / different / better ways to interact with you over the coming weeks and months. I don't have a lot of details available to share at the moment but announcements will be made on our website and mailing list as we're able to share more.Quite a few of you noticed some changes that we're making to the MyIT systems including the ability to push critical updates (like…
Read More

Ubiquiti Breach – Change your password, enable 2FA

Industry News, Tech news
Ubiquiti has been notifying it's customers today (Monday, 11 January 2021) that it had "...became aware of unauthorized access to its systems hosted by a third-party cloud provider...". The notification email was relatively vague (screenshot below) but he point of the email was very clear, change your password and enable 2FA if you haven't already. According to the notification, the data that any potential attackers were able to get was minimal (name, email address, and the one-way encrypted password to your account and address and phone number if you provided it) but, to a skilled attacker, certainly not low value. If you have any Ubiquiti gear deployed, we would recommend taking this opportunity to change the password and enable 2FA. Additional information TechCrunch ArticleKrebs on Secutity
Read More

The Equifax Breach: Just How Bad Is It?

Industry News
For those of you that have just emerged from under your rock to read this article, I appreciate it, but if you haven't heard, a cyber security breach on one of the 3 main credit bureaus, Equifax, effecting over 143 Million Americans was announced this past week and some are touting this as one of the worst breaches in history. While we wait for the smoke to settle on this one, I wanted to put together a small collection of some of the key points I have heard being discussed and why they make this one of the more serious breaches in history. Severity of leaked data - The data reported to have been stolen includes the full names, address, birth date, social security number, and in some cases the…
Read More