Microsoft May 2024 Security Updates

There are known exploits for 2 of the new vulnerabilities released. Neither of these expose remote code execution. This patch is critical for SharePoint systems. Exploit code is expected for a vulnerability that allows an attacker to execute any desired code on the...

It Happened to Us

by “Anonymous” For a couple of days we were getting calls to our home phone, but when we answered, no one was there. It seemed odd—were they prank calls? Fundraising? No caller ID was displayed. Then, we realized that my husband’s email accounts hadn’t received the...

The Importance of Phishing Campaigns

Have you noticed how many emails you get every day? According to earthweb.com, the average person receives 100 to 120 emails per day. Surprisingly, 1 in every 99 of those emails is a phishing attack and 85% are spam. Every day hundreds of millions of phishing emails...

April Microsoft Security Update

There are no known exploits for the new vulnerabilities released. Guidance will be adjusted if and when exploits are released publicly.  The most significant patches are to ODBC drivers for connections to SQL server and Windows Defender SmartScreen...

March Microsoft Security Updates

There are no published exploits for any of the vulnerabilities released for March. Guidance will be adjusted if and when exploits are released publicly.  The most significant patches are to Hyper-V, Exchange Server and OMI for Linux servers.   Expedited patching is...

Apple Security Updates for most iOS and iPadOS devices

Apple has released multiple security patches including most current iOS and iPadOS devices. A score for the vulnerabilities is still being calculated and has not been released. We highly recommend testing and deploying the latest fixes. There are known exploits...

Microsoft Patch Tuesday February 2024

There are critical patches that do not have published exploits. Guidance will be adjusted if and when exploits are released publicly.  The most significant patches are to Exchange Server and Microsoft Office.   Expedite patching for any system using Exchange...

VMware vCenter updates

VMware vCenter users are encouraged to review the information for VMSA-2023-0023.1 and ensure they are running vCenter version that are not impacted by the vulnerabilities (CVE-2023-34048 and CVE-2023-34056)

Update web browsers including Chrome and Firefox

Google has released updates to remediate known exploited issues in their browser. Please update Chrome to versions higher than 120.0.6099.224 to prevent attacks using CVE-2024-0519. Please review vendor specific notices for browsers derived from Chrome including...