Blog

  • Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    You click a link, sign in, approve the MFA prompt, and get on with your day. Completely unaware that someone else just logged into your account at the same moment. That scenario surprises many businesses, particularly those that rely on multi-factor authentication (MFA) to protect cloud accounts. But this is exactly how Adversary-in-the-Middle (AiTM) phishing…

  • The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    MFA is a strong front-door lock. But it’s not the only thing that decides whether someone can get in. After you sign in, your browser keeps you logged in using a session token (often stored as a cookie). It’s the digital version of a wristband at an event: once you’ve been checked, the wristband proves…

  • The “Legacy Debt” Audit: Identifying the 3 Oldest Risks in Your Server Room

    The “Legacy Debt” Audit: Identifying the 3 Oldest Risks in Your Server Room

    The most dangerous thing in a server room is often the phrase, “Don’t touch that.” It’s usually said with a half-joke and a grimace. It refers to the old box that “still works”, runs something important, and has survived so many fixes and workarounds that nobody feels confident changing it anymore. That’s legacy debt.  Not…

Archived posts

  • How Can Small Businesses Embrace the Cashless Revolution? 

    The world has gone digital. We see it everywhere people shop for goods and services. Cash, check, or debit used to be the norm. Now, there are payment wallets that people expect businesses to accept. They include things like Apple Pay, Google Pay, PayPal and more. Small businesses need to keep pace with these new…

  • Watch Out for Google Searches – “Malvertising” Is on the Rise!  

    There are many types of malware. One of the most common is called “malvertising.” It crops up everywhere. Including social media sites and websites. You can also see these malicious ads on Google searches. Two things are making malvertising even more dangerous. One is that hackers use AI to make it very believable. The other…

  • Cyber Experts Say You Should Use These Best Practices for Event Logging

    Today’s businesses are no stranger to the word cybersecurity. They are facing a growing wave of cyberattacks. These come from ransomware to sophisticated phishing schemes. How do you stand ahead of these threats? A strong cybersecurity strategy is essential. One crucial component of this strategy is event logging. It’s one that not every business owner…