What’s New

Catch-IT: Latest Phishing Scam Using Docusign Platform

The NJCCIC received reports of a phishing scam abusing the legitimate Docusign platform and impersonating a New Jersey organization. In the Docusign envelope email notification, the impersonated organization’s name appears in the sender’s display name and the body of the email, and the sender’s domain name displays the legitimate [...]

By |2025-08-14T14:06:59-05:00August 14th, 2025|Categories: BMT Announcement|

Microsoft Patch Tuesday, August 2025 Edition

Microsoft today released updates to fix more than 100 security flaws in its Windows operating systems and other software. At least 13 of the bugs received Microsoft’s most-dire “critical” rating, meaning they could be abused by malware or malcontents to gain remote access to a Windows system with little or [...]

By |2025-08-27T02:09:10-05:00August 12th, 2025|Categories: BMT Announcement|

Antivirus vs. Internet Security: Know the Difference

Protecting your business’s digital assets is one of your biggest priorities, meaning you often have to ask yourself tough questions about the best way to keep things secure. Making the right choices becomes even more of a challenge when you aren’t a tech guru and only have a basic [...]

KrebsOnSecurity in New ‘Most Wanted’ HBO Max Series

A new documentary series about cybercrime airing next month on HBO Max features interviews with Yours Truly. The four-part series follows the exploits of Julius Kivimäki, a prolific Finnish hacker recently convicted of leaking tens of thousands of patient records from an online psychotherapy practice while attempting to extort the [...]

By |2025-08-27T02:09:15-05:00August 8th, 2025|Categories: BMT Announcement|

Attacks prompt immediate SonicWall SSL VPN deactivation warning – UPDATED

SonicWall said Monday that it is investigating whether a recent surge in attacks targeting its Gen 7 firewalls is related to a possible zero-day vulnerability or exploitation of an existing flaw.  The warnings follow an Aug. 1 Arctic Wolf report about hackers deploying the Akira ransomware variant in attacks that began on July [...]

By |2025-08-07T09:17:13-05:00August 6th, 2025|Categories: BMT Announcement|

Who Got Arrested in the Raid on the XSS Crime Forum?

On July 22, 2025, the European police agency Europol said a long-running investigation led by the French Police resulted in the arrest of a 38-year-old administrator of XSS, a Russian-language cybercrime forum with more than 50,000 members. The action has triggered an ongoing frenzy of speculation and panic among XSS denizens [...]

By |2025-08-27T02:09:36-05:00August 6th, 2025|Categories: BMT Announcement|

Scammers Unleash Flood of Slick Online Gaming Sites

Fraudsters are flooding Discord and other social media platforms with ads for hundreds of polished online gaming and wagering websites that lure people with free credits and eventually abscond with any cryptocurrency funds deposited by players. Here’s a closer look at the social engineering tactics and remarkable traits of [...]

By |2025-08-04T13:32:19-05:00July 30th, 2025|Categories: BMT Announcement|

Update: Microsoft Releases Guidance on Exploitation of SharePoint Vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) released an updated alert to reflect newly released information from Microsoft, and to correct the actively exploited Common Vulnerabilities and Exposures (CVEs), which have been confirmed as  CVE-2025-49706 , a network spoofing vulnerability, and CVE-2025-49704, a remote code execution (RCE) vulnerability. CISA is aware of [...]

By |2025-07-25T11:17:14-05:00July 25th, 2025|Categories: BMT Announcement|

Phishers Target Aviation Execs to Scam Customers

KrebsOnSecurity recently heard from a reader whose boss’s email account got phished and was used to trick one of the company’s customers into sending a large payment to scammers. An investigation into the attacker’s infrastructure points to a long-running Nigerian cybercrime ring that is actively targeting established companies in the [...]

By |2025-07-24T14:08:57-05:00July 24th, 2025|Categories: BMT Announcement|

Catch-IT: Vulnerability being Exploited on Microsoft SharePoint Servers

Microsoft has issued an emergency fix to close off a vulnerability in Microsoft’s widely-used SharePoint software that hackers have exploited to carry out widespread attacks on businesses and at least some U.S. government agencies.  The company issued an alert to customers Saturday saying it was aware of the zero-day exploit being [...]

Microsoft Releases Guidance on Exploitation of SharePoint Vulnerabilities

On Sunday, July 20, Microsoft Corp. issued an emergency security update for a vulnerability in SharePoint Server that is actively being exploited to compromise vulnerable organizations. The patch comes amid reports that malicious hackers have used the SharePoint flaw to breach U.S. federal and state agencies, universities, and energy [...]

By |2025-07-25T10:11:20-05:00July 21st, 2025|Categories: BMT Announcement|

Poor Passwords Tattle on AI Hiring Bot Maker Paradox.ai

Security researchers recently revealed that the personal information of millions of people who applied for jobs at McDonald’s was exposed after they guessed the password (“123456”) for the fast food chain’s account at Paradox.ai, a company that makes artificial intelligence based hiring chatbots used by many Fortune 500 firms. Paradox.ai [...]

By |2025-07-18T02:08:14-05:00July 17th, 2025|Categories: BMT Announcement|
Go to Top