Catch IT

Vietnamese Hackers Deploy Python-Based Stealer via Facebook Messenger

A new phishing attack is leveraging Facebook Messenger to propagate messages with malicious attachments from a "swarm of fake and hijacked personal accounts" with the ultimate goal of taking over the targets' accounts. "Originating yet again from a Vietnamese-based group, this campaign uses a tiny compressed file attachment that [...]

By |2023-09-12T07:35:24-05:00September 11th, 2023|Categories: BMT Announcement, CyberSecurity|

Catch-IT: August Patch Tuesday Identifies Two Zero-Day Vulnerabilities

This month's Microsoft Patch Tuesday fixes two zero-day vulnerabilities, with both exploited in attacks and one of them publicly disclosed. Identified Vulnerabilities The first zero-day vulnerability, CVE-2023-36884, is a remote code execution vulnerability in the Windows Search component. This vulnerability can be exploited by an attacker to send a [...]

By |2023-08-09T10:23:36-05:00August 9th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Apple has issued security patches to address zero-day vulnerabilities

Apple has issued security patches to address zero-day vulnerabilities (CVE-2023-38606, CVE-2023-32409, and CVE-2023-37450) that have been exploited in attacks against iPhones, Macs, and iPads that seriously affect the digital security of Apple devices.  Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the [...]

By |2023-07-26T12:53:20-05:00July 26th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Apple Pushes out Emergency Fix for Actively Exploited Zero-Day

Apple has patched an actively exploited zero-day vulnerability (CVE-2023-37450) by releasing Rapid Security Response updates for iPhones, iPads and Macs running the latest versions of its operating systems. The vulnerability has been discovered in Apple products, which could allow for arbitrary code execution. Successful exploitation of this vulnerability could allow for arbitrary code [...]

By |2023-07-17T13:19:01-05:00July 17th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Multiple Vulnerabilities Found in Microsoft Products

Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution in the context of the logged on user. Depending on the privileges associated with the user, an attacker could then install programs; view, change, or delete data; or create new [...]

By |2023-07-13T13:13:33-05:00July 13th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Multiple Vulnerabilities Found in Google Android OS

Multiple vulnerabilities have been discovered in Google Android OS (CVE-2023-26083, CVE-2021-29256, and CVE-2023-2136), the most severe of which could allow for remote code execution. Android is an operating system developed by Google for mobile devices, including, but not limited to, smartphones, tablets, and watches. Successful exploitation of the most [...]

By |2023-07-06T10:15:48-05:00July 6th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: What to Look for in the Latest Phishing Scam

The latest phishing attack is targeting law firms and small businesses.   Claiming to be a construction company, supplier, or other specialty contractor seeking legal services, these bad actors are looking to gain access to the vast amounts of sensitive information these companies manage.  If successful, the attacker may attempt [...]

By |2023-06-26T13:50:19-05:00June 26th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Apple Releases Security Updates for Several Products

Multiple vulnerabilities have recently been discovered in Apple Products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with [...]

By |2023-06-22T10:29:45-05:00June 22nd, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Beware of AI Applications, Not All Are Created Equal

Artificial Intelligence (AI) is the latest rage right now.  As a result, many companies are hopping on the bandwagon with their version of chatbots, joining the likes of OpenAI, Google, Microsoft, etc.  Among these ranks are many counterfeit chatbots with crooks creating fake apps to swindle you.  Here is [...]

By |2023-06-13T11:20:39-05:00June 12th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: FCC Bans Approval of New Telecommunications Equipment for Entities on the Covered List

In 2022, the Federal Communications Commission (FCC) adopted rules to implement the Secure Equipment Act of 2021. Those rules, which in large part took effect on February 6, 2023, prevent manufacturers on the FCC’s Covered List – companies whose products are deemed to pose a risk by national security [...]

By |2023-05-08T15:22:52-05:00May 8th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

It’s Password Day! Our Tech Leaders List Best Practices for Secure Accounts

Not yet Cinco de Mayo, today we celebrate an equally festive day (in techie minds) - World Password Day!! Celebrated the first Thursday of May, Password Day was created to raise awareness about the importance of password security, the most prominent threats, and best practices for users to follow. [...]

By |2023-05-04T11:50:50-05:00May 4th, 2023|Categories: CyberSecurity, News|Tags: , , , , , |

Phishing Email Refresher – Know What to Look For!

Phishing emails continue to grow in volume and sophistication.  Hackers are doing due diligence and making emails more personalized, thus easier to fall for.  In addition, the availability of AI tools allows for generation of beautifully written, well-structured emails on just about any subject.  Foreign hackers can even write [...]

By |2023-04-27T12:26:45-05:00April 27th, 2023|Categories: CyberSecurity, News|Tags: , , , , , |
Go to Top