Security

Catch-IT: Using Chrome? Google just released an emergency update

Google just released an emergency update for Chrome.  In a new blog post, Google confirmed the discovery of the Zero Day vulnerability and it impacts Chrome on Windows, Mac and Linux. Google also confirmed it is aware that an exploit exists in the wild. The vulnerability, CVE-2023-2033, stems from a “Type [...]

By |2023-04-17T12:39:40-05:00April 17th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Time to Patch Up Your Apple Device!

Apple has pushed out security updates that fix two actively exploited zero-day vulnerabilities (CVE-2023-28205, CVE-2023-28206) in macOS, iOS and iPadOS. CVE-2023-28205 is a use after free issue in the WebKit browser engine, which is used by Safari and all web browsers on iOS and iPadOS. The flaw can be triggered via [...]

By |2023-04-12T11:34:47-05:00April 12th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Adobe Releases Security Updates For Multiple Products

Adobe just released eight advisories addressing multiple vulnerabilities in Adobe Commerce, Experience Manager, Illustrator, Dimension, Creative Cloud, Substance 3D Stager, Photoshop, and ColdFusion products. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on [...]

By |2023-03-15T13:03:49-05:00March 15th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Resources to Better Protect Against Ransomware

The Cybersecurity and Infrastructure Security Agency (CISA) recently released a Ransomware Advisory site to publish updates for network defenders that detail various ransomware variants and ransomware threat actors.  You can visit  stopransomware.gov to see all #StopRansomware advisories and to learn more about other ransomware threats and no-cost resources. The [...]

By |2023-03-08T09:29:57-05:00March 7th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Time to Update – Apple’s iOS, iPadOS, macOS, and Safari Under Attack with Zero-Day Flaw

Apple has released emergency security updates to address a new zero-day vulnerability used in attacks to hack iPhones, iPads, and Macs. The zero-day patched today is tracked as CVE-2023-23529 [1, 2] and is a WebKit confusion issue that could be exploited to trigger OS crashes and gain code execution on [...]

By |2023-02-14T13:04:37-05:00February 14th, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: NJ Law Firms Be Alert of Latest Phishing Campaign

NJCCIC recently identified an aggressive phishing campaign targeting several New Jersey State agencies that regularly communicate with law firms. The phishing email’s subject line claims to reference various types of legal documents, such as settlements, reviews, or payment claims. The body contains an HTML link that appears to be [...]

By |2023-02-02T15:25:57-05:00February 2nd, 2023|Categories: Catch IT, News|Tags: , , , , , , |

Catch-IT: Russian-Backed Hackers Actively Targeting US Health Care Sector

The Department of Health and Human Services (HHS) warned on Monday that pro-Russian hacktivist group Killnet is actively targeting the U.S. healthcare industry with distributed denial of service (DDoS) attacks.  A pro-Russian hacktivist group active since at least January 2022, Killnet known for its DDoS campaigns against countries supporting Ukraine, [...]

By |2023-02-01T14:36:39-05:00February 1st, 2023|Categories: Catch IT, News|Tags: , , , , , , , |

Catch-IT: Microsoft’s First Patch Tuesday of 2023 Delivers 98 Fixes

Microsoft Kicks Off 2023 With 98 Fixes Microsoft released a whopping 98 security fixes for yesterday's Patch Tuesday, almost double the number it turned out leading into the holiday season.  Out of the 98, eleven were classified as "Critical", with one identified as being actively exploited. The actively exploited [...]

Catch-IT: Two Vulnerabilities Identified in Microsoft Products

Critical Patches Recently Released for Microsoft Products Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution in the context of the logged on user. Depending on the privileges associated with the user, an attacker could then install programs; view, [...]

Receive a Cyber Insurance Risk Assessment

Thinking About Cyber Insurance?  Receive a Free Risk Assessment to Learn More If you are considering cyber insurance, now is a great time.  According to a recent Wall Street Journal article, it seems demand has cooled off a bit after a surge in ransomware attacks in recent years propelled [...]

Catch-IT: Time to Update! Chrome Issues Urgent Zero-Day Fix

Chrome users urged to update as Google patches seventh zero-day exploit this year Late last week, Google rolled out emergency fixes to contain an actively exploited zero-day flaw in its Chrome web browser.  The vulnerability, tracked as CVE-2022-3723, has been described as a type confusion flaw in the V8 JavaScript engine. Successful [...]

Final Week of Cybersecurity Awareness Month!

It's the final countdown!!  As we head into Week 4 (10/24-10/28) we discuss the importance of applying software updates. Please review the videos and access our free resources to learn how to patch security vulnerabilities that cyber threat actors can exploit. Staying informed regarding publicly disclosed vulnerabilities and applying [...]

Go to Top