I wanted to update you on the Microsoft authentication issues caused by the May patches. This only potentially affects Microsoft Domain Controllers. More specifically it only affects Domain Controllers that are using certificates in any way for some form of authentication.

An update on Microsoft’s May Patch Issues with Domain Controllers and Certificate-Based Authentication

Vulnerability Disclosed in HPE BIOS
Recently I wrote about the increasing vulnerabilities in BIOS/UEFI underneath the operating system and encouraging you to update your devices to current BIOS levels. We have been notified of a vulnerability in select HPE BIOS. If you have HPE endpoints, please read the attached notice.

KACE Systems Management Appliance – Critical Vulnerability Disclosure
Quest has notified us that they have a critical vulnerability. If you use a KACE appliance, please read this information and perform their recommended mitigation steps. Kace Critical Vulnerability -Scott Quimby

Tech Tidbit – My Achilles Heel – Closing your District’s Vulnerability Gaps
“Legends state that Achilles was invulnerable in all of his body except for one heel because when his mother Thetis dipped him in the River Styx as an infant, she held him by one of his heels. Alluding to these legends, the term “Achilles’ heel” has come to mean a point of weakness, especially in […]

A discussion of MITRE ENGENUITY 2022 independent testing results – Recording Available
Mitre Engenuity has released its 2022 fully independent evaluation of 30 of the most common cybersecurity endpoint protection platforms. Why does this matter? The 2022 assessment and results are particularly interesting because the payload they used is the most common, and nefarious, ransomware and malware variants in use today.

Improve the Reliability of Email Delivery the First and Every Time – Recording Available
“Just when you thought it was safe to go back in the water…” ― Peter Benchley, Jaws It is a scary world out there. We know that upwards of 70% of network breaches start with phishing attacks coming from emails.

CSI’s Cybersecurity Event Session – Cisco Umbrella and Duo – Recording Available
Please join us for CSI’s Cybersecurity Event, Session Three! We will continue to build the list of actions you can take to better protect your district from the current threat landscape. Speaker: Justin Pennock, Cisco Cybersecurity Sales Specialist Session Description: Go on the offensive and join us for a demo on Cisco Umbrella […]

CSI’s Cybersecurity Event Session Two- The Front Lines of Ransomware – Recording Available
Cybersecurity Event Session Two: The Front Lines of Ransomware Speaker: Chris Loehr, Co-Founder, Service Provider Partners Chris Loehr is a cybersecurity professional and has worked firsthand on the resolution of roughly 300 ransomware incidents this past year.

Bob’s Top 5 for Cybersecurity
Back in April, I had sent Bob and Scott’s top 3 solutions you should have in place NOW to best protect against cyberthreats. Advanced Threat Protection firewall Managed Endpoint Detect & Respond.

Securing Active Directory Part 4 – Recording Available
Over the first three Securing Active Directory webinars, we have covered a lot of ground. If you haven’t watched them, I would encourage you to do so as they are every bit as relevant today as they were when we did them over the last couple of years.