Chris Souza Stories
Microsoft’s CVE 2022 – 30190 Vulnerability: What to Do?
Microsoft recently reported a critical zero-day vulnerability (CVE 2022 – 30190) regarding the Microsoft Support Diagnostic Tool (MSDT), which at the time, required a temporary fix but is now being resolved with a patch update later this month. If you’re currently a TSI managed client, this actively exploited vulnerability that enables threat actors to deploy malware into your environment and provide them access to your network was addressed, but if…
ContinuedRussia/ukraine Conflict & the Potential Impact to Your Organization’s Cybersecurity Posture
As Russia began its invasion of Ukraine, there’s been a noticeable increase of cyber-attacks on organizations worldwide. The Russian State-Sponsored cybersecurity offensive isn’t aimed specifically at Government agencies or Defense contractors, but small companies like yours. As your cybersecurity partner, we implore you to take these threats seriously. The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and National Security Agency (NSA) have warned organizations to be…
ContinuedWindows 10 Version 20H2 To Reach End of Life
We’ve begun applying the Microsoft Windows 10 update (v. 21H2) for our clients so that their workstations continue receiving critical security patches and avoid the exploitation of this pending vulnerability. The patching process should happen during normal pre-scheduled time windows unless otherwise instructed. If you’re not working with TSI, we highly recommend that you reach out to your IT provider or staff to begin working on this as soon as…
ContinuedSophos Central Extends Support to Windows EOL Operating Systems
Microsoft has announced that effective February 1, 2022, it will no longer provide virus updates for the following end-of-life operating systems without the purchase of Sophos extended support. Server 2008 Windows 7 Linux CentOS 6 Linux CentOS 8 Linux Ubuntu 20.10 Linux Ubuntu 16.4 LTS Linux Ubuntu 12.4 Linux Redhat 6.8 Mac OS 10.14 Organizations that have a number of unsupported EOL systems will be impacted by this upcoming change.…
ContinuedCMMC 2.0 Changes and What They Mean to Your Organization’s Compliance Strategy
The announcement of CMMC 2.0 has garnered a lot of attention throughout the Defense Industrial Base (DIB). With that attention comes the anxiety of change and uncertainty, especially for both the DIB and their consultants who have already made considerable progress toward accomplishing their CMMC objectives. Although these changes seem daunting, it’s important to consider that most of these changes are simply a refinement of the existing CMMC requirements, rather…
ContinuedFour Ways vCISOs Help Avoid CMMC Compliance & Security Program Mistakes
If you operate within the U.S. defense industrial base (DIB), you’re likely well aware of the CMMC—and now the CMMC 2.0’s—compliance mandates, including the immediate and long-term impact they will present to your organization. Despite the challenges and steep costs associated with implementing a CMMC compliant environment, doing business with the Department of Defense (DoD) will require DIB contractors to adhere to this compliance framework, which is nothing short of…
Continued