<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>Mytech Blog</title>
    <link>https://blog.mytech.com</link>
    <description />
    <language>en</language>
    <pubDate>Fri, 16 Aug 2024 20:39:17 GMT</pubDate>
    <dc:date>2024-08-16T20:39:17Z</dc:date>
    <dc:language>en</dc:language>
    <item>
      <title>Security Alert: Critical Vulnerability in Windows IPv6</title>
      <link>https://blog.mytech.com/security-alert-critical-vulnerability-in-windows-ipv6</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-critical-vulnerability-in-windows-ipv6" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/54de26_f2053a4133854230a045ddfe07483467~mv2.jpg" alt="Security Alert: Critical Vulnerability in Windows IPv6" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;A critical security vulnerability has been discovered in the Windows TCP/IP stack, which is expected to be rapidly exploited. This vulnerability affects all known Windows Operating Systems with IPv6 enabled. The attack is relatively simple and can cause a system crash or, in the worst case, allow an attacker to take control of the system remotely.&amp;nbsp;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-critical-vulnerability-in-windows-ipv6" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/54de26_f2053a4133854230a045ddfe07483467~mv2.jpg" alt="Security Alert: Critical Vulnerability in Windows IPv6" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;A critical security vulnerability has been discovered in the Windows TCP/IP stack, which is expected to be rapidly exploited. This vulnerability affects all known Windows Operating Systems with IPv6 enabled. The attack is relatively simple and can cause a system crash or, in the worst case, allow an attacker to take control of the system remotely.&amp;nbsp;&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fsecurity-alert-critical-vulnerability-in-windows-ipv6&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Fri, 16 Aug 2024 20:39:17 GMT</pubDate>
      <author>marketing@mytech.com (mytechpartners)</author>
      <guid>https://blog.mytech.com/security-alert-critical-vulnerability-in-windows-ipv6</guid>
      <dc:date>2024-08-16T20:39:17Z</dc:date>
    </item>
    <item>
      <title>Critical Security Vulnerability in ConnectWise ScreenConnect</title>
      <link>https://blog.mytech.com/critical-security-vulnerability-in-screenconnect</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-security-vulnerability-in-screenconnect" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SCRE.png" alt="Critical Security Vulnerability in ConnectWise ScreenConnect" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;On February 19th, &lt;a href="https://www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.9.8"&gt;ConnectWise issued a critical advisory disclosing two significant vulnerabilities&lt;/a&gt; (CVE-2024-1709 and CVE-2024-1708) present in all versions of on-premises ScreenConnect software prior to version 23.9.8. The severity of CVE-2024-1709, with its perfect CVSS score of 10 out of 10, underscores the gravity of the situation, necessitating immediate action to mitigate potential exploitation by malicious actors.&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-security-vulnerability-in-screenconnect" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SCRE.png" alt="Critical Security Vulnerability in ConnectWise ScreenConnect" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;On February 19th, &lt;a href="https://www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.9.8"&gt;ConnectWise issued a critical advisory disclosing two significant vulnerabilities&lt;/a&gt; (CVE-2024-1709 and CVE-2024-1708) present in all versions of on-premises ScreenConnect software prior to version 23.9.8. The severity of CVE-2024-1709, with its perfect CVSS score of 10 out of 10, underscores the gravity of the situation, necessitating immediate action to mitigate potential exploitation by malicious actors.&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fcritical-security-vulnerability-in-screenconnect&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Tue, 27 Feb 2024 20:35:59 GMT</pubDate>
      <author>skingslien@mytech.com (Stephanie Kingslien)</author>
      <guid>https://blog.mytech.com/critical-security-vulnerability-in-screenconnect</guid>
      <dc:date>2024-02-27T20:35:59Z</dc:date>
    </item>
    <item>
      <title>Critical Security Vulnerability in Fortinet SSL VPN</title>
      <link>https://blog.mytech.com/critical-security-vulnerability-in-fortinet-ssl-vpn</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-security-vulnerability-in-fortinet-ssl-vpn" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/OIP%20(3).jpg" alt="Critical Security Vulnerability in Fortinet SSL VPN" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;In recent days, a critical security flaw has been unearthed in Fortinet SSL VPN, an integral component of Fortinet Firewall devices. This vulnerability has sent shockwaves through the cybersecurity community as it exposes systems to the risk of remote code execution by unauthenticated attackers.&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-security-vulnerability-in-fortinet-ssl-vpn" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/OIP%20(3).jpg" alt="Critical Security Vulnerability in Fortinet SSL VPN" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;In recent days, a critical security flaw has been unearthed in Fortinet SSL VPN, an integral component of Fortinet Firewall devices. This vulnerability has sent shockwaves through the cybersecurity community as it exposes systems to the risk of remote code execution by unauthenticated attackers.&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fcritical-security-vulnerability-in-fortinet-ssl-vpn&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Fri, 09 Feb 2024 16:56:40 GMT</pubDate>
      <author>skingslien@mytech.com (Stephanie Kingslien)</author>
      <guid>https://blog.mytech.com/critical-security-vulnerability-in-fortinet-ssl-vpn</guid>
      <dc:date>2024-02-09T16:56:40Z</dc:date>
    </item>
    <item>
      <title>Security Alert: Phishing Attacks via QR Code</title>
      <link>https://blog.mytech.com/phishing-attacks-via-qr-code</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/phishing-attacks-via-qr-code" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/QR%20Code%20attacks.jpg" alt="Security Alert: Phishing Attacks via QR Code" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;&lt;span style="background-color: transparent;"&gt;There's recently been an uptick in targeted phishing attacks attempting to steal Microsoft 365 credentials via a unique method - QR codes. We have now seen several organizations receive a version of the message copied below, which impersonates Microsoft 365 using fear-based language and encourages users to scan a QR code with their smartphone camera - an unusual request, which takes victims to a credential-harvesting site. &lt;/span&gt;&lt;/p&gt; 
  &lt;p&gt;&lt;strong style="background-color: transparent;"&gt;Please share this information with your team to boost their awareness and put them on guard.&lt;/strong&gt;&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div&gt;&lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/phishing-attacks-via-qr-code" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/QR%20Code%20attacks.jpg" alt="Security Alert: Phishing Attacks via QR Code" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;&lt;span style="background-color: transparent;"&gt;There's recently been an uptick in targeted phishing attacks attempting to steal Microsoft 365 credentials via a unique method - QR codes. We have now seen several organizations receive a version of the message copied below, which impersonates Microsoft 365 using fear-based language and encourages users to scan a QR code with their smartphone camera - an unusual request, which takes victims to a credential-harvesting site. &lt;/span&gt;&lt;/p&gt; 
  &lt;p&gt;&lt;strong style="background-color: transparent;"&gt;Please share this information with your team to boost their awareness and put them on guard.&lt;/strong&gt;&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div&gt;&lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fphishing-attacks-via-qr-code&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Tue, 27 Jun 2023 15:30:00 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/phishing-attacks-via-qr-code</guid>
      <dc:date>2023-06-27T15:30:00Z</dc:date>
    </item>
    <item>
      <title>Service Alert: Windows Defender deletes taskbar &amp; desktop shortcuts</title>
      <link>https://blog.mytech.com/service-alert-windows-defender-shortcuts</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/service-alert-windows-defender-shortcuts" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Windows%20Defender%20bug.jpeg" alt="Service Alert: Windows Defender deletes taskbar &amp;amp; desktop shortcuts" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;As you may have &lt;a href="https://www.theverge.com/2023/1/13/23553370/microsoft-start-menu-taskbar-shortcuts-windows-disappearing-it"&gt;seen in the news&lt;/a&gt;, this morning a bugged Windows Defender update deleted app shortcuts from some users’ desktops and task bars. &lt;strong&gt;Only the shortcuts are deleted: your data and applications are safe. &lt;/strong&gt;Microsoft has now fixed this issue, but many users are still missing quick access to common apps and tools.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/service-alert-windows-defender-shortcuts" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Windows%20Defender%20bug.jpeg" alt="Service Alert: Windows Defender deletes taskbar &amp;amp; desktop shortcuts" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;As you may have &lt;a href="https://www.theverge.com/2023/1/13/23553370/microsoft-start-menu-taskbar-shortcuts-windows-disappearing-it"&gt;seen in the news&lt;/a&gt;, this morning a bugged Windows Defender update deleted app shortcuts from some users’ desktops and task bars. &lt;strong&gt;Only the shortcuts are deleted: your data and applications are safe. &lt;/strong&gt;Microsoft has now fixed this issue, but many users are still missing quick access to common apps and tools.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fservice-alert-windows-defender-shortcuts&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Fri, 13 Jan 2023 17:24:33 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/service-alert-windows-defender-shortcuts</guid>
      <dc:date>2023-01-13T17:24:33Z</dc:date>
    </item>
    <item>
      <title>Security Alert: FortiOS devices under active exploit</title>
      <link>https://blog.mytech.com/critical-vulnerability-fortios</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-vulnerability-fortios" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlert%20FortiOS.jpeg" alt="Security Alert: FortiOS devices under active exploit" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;Fortinet has just announced that firewall devices running versions of its FortiOS operating system are under active exploit: &lt;a href="https://www.fortiguard.com/psirt/FG-IR-22-398" style="font-weight: bold;"&gt;&lt;span&gt;CVE-2022-42475&lt;/span&gt;&lt;/a&gt; allows an unauthenticated attacker to remotely access admin controls from outside the network, &lt;strong&gt;posing a serious security threat to unpatched devices&lt;/strong&gt;.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-vulnerability-fortios" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlert%20FortiOS.jpeg" alt="Security Alert: FortiOS devices under active exploit" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;Fortinet has just announced that firewall devices running versions of its FortiOS operating system are under active exploit: &lt;a href="https://www.fortiguard.com/psirt/FG-IR-22-398" style="font-weight: bold;"&gt;&lt;span&gt;CVE-2022-42475&lt;/span&gt;&lt;/a&gt; allows an unauthenticated attacker to remotely access admin controls from outside the network, &lt;strong&gt;posing a serious security threat to unpatched devices&lt;/strong&gt;.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fcritical-vulnerability-fortios&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Mon, 12 Dec 2022 22:45:00 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/critical-vulnerability-fortios</guid>
      <dc:date>2022-12-12T22:45:00Z</dc:date>
    </item>
    <item>
      <title>Security Alert: Critical vulnerability in select Fortinet products</title>
      <link>https://blog.mytech.com/security-alert-fortinet-products-vulnerability</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-fortinet-products-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlert%20Fortinet-1.jpeg" alt="Security Alert: Critical vulnerability in select Fortinet products" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;Fortinet has recently &lt;a href="https://www.bleepingcomputer.com/news/security/fortinet-warns-admins-to-patch-critical-auth-bypass-bug-immediately/"&gt;announced a severe vulnerability&lt;/a&gt; in certain firewalls and web proxies: CVE-2022-40684 allows an unauthenticated attacker to remotely access admin controls from outside the network, &lt;strong&gt;posing a serious security threat to unpatched devices&lt;/strong&gt;.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-fortinet-products-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlert%20Fortinet-1.jpeg" alt="Security Alert: Critical vulnerability in select Fortinet products" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;p&gt;Fortinet has recently &lt;a href="https://www.bleepingcomputer.com/news/security/fortinet-warns-admins-to-patch-critical-auth-bypass-bug-immediately/"&gt;announced a severe vulnerability&lt;/a&gt; in certain firewalls and web proxies: CVE-2022-40684 allows an unauthenticated attacker to remotely access admin controls from outside the network, &lt;strong&gt;posing a serious security threat to unpatched devices&lt;/strong&gt;.&lt;/p&gt; 
 &lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fsecurity-alert-fortinet-products-vulnerability&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Fri, 07 Oct 2022 20:59:51 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/security-alert-fortinet-products-vulnerability</guid>
      <dc:date>2022-10-07T20:59:51Z</dc:date>
    </item>
    <item>
      <title>Security Alert: Phishing vulnerability 'Follina' in Office files</title>
      <link>https://blog.mytech.com/security-alert-follina-microsoft-office</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-follina-microsoft-office" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlertFollina.jpeg" alt="Security Alert: Phishing vulnerability 'Follina' in Office files" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;span style="background-color: transparent;"&gt;A newly-discovered malicious exploit for Microsoft Office files has made headlines over the weekend: &lt;/span&gt; 
  &lt;a href="https://www.huntress.com/blog/microsoft-office-remote-code-execution-follina-msdt-bug" style="background-color: transparent;"&gt;&lt;strong&gt;the “Follina” MSDT attack&lt;/strong&gt;&lt;/a&gt; 
  &lt;span style="background-color: transparent;"&gt; uses programs like Microsoft Word to execute malicious code when a prepared file is accessed, allowing an attacker significant access to a device, where they can then deploy further exploits and do even greater damage.&lt;/span&gt; 
 &lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-follina-microsoft-office" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/SecurityAlertFollina.jpeg" alt="Security Alert: Phishing vulnerability 'Follina' in Office files" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div&gt; 
 &lt;div style="text-align: left;"&gt; 
  &lt;span style="background-color: transparent;"&gt;A newly-discovered malicious exploit for Microsoft Office files has made headlines over the weekend: &lt;/span&gt; 
  &lt;a href="https://www.huntress.com/blog/microsoft-office-remote-code-execution-follina-msdt-bug" style="background-color: transparent;"&gt;&lt;strong&gt;the “Follina” MSDT attack&lt;/strong&gt;&lt;/a&gt; 
  &lt;span style="background-color: transparent;"&gt; uses programs like Microsoft Word to execute malicious code when a prepared file is accessed, allowing an attacker significant access to a device, where they can then deploy further exploits and do even greater damage.&lt;/span&gt; 
 &lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fsecurity-alert-follina-microsoft-office&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Tue, 31 May 2022 19:53:14 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/security-alert-follina-microsoft-office</guid>
      <dc:date>2022-05-31T19:53:14Z</dc:date>
    </item>
    <item>
      <title>Security Alert: Critical Log4j Vulnerability</title>
      <link>https://blog.mytech.com/critical-log4j-vulnerability</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-log4j-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Log4j.jpeg" alt="Security Alert: Critical Log4j Vulnerability" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p style="font-weight: bold;"&gt;Update 12.22.21. This vulnerability &lt;span style="background-color: transparent;"&gt;continues to pose a major risk for many organizations. Due to the nature of this exploit, &lt;/span&gt;&lt;span style="text-decoration: underline;"&gt;your greatest risk likely comes through any vendor that provides software to your organization&lt;/span&gt;&lt;span style="background-color: transparent;"&gt;. If you have not already discussed this vulnerability with each of your vendors and confirmed that their patches are up to date, do so immediately.&lt;/span&gt;&lt;/p&gt; 
&lt;div&gt; 
 &lt;div&gt; 
  &lt;span style="font-weight: bold;"&gt;In addition, you should &lt;span style="text-decoration: underline;"&gt;discuss your exposure level with your IT provider&lt;/span&gt;, to determine any potential points of attack on your network. Mytech is working behind the scenes to catalogue and track security updates from our clients' vendors, to help us quickly assess any remaining risks. But the threat of this attack remains high, and &lt;span style="text-decoration: underline;"&gt;your IT provider cannot defend you from vendor vulnerabilities that they don't know about&lt;/span&gt;.&lt;/span&gt; 
 &lt;/div&gt; 
 &lt;div style="text-align: center;"&gt; 
  &lt;span style="font-weight: bold;"&gt;---&lt;/span&gt; 
 &lt;/div&gt; 
&lt;/div&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/critical-log4j-vulnerability" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Log4j.jpeg" alt="Security Alert: Critical Log4j Vulnerability" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p style="font-weight: bold;"&gt;Update 12.22.21. This vulnerability &lt;span style="background-color: transparent;"&gt;continues to pose a major risk for many organizations. Due to the nature of this exploit, &lt;/span&gt;&lt;span style="text-decoration: underline;"&gt;your greatest risk likely comes through any vendor that provides software to your organization&lt;/span&gt;&lt;span style="background-color: transparent;"&gt;. If you have not already discussed this vulnerability with each of your vendors and confirmed that their patches are up to date, do so immediately.&lt;/span&gt;&lt;/p&gt; 
&lt;div&gt; 
 &lt;div&gt; 
  &lt;span style="font-weight: bold;"&gt;In addition, you should &lt;span style="text-decoration: underline;"&gt;discuss your exposure level with your IT provider&lt;/span&gt;, to determine any potential points of attack on your network. Mytech is working behind the scenes to catalogue and track security updates from our clients' vendors, to help us quickly assess any remaining risks. But the threat of this attack remains high, and &lt;span style="text-decoration: underline;"&gt;your IT provider cannot defend you from vendor vulnerabilities that they don't know about&lt;/span&gt;.&lt;/span&gt; 
 &lt;/div&gt; 
 &lt;div style="text-align: center;"&gt; 
  &lt;span style="font-weight: bold;"&gt;---&lt;/span&gt; 
 &lt;/div&gt; 
&lt;/div&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fcritical-log4j-vulnerability&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Tue, 14 Dec 2021 18:49:33 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/critical-log4j-vulnerability</guid>
      <dc:date>2021-12-14T18:49:33Z</dc:date>
    </item>
    <item>
      <title>Security Alert: Phishing Risks from Threat Actor Nobelium Remain High</title>
      <link>https://blog.mytech.com/security-alert-nobelium-attack</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-nobelium-attack" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Nobelium%20Phishing%20Alert.jpeg" alt="password login decorative image" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;You may have heard about the &lt;a href="https://blogs.microsoft.com/on-the-issues/2021/10/24/new-activity-from-russian-actor-nobelium/"&gt;&lt;span style="font-weight: bold;"&gt;recent cyberattack activity from Russian actor Nobelium&lt;/span&gt;&lt;/a&gt;, a nation-state group that was responsible for the SolarWinds breach of 2020. Experts in the cybersecurity industry expect these attacks to continue, so awareness and diligence in preventing phishing attacks and breaches is crucial – for both managed services providers like Mytech, as well as each of our end users.&amp;nbsp;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blog.mytech.com/security-alert-nobelium-attack" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blog.mytech.com/hubfs/Nobelium%20Phishing%20Alert.jpeg" alt="password login decorative image" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;You may have heard about the &lt;a href="https://blogs.microsoft.com/on-the-issues/2021/10/24/new-activity-from-russian-actor-nobelium/"&gt;&lt;span style="font-weight: bold;"&gt;recent cyberattack activity from Russian actor Nobelium&lt;/span&gt;&lt;/a&gt;, a nation-state group that was responsible for the SolarWinds breach of 2020. Experts in the cybersecurity industry expect these attacks to continue, so awareness and diligence in preventing phishing attacks and breaches is crucial – for both managed services providers like Mytech, as well as each of our end users.&amp;nbsp;&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=5277307&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblog.mytech.com%2Fsecurity-alert-nobelium-attack&amp;amp;bu=https%253A%252F%252Fblog.mytech.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <category>Security Alerts</category>
      <pubDate>Mon, 25 Oct 2021 16:45:52 GMT</pubDate>
      <author>jfondell@mytech.com (Jonathan Fondell)</author>
      <guid>https://blog.mytech.com/security-alert-nobelium-attack</guid>
      <dc:date>2021-10-25T16:45:52Z</dc:date>
    </item>
  </channel>
</rss>
