CISA confirmed 6 SharePoint vulnerabilities are being actively exploited in ransomware attacks (updated Aug 18). On-premises SharePoint 2016/2019/SE only - not SharePoint Online. Here's how to check your patch status: https://t.co/7Rs5r0D43d
CISA just flagged 4 actively-exploited vulnerabilities (macOS, VMware, SharePoint, Windows). One patch window closed in just 5 days. Heres what your business needs to check this week: https://t.co/GHNYMrqksj
Cisco confirmed CVE-2026-20349 is being exploited - 1 unauthenticated request crashes your ASA/FTD firewall. If your team uses Cisco for remote VPN, check your build now. Patch guide (ASA 9.16-9.24 + FTD 7.0-10.0): https://t.co/5R2vrKoGZl #Cybersecurity#CiscoASA
The FTC is actively enforcing the Safeguards Rule against car dealerships in 2026, with fines up to $100K per violation. See the 9 required IT controls your dealership needs: https://t.co/dGjGiRE1DX
Microsoft patched 400+ flaws this August - including a zero-day exploited by Lazarus hackers. Is your business patched? https://t.co/IkwxCIK5d9 #PatchTuesday#Cybersecurity
N-able N-central has a critical auth bypass (CVE-2026-18577) being actively exploited. If your MSP uses it, they should have already patched - here's what to verify: https://t.co/P0w4xPvzHp #Cybersecurity#SMB
New ransomware group Deadlock uses blockchain to hide its infrastructure - making it nearly impossible to block at the firewall. Here's what SMBs need to know: https://t.co/wNeA8vnHi5 #Ransomware#Cybersecurity#SMB
BEC attacks cost businesses $2.8B in 2024 - and most email filters won't catch them. Here's how they actually work and what stops them: https://t.co/LjlPFaUbYd #CyberSecurity#BEC#SmallBusiness
A forgotten service account at Klue gave attackers OAuth tokens to 9 companies' Salesforce data in 15 min - including cybersecurity firms. Here's how to audit your SaaS integrations: https://t.co/N3SvkneFhi #CyberSecurity#SMBSecurity#OrangeCounty
MFA won't save you from device code phishing. The FBI just warned about Kali365 - attackers hijack Microsoft 365 sessions without touching your password. Takes 15 min to block. #CyberSecurity#Microsoft365 https://t.co/0wgsPJWMZY
June 2026 Patch Tuesday: 200+ vulns, 6 zero-days, Exchange already being exploited in the wild. Here is what to patch first and in what order. https://t.co/8wum3fAS0R #CyberSecurity#PatchTuesday#ITSecurity
Check Point VPN zero-day (CVE-2026-50751, CVSS 9.3) is being exploited by Qilin ransomware right now. No password needed to get in. If you run Check Point, patch it today. Full guide: https://t.co/D2ItUlGdKE #CyberSecurity#Ransomware#SMB
Windows Defender itself had 2 actively exploited zero-days last week. One gives attackers SYSTEM access. The other silently disables your antivirus updates. CISA: patch within 14 days. 2-min check inside. https://t.co/JsDcqnPm84 #CyberSecurity#WindowsSecurity#ITSupport
FBI alert: hackers are now showing up IN PERSON at offices, posing as IT support. They plug in a USB drive and walk out with your data.
38 firms already leaked. How the attack works + how to stop it:
https://t.co/oejiezJW98
#CyberSecurity#ITSupport#SocialEngineering
71% of organizations were hit by identity breaches last year - mostly stolen credentials and accounts no one cleaned up. Practical guide for small businesses on closing the gaps: https://t.co/j7cQ9R3FPX #CyberSecurity#SmallBusiness#IdentitySecurity
MFA enabled, still got hacked. OAuth phishing bypasses MFA by stealing M365 tokens - not passwords. No stolen password, no MFA prompt, no suspicious login. Here is how it works and the Entra settings that stop it: https://t.co/xUyEJn0f9P #CyberSecurity#Microsoft365#SMBSecurity
MFA enabled, still got hacked. OAuth phishing bypasses MFA by stealing M365 tokens - not passwords. No stolen password, no MFA prompt, no suspicious login. How it works and the Entra settings that stop it: https://t.co/xUyEJn0f9P #CyberSecurity#Microsoft365#SMBSecurity
Security tools don't make decisions - people do. Most SMBs can't afford a $300K CISO. A virtual CISO fills the gap at a fraction of the cost. Breakdown: https://t.co/yDQ7NTBdSK #CyberSecurity#ITSecurity#SMB
Microsoft just patched a zero-click Outlook bug (CVE-2026-40361) - triggered just by reading an email, no clicks needed. 138 patches this month, 30 critical. Breakdown + what to do: https://t.co/kRpaX7pH9s #CyberSecurity#PatchTuesday
Verizon's 2026 DBIR is out: stolen credentials are the #1 breach vector (22%), ransomware hit 44% of incidents, third-party risk doubled to 30%. MFA still stops most of it. What SMBs need to know: https://t.co/IVFB7cmoyA #CyberSecurity#DBIR2026