"Immutable backups": an important protection against ransomware or yet another marketing product?

I’m seeing more and more cloud service providers advertising what would be "Immutable backups" and calling alternatives "Legacy backups". (see Immutable backup on search engines)
This particular method would be immune t… Continue reading "Immutable backups": an important protection against ransomware or yet another marketing product?

Veeam plugs serious holes in Service Provider Console (CVE-2024-42448, CVE-2024-42449)

Veeam has fixed two vulnerabilities in Veeam Service Provider Console (VSPC), one of which (CVE-2024-42448) may allow remote attackers to achieve code exection on the VSPC server machine. The vulnerabilities Veeam Service Provider Console is a cloud-en… Continue reading Veeam plugs serious holes in Service Provider Console (CVE-2024-42448, CVE-2024-42449)

Five backup lessons learned from the UnitedHealth ransomware attack

The ransomware attack on UnitedHealth earlier this year is quickly becoming the healthcare industry’s version of Colonial Pipeline, prompting congressional testimony, lawmaker scrutiny and potential legislation.  Over the past few months, there have be… Continue reading Five backup lessons learned from the UnitedHealth ransomware attack

Veeam Backup & Replication RCE flaw may soon be leveraged by ransomware gangs (CVE-2024-40711)

CVE-2024-40711, a critical vulnerability affecting Veeam Backup & Replication (VBR), could soon be exploited by attackers to steal enterprise data. Discovered and reported by Code WHite researcher Florian Hauser, the vulnerability can be leveraged… Continue reading Veeam Backup & Replication RCE flaw may soon be leveraged by ransomware gangs (CVE-2024-40711)