CISA’s Pilot Program Helps Protect Critical Infrastructure from Ransomware

Earlier this year, CISA (Cybersecurity and Infrastructure Security Agency) launched a new program to help protect critical infrastructure institutions by safeguarding their information systems from ransomware cybercriminals. The two main purposes of this new program, called Ransomware Vulnerability Warning Pilot [...]

2023-08-10T22:30:37-07:00April 1st, 2023|

October is National Cybersecurity Awareness Month

Today marks the first day of National Cybersecurity Awareness Month. I am pleased to see one of the themes for this year’s National Cybersecurity Awareness Month, is about doing security updates. Only by patching your software in a timely manner, [...]

2021-10-05T01:06:40-07:00October 1st, 2019|

Notice of Emergency Windows/Internet Explorer Security Patch

Overview of Windows/Internet Explorer Security Patch Microsoft has advised Windows/Internet Explorer users to install an “emergency” out-of-band security patch (i.e. not released on patch-Tuesday) for a recently detected Zero-Day-Exploit (i.e an exploit that has already been actively used prior [...]

2021-01-28T20:30:20-08:00September 25th, 2019|

Who’s to Blame for Ransomware Attacks?

Originally published on TechTarget. Alvaka’s COO and CISO—Kevin McDonald—discusses that, although cyber attackers are the main culprits for ransomware attacks, the companies that release flawed software or those who don’t install patches are not off the hook. In early May, [...]

2021-01-28T13:48:46-08:00July 17th, 2019|

How Intelligence Data Leaks Has Damaged Infosec

Originally published on June 19, 2017 on TechTarget. Alvaka’s COO and CISO, Kevin McDonald, examines the real-world damage caused by CIA and NSA data leaks, putting dangerous government cyberweapons in the hands of hackers. WikiLeaks' CIA data dump shook a [...]

2021-01-28T20:38:44-08:00July 17th, 2019|

Cracking your passwords just got faster and easier than ever, here’s how….

Orange County, CA – I just read about a new product announcement, New version of L0phtCrack makes cracking Windows passwords easier than ever. At Alvaka we used to do a hacking demo during a lunch and learn. Rex Frank would usually do the demo by doing a SQL Injection attack and bumping out to the command prompt. From there he would download the SAM (Security Access Manager) file and then use L0phtCrack to decode a password right in front of the eyes of everyone. Nearly everyone was shocked beyond compare. Of course that approach is now a bit dated, but it showed our guests just how vulnerable unpatched and inadequately secured systems can be. From the start of the demo to the revelation of an account password would only take five o

2024-04-21T19:41:48-07:00September 15th, 2016|