VCURA Team

VCURA Team

CIS Safeguard 6.3: Require MFA for Externally-Exposed Applications

In February 2024 a municipal government suffered a major ransomware attack after threat actors exploited a vulnerability in an externally exposed internet-facing server. The attackers gained access to the system and conducted covert reconnaissance before deploying ransomware that encrypted critical infrastructure. A post-incident review…

CIS Safeguard 6.4: Require MFA for Remote Network Access

In February 2024, a major U.S. healthcare technology provider was compromised by a ransomware group that gained access through a remote access portal lacking multi-factor authentication (MFA). The attackers used stolen credentials to enter the network, moved laterally across systems,…