CIS Safeguard 6.3: Require MFA for Externally-Exposed Applications

In February 2024 a municipal government suffered a major ransomware attack after threat actors exploited a vulnerability in an externally exposed internet-facing server. The attackers gained access to the system and conducted covert reconnaissance before deploying ransomware that encrypted critical infrastructure. A post-incident review…

CIS Safeguard 6.4: Require MFA for Remote Network Access

In February 2024, a major U.S. healthcare technology provider was compromised by a ransomware group that gained access through a remote access portal lacking multi-factor authentication (MFA). The attackers used stolen credentials to enter the network, moved laterally across systems,…

Security Architecture is Fragmented and Attackers Know It.

Every gap between cloud workloads, on-premises data centers, SaaS applications, campus networks, and remote endpoints is an opportunity for attackers. Yet, most organizations have security infrastructure consisting of a patchwork of tools each with its own console and policies. Fragmented…