Booklet open showing a speech bubble with a laptop and a shield on the screen. Continue reading...

CyberEssentials 101: Password-Based Authentication May 22, 2025 – Posted in: Cyber Security, IT Support

All accounts with access to company data must require the user to authenticate. Where this is done using a password the following protections should be used: Passwords are protected against brute-force password guessing. Technical controls are used to manage the quality of passwords. People are supported to choose unique passwords for their work accounts. There is an established process to change passwords promptly if the applicant knows or suspects the password or account has been…

Continue reading
A picture of a laptop with a Christmassy background and What's new Wednesday on the screen. Continue reading...

What’s New Wednesday: A Summary of May 2025’s Patch Tuesday May 14, 2025 – Posted in: Cyber Security, IT Support, What's New Wednesdays

Welcome to Patch Tuesday May 2025. 72 flaws were patched including 6 critical and 2 zero-day vulnerabilities, both of which have been actively exploited. It’s a good idea to restart your PC today, and we may well restart some of your servers overnight this week if a patch requires it. NEW THIS WEDNESDAY Overall Microsoft patched: 17 Elevation of Privilege Vulnerabilities 2 Security Feature Bypass Vulnerabilities 28 Remote Code Execution Vulnerabilities 15 Information Disclosure Vulnerabilities…

Continue reading
Booklet open showing a speech bubble with a laptop and a shield on the screen. Continue reading...

CyberEssentials 101: Administrative Accounts May 7, 2025 – Posted in: Cyber Security, IT Support

All users need to have unique accounts and should not be carrying out day-to-day tasks like browsing the internet, invoicing or dealing with e-mail whilst logged on as a user with administrator privileges. Admin accounts allow significant changes to the way your computer systems work, doing day to day work logged in as an admin opens the door for any mistaken clicks on malicious software or attachments to cause significantly more damage. It’s also important…

Continue reading