Cybersecurity protects your systems. Cybersecurity risk management protects your business.®

The Information Highway

The Information Highway

Founded in 2015, LBT Technology Group, a Managed Services Provider, was built on the conviction that cybersecurity protects your systems while cybersecurity risk management protects your business. We don't just deploy tools and check boxes—we identify what matters most to your organization, assess the real risks you face, and build a proportional, continuously monitored defense around it. For over a decade, healthcare, legal, non-profit, and financial services organizations have trusted us to be the difference between reacting to threats and staying ahead of them. Security isn't something we sell, it's a partnership we build.

VMware privilege escalation vulnerabilities

Threat-Advisory-Banner3

Threat update

VMware has released patches to address critical vulnerabilities impacting Cloud Foundation, vCenter Server, and vSphere ESXi, which could be exploited to achieve privilege escalation and remote code execution. The flaws, identified as CVE-2024-37079, CVE-2024-37080, and CVE-2024-37081, have high CVSS scores 

Continue reading
  2646 Hits

Active exploitation of Microsoft vulnerabilities

Threat-Advisory-Banner3

Threat update

 This Cybersecurity Threat Advisory highlights a new attack technique exploiting vulnerabilities in Microsoft Management Console (MMC). By creating malicious management saved console (MSC) files that appear legitimate, attackers can bypass traditional security measures and exploit the targeted MMC. LBT Technology Group recommends taking immediate action to mitigate this significant security risk.

Continue reading
  2287 Hits

New Microsoft Outlook client vulnerability

Threat-Advisory-Banner3

Threat update

A recent Microsoft Outlook client zero-click remote code execution (RCE) vulnerability, CVE-2024-30103, has a CVSS score of 8.8. 

Continue reading
  2939 Hits

New typosquatting attack targeting Google users

Threat-Advisory-Banner3

Threat update

Google users have been targeted with a typosquatted attack when searching Advanced IP Scanner. When searching for this free network scanner for Windows, users are served with an exploited version of Advanced IP Scanner that injects a CobaltStrike Beacon into the parent process's address space. 

Continue reading
  2522 Hits

Critical VBEM vulnerability

Threat-Advisory-Banner3

Threat update

 A Veeam Backup Enterprise Manager (VBEM) security vulnerability, CVE-2024-29849, can pose serious risks for organizations. Users are advised to update their VBEM to the latest version immediately.

Continue reading
  2720 Hits

Top Breaches Cost ($) of 2024

HEALTHCARE
FINANCIAL
INDUSTRIAL
TECHNOLOGY
ENERGY
Source: IBM Cost of a Data Breach Report 2024