KmsdBot, email server extortion, Fed requirements and ITAM, CMMC advice, ways data can be exposed, and a primer on pen testing - plus thoughts on when pen tests aren't exactly pen tests (and the SMB loses out).
- https://thehackernews.com/2022/11/new-kmsdbot-malware-hijacking-systems.html
- https://www.infosecurity-magazine.com/news/mass-email-extortion-claims-server/
- https://itassetmanagement.net/2022/11/07/us-federal-cybersecurity-requirements-raise-itam-for-all/
- https://washingtontechnology.com/companies/2022/11/cmmcs-father-warns-companies-not-wait-final-rule/379617/
- https://www.csoonline.com/article/3675542/8-strange-ways-employees-can-accidently-expose-data.html
- https://www.intruder.io/blog/what-is-an-external-pentest