It was discovered that zvbi incorrectly handled memory when processing user
input. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code.
Daily Archives: March 24, 2025
California AG Reminds 23andMe Customers of Data Deletion Rights Amid Bankruptcy Filing
Two years after a data breach that compromised almost seven million customers, 23andMe’s CEO has resigned as the company files for bankruptcy
augeas-1.14.2-0.4.20250324git4dffa3d.fc40
FEDORA-2025-31036092ea
Packages in this update:
augeas-1.14.2-0.4.20250324git4dffa3d.fc40
Update description:
CVE-2025-2588
augeas-1.14.2-0.4.20250324git4dffa3d.fc41
FEDORA-2025-117fe4c81f
Packages in this update:
augeas-1.14.2-0.4.20250324git4dffa3d.fc41
Update description:
CVE-2025-2588
augeas-1.14.2-0.4.20250324git4dffa3d.fc42
FEDORA-2025-6b5c54bd05
Packages in this update:
augeas-1.14.2-0.4.20250324git4dffa3d.fc42
Update description:
CVE-2025-2588
More Countries are Demanding Back-Doors to Encrypted Apps
Last month I wrote about the UK forcing Apple to break its Advanced Data Protection encryption in iCloud. More recently, both Sweden and France are contemplating mandating back doors. Both initiatives are attempting to scare people into supporting back doors, which are—of course—are terrible idea.
Teen Boys at Risk of Sextortion as 74% Lack Basic Awareness
The UK’s National Crime Agency has launched a new campaign designed to raise awareness of sextortion among teenage boys
Google Account Hijackers Target Victims Via Semrush Ads
Threat actors are looking to compromise Google accounts to further malvertising and data theft
The Power of Simplicity: Why LevelBlue’s Partner Program Makes Cybersecurity Easier for MSPs and MSSPs
In today’s digital landscape, businesses are under constant siege from cyber threats that are becoming more sophisticated and aggressive. The increasing demand for cyber resilience is an opportunity for global Managed Service Providers (MSPs) to expand their portfolio to include cybersecurity, and for Managed Security Service Providers (MSSPs) to strengthen their portfolio with advanced security services. These value-added services not only help customers maintain a robust cybersecurity posture but also drive revenue growth. However, realizing this opportunity comes with challenges.
Security Dynamics
Deploying and integrating cybersecurity solutions has become more complex. MSPs and MSSPs need to consider compatibility issues, long development timelines, costs, and scalability limitations. This must be achieved while continuing to proactively monitor and respond to threats.
However, it’s not just about responding to threats. MSPs and MSSPs can handle thousands of security alerts daily for customers, with many turning out to be false positives. Identifying real threats while ensuring swift incident response is a challenge. Without accurate threat intelligence and advanced automation solutions, security analysts may experience alert fatigue, leading to missed critical threats.
MSPs and MSSPs can also struggle with balancing cost and performance. Their customers want cost-effective security solutions, which can mean sacrificing performance and scalability.
And let’s not forget the global security talent shortage. MSPs and MSSPs are competing for security talent along with their customers. Finding and retaining top talent to manage security operations, analyze threats, and respond to incidents is an ongoing struggle.
Revolutionizing Partner Success
Today, we announced the new LevelBlue Partner Program, helping MSPs and MSSPs to overcome these challenges. We are changing how cybersecurity is delivered. The LevelBlue Partner Program is designed for today’s fast-moving digital landscape with a comprehensive suite of managed and unmanaged security services that are easy to deploy and integrate. Our new program also includes a consumption-based model for email security and endpoint protection. This allows MSPs and MSSPs to tap into a model that lets them align security investments with actual usage, enabling them to optimize costs while delivering best-in-class protection.
With our partner program, security isn’t just products; it’s services that adapt in real-time to business needs. We are now making available managed detection and response, email security, incident response, managed vulnerability management, penetration testing, and endpoint security to MSPs and MSSPs. The services can jumpstart new offers for our partners.
These proven security solutions are also easy to deploy and integrate with our open XDR platform, USM Anywhere, and other security solutions. They are built for the modern world to detect, respond, and proactively protect against increasing threats to endpoints and email, for example. And they have advanced features such as 24/7 monitoring, automation, AI, Machine Learning, built-in threat intelligence, and real-world simulations to strengthen defenses. With these services, MSPs and MSSPs can reduce complexity, and effortlessly scale to meet the needs of their customers.
For more information on our Partner Program and details on our security services, visit https://levelblue.com/partners.
USN-7365-1: NLTK vulnerabilities
It was discovered that NLTK contained a regex that is susceptible to
catastrophic backtracking. An attacker could possibly use this issue to
cause a denial of service. (CVE-2021-3842, CVE-2021-43854)