Blog

Blog

Optimize Your PCI DSS 4.0 Compliance with Fortra Managed WAF

If your organization accepts credit cards online, you likely know about PCI compliance. You also may be aware of PCI DSS 4.0, which introduces new requirements that must be met by March 31, 2025. A web application firewall (WAF) with client-side protection is an excellent solution for meeting the web application requirements, particularly PCI DSS 4.0 Requirements 6.4.2, 6.4.3, and 11.6.1.Why is...
Blog

Achieving XDR Outcomes with a Managed Approach

There are two trends in security today that seem to be at odds. One: Cybersecurity efforts, awareness, and technologies are improving constantly. And two: Threats, breaches, and security incidents continue to rise. Despite growing attention to the expanding attack surface and increasing attempts to implement solutions, the industry has yet to crack the combination en masse as attackers continue to...
Blog

BEC Global Insights Report: January 2025

The monthly Global BEC Insights Report from Fortra presents a comprehensive analysis of the latest tactics, techniques, and procedures (TTP) employed by BEC threat actors. This report draws on extensive intelligence gathered from hundreds of active defense engagements conducted throughout the month. Key insights include geolocation data, attack volume, and the variety of scams, such as payroll diversion and advance fee fraud. The report also highlights the use of gift cards in scams, the requested amounts in wire transfer fraud, and the banks and webmail providers frequently targeted by attackers. These findings provide a critical understanding of the evolving BEC threat landscape.
Blog

Powertech Antivirus Comparison Checklist

Discover the qualities that set Powertech Antivirus apart, including native scanning for IBM Systems, a commercial grade scan engine, and exceptional support.
Blog

Celebrate Data Privacy Day

Celebrate Data Privacy Day 2025 with a refresher on best practices for collecting, using and sharing personal data. In light of ongoing data breaches, protecting sensitive information must be top of mind for everyone.
Blog

Patch Tuesday Update January 2025

Microsoft definitely didn’t want to waste any time jumping into 2025 patching 161 CVEs with the January Patch Tuesday. There are 159 CVEs issued by Microsoft, 1 by CERT CC, and 1 by GitHub.
Blog

Patch Tuesday Update - January 2025

FVM will include the Microsoft Patch Tuesday checks in the NIRV 4.57.0 and FVM Agent 2.18.• Microsoft addressed 158 vulnerabilities this release, including 10 rated as Critical.Microsoft has publicly disclosed the below vulnerabilities:CVE-2025-21366 - Microsoft Access Remote Code Execution VulnerabiliyCVE-2025-21395 - Microsoft Access Remote Code Execution VulnerabilityCVE-2025-21186 -...
Blog

VERT Threat Alert: January 2025 Patch Tuesday Analysis

Today’s VERT Alert addresses Microsoft’s January 2025 Security Updates. VERT is actively working on coverage for these vulnerabilities and expects to ship ASPL-1139 as soon as coverage is completed.In-The-Wild & Disclosed CVEsCVE-2025-21333The first of three Hyper-V vulnerabilities this month is a heap-based buffer overflow that leads to privilege escalation to SYSTEM. Microsoft has reported this...