Compromised Test Account Detected in VPN Tunnel

Trust is convenient, and that is precisely where the danger lies. In modern IT environments, companies are no longer isolated islands. Connections to external partners, service providers, or maintenance accounts are part of everyday life. But what happens when these very trusted access points are forgotten? When an old test

Read more »

Man-in-the-Middle Attacks on Public Wi-Fi Networks

Public Wi-Fi is everywhere: in cafés, at train stations, or in hotels. Once connected, everything feels convenient and familiar—quickly checking emails, logging in, maybe placing an order. But it is precisely in these open networks that an often underestimated danger lurks: the so-called “man-in-the-middle” attack. In this scenario, a third

Read more »

Shadow IT and Uncontrolled SaaS Usage

Every day at our Certified Security Operations Center GmbH, we see how a high-risk situation unfolds—the uncontrolled use of tools that can pose a danger to an entire company. Tools are quickly installed, accounts are created on the fly, and files are uploaded somewhere—often simply because it’s convenient. This is

Read more »

Password Spraying on Active Directory Accounts

Password spraying is one of the stealthy yet highly effective methods of attacking corporate networks. Unlike a traditional “brute-force” attack, in which countless password combinations are tried against a single account, attackers take the exact opposite approach here. They test a single, commonly used password—such as “Password123!”—across many Active Directory

Read more »

When the Easter Bunny Calls: Beware of Fake Support

While Easter is all about trust, helpfulness, and little surprises, cybercriminals specifically exploit this festive spirit. Just as people look forward to a lovingly filled Easter basket, many individuals and businesses don’t expect that a seemingly harmless phone call could hide a danger. But this is exactly where so-called “credential

Read more »