https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


Shutterstock

Red Alert Siren

Secret Service Alert Provides Cybersecurity Wake-Up Call for MSPs

  • Written by Edward Gately
  • July 13, 2020
Cybercriminals are using point-of-sale intrusions, business email compromise (BEC) and ransomware.

MSPs have taken a closer look at their cybersecurity in response to a U.S. Secret Service alert of escalating attacks against the providers.

According to the Secret Service alert, a single MSP can service a large number of customers. Therefore cybercriminals are specifically targeting these MSPs to conduct their attacks at scale to infect multiple companies through the same vector, the agency said.

MSPs utilize multiple open source and enterprise software applications to facilitate remote administration, it said. In the event of an MSP compromise, bad actors often use these applications to access their customers’ networks and conduct attacks.

Cybercriminals are leveraging compromised MSPs to conduct a variety of attacks, the agency said. Those include point-of-sale intrusions, business email compromise (BEC) and specifically ransomware attacks.

The agency’s investigations team, the Global Investigations Operations Center, has been seeing an increase in incidents where hackers breach MSP solutions. And they use them as a springboard into the internal networks of the MSP’s customers.

MSPs Respond

Elon Grad is Platte River Networks‘ vice president of technology and innovation. He said as an MSP, “you’re a trusted advisor to your clients.”

Platte River Networks' Elon Grad

Platte River Networks’ Elon Grad

“Maintaining cyber security practices at the highest standard are foundational to protecting your business and your clients,” he said. “We often make recommendation to our clients about improving their cyber security standards, but we also need to look internally and practice what we preach.”

Enterprise Networking Solutions (ENS-Inc) is a California-based MSP. Chad Hodges, it’s executive vice president, said in these “unprecedented times, security has become paramount.”

Enterprise Networking Solutions' Chad Hodges

Enterprise Networking Solutions’ Chad Hodges

“With our nation’s workforce compelled to work from home and telework for the majority of the time, our enterprises are exposed to an attack surface that we have not seen on a global scale,” he said. “As MSPs, it has become important to make sure that any endpoints connecting to our environments are secure and protected. Our clients have been very receptive to our mutual efforts to ensure we limit the potential attack surface, and we appreciate their willingness to work with us as a provider of their critical services.”

The agency offers best practices for MSPs:

  • Have a well-defined service level agreement (SLA).
  • Ensure remote administration tools are patched and up to date.
  • Enforce least privilege for access to resources.
  • Have well-defined security controls that comply with end users’ regulatory compliance.
  • Perform annual data audits.
  • Take into consideration local, state and federal data compliance standards.
  • Proactively conduct cyber training and education programs for employees.

Best practices for MSP customers include:

  • Audit SLA.
  • Audit remote administration tools used in your environment.
  • Enforce two-factor authentication (2FA) for all remote logins.
Tags: MSPs Best Practices Business Models Open Source Security Technologies

Most Recent


  • customer magnet
    3 Tips to Add New Logo Clients
    A winning strategy requires taking on new challenges and expanding expertise to attract new customers.
  • Microsoft's Nicole Herskowitz
    ‘The Next Normal is Here’: Microsoft, Cisco, RingCentral Make the Case for Generative AI in Collaboration
    “Every decade or so a new technology emerges that is truly disruptive,” said RingCentral's president and COO.
  • Seattle
    Microsoft Job Cuts Hit Hundreds More Workers in Seattle Area
    In January, Microsoft initiated a plan to shed about 10,000 workers.
  • boxing gloves
    Channel Conflict, Controversy: Avaya Bankruptcy, Mass Layoffs, High-Profile Execs Depart
    There's always something to buzz about in the channel.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • Ransomware skull and crossbones
    JBS Did What it 'Needed to Do' with $11 Million Ransom Payment
  • hybrid clouds
    Nutanix, HPE Team on Hybrid, Multicloud via GreenLake
  • lone Arctic wolf
    Arctic Wolf Enhances Partner Program with 2 New Tiers
  • cybersecurity lock
    Telos Partners Get New CyberProtect Partner Program

Upcoming Events

View all

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Channel Partners Europe

June 13, 2023 - June 14, 2023

Channel Futures Leadership Summit

October 30, 2023 - November 2, 2023

Galleries

View all

National Women’s History Month: Channel Women on ‘I Wish I’d Known’

March 29, 2023

Meet Channel Futures’ 2023 Channel Influencers, EMEA

March 29, 2023

Channel Conflict, Controversy: Avaya Bankruptcy, Mass Layoffs, High-Profile Execs Depart

March 28, 2023

Industry Perspectives

View all

Why You Should Include Audiovisual Solutions in Your UC Services

March 28, 2023

Selling Your MSP: Strategic vs. Financial Buyers

March 22, 2023

10 Strategic Smart Enterprise Drivers for 2023

March 16, 2023

Webinars

View all

Give Customers the Power: How MSPs Can Leverage Cloud Choice

April 4, 2023

DE&I Dialogue: How the Right DE&I Initiatives Can Propel Your Business

April 5, 2023

Meet the 2023 Channel Futures Channel Influencers

April 13, 2023

White Papers

View all

6 UCaaS Reseller Challenges and How Real World Businesses Solved Them

February 1, 2023

Frost Radar: North American UCaaS Market, 2022

February 1, 2023

The Complete Guide to White-Label UCaaS for Reseller Success

February 1, 2023

Channel Futures TV

View all

Kaseya, Post-Acquisition, Expanding ‘Well-Regarded’ Datto Partner Program

Aryaka ‘Driving Value to the Channel Community’ with Throttle

March 24, 2023

Coffee with Craig and James Episode 121: Hewlett Packard Enterprise

March 23, 2023

Real-Life M&A: Advice for a Successful Channel Deal

March 13, 2023

Twitter

ChannelFutures

#CPExpo preview: @KaseyaCorp offering plenty of enablement services to partners. dlvr.it/Slh99x https://t.co/35cFctNynW

March 29, 2023
ChannelFutures

In the changing world of networking and telecommunications services, Channel Futures is recognizing these 20 leader… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

Ever think about what you know now that you wish you’d known earlier? Here’s what women in the communications and I… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

.@GTTCOMM says expand knowledge base and leave your comfort zone to attract new #tech clients.… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

Channel Futures’ 2023 Channel Influencers, EMEA puts the most important list of channel leaders in the industry on… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

“Every decade a new technology emerges that is truly disruptive.”-- #AI sentiments from @RingCentral @Microsoft… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

Check out this edition of Channel Futures TV! Glen Lomond discusses @HitachiVantara's approach to as-a-service of… twitter.com/i/web/status/1…

March 28, 2023
ChannelFutures

.@Microsoft #layoffs target more workers in Seattle area. dlvr.it/SldRzg https://t.co/DGtDBBU4m0

March 28, 2023

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X