Retrofit for Apple's Time Capsule: Open-source project keeps SMB alive
With macOS 27, Apple is finally dropping Time Capsule support for Macs. Developer James Chang has published a small hack for it on GitHub.
Nachrüstung für Apples Time Capsule: Open-Source-Projekt hält SMB am Leben
Mit macOS 27 dreht Apple endgültig den Time-Capsule-Support für den Mac ab. Entwickler James Chang hat auf GitHub einen kleinen Hack dagegen publiziert.
Most small agencies can't hire an AI Ethics Officer. They need governance that fits existing roles.
This policy is scaled to SMB size.
What I built:
• 12-section policy (risk, workflows, data controls, incident response)
• 4 appendix templates (AI Use Log, Tool Request, Audit Checklist, Training)
Constraint: Small teams operate at capacity. Governance can't add significant workload.
Full policy + templates: rachaelblizzard.com
Can a PDF carry a virus? Yes — SMBs are prime targets. A single malicious PDF can install spyware, steal credentials, or trigger ransomware. Scan attachments, limit internal sharing, enforce MFA, train staff. Read more: https://proton.me/business/blog/blog-pdf-virus 🔒📄 #CyberSecurity #SMB #Infosec
Potemkin Loader & RMMProject The Anatomy of a ClickFix Attack
A ClickFix social engineering attack on an unmonitored endpoint led to a multi-stage intrusion affecting over 11 hosts. The infection chain began with a malicious HTA payload that silently installed an MSI package containing Potemkin, a custom loader with a deterministic DGA. Potemkin delivered RMMProject, a 4.4 MB Lua-scriptable RAT featuring browser credential theft with Chrome App-Bound Encryption bypass, hidden-desktop remote control, and 15 distinct task types. The attacker deployed EtherRAT, a Node.js backdoor resolving C2 addresses from Ethereum blockchain, and established a Cloudflare tunnel for persistent access. Hands-on-keyboard activity included battling Windows Defender through AMSI patches, registry modifications, and service termination, followed by lateral movement via WMIExec and SMBExec to deploy malware across the network and reach the domain controller.
Pulse ID: 6a315d670f9460fe003298a8
Pulse Link: https://otx.alienvault.com/pulse/6a315d670f9460fe003298a8
Pulse Author: AlienVault
Created: 2026-06-16 14:27:51
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#BackDoor #BlockChain #Browser #Chrome #Cloud #CyberSecurity #DomainController #Encryption #Endpoint #InfoSec #LUA #Malware #NATO #Nodejs #OTX #OpenThreatExchange #RAT #SMB #SocialEngineering #Troll #Windows #bot #AlienVault
Proteggere i Backup Veeam da Ransomware su NAS Synology
I ransomware moderni non si limitano a cifrare i server di produzione: il loro primo obiettivo sono i backup. Se un utente malintenzionato o un malware riesce a prendere il controllo del server di backup, utilizzerà le credenziali salvate per accedere al NAS e cancellare ogni punto di ripristino, lasciandoti senza armi per il recupero. In questa guida vedremo come mettere in sicurezza un'infrastruttura di backup esistente composta da Veeam Backup & Replication e un NAS Synology , […]https://ticonsigliotech.com/2026/06/08/proteggere-backup-veeam-ransomware-synology/