IT specialists

Practical information on keeping systems and data safe from attack.

CERT 180420 WEB 210

News

What is a CERT, anyway?

This week marks the anniversary of the Morris Worm, the first well-known internet ‘worm’. To mark the occasion, we’re ta

6 November 2020

Guide

Mitigating denial-of-service attacks

There are multiple ways to manage a denial-of-service (DoS) incident and the way you respond depends on the controls yo

CERT CAFE 180426 WEB 21

News

Businesses encouraged to trade smart online to avoid a nightmare before Christmas

Shoring up ecommerce website security can help businesses and their customers avoid a cyber nightmare before Christmas s

11 November 2020

2019 05 16 MTP 1212

Critical Controls

Password manager

Providing a password manager for your staff to store their passwords, or other secrets like alarm codes, is a great way

Advisory

Vulnerabilities in SonicWall Email Security actively exploited

21 April 2021

2019 05 30 MTP 1674 v2

News

Stay alert to email and online shopping scams this holiday season

Christmas and the summer holidays are just around the corner, but unfortunately not everyone sees it as the season of go

6 November 2020

Guide

Manage authentication

Using a combination of authentication security controls can protect your organisation from a wide range of unauthorised

Advisory

Vulnerability in Pulse Connect Secure actively exploited

21 April 2021

CERT TEC 180518 WEB 56

News

Complacency makes Kiwis more vulnerable to cyber attacks

The volume and sophistication of financially-motivated cyber attacks has increased over the last six months, so it is cr

19 October 2020

Guide

Unused services and protocols

Unused or older services and protocols often have their own vulnerabilities. Proactively scan your network for any that

Advisory

Updates released for new critical vulnerabilities in Microsoft Exchange

14 April 2021

CERT TEC 180518 WEB 295 v2

News

Online recruitment scams

Looking for a new job can be stressful at the best of times. It’s even more challenging when people use the opportunity

10 September 2020

Guide

Asset lifecycle management

Tracking assets throughout their lifecycle allows your organisation to securely carry out system hardening, patching and

Advisory

Microsoft Exchange vulnerabilities being exploited with ransomware

3 March 2021

CERT TEC 180518 WEB 8 v2

News

COVID-19: operating your business under Alert Levels 1 and 2

Auckland is at Alert Level 2 and the rest of New Zealand at Alert Level 1. It’s important you run your business in line

28 September 2020

Guide

Hardening RDP if you have to use it

Understanding why RDP is necessary and who needs access are important when hardening the RDP server. For example, if sta