When you log in to your computer on a Monday morning and see that ransomware screen demanding payment, you should realize that the attack didn’t start that weekend. As Net at Work CISO Michael Powell explains, “To stage an attack, it’s not uncommon for a threat actor to have been in the environment up to 90 days.” For weeks or months, threat actors may have been cataloging[…] Read
During a recent penetration test, we uncovered a critical vulnerability in a publicly accessible API endpoint that allowed unauthenticated users to escalate privileges all the way to an administrative level. This flaw ultimately exposed the Personally Identifiable Information (PII) of every user in the system. We’re sharing this finding because it’s a perfect example of[…] Read
How AI-driven defences could prevent an uphill battle with modern cyberthreats In 2024, the UK government reported that 50 percent of businesses had experienced some form of cyber security breach or attack in the prior 12 months, with such attacks becoming increasingly sophisticated. Battling the latest cyberattacks involves leveraging the agility and intelligence of AI[…] Read
You wouldn’t drive without a seat belt. You wouldn’t leave your office unlocked overnight. So why go online without multifactor authentication (MFA)? MFA is like a second lock on your digital door. Instead of relying on just a password which can be stolen, guessed, or phished it adds another layer of protection, such as a[…] Read
Published by Austin Justice, Justice IT Consulting LLC
Defense contractors have anticipated the full implementation of CMMC (Cybersecurity Maturity Model Certification) for some time now. On September 10, 2025, the Federal Register published the DFARS Final Rule, giving defense procurement officers the power to require CMMC compliance—both in new contracts and renewals of existing contracts. In other words, CMMC compliance is now required for any contractor[…] Read
Artificial intelligence has become the sharpest double-edged sword in cyber security. On one side, defenders are using it to detect threats faster, triage incidents, and reduce noise. On the other hand, attackers are bending the same technology into weapons that are faster, stealthier, and harder to predict than anything we’ve faced before. We’re already seeing[…] Read
AI has changed the world of cybersecurity forever. New threats are appearing that were unthinkable before AI. Leaders in IT and business are asking themselves tough questions: “Are we educated on the latest AI cyber attacks?” “Is our team familiar with phishing email examples—and how AI makes them even more powerful?” “Are we using the latest[…] Read
The Lynx Ransomware group has been increasingly active, employing sophisticated social engineering techniques and exploiting various vulnerabilities to conduct ransomware attacks on large organisations. Their TTPs include impersonation of IT staff and the abuse of legitimate tools to gain unauthorised access, culminating in data encryption and exfiltration. This post presents a technical analysis of a[…] Read
A newly discovered malware strain named LameHug is turning heads by becoming the first publicly documented malware to use a large language model (LLM) to generate real-time system commands during an active attack. Uncovered by Ukraine’s national CERT, the malware is believed to be linked to the Russian state-backed group APT28 (also known as Fancy[…] Read
Cyber threats are evolving faster than ever, and security teams are under immense pressure. A single missed signal can lead to devastating consequences. Traditional tools are no longer enough—organizations need AI-powered solutions that can outpace adversaries, uncover hidden risks, and respond with speed and precision. Enter Microsoft Security Copilot—the first generative AI security platform designed[…] Read