Security Patches – The Better Way to Update

Updates often come at the worst moment. You go to shut down your laptop to rush to a meeting, and you get a “Windows is updating. Do not power off” message. Argh!

Or you leave your desktop to go to a meeting and come back to find your computer has restarted in your absence. Those unexpected bug fixes and performance improvements lost you all your unsaved work.

You know updates are important. They help patch security flaws. These are the vulnerabilities that hackers love to exploit. Updating helps you keep business documents and data safe. Software updates can also add new, useful features and remove outdated ones. Plus, keeping software and systems up to date is good cyber citizenship. Security patches protect from attacks that could also impact employees, customers, and partners.

Updating is a pain but oh so important

The WannaCry ransomware attacked hundreds of thousands of computers in more than 150 countries. Among those infected were the UK National Health Service, FedEx, Telefonica, the Russian Interior Ministry, and more, all because people (and companies) weren’t keeping their computers updated. The later Petya ransomware preyed on the same vulnerabilities, despite the publicity around WannaCry and Microsoft having already released a patch.

Still, people don’t bother updating. According to a Skype survey, 40% of respondents didn’t update their machines when prompted, almost 25% required a second prompt. Nearly 45% worried that installing the update would weaken their computer’s security.

And keeping Windows up to date isn’t enough. Cybercriminals aren’t stopping there, so you can’t either. You also need to be patching third-party applications such as Java or your Adobe suite. More employees are also bringing their own devices to the workplace. Overlooking security updates for these entry points is like leaving a window wide open and expecting criminals to walk by.

Equifax’s failure to update a Java virtual machine proved costly. Hackers accessed over 145 million credit reports in 2017. The company lost more than $5 billion in market cap, and the CEO lost his job.

Businesses need a better way to keep your software security patches current. Here’s help.

Keeping security patches current, conveniently

Avoid the inconvenience of the “Update Now” interruption by setting up automated patching. Patching all your computers or different device types can be time consuming.

Determine when downtime won’t be as disruptive, and schedule patches for that timeframe. This lets you update an entire department when they aren’t there, or patch individual computers around the employee’s schedule. For instance, if your accountant comes in only on Tuesdays, you wouldn’t patch that computer that day.

This approach also creates a consistency your employees can plan around, which allows them to manage all security updates without you having to lift a finger.

To do this, you can outsource the patching to a managed service provider (MSP). The MSP installs remote monitoring and management (RMM) software to manage all security updates without you having to lift a finger.

The RMM software gives your IT partner visibility into your business technology. They’ll track your hardware, software, and network environments to keep ahead of issues. This sets your business up to respond faster to any events.

Using the RMM, the MSP can automate software patching and OS updates to reduce the hassle. The RMM can be cloud-based or on-premises (requires onsite hardware investment).

Conclusion

Automating or outsourcing software updates can improve your security and compliance. Your employees enjoy new features, extended support, and access to the latest technology. A reliable, secure system can improve stability, speed processes, and drive increased productivity.

Get expert help determining patching priorities, or partner with CPI Networks to install our RMM and monitor and resolve issues remotely. CPI can help! Contact our experts today at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

5 Common Computer Myths Debunked

Common urban myths would have us believe alligators live in sewers or people put razor blades in kids’ candy. Common misconceptions about computers are just as persistent. Here are several IT myths debunked for your benefit.

#1 A slow-running computer has a virus

A virus can be to blame. Spyware or other malware can also cause a computer to slow down. However, there are also many other reasons your computer might run slower:

  • You may have a lot of programs that start up when you boot up the computer. You could remove or disable programs that start every time.
  • The computer has gone into power save mode every night, but you haven’t rebooted the computer in a long time.
  • There are many programs running in the background. On a Windows PC, you can go into task manager and see what is running and the computer resources in use.
  • A security utility is running. If it’s an antivirus scanner, let the scan finish first, then see if your computer speed improves.
  • Temporary files or other junk are taking up too much hard drive space. Your computer needs at least 200–500MB of free space on the hard drive to be able to move and manage files.
  • Your computer doesn’t have enough RAM to run programs within memory. If your computer has to swap information on the hard drive to get enough memory to run programs, it’s going to work slower.
  • The computer is old. You may need to upgrade to a computer that can handle current software needs without slowing to a snail’s pace.

#2 Macs don’t get viruses

Many Apple owners believe their Macintosh computers are immune to viruses. If only. Macs do get viruses; they are simply targeted less than PCs. Why? There are many more computers running Windows, which means a bigger, easier target for cybercriminals.

As Apple’s market share rises, the threat to Macs is growing. Apple works to protect its users from malware, but you still need to use caution with downloads and when clicking on links from unknown sources.

#3 My Windows registry needs cleaning up

Registry cleaning companies will say that scanning your Windows registry can speed up the computer and avoid error messages. The cleaner finds unused registry keys and any malware remnants for removal.

But let’s consider the fact that Microsoft has not released its own registry cleaner. Why not? Because it’s really not necessary. Worse still, going in to clean your registry (when you don’t know what you’re doing) can actually do serious damage.

#4 My laptop battery needs to be dead before I recharge if I want it to last longer

This was once true. Nickel-cadmium batteries suffered from what was called a “memory effect.” If discharged and recharged to the same point several times, they would remember that point in the future and not go further.

Now, however, laptops typically come with lithium-ion (or Li-ion) batteries. They don’t suffer from this memory effect. In fact, they function better with partial discharge instead of letting the battery run down to zero.

#5 I don’t have anything hackers would want

Cybersecurity should be a priority for everyone, not only sprawling enterprises. Let’s put it this way:

  • Do you have any money?
  • Do you have an identity cybercriminals could use to access money or sell for money?
  • Do you work anywhere?

Hackers have all kinds of ways to profit from your data or from hijacking your computer’s processing power. They can turn your computer into part of a bot network or use your information as a bridge into a business target’s system.

Keep all your computers at top speed with the best security measures in place with the help of our experts. Contact us today at(416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

How to Destroy Data Properly

When we accidentally delete something, it feels like the end of the world. If a client file or new presentation is deleted, you may have to start again. Oh no! Yet deleting files is not as permanent as you may think. When it comes to destroying data properly, you’ll want to take a more thorough approach.

Deleting items, or “trashing” them, doesn’t permanently remove them from computer memory. While the data is still stored on your device’s hard disk, it’s possible someone could restore that deleted data.

Data does reach a point at which it’s no longer useful, and you are no longer required to maintain it. Nevertheless, it may still be valuable to cybercriminals. Bad actors can use names, addresses, credit card numbers, banking accounts, or health data. You need a policy to destroy paper records, magnetic media, hard drives, and any storage media.

Your obligation to protect customer and staff information extends to properly destroying all identifying data. Installing a new operating system isn’t going to do it. Encryption doesn’t do the job if the cybercriminal can figure out the password.

Some industries require you to prove you have correctly destroyed all data. Even if you have no compliance standards to meet, carefully dispose of any computer-related device. Whenever you are recycling, discarding, or donating an old computer, disk drive, USB stick, or mobile device, make sure the data is already properly deleted or destroyed. Otherwise, criminals could get their hands on confidential business information.

Fully, Safely Destroying Your Data

So, what do we mean by “properly” destroyed? You know about shredding paper documents. You can actually do the same with some devices. You might send the computer or device to a company with a mega-shredder. When compliance matters, keep a record of the chain of custody of the data throughout the process.

Overwriting the data, often called zeroing, is another solution. No data is properly deleted until it’s written over – that’s where the information is hidden under layers of nonsensical data and cannot be retrieved through disk or file recovery utilities. Think of this as writing three new books over the top of the pages of an erased book rather than just ripping the pages out.

With magnetic devices, you can neutralize the magnetism (degaussing) to break down the data. This scrambles up the data beyond recovery. A strong degausser will turn the device into a shiny metallic paper weight. An ultraviolet erase could be necessary for some erasable programmable memory. You might also need to perform a full chip erase.

If you’re really committed to destroying data, physically destroy the device. There’s the shredding solution, or you might actually pay to have the device smelted or pulverized.

Other Components to Destroy with Data

Don’t forget proper disposal of printers, too. Run several pages of unimportant information (maybe a font test) before destroying a laser p6rinter. With an impact printer (if you still have one!), you’d want to destroy all ribbons, too.

One last element you might think about? Business monitors. You’ve probably seen a computer screen with information burned onto it. Before donating or recycling a monitor, inspect the screen surface and destroy the cathode ray tube.

Now, that’s what we call being thorough about properly destroying data. Need help with proper disposal of computer data or equipment?

We can help. Contact our experts today at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

6 Target Areas to Reduce IT Costs

Your business is always looking to reduce costs. Looking at the information technology budget line items is headache inducing. So much money spent in one area, and there’s so little you can do about it! But is that really true? IT expenses may not be as fixed as you think. Take a look at these target areas where you might reduce costs.

#1 Software

Your business likely pays to license software such as Microsoft Office 365 or Adobe Photoshop. Reviewing these software agreements, you can often find cost savings:

  • You may be able to renegotiate a subscription if the provider wants to move you onto to a new offering.
  • You may find that you are paying for software that your employees are no longer using much. Maybe you can reduce or remove it.
  • Perhaps the pricing has changed, and there are now better plan options available.
  • There may be an open-source software alternative to save acquisition and maintenance costs.

#2 Hardware

Your current hardware may be underused, need refreshing, or have lost productivity. Look for opportunities to run applications on less expensive devices, or link together several computers to replace expensive server equipment. Standardizing platforms can also significantly reduce IT costs while providing consistency.

#3 Cloud Computing

One way to cut IT infrastructure costs is to move to the cloud. You may be able to run software on the cloud for a fraction of the cost. Moving data backup to the cloud to replace an on-premises server can also cut costs, not to mention the utility savings from not having to power the replaced components.

Even if you’re already in the cloud, you can explore whether you are on the best available plan for you and consider:

  • Are you paying for more storage or resources than you need?
  • Are you taking full advantage of mobility and scalability features?
  • Are you duplicating on-premise and cloud-based services?

#4 Internet Services

Your employees need to be online; you’re not going to cut out internet services. However, you may be able to control costs:

Should you buy modems or routers instead of renting them from your provider?

  • Consider the internet speed in your plan. Do you need that level of service?
  • Is slow internet speed costing your company money when, in fact, you’ll be more efficient with an upgrade?
  • Are you able to bundle services to find cost savings?
  • Are you in a position to renegotiate your plan?

#5 IT Staff and Services

Avoid infrastructure costs and the hiring expenses of onsite IT staff by outsourcing. Often your business can pay a set monthly fee or go on a pay-per-use model to gain services such as:

  • IT help desk support
  • security
  • disaster recovery
  • backup

#6 Utilities

Don’t overlook the costs involved in powering your IT components. Review your utility bills to identify trends. Can you save money by turning off equipment? Is there a better plan available with a competing service? Should you renegotiate the terms of your existing plan?

Time for a Technology Audit

Ultimately, the best way to identify specific areas to cut your IT budget is a technology audit.

Your IT needs are always changing, and the technology evolves, too. Many businesses add expensive components or systems with “room to grow.” New tools get added on as needs arise. Your use of certain technologies may expand or shrink.

An IT expert can provide an overview of all the software and services you use, and of bills related to your IT budget to find areas to streamline or cut altogether. It may seem counter intuitive to pay money in an attempt to save money. However, an outsider’s perspective can provide fresh insight into the “way things have always been done” and help you see new opportunities for consolidation.

We can help you meet your budget goals. Contact us today at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

Failure is Not an Option: Getting Rid of Single Points of Failure

You might think that your business is going to be OK even if a single device goes down. After all, there are other devices your people can use. It’s not as if the entire system is going to fall like dominoes. Or is it? Get rid of single points of failure to make one vulnerability doesn’t take down your network.

A single point of failure (SPOF) can be a design, implementation, or configuration weakness. Star Wars fans will already be thinking of the Death Star’s ill-designed thermal exhaust port. That was the SPOF Luke Skywalker exploited.

Yet, cybercriminals don’t need the Force to target IT fatal weaknesses. SPOFs for technology include:

  • Having only one server that runs an essential application. Without that server, your employees can’t use that particular business tool.
    • Solution: Plan for the worst with built-in server redundancy. Have multiples of any hardware that is business critical. Migrate to the cloud so you can continue accessing applications, software, and storage.
  • Power outages can wreak havoc on computers and devices operating your network.
    • Solution: An Uninterruptible Power Supply (UPS) device can help prevent intermittent power interruptions to your computers, switches, and modems. Cloud solutions reduce the risk of this problem too. Employees can continue to access data and software working at different locations.
  • Your physical location could also be the SPOF. What if road closures, fire, floods, or a violent storm prevent you from being able to get to the office? Without a backup, you’ll struggle for business continuity.
    • Solution: Pool computer resources in the cloud (servers, storage, applications, and voice services). This provides continued access anywhere, anytime, and often from any device.
  • Sorry to say it, but your people could also be your fatal weakness. Perhaps you have one or even two in-house IT experts who know everything about your technology. But, what do you do if they both quit? Or one is sick and the other is on vacation when something goes wrong?
    • Solution: You can’t have every person become a subject matter expert on all aspects of IT. So consider outsourced IT.
  • You can’t get online without an internet connection. Yet you’re reliant on an external provider for that access. Planned downtime for maintenance is easier to plan around. Still, unexpected issues can cause the internet to go out.
    • Solution: Have a backup solution to pick up the slack if the main connection goes down. A router that supports having a 4G modem, for instance, could be a good failover.

Having one device out of commission is frustrating, but not necessarily the end of the world. But, when the damage wrought by a single weakness spreads business-wide, you could face serious consequences.

Downtime for systems failure or data breaches can be:

  • Expensive – In addition to potential overtime for IT staff remedying the situation and possible revenue losses, your company may also face fines.
  • Time consuming – your people must adapt to a new reality while IT resources are spent trying to get back to business as usual.
  • Reputation damaging – any disruption to business as usual could undermine customer trust and prompt churn.

IT professionals understand the danger of SPOF. Avoid weaknesses that can lead to systemwide failures or loss of business information. Partner with computer specialists who can identify and eliminate these vulnerabilities at your business. Contact us today at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

Are You Due? What to Do When You Get a Renewal Notice

Your business relies on any number of service providers. You’re likely contracting for domain names, website hosting, data backup, software licenses, to name just a few. And that’s only your online presence! So, when a renewal notice comes in, you might just forward it on or file it away for future reference. Here’s what you should be doing instead.

First, when you get a renewal notice, you should confirm that it’s legitimate. This is especially true of domain names. Your business’s domain name and expiration date are publicly available. Anyone could look them up and send you an invoice. Scammers do. They monitor expiring domain names and then send out emails or convincing physical notices telling you it’s time to renew. They are not doing this as a civic service!

Instead, they will be trying to get you to switch your domain services to a competitor or, worse, hoping you’ll pay your renewal fee to their account, which has no connection to your domain.

  • Look out for the following indicators that the notice is a fraud:
  • The price is much more than you’d expect.
  • The deadline is within seven days.
  • You don’t know the business name.
  • This business has never contacted you before.
  • The notice requires you to send a check.

Handling Authentic Renewal Notices

Once you’ve determined the authenticity of the renewal notice, you’ll want to take stock. Putting your licenses or other online services on auto-renewal plans can be easier, but it may not be cost effective. Before re-upping your plan consider:

  • Are you still using this service?
  • Do you really still need it?
  • Do your current needs meet your current plan?
  • Should you upgrade or downsize?

You might also contact your provider directly and ask:

  • Is there a better product available now?
  • Are you eligible for a loyalty discount?

The company you’re dealing with wants to keep your business (hence, the renewal notice). That can give you some leverage in negotiating what you are paying or what service you are getting. You could treat an annual renewal notice as an opportunity to renegotiate terms. It’s not always going to work, but it can be worth a phone call as you try to keep business expenses under control.

Finally, you should pay attention to any deadlines on the renewal notification. Some are sent months in advance. That seems so helpful, but if you put it away to deal with later, before you know it you’ve missed an important date and the service is stopped.

You should always get a renewal notice for something like a domain name. The Internet Corporation for Assigned Names and Numbers (ICANN) requires companies to send reminders approximately one month and one week before your domain name expires.

Don’t leave your renewal to the last minute. With expired domain names, for instance, you can lose your website! Options and fees for renewing domain names, including expired ones, are going to vary, so be sure you know what your subscription involves.

Also, there are bad actors out there who monitor domain expirations to buy them up at bargain prices. Then, when you notice the subscription has lapsed, you have to pay a king’s ransom to get the Web address back. Yes, it can happen to you. In fact, the World Intellectual Property Organization (WIPO) handled a record 3,074 cybersquatting disputes last year.

Avoid being overwhelmed by all the subscriptions and service plans your business relies upon. A managed service provider (MSP) monitors your license and domain expiration dates to ensure your business is current. At the same time, the MSP has the expertise needed to determine what plans best suit your business needs.

Give us a call at  (416) 645-2469, (905) 667-0441 or email us to enjoy the peace of mind a managed service provider brings!

Want to be notified when our next blog is posted, sign up here.

Why Computer Repair Is Best Left to Experts

Many of us have one solution to try when something goes wrong with our computers: turn it off and back on again. When that doesn’t work, we panic: “How am I supposed to do anything?” People often turn to a friend or family member for help in the moment. But computer repair is better left to experts.

Calling tech support (if that’s an option) can be time-consuming and frustrating. So, people turn to the nearest teenager or that cousin with all the latest technological gadgets. Think of it this way, though: Driving a car doesn’t mean you can fix one. Having a lot of cars doesn’t show the owner knows what to do when one of those vehicles breaks down.

Consider the investment you’ve made in your computer. Now, ask yourself: when was the last time I backed up? Please, say recently! If not, think about the value of the content you might lose if the computer is not handled with care.

When a computer expert sets out to investigate the problem, they do so with utmost caution. Before doing anything, they’ll know to make a clone of your hard drive. Then, in identifying and solving the problem, they know what is safe to try. They also know what actions to avoid.

The Price of Amateur Fixes

Your family/friend tech support might turn to the internet for help. Sure, Google and YouTube will provide some answers, but context matters. Will your oh-so-helpful friend know which answers are relevant to your situation? Trying different things can be dangerous if the approach isn’t suited to the problem.

Ask any computer repair expert. They’ll have stories to tell about computers “fixed” by amateurs who made the problem worse. They may even have lost data along the way.

Just as you wouldn’t turn to the Web to diagnose cancer, don’t trust just anyone with the health of your computer. Computer repair may look simple, but expert decision-making determines the best solution.

As with most jobs, computer experts draw upon specialized training and hands-on experience. They’re also up on the latest threats, technologies, and solutions. This helps them to diagnose the problem more quickly. They can go in and fix the problem right away, because they’ve seen it before read about the problem. Or perhaps they have colleagues who have done something like this before, or they’ve researched the technology to identify different options. Can your Aunt Sue or friend Frank say the same thing?

Think also of your typical answer when someone asks you for help. You’re human. You want to help, even if you don’t actually know that much about the problem. So, when you ask a family member, they’re likely to say, “sure.” Even when they should be saying, “I don’t know how to fix that.”

When friends admit the repair is beyond them, you’ve already wasted time letting them take a crack at it. Worse, they may actually break your computer or lose important files. You have to go to the experts now for that new part or in the hope of retrieving the data. Meanwhile, you’re not feeling so friendly towards the person who created the new problem, are you? They may also feel annoyed that you didn’t pay them for their services.

Don’t jeopardize your relationships, and avoid doing more damage to your computer. Bypass the friend/family tech support solution and turn to the professionals first.

Fixing a computer isn’t always simple. Get expert help to preserve as much data as you can, and avoid expensive replacements as long as possible.

Have computer problems? We can help. We do computer repairs for a living! And our experts are friendly, too.

Call us at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

Time for What Matters: Essential Windows Shortcuts

The average person spends 90,000 hours at work. These hours can cost us sleep, affect our mood, and cause us to gain weight. Oh, and work can cause stress, too. We can’t give you a “get out of work free” card, but these essential Windows shortcuts will help you save time.

By gaining efficiency at your computer, you may find you have more time for what matters. At work, this may be devising new innovations or getting out in the field. At home, these shortcuts can free up time to play a board game with the kids or do some gardening with Grandma.

Ctrl + X to Cut

Think about X marking the spot in the text where you want to cut words, an image, or a URL. Drag your cursor over the selection to highlight the particular text/table/image/file (or a part of it). If you don’t want it at all, the cut function is another version of delete. If you want to move the selection, this is your first step.

Ctrl + V to Paste

With this simple shortcut you can place the information you just cut (or copied using Ctrl + C) anywhere you want. The important thing to remember is that the paste function only holds one selection in memory. So, if you cut a phrase from one place, don’t get distracted by an image you want to copy or other text to cut. You want to paste what you have first, then go back and copy or cut the next thing so as not to risk risking losing anything.

Ctrl + Z to Undo

If only this shortcut was available in real life. We could retract that thing we inadvertently said to Uncle Steve, or take out the salt we put in a recipe instead of sugar, or avoid leaving the house for the gym without our running shoes.

Still, Windows users are able to undo their most recent action with this key combination. Whichever Windows program you’re in, you can use Ctrl + Z to reverse your last action. To redo something, go with Ctrl + Y.

Alt then Tab to Switch Screens

There are many things you can do with Windows. Perhaps you’re multitasking: you have a PowerPoint open, as well as an Excel spreadsheet, and Internet Explorer, too. By pressing Alt and then the Tab key, you can switch between tabs or screens. If you hold down the Alt button while tapping Tab, you’ll scroll through all screens.

Ctrl + N to open a new window

Pressing Ctrl+N together opens up a new document file or browser window, depending on the program you’re in. It saves you a few drop-down menus and works in most Windows applications and Web browsers.

Ctrl + F to Find

This is another one we’d love to see in the real world. Using the find shortcut calls up a pop-up box where you can enter text or numbers. You can use this shortcut to find what you’re looking for on a Web page, in a PDF document, or in your rough draft of a speech. In fact, you’ll be able to see how many times your search text appears and toggle from one selection to the next.

Ctrl + Mouse to Zoom

Forget your reading glasses? Looking at a too-small infographic? Having a tough time locating the right tiny file on your desktop? You can zoom in with this shortcut. Using this shortcut on your desktop makes files and folders larger. In your browser, this function zooms in on the page.

Want to know more about Windows and technology to streamline processes? Our experts can help you find the right computer solutions for your home or office. Contact us at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.

Do Macs Get Viruses?

Many Apple owners believe their Macintosh computers are immune to viruses. Apple itself has run ad campaigns promising its computers “don’t get viruses”. And those who have owned a Mac for years, decades even, are particularly prone to believing. After all, nothing’s happened to them yet. Regrettably, Macs do get viruses, and the threat is growing.

For a long time the argument was that cybercriminals didn’t bother to develop Mac viruses. There weren’t enough users to justify the effort. Instead, they’d focus on the lower hanging fruit – PCs running Windows.

Yet Apple’s market share is on the rise, and it’s increasingly common to see Macs in the workplace, especially in creative industries. Plus, there’s a widespread assumption that Mac users are a smart target as they are likely to be better off. So, while Macs remain harder to infect (installing most software requires a password), there’s often a greater payoff.

The research reflects the reality. In 2017, for instance, the iPhone OS and Mac OS X placed #3 and #6 in CVE Details’ top 50 ranked by total number of distinct vulnerabilities. Apple TV and Safari also made the list at #17 and #18, respectively. In 2017, Malwarebytes also reported it “saw more Mac malware in 2017 than in any previous year”. By the end of 2017, the cybersecurity firm had counted 270% more unique threats on the Mac platform than in 2016.

Finding Apple’s Weak Spots

It’s obvious then that bad actors are no longer steering clear. They are actively looking for ways to exploit Macs.

A common approach is to use Trojans. Named after a gift wooden horse that hid an army, Trojans look like something you would want to install. So, Mac users happily enter their passwords to download that application and open the gates to the cybercriminal.

In 2011, for instance, a Trojan called “Mac Defender” took advantage of people’s desire to protect their computers. The fake program appeared to be anti-virus software. Once the users installed it, they’d get an onslaught of pop-up ads encouraging them to buy more fake software.

Trojans get through the gates because you let your guard down. You are taken in by that supposed note from a long-lost friend. You think you want to see that pic of that famous celebrity. All it takes to stop this type of attack is suspicion of everything you might install or download.

A business would want to educate its employees about the importance of:

  • clicking on emails with care;
  • validating the source of any files they plan to open;
  • checking a website’s URL (being especially wary of those with less common endings such as .cc or .co);
  • questioning any promises of Ray-Ban sunglasses for 90% off or the latest iPhone for $29.99.

A new threat comes from within the Mac App Store, according to Thomas Reed, a Mac security researcher. When a user tries to install an app on a Mac, a Mac OS program called Gatekeeper checks the file’s code signature. The signature helps certify the app is valid. However, Reed found that cybercriminals could buy a legitimate certificate from Apple, or steal one and trick users. Users would install masked malware that could infect legitimate programs and evade detection.

Key Takeaway

Apple is always working to protect its users from malware. It has measures in place, and user caution can make a big difference, too. Still, it’s not true that Macs are completely safe.

Find out what you can do to protect your Macs and guard against threats. Partner with a managed services provider to gauge your security levels.

Call us today at (416) 645-2469, (905) 667-0441 or email us.   

Want to be notified when our next blog is posted, sign up here.