---
title: NetWorks Group Blog | NetWorks Group
description: NetWorks Group is a Managed Detection & Response (MDR) and Ethical Hacking Service provider. We help organizations detect and respond to advanced cyber security threats through a powerful combination of our proprietary threat detection platform, expertise and security tools. Our unique approach to security not only helps you stay ahead of cyber criminals but also helps you reduce cost and increase efficiency.
---

- info@networksgroup.com
- [Contact Us](https://www.networksgroup.com/contact/)

- <https://www.facebook.com/networksgroupinc/>
- <https://www.facebook.com/networksgroupinc/>
- <https://twitter.com/networksgroup>
- [mailto:info@networksgroup.com](mailto:info@networksgroup.com)

[![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_300-154x42.png "NetWorks Group") ![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_750px.png "NetWorks Group") ![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_1500px.png "NetWorks Group")](https://www.networksgroup.com/)

- [Home](https://www.networksgroup.com/)
- Detect & Respond 
    - [Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/)
    - [Endpoint Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/endpoint-mdr/)
- Ethical Hacking 
    - [Full Scope Penetration Test](https://www.networksgroup.com/full-scope-penetration-test/)
    - [Web Application Security Test](https://www.networksgroup.com/web-application-security-test/)
- Security Services 
    - [Managed Security Infrastructure](https://www.networksgroup.com/managed-security-services/)
    - [Compliance Services](https://www.networksgroup.com/pci/)
    - [Vulnerability Management](https://www.networksgroup.com/vulnerability-management/)
    - [Security Architecture Review](https://www.networksgroup.com/security-architecture-review/)
- Resources 
    - [Blog](http://blog.networksgroup.com/)
    - [Library](https://www.networksgroup.com/library/)
- Company 
    - [About](https://www.networksgroup.com/about/)
    - [Contact Us](https://www.networksgroup.com/contact/)
    - [Careers](https://www.networksgroup.com/careers/)
    - [Partners](https://www.networksgroup.com/partners/)

<https://email.networksgroup.com/author/networks-group#sidr>

[![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_750px.png "NetWorks Group")](https://www.networksgroup.com/)

- [Home](https://www.networksgroup.com/)
- Detect & Respond 
    - [Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/)
    - [Endpoint Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/endpoint-mdr/)
- Ethical Hacking 
    - [Full Scope Penetration Test](https://www.networksgroup.com/full-scope-penetration-test/)
    - [Web Application Security Test](https://www.networksgroup.com/web-application-security-test/)
- Security Services 
    - [Managed Security Infrastructure](https://www.networksgroup.com/managed-security-services/)
    - [Compliance Services](https://www.networksgroup.com/pci/)
    - [Vulnerability Management](https://www.networksgroup.com/vulnerability-management/)
    - [Security Architecture Review](https://www.networksgroup.com/security-architecture-review/)
- Resources 
    - [Blog](http://blog.networksgroup.com/)
    - [Library](https://www.networksgroup.com/library/)
- Company 
    - [About](https://www.networksgroup.com/about/)
    - [Contact Us](https://www.networksgroup.com/contact/)
    - [Careers](https://www.networksgroup.com/careers/)
    - [Partners](https://www.networksgroup.com/partners/)

# NetWorks Group Blog

## NetWorks Group

![](https://email.networksgroup.com/hubfs/Portraits/NWG.png)

NetWorks Group is a Managed Detection & Response (MDR) and Ethical Hacking Service provider. We help organizations detect and respond to advanced cyber security threats through a powerful combination of our proprietary threat detection platform, expertise and security tools. Our unique approach to security not only helps you stay ahead of cyber criminals but also helps you reduce cost and increase efficiency.

Find me on:

<https://www.facebook.com/networksgroupinc/> <https://www.linkedin.com/company/networks-group> <https://twitter.com/networksgroup>

### Recent Posts

## [Spear-phishing: Are they preventable ?](https://email.networksgroup.com/spear-phishing-are-they-preventable-)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on May 1, 2018 1:27:03 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/security%20lock.jpg)](https://email.networksgroup.com/spear-phishing-are-they-preventable-)

# Spear-Phishing Attacks: Are They Preventable?

Phishing attacks are increasing at alarming rates. Surveys show that [71% of businesses](https://www.techrepublic.com/article/report-71-of-smbs-are-not-prepared-for-cybersecurity-risks/) are not prepared to manage these type of attacks. Many businesses are finding that their defenses are limited and people in the highest offices are vulnerable.

[Read More](https://email.networksgroup.com/spear-phishing-are-they-preventable-)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/spear-phishing-are-they-preventable-#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security)

## [When 911 emergency call system is struck by cyberattack](https://email.networksgroup.com/when-911-emergency-call-system-is-struck-by-cyberattack)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Apr 9, 2018 10:23:53 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/911%20cyber%20attack.jpg)](https://email.networksgroup.com/when-911-emergency-call-system-is-struck-by-cyberattack)

# When a 911 Emergency Call System Is Struck by a Cyberattack

 Cyberattacks are occurring with greater frequency and they can wreck havoc in a business or an organization. When an emergency system is attacked, however, the results can be potentially life-threatening.  

[Read More](https://email.networksgroup.com/when-911-emergency-call-system-is-struck-by-cyberattack)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/when-911-emergency-call-system-is-struck-by-cyberattack#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Management](https://email.networksgroup.com/topic/threat-management)

## [Critical Vulnerability Advisory: Cisco ASA Remote Code Execution & DOS Vulnerability - Updated - Additional Patching Required](https://email.networksgroup.com/critical-vulnerability-advisory-0)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Feb 5, 2018 2:08:51 PM

- [Tweet](https://twitter.com/share)

# Cisco ASA Remote Code Execution & DOS Vulnerability

### Release Date (01-29-2018) - Updated (02-05-2018) CVE#-2018-0101

#### **Affected Products - Must have WebVPN enabled to be vulnerable**

- 3000 Series Industrial Security Appliance (ISA)
- ASA 5500 Series Adaptive Security Appliances
- ASA 5500-X Series Next-Generation Firewalls
- ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
- ASA 1000V Cloud Firewall
- Adaptive Security Virtual Appliance (ASAv)
- Firepower 2100 Series Security Appliance
- Firepower 4110 Security Appliance
- Firepower 4120 Security Appliance
- Firepower 4140 Security Appliance
- Firepower 4150 Security Appliance
- Firepower 9300 ASA Security Module
- Firepower Threat Defense Software (FTD)
- FTD Virtual

## **Vulnerability Details**

After further investigation, Cisco has identified additional attack vectors and features that are affected by this vulnerability. In addition, it was also found that the original fix was incomplete so new fixed code versions are now available. 

[Read More](https://email.networksgroup.com/critical-vulnerability-advisory-0)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/critical-vulnerability-advisory-0#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [Effective Daily Log Monitoring for PCI](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Feb 1, 2018 10:55:04 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/payment%20card.jpg)](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

Security technologies such as firewalls are meant, at best, to prevent data security breaches, or at worst, detect them before they get out of hand; but in some cases, organizations have been complacent. In the infamous [Target data breach of 2013](https://www.wired.com/2014/01/target-hack/), hackers were roaming their system and stealing data for two weeks before the breach was even detected. In the equally [egregious breach of Heartland Payment Systems](http://it.toolbox.com/blogs/internet-security/heartland-the-greatest-network-breach-in-the-21s-century-53445) five years earlier, hackers were stealing data for several weeks before the invasion was discovered. Ironically, both Heartland and Target were PCI-compliant, but the time lag between system compromise and detection was unnecessarily long. And, they’re not alone in this regard. 

[Read More](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1#comments-listing)

 Topics: [Security Monitoring](https://email.networksgroup.com/topic/security-monitoring), [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Compliance](https://email.networksgroup.com/topic/compliance), [PCI](https://email.networksgroup.com/topic/pci)

## [Critical Vulnerability Advisory: Cisco ASA Remote Code Execution & DOS Vulnerability](https://email.networksgroup.com/critical-vulnerability-advisory)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Jan 30, 2018 4:05:47 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/vulnerability%20management.png)](https://email.networksgroup.com/critical-vulnerability-advisory)

# Cisco ASA Remote Code Execution & DOS Vulnerability

### Release Date (01-29-2018) CVE#-2018-0101

## **Affected Products - Must have WebVPN enabled to be vulnerable**

- 3000 Series Industrial Security Appliance (ISA)
- ASA 5500 Series Adaptive Security Appliances
- ASA 5500-X Series Next-Generation Firewalls
- ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
- ASA 1000V Cloud Firewall
- Adaptive Security Virtual Appliance (ASAv)
- Firepower 2100 Series Security Appliance
- Firepower 4110 Security Appliance
- Firepower 9300 ASA Security Module
- Firepower Threat Defense Software (FTD)

## **Vulnerability Details**

This vulnerability affects an unknown function of the SSL VPN component within the ASA. The vulnerability is triggered when an attacker attempts to double free a section of memory when the VPN component is active on the ASA. An attacker could exploit this vulnerability by sending multiple, crafted XML packets to a webvpn-configured interface on the affected system.

[Read More](https://email.networksgroup.com/critical-vulnerability-advisory)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/critical-vulnerability-advisory#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [Modeling an effective threat detection and response program](https://email.networksgroup.com/modeling-an-effective-threat-detection-and-response-program)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Dec 19, 2017 10:35:41 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Images/warning-2168379_1280.png)](https://email.networksgroup.com/modeling-an-effective-threat-detection-and-response-program)

# **Modeling an effective threat detection and response program**

***Know Your Enemy***

[Read More](https://email.networksgroup.com/modeling-an-effective-threat-detection-and-response-program)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/modeling-an-effective-threat-detection-and-response-program#comments-listing)

 Topics: [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Hunting](https://email.networksgroup.com/topic/threat-hunting), [Threat Management](https://email.networksgroup.com/topic/threat-management)

## [Protect. Detect. Respond: The Case for Managed Detection and Response](https://email.networksgroup.com/protect.-detect.-respond-the-case-for-managed-detection-and-response)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Nov 27, 2017 10:49:18 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Images/Webinar%20-%20Carbon%20Black/AdobeStock_94905049.jpeg)](https://email.networksgroup.com/protect.-detect.-respond-the-case-for-managed-detection-and-response)

Cyber security is on the mind of every business executive in the world. Modern security challenges are not easy to fix or even identify, and despite some misleading advertising from vendors, there is no one-size-fits-all solution. We frequently observe large visibility gaps in existing security implementations, providing even obvious red flags to slip under the radar. Firewalls and traditional antivirus software are important, but only react to known threats. Too many organizations rely on passive preventative technology for network security. Good attackers employ stealth and polymorphic tools that defy signature-based detection, allowing them to bypass these technologies all together. We must assume that *threats will get in*, and *no system is impenetrable*.  

[Read More](https://email.networksgroup.com/protect.-detect.-respond-the-case-for-managed-detection-and-response)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/protect.-detect.-respond-the-case-for-managed-detection-and-response#comments-listing)

 Topics: [Security Monitoring](https://email.networksgroup.com/topic/security-monitoring), [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Hunting](https://email.networksgroup.com/topic/threat-hunting), [Threat Management](https://email.networksgroup.com/topic/threat-management)

## [A Primer to Endpoint Threat Detection & Response](https://email.networksgroup.com/a-primer-to-endpoint-threat-detection-response)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Jul 11, 2017 1:18:00 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/primer%20to%20endpoint%20.jpg)](https://email.networksgroup.com/a-primer-to-endpoint-threat-detection-response)

 As global cybercrime continues to develop new methods to penetrate system defenses, the tactics used in response to threats have been forced to adapt as well. The result has been a move from simple antivirus protection to complete endpoint protection using sophisticated integrations of endpoint malware protection, threat detection and response algorithms, and, in some cases, managed security services. Endpoint threat detection has been identified by Gartner research as one of the top tools for fighting cybercrime.

[Read More](https://email.networksgroup.com/a-primer-to-endpoint-threat-detection-response)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/a-primer-to-endpoint-threat-detection-response#comments-listing)

 Topics: [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Management](https://email.networksgroup.com/topic/threat-management)

## [VENOM - Xen, KVM, and QEMU Virtualization - High Vulnerability Advisory](https://email.networksgroup.com/venom-xen-kvm-and-qemu-virtualization-high-vulnerability-advisory)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on May 13, 2015 10:24:00 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/info-2150941_1280.png)](https://email.networksgroup.com/venom-xen-kvm-and-qemu-virtualization-high-vulnerability-advisory)

### VENOM (Virtualized Environment Neglected Operations Manipulation)

**If you are currently utilizing Xen, KVM or QEMU virtualization products you need to apply patches. VMware and Microsoft Hyper-V virtualization products are not affected.**

[Read More](https://email.networksgroup.com/venom-xen-kvm-and-qemu-virtualization-high-vulnerability-advisory)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/venom-xen-kvm-and-qemu-virtualization-high-vulnerability-advisory#comments-listing)

 Topics: [Threat Hunting](https://email.networksgroup.com/topic/threat-hunting), [Vulnerability Management](https://email.networksgroup.com/topic/vulnerability-management), [Threat Management](https://email.networksgroup.com/topic/threat-management), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [Cisco UCS Central Software - Critical Vulnerability Advisory](https://email.networksgroup.com/cisco-ucs-central-software-critical-vulnerability-advisory)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on May 8, 2015 9:08:00 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/info-2150941_1280.png)](https://email.networksgroup.com/cisco-ucs-central-software-critical-vulnerability-advisory)

### Affected Product Cisco UCS Central Software versions 1.2 and earlier

**If you are currently running Cisco UCS Central Software you should update the software immediately.**

[Read More](https://email.networksgroup.com/cisco-ucs-central-software-critical-vulnerability-advisory)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/cisco-ucs-central-software-critical-vulnerability-advisory#comments-listing)

 Topics: [Device Management](https://email.networksgroup.com/topic/device-management), [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

[All posts](https://email.networksgroup.com/all) [Next](https://email.networksgroup.com/author/networks-group/page/2)

### Subscribe to our blog!

### Stay Informed!

### Recent Posts

### Posts by Topic

- [Information Security (50)](https://email.networksgroup.com/topic/information-security)
- [Threat Management (34)](https://email.networksgroup.com/topic/threat-management)
- [Ethical Hacking (31)](https://email.networksgroup.com/topic/ethical-hacking)
- [Managed Detection & Response (25)](https://email.networksgroup.com/topic/managed-detection-response)
- [Penetration Testing (21)](https://email.networksgroup.com/topic/penetration-testing)
- [Vulnerability Management (12)](https://email.networksgroup.com/topic/vulnerability-management)
- [Compliance (11)](https://email.networksgroup.com/topic/compliance)
- [Security Monitoring (11)](https://email.networksgroup.com/topic/security-monitoring)
- [Healthcare (9)](https://email.networksgroup.com/topic/healthcare)
- [Threat Advisory (8)](https://email.networksgroup.com/topic/threat-advisory)
- [Threat Hunting (7)](https://email.networksgroup.com/topic/threat-hunting)
- [Security Architecture Review (6)](https://email.networksgroup.com/topic/security-architecture-review)
- [HIPAA (5)](https://email.networksgroup.com/topic/hipaa)
- [Device Management (4)](https://email.networksgroup.com/topic/device-management)
- [Incident Response (4)](https://email.networksgroup.com/topic/incident-response)
- [Events (1)](https://email.networksgroup.com/topic/events)
- [PCI (1)](https://email.networksgroup.com/topic/pci)

see all

###### About Us

NetWorks Group is a Managed Detection & Response (MDR) and Ethical Hacking Service provider. We help organizations detect and respond to advanced cyber security threats through a powerful combination of our proprietary threat detection platform, expertise and security tools. Our unique approach to security not only helps you stay ahead of cyber criminals but also helps you reduce cost and increase efficiency.

###### More Links

- [Home](https://www.networksgroup.com/)
- [Blog](http://blog.networksgroup.com/)
- [About](https://www.networksgroup.com/about/)

###### Contact Us

(888) 798-1012  
 info@networksgroup.com  
 www.networksgroup.com

- <https://www.facebook.com/networksgroupinc/>
- <https://www.linkedin.com/company/networks-group>
- <https://twitter.com/networksgroup>

© 2017 - NetWorks Group