---
title: NetWorks Group Blog (2)
description: Managed Detection & Response Service, Ethical Hacking Service (2)
---

- info@networksgroup.com
- [Contact Us](https://www.networksgroup.com/contact/)

- <https://www.facebook.com/networksgroupinc/>
- <https://www.facebook.com/networksgroupinc/>
- <https://twitter.com/networksgroup>
- [mailto:info@networksgroup.com](mailto:info@networksgroup.com)

[![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_300-154x42.png "NetWorks Group") ![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_750px.png "NetWorks Group") ![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_1500px.png "NetWorks Group")](https://www.networksgroup.com/)

- [Home](https://www.networksgroup.com/)
- Detect & Respond 
    - [Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/)
    - [Endpoint Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/endpoint-mdr/)
- Ethical Hacking 
    - [Full Scope Penetration Test](https://www.networksgroup.com/full-scope-penetration-test/)
    - [Web Application Security Test](https://www.networksgroup.com/web-application-security-test/)
- Security Services 
    - [Managed Security Infrastructure](https://www.networksgroup.com/managed-security-services/)
    - [Compliance Services](https://www.networksgroup.com/pci/)
    - [Vulnerability Management](https://www.networksgroup.com/vulnerability-management/)
    - [Security Architecture Review](https://www.networksgroup.com/security-architecture-review/)
- Resources 
    - [Blog](http://blog.networksgroup.com/)
    - [Library](https://www.networksgroup.com/library/)
- Company 
    - [About](https://www.networksgroup.com/about/)
    - [Contact Us](https://www.networksgroup.com/contact/)
    - [Careers](https://www.networksgroup.com/careers/)
    - [Partners](https://www.networksgroup.com/partners/)

<https://email.networksgroup.com/page/2#sidr>

[![NetWorks Group](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/NWG_Black_Logo_750px.png "NetWorks Group")](https://www.networksgroup.com/)

- [Home](https://www.networksgroup.com/)
- Detect & Respond 
    - [Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/)
    - [Endpoint Managed Detection & Response](https://www.networksgroup.com/managed-detection-response/endpoint-mdr/)
- Ethical Hacking 
    - [Full Scope Penetration Test](https://www.networksgroup.com/full-scope-penetration-test/)
    - [Web Application Security Test](https://www.networksgroup.com/web-application-security-test/)
- Security Services 
    - [Managed Security Infrastructure](https://www.networksgroup.com/managed-security-services/)
    - [Compliance Services](https://www.networksgroup.com/pci/)
    - [Vulnerability Management](https://www.networksgroup.com/vulnerability-management/)
    - [Security Architecture Review](https://www.networksgroup.com/security-architecture-review/)
- Resources 
    - [Blog](http://blog.networksgroup.com/)
    - [Library](https://www.networksgroup.com/library/)
- Company 
    - [About](https://www.networksgroup.com/about/)
    - [Contact Us](https://www.networksgroup.com/contact/)
    - [Careers](https://www.networksgroup.com/careers/)
    - [Partners](https://www.networksgroup.com/partners/)

# NetWorks Group Blog

## [Do You Trust Your CEO’s Email?](https://email.networksgroup.com/do-you-trust-your-ceos-email)

 Posted by [Scot Armstrong](https://email.networksgroup.com/author/scot-armstrong) on Mar 8, 2018 10:08:58 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/ceo%20email.jpg)](https://email.networksgroup.com/do-you-trust-your-ceos-email)

If you received an email from your company CEO asking you to perform a task or pay a vendor, would you proceed without question or would you verify?  “It’s an email from the CEO, I have to do this” you might think.  You might be better off verifying that request if it involves money or confidential information.

[Read More](https://email.networksgroup.com/do-you-trust-your-ceos-email)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/do-you-trust-your-ceos-email#comments-listing)

 Topics: [Ethical Hacking](https://email.networksgroup.com/topic/ethical-hacking), [Penetration Testing](https://email.networksgroup.com/topic/penetration-testing)

## [Understanding The Cyber Kill Chain](https://email.networksgroup.com/understanding-the-cyber-kill-chain)

 Posted by [Jyothish Varma](https://email.networksgroup.com/author/jyothish-varma) on Mar 1, 2018 11:56:48 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/cyber%20kill%20chain.jpg)](https://email.networksgroup.com/understanding-the-cyber-kill-chain)

The cyber kill chain concept is based on the military kill chain, which uses a three-stage process that covers target identification, defending against the attack and wiping out the target. [Lockheed Martin](http://www.lockheedmartin.com/content/dam/lockheed/data/corporate/documents/Gaining_the_Advantage_Cyber_Kill_Chain.pdf) started using the "kill chain" to refer to information security. It applies these same steps to cyber attackers who attempt to break into its computer network and corrupt or steal data. While the analogy may not always be a perfect one when you compare the cyber kill chain to the original military one, this concept gives you the opportunity to break a cyber attack into easily comprehensible stages.

[Read More](https://email.networksgroup.com/understanding-the-cyber-kill-chain)

 1 Comment [Click here to read/write comments](https://email.networksgroup.com/understanding-the-cyber-kill-chain#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Management](https://email.networksgroup.com/topic/threat-management)

## [Critical Vulnerability Advisory: Cisco ASA Remote Code Execution & DOS Vulnerability - Updated - Additional Patching Required](https://email.networksgroup.com/critical-vulnerability-advisory-0)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Feb 5, 2018 2:08:51 PM

- [Tweet](https://twitter.com/share)

# Cisco ASA Remote Code Execution & DOS Vulnerability

### Release Date (01-29-2018) - Updated (02-05-2018) CVE#-2018-0101

#### **Affected Products - Must have WebVPN enabled to be vulnerable**

- 3000 Series Industrial Security Appliance (ISA)
- ASA 5500 Series Adaptive Security Appliances
- ASA 5500-X Series Next-Generation Firewalls
- ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
- ASA 1000V Cloud Firewall
- Adaptive Security Virtual Appliance (ASAv)
- Firepower 2100 Series Security Appliance
- Firepower 4110 Security Appliance
- Firepower 4120 Security Appliance
- Firepower 4140 Security Appliance
- Firepower 4150 Security Appliance
- Firepower 9300 ASA Security Module
- Firepower Threat Defense Software (FTD)
- FTD Virtual

## **Vulnerability Details**

After further investigation, Cisco has identified additional attack vectors and features that are affected by this vulnerability. In addition, it was also found that the original fix was incomplete so new fixed code versions are now available. 

[Read More](https://email.networksgroup.com/critical-vulnerability-advisory-0)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/critical-vulnerability-advisory-0#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [Effective Daily Log Monitoring for PCI](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Feb 1, 2018 10:55:04 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/payment%20card.jpg)](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

Security technologies such as firewalls are meant, at best, to prevent data security breaches, or at worst, detect them before they get out of hand; but in some cases, organizations have been complacent. In the infamous [Target data breach of 2013](https://www.wired.com/2014/01/target-hack/), hackers were roaming their system and stealing data for two weeks before the breach was even detected. In the equally [egregious breach of Heartland Payment Systems](http://it.toolbox.com/blogs/internet-security/heartland-the-greatest-network-breach-in-the-21s-century-53445) five years earlier, hackers were stealing data for several weeks before the invasion was discovered. Ironically, both Heartland and Target were PCI-compliant, but the time lag between system compromise and detection was unnecessarily long. And, they’re not alone in this regard. 

[Read More](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/effective-daily-log-monitoring-for-pci-1#comments-listing)

 Topics: [Security Monitoring](https://email.networksgroup.com/topic/security-monitoring), [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Compliance](https://email.networksgroup.com/topic/compliance), [PCI](https://email.networksgroup.com/topic/pci)

## [Critical Vulnerability Advisory: Cisco ASA Remote Code Execution & DOS Vulnerability](https://email.networksgroup.com/critical-vulnerability-advisory)

 Posted by [NetWorks Group](https://email.networksgroup.com/author/networks-group) on Jan 30, 2018 4:05:47 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Blogs/vulnerability%20management.png)](https://email.networksgroup.com/critical-vulnerability-advisory)

# Cisco ASA Remote Code Execution & DOS Vulnerability

### Release Date (01-29-2018) CVE#-2018-0101

## **Affected Products - Must have WebVPN enabled to be vulnerable**

- 3000 Series Industrial Security Appliance (ISA)
- ASA 5500 Series Adaptive Security Appliances
- ASA 5500-X Series Next-Generation Firewalls
- ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
- ASA 1000V Cloud Firewall
- Adaptive Security Virtual Appliance (ASAv)
- Firepower 2100 Series Security Appliance
- Firepower 4110 Security Appliance
- Firepower 9300 ASA Security Module
- Firepower Threat Defense Software (FTD)

## **Vulnerability Details**

This vulnerability affects an unknown function of the SSL VPN component within the ASA. The vulnerability is triggered when an attacker attempts to double free a section of memory when the VPN component is active on the ASA. An attacker could exploit this vulnerability by sending multiple, crafted XML packets to a webvpn-configured interface on the affected system.

[Read More](https://email.networksgroup.com/critical-vulnerability-advisory)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/critical-vulnerability-advisory#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [HIPAA vs Security: Building security into medical purchasing decisions](https://email.networksgroup.com/hipaa-vs-security)

 Posted by [Amanda Berlin](https://email.networksgroup.com/author/amanda-berlin) on Jan 23, 2018 10:37:00 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/shutterstock_772546597.jpg)](https://email.networksgroup.com/hipaa-vs-security)

What the security community says about a specific industry vertical usually holds true for a good percentage of what is seen in the wild. You can ask any hacker, defender, CISO, etc what industries struggle the most and there are common themes in their answers. Top of the list includes healthcare, manufacturing, government, and financial. Some of the most heavily compliance controlled and regulated are also some of the least secure. Why is this? Is it due to administrators and senior management taking compliance standards as gospel? Maybe it’s a lack of knowledgeable staff like the blind leading the blind.

[Read More](https://email.networksgroup.com/hipaa-vs-security)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/hipaa-vs-security#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Compliance](https://email.networksgroup.com/topic/compliance), [Healthcare](https://email.networksgroup.com/topic/healthcare), [HIPAA](https://email.networksgroup.com/topic/hipaa)

## [HIPAA Covered Entity: Know How to Respond to a Cyber Security Incident](https://email.networksgroup.com/hipaa-covered-entity-know-how-to-respond-to-a-cyber-security-incident)

 Posted by [Jyothish Varma](https://email.networksgroup.com/author/jyothish-varma) on Jan 18, 2018 9:33:59 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/shutterstock_125143883.jpg)](https://email.networksgroup.com/hipaa-covered-entity-know-how-to-respond-to-a-cyber-security-incident)

# Know How to Respond to a Cyber Security Incident

Organizations that fall under the purview of HIPAA have to respond quickly to a cyber attack. The Office for Civil Rights (OCR) under the U.S. Department of Health and Human Services (HHS) issued a step-by-step guide to aid organizations. As a covered entity, your [organization must have a contingency plan and incident procedures](https://tax.thomsonreuters.com/checkpoint-ebia-newsletter/ocr-releases-checklist-identifying-steps-to-take-under-hipaa-immediately-after-cyber-attack/) in the event of a security breach.

[Read More](https://email.networksgroup.com/hipaa-covered-entity-know-how-to-respond-to-a-cyber-security-incident)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/hipaa-covered-entity-know-how-to-respond-to-a-cyber-security-incident#comments-listing)

 Topics: [Information Security](https://email.networksgroup.com/topic/information-security), [Incident Response](https://email.networksgroup.com/topic/incident-response), [Threat Management](https://email.networksgroup.com/topic/threat-management), [Healthcare](https://email.networksgroup.com/topic/healthcare), [HIPAA](https://email.networksgroup.com/topic/hipaa)

## [NetWorks Group is listed as one of the “Key Innovators” in MarketsandMarkets’ Managed Detection and Response Market – Global Forecast to 2022 Report.](https://email.networksgroup.com/networks-group-is-listed-as-one-of-the-key-innovators-in-mdr-research-report)

 Posted by [Jyothish Varma](https://email.networksgroup.com/author/jyothish-varma) on Jan 8, 2018 3:00:31 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Screen%20Shot%202018-01-08%20at%202.53.20%20PM.png)](https://email.networksgroup.com/networks-group-is-listed-as-one-of-the-key-innovators-in-mdr-research-report)

NetWorks Group is listed as a key innovator in the MarketsandMarkets’ Managed Detection and Response Market – Global Forecast to 2022 Report (Section 11.13.3 under Company Profiles (Page No. - 76)). This research report categorizes Managed Detection and Response Market by Security Type (Endpoint, Network, Application, Cloud), Deployment (On-Premises, Hosted), Organization Size (SMEs, and Large Enterprises), Industry Vertical, and Region. According to MarketsandMarkets, the Managed Detection and Response (MDR) market size is expected to grow from USD 335.5 Million in 2016 to USD 1,658.0 Million by 2022, at a Compound Annual Growth Rate (CAGR) of 31.6% during the forecast period. The base year considered for the study is 2016 and the forecast period is from 2017 to 2022.

[Read More](https://email.networksgroup.com/networks-group-is-listed-as-one-of-the-key-innovators-in-mdr-research-report)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/networks-group-is-listed-as-one-of-the-key-innovators-in-mdr-research-report#comments-listing)

 Topics: [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response)

## [Spectre & Meltdown: Important Vulnerability Advisory](https://email.networksgroup.com/spectre-and-meltdown-advisory)

 Posted by [Amanda Berlin](https://email.networksgroup.com/author/amanda-berlin) on Jan 4, 2018 4:09:27 PM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/Networksgroup%20August%202017/Images/header4-02.png)](https://email.networksgroup.com/spectre-and-meltdown-advisory)

# Spectre 

Release Date (01-03-18) CVE-2017-5753 & CVE-2017-5715

[Read More](https://email.networksgroup.com/spectre-and-meltdown-advisory)

 1 Comment [Click here to read/write comments](https://email.networksgroup.com/spectre-and-meltdown-advisory#comments-listing)

 Topics: [Ethical Hacking](https://email.networksgroup.com/topic/ethical-hacking), [Threat Management](https://email.networksgroup.com/topic/threat-management), [Threat Advisory](https://email.networksgroup.com/topic/threat-advisory)

## [Understanding OCR Guidance on Ransomware](https://email.networksgroup.com/understanding-ocr-guidance-on-ransomware)

 Posted by [Jyothish Varma](https://email.networksgroup.com/author/jyothish-varma) on Dec 27, 2017 10:11:00 AM

- [Tweet](https://twitter.com/share)

[![](https://email.networksgroup.com/hubfs/healthcare_world-1185076_1280.png)](https://email.networksgroup.com/understanding-ocr-guidance-on-ransomware)

# Understanding OCR Guidance on Ransomware

With the prevalence of data breaches, ransomware has also come to the forefront of security threats. This [malicious software](https://blog.networksgroup.com/what-is-ransomware-and-what-can-you-do-to-keep-your-systems-secure) is created by hackers who encrypt data and hold it hostage. Users are denied access to this data until they pay a ransom to the hacker.

[Read More](https://email.networksgroup.com/understanding-ocr-guidance-on-ransomware)

 0 Comments [Click here to read/write comments](https://email.networksgroup.com/understanding-ocr-guidance-on-ransomware#comments-listing)

 Topics: [Managed Detection & Response](https://email.networksgroup.com/topic/managed-detection-response), [Information Security](https://email.networksgroup.com/topic/information-security), [Threat Management](https://email.networksgroup.com/topic/threat-management), [Healthcare](https://email.networksgroup.com/topic/healthcare), [HIPAA](https://email.networksgroup.com/topic/hipaa)

[Previous](https://email.networksgroup.com/page/1) [All posts](https://email.networksgroup.com/all) [Next](https://email.networksgroup.com/page/3)

### Subscribe to our blog!

### Stay Informed!

### Recent Posts

### Posts by Topic

- [Information Security (50)](https://email.networksgroup.com/topic/information-security)
- [Threat Management (34)](https://email.networksgroup.com/topic/threat-management)
- [Ethical Hacking (31)](https://email.networksgroup.com/topic/ethical-hacking)
- [Managed Detection & Response (25)](https://email.networksgroup.com/topic/managed-detection-response)
- [Penetration Testing (21)](https://email.networksgroup.com/topic/penetration-testing)
- [Vulnerability Management (12)](https://email.networksgroup.com/topic/vulnerability-management)
- [Compliance (11)](https://email.networksgroup.com/topic/compliance)
- [Security Monitoring (11)](https://email.networksgroup.com/topic/security-monitoring)
- [Healthcare (9)](https://email.networksgroup.com/topic/healthcare)
- [Threat Advisory (8)](https://email.networksgroup.com/topic/threat-advisory)
- [Threat Hunting (7)](https://email.networksgroup.com/topic/threat-hunting)
- [Security Architecture Review (6)](https://email.networksgroup.com/topic/security-architecture-review)
- [HIPAA (5)](https://email.networksgroup.com/topic/hipaa)
- [Device Management (4)](https://email.networksgroup.com/topic/device-management)
- [Incident Response (4)](https://email.networksgroup.com/topic/incident-response)
- [Events (1)](https://email.networksgroup.com/topic/events)
- [PCI (1)](https://email.networksgroup.com/topic/pci)

see all

###### About Us

NetWorks Group is a Managed Detection & Response (MDR) and Ethical Hacking Service provider. We help organizations detect and respond to advanced cyber security threats through a powerful combination of our proprietary threat detection platform, expertise and security tools. Our unique approach to security not only helps you stay ahead of cyber criminals but also helps you reduce cost and increase efficiency.

###### More Links

- [Home](https://www.networksgroup.com/)
- [Blog](http://blog.networksgroup.com/)
- [About](https://www.networksgroup.com/about/)

###### Contact Us

(888) 798-1012  
 info@networksgroup.com  
 www.networksgroup.com

- <https://www.facebook.com/networksgroupinc/>
- <https://www.linkedin.com/company/networks-group>
- <https://twitter.com/networksgroup>

© 2017 - NetWorks Group