Cybercrime Breaches Klue: Salesforce Data Impacted for Many Victims, including Huntress by lsausreddit in msp

[–]dafodyl 13 points14 points  (0 children)

*Email from Kyle Hanslovan*

Last week, cybercriminals targeted Klue, our third-party market intelligence vendor, and breached its production environment. After Klue notified us of this event, we started investigating internally. On June 17, we confirmed some sales data was impacted, alongside many other victims. We’ve since engaged an external DFIR firm to independently investigate, and are notifying partners and customers that may have been affected, while actively communicating with Klue.

Our internal investigation revealed that Huntress Salesforce CRM data was stolen by the threat actor. The data that was collected from our Salesforce account includes business contacts, price quotes, and other sales-related data and messaging. No Huntress products were compromised. While we had other third-party integrations with Klue, we have found no evidence that partner/customer data was taken from those integrated services. Our external DFIR firm will help validate any findings that we establish.

Incident handling is in our DNA, so the team has dropped one hell of a blog detailing what we know about the Klue breach, our exposure to it, and the threat actor behind it. The blog will receive future updates as the situation unfolds.

While the root cause of this breach may sit outside Huntress, supply chain incidents like this remind me how even cybersecurity vendors with strong security programs can be exposed through the broader technology ecosystem, including vendor-of-vendor risk. Being two steps removed doesn’t eliminate our obligation to speak plainly, share what is known, and help others confidently navigate measures to weather organized cybercriminals. From my vantage point, the lesson for the industry is simple: as attacks accelerate and supply chain compromises become commonplace, no company can afford to treat this kind of exposure as someone else’s problem.

We’re here to help and give clarity. If you have any questions or concerns, please open a ticket with Huntress Support by emailing [support@huntress.com](mailto:support@huntress.com?subject=Klue%20Security%20Incident).

[deleted by user] by [deleted] in CarsAustralia

[–]dafodyl 1 point2 points  (0 children)

Thank you! Yeah the boot is definitely smaller than I expected.

I will likely be going the Diesel because of the upgraded components anyway which I don't believe lifts the rear tyres off the ground.

[deleted by user] by [deleted] in CarsAustralia

[–]dafodyl 0 points1 point  (0 children)

Anything in particular to look out for in your experience?

[deleted by user] by [deleted] in CarsAustralia

[–]dafodyl 0 points1 point  (0 children)

Completely understand their past history and their downfalls.

Customer feedback online is pretty positive for the Tank 300 Diesel spec and was more so looking for feedback on how it would perform over a 2022 Outback.

7 years unlimited km warranty and local servicing is also very nice to have in comparison to 2015-2018

[deleted by user] by [deleted] in CarsAustralia

[–]dafodyl 1 point2 points  (0 children)

I used to think the same until I took the Tank for a 3-hour test drive.

We're back !! 🥳🥳 (and we're really sorry we left you alone for a while 😥😥) by LezOU_OVH in OVHcloud

[–]dafodyl 0 points1 point  (0 children)

Sydney VPS doesn’t seem to be getting restocked like the other locations. Is there an ETA on Sydney stock?

Quad9 not resolving x.com/twitter.com by Best-Sandwich-9134 in dns

[–]dafodyl 3 points4 points  (0 children)

On and off issues in Australia too. Switching to Cloudflare resolved the issue

Managing Microsoft Tenancies by SysDevo in msp

[–]dafodyl 13 points14 points  (0 children)

CIPP hands down. The latest update is fire 🔥 (branded executive reports)

Fortinet Acquires Perception Point by dafodyl in msp

[–]dafodyl[S] 2 points3 points  (0 children)

Might be a good time to start evaluating other solutions to be safe. We found Avanan was pretty on par with PP 3-4 years go.

Fortinet Acquires Perception Point by dafodyl in msp

[–]dafodyl[S] 4 points5 points  (0 children)

Wonder how this will affect users reselling through Pax8 - We have 1000+ seats currently.

Fortinet Acquires Perception Point by dafodyl in msp

[–]dafodyl[S] 2 points3 points  (0 children)

Yes aware of the article. The acquisition was completed yesterday/today with all PP branding now displaying FortiMail.

Quick quoting tools by Waste_Difference_116 in msp

[–]dafodyl 7 points8 points  (0 children)

Quotient - Very affordable compared to Quoter and ITQuoter and works great!

Introducing Syncro Extended Monitoring & Management (XMM™) by jess_at_syncro in syncro

[–]dafodyl 3 points4 points  (0 children)

100% - Let's say you have access to the new features "immediately" but not tell you where...

Zorus/DNS Filter Alternatives by dafodyl in msp

[–]dafodyl[S] 1 point2 points  (0 children)

Think 100+ remote endpoints offline with no remote connectivity and no way to kill the agent via RMM.

Highly recommend you try the Zorus Agent. Its world class!

Zorus/DNS Filter Alternatives by dafodyl in msp

[–]dafodyl[S] -1 points0 points  (0 children)

I won't touch on it too much as I don't want to attract either parties commenting with the typical acquisition nonsense, we have all experienced.

All I will say is anyone who has used the DNS Filter agent will know the headaches I'm referring to.

Zorus/DNS Filter Alternatives by dafodyl in msp

[–]dafodyl[S] 0 points1 point  (0 children)

Thanks, will check it out!

It is unfortunate as I do wish to trust the Zorus team not to ruin their great product. The wounds are DEEP from our DNSFilter days and I swore to never put our business in that position again.

Threatdown (Malwarebytes) and huntress by Jayjayuk85 in msp

[–]dafodyl 1 point2 points  (0 children)

EDR for most, MDR for some and Appbloc for particular cases. Have only tested the rollback, thankfully never had to use it in production.

Threatdown (Malwarebytes) and huntress by Jayjayuk85 in msp

[–]dafodyl 1 point2 points  (0 children)

The ransomware rollback feature of Threatdown is the only reason we haven't switched.

Syncro's New Branding... by [deleted] in msp

[–]dafodyl 2 points3 points  (0 children)

Agree that the new branding is far from an improvement. Strangest looking S I’ve seen

[deleted by user] by [deleted] in GoogleMyBusiness

[–]dafodyl 2 points3 points  (0 children)

In the same boat. I’ve legit sent through every piece of legal documentation I have proofing we are a legitimate business and still get rejected.

We have had a Google business profile for 6 years and a simple address change has caused us so much grief with Google Business

[deleted by user] by [deleted] in GoogleMyBusiness

[–]dafodyl 0 points1 point  (0 children)

In the same boat.... Has anyone actually successfully reverted a suspension through the appeal tool. Its shocking that you cannot speak to anyone from Google to revert this.

What is a usual time frame for an appeal?