Critical Path Security Weighs In on Cobb County Ransomware Breach

In March 2025, Cobb County, Georgia, became the target of a significant ransomware attack orchestrated by the Russian-speaking cybercriminal group known as Qilin. This breach resulted in the compromise of approximately 150 gigabytes of sensitive data, encompassing over 400,000 files. The stolen information reportedly includes autopsy photographs, Social Security numbers, driver's license images, and internal government documents. FOX 5 Atlanta The Attack and Its Implications The cyberattack led to noticeable disruptions in county services, prompting officials to take systems offline temporarily. Qilin, operating under a ransomware-as-a-service model, demanded a ransom to prevent the public release of the stolen data. To demonstrate the severity of the breach, the group released 16 sample images on the dark web, which included sensitive personal information. FOX 5 Atlanta Cobb County officials have confirmed the breach but have opted not to engage with the attackers' demands. In a public statement, the county emphasized its stance…

0 Comments

AI Notetakers and the Confidential Client: Why Family Offices Should Think Twice Before Hitting Record

AI notetakers are the latest productivity darlings. They join your Zoom or Teams meeting, record the discussion, transcribe it with shocking accuracy, and hand you a summary before you've even poured a coffee. That's helpful-until the conversation turns to legal matters, tax strategy, estate plans, or private equity exposure across multiple jurisdictions. For multi-family offices, where wealth preservation meets legacy management, privacy is non-negotiable. And third-party AI notetakers? They weren't built with your clients in mind. How Do Notetaking Tools Work? Understanding how these platforms function helps explain where risk creeps in: Audio Capture and Transcription - Tools either join meetings as a virtual participant (bot-based) or capture audio directly from a user's device (bot-free), then transcribe into written text-often with high accuracy and speaker identification. Summarization and Key Point Extraction - Using natural language processing (NLP), they extract key decisions, action items, and deliver concise summaries. Organization and Searchability…

0 Comments

Critical Vulnerability in Esri ArcGIS Enterprise: Immediate Action Required

A critical security vulnerability, identified as CVE-2025-2538, has been discovered in specific deployments of Esri's ArcGIS Enterprise. This flaw resides in the Password Recovery feature of the Portal component and could allow unauthorized attackers to reset the password of the built-in admin account, leading to potential unauthorized access and data compromise.​ Vulnerability Details The vulnerability affects the following versions of Portal for ArcGIS on Windows: 10.9.1​ 11.1​ 11.2 This issue has been assigned a CVSS v3.1 score of 9.8 (Critical), indicating its high severity. The vulnerability stems from the use of hard-coded credentials (CWE-798), which can be exploited over a network without requiring authentication. Recommended Actions Esri has released the "Portal for ArcGIS Security 2025 Update 1 Patch" to address this vulnerability. It is imperative for organizations utilizing the affected versions to apply this patch immediately to mitigate potential risks. Additional Recommendations Review Access Logs: Examine system logs for any…

0 Comments

Critical Path Security Announces Sponsorship of Ryan Vargas for the 2025 NASCAR Canada Series

Critical Path Security, a leader in cutting-edge cybersecurity solutions, proudly announces its continued support and sponsorship of NASCAR driver Ryan Vargas as he competes in the prestigious NASCAR Canada Series for the 2025 season. After an exhilarating partnership in the NASCAR Whelen Euro Series in 2024, Critical Path Security is expanding its commitment, accompanying Vargas as he returns to North America to race in Canada's premier stock car racing series. This season-long sponsorship underscores the shared values of innovation, perseverance, and the relentless pursuit of excellence that define both Critical Path Security and Ryan Vargas. Patrick Kelley, CEO of Critical Path Security, expressed enthusiasm for the expanded relationship: "Our journey with Ryan Vargas in Europe was nothing short of extraordinary, and we're excited to continue this partnership closer to home. Ryan embodies resilience, skill, and the competitive spirit that aligns perfectly with our company's mission and values. Sponsoring him in…

0 Comments