<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: Kaseya Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving Kaseya.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:51 GMT</lastBuildDate><item><title>The Hidden Security Risks of Reduced Summer IT Coverage</title><link>https://bleepingcomputer.com/news/security/the-hidden-security-risks-of-reduced-summer-it-coverage</link><guid isPermaLink="false">cst-2251</guid><description>IT staffing typically decreases during summer vacations while security threats remain constant. The article discusses how AI-driven automation can help organizations maintain consistent security operations and reduce dependency on manual processes throughout the year.</description><pubDate>Thu, 09 Jul 2026 14:02:12 GMT</pubDate></item><item><title>OAuth, guest accounts, and weak MFA drive SaaS risk</title><link>https://helpnetsecurity.com/2026/07/06/saas-environments-security-risks-report</link><guid isPermaLink="false">cst-154</guid><description>Guest accounts created for temporary third-party access represent 69% of monitored SaaS accounts in 2025, with over 1.9 million more accounts than the previous year, often remaining active long after their intended use ends. Organizations face elevated risk from unmanaged guest accounts, OAuth misconfigurations, and weak multi-factor authentication (MFA) implementations across SaaS environments. These forgotten access paths create exploitable vectors for unauthorized access to corporate data.</description><pubDate>Mon, 06 Jul 2026 04:30:05 GMT</pubDate></item><item><title>RMM Tools: A Gateway for Bulk Attacks | Huntress</title><link>https://huntress.com/blog/remote-monitoring-management-tools-gateway-for-attacks-on-msp-pt-1</link><guid isPermaLink="false">cst-842</guid><description>A recent incident demonstrates that threat actors continue to exploit Remote Management and Monitoring (RMM) tools as a vector to compromise the downstream customers of managed service providers (MSPs), mirroring attack patterns from the 2021 Kaseya supply chain breach. RMM software remains a high-value target because compromising a single MSP platform can enable simultaneous access to numerous organizational endpoints.</description><pubDate>Wed, 02 Jul 2025 05:00:00 GMT</pubDate></item><item><title>Tailored Cybersecurity vs. Bundles like K365 | Huntress</title><link>https://huntress.com/blog/dont-fall-for-the-ol-bundle-trick</link><guid isPermaLink="false">cst-968</guid><description>Bundled cybersecurity solutions like Kaseya K365 may not deliver optimal value for all organizations compared to tailored alternatives. The article discusses how to evaluate and select more effective endpoint detection and response (EDR) and managed detection and response (MDR) solutions for specific organizational needs.</description><pubDate>Mon, 24 Jun 2024 00:00:00 GMT</pubDate></item><item><title>Lessons Learned During the Kaseya VSA Supply Chain Attack | Huntress</title><link>https://huntress.com/blog/a-recap-of-events-and-lessons-learned-during-the-kaseya-vsa-supply-chain-attack</link><guid isPermaLink="false">cst-1182</guid><description>Huntress provides a retrospective analysis of the Kaseya VSA supply chain attack, examining key events and outcomes from the incident. The recap offers lessons learned for organizations seeking to understand and prevent similar supply chain compromises in the future.</description><pubDate>Wed, 28 Jul 2021 00:00:00 GMT</pubDate></item><item><title>The Hunt to Find Origins of Kaseya's VSA Mass Ransomware | Huntress</title><link>https://huntress.com/blog/security-researchers-hunt-to-discover-origins-of-the-kaseya-vsa-mass-ransomware-incident</link><guid isPermaLink="false">cst-1185</guid><description>Security researchers from Huntress analyzed the Kaseya VSA supply chain attack, examining how attackers executed the compromise and discussing factors that constrained the overall impact of the incident. The analysis provides insights into the attack methodology and threat vectors leveraged in this widely-publicized ransomware campaign.</description><pubDate>Tue, 20 Jul 2021 00:00:00 GMT</pubDate></item><item><title>Rapid Response: ASUS Live Update Attack (Operation ShadowHammer)</title><link>https://huntress.com/blog/faq-asus-liveupdate-attack-operation-shadowhammer-9fc9c03b2da9</link><guid isPermaLink="false">cst-1230</guid><description>ASUS Live Update was compromised in a supply chain attack known as Operation ShadowHammer, affecting IT departments globally. The incident prompted coordinated response efforts from security organizations due to its scale and scope. This type of attack leverages trusted software update mechanisms to distribute malicious code to a broad user base.</description><pubDate>Tue, 26 Mar 2019 05:00:00 GMT</pubDate></item><item><title>CVE-2017-18362: SQL Injection in ManagedITSync Integration | Huntress</title><link>https://huntress.com/blog/cve-2017-18362-arbitrary-sql-injection-in-mangeditsync-integration-ba142ff24f4d</link><guid isPermaLink="false">cst-1231</guid><description>A SQL injection vulnerability, CVE-2017-18362, was identified in the ConnectWise ManagedITSync integration, which synchronizes data between ConnectWise Manage PSA and Kaseya VSA RMM platforms. The flaw was disclosed in late 2017 and could allow attackers to execute arbitrary SQL commands against affected systems.</description><pubDate>Fri, 08 Feb 2019 14:00:00 GMT</pubDate></item><item><title>Deep Dive: Kaseya VSA Mining Payload</title><link>https://huntress.com/blog/deep-dive-kaseya-vsa-mining-payload-c0ac839a0e88</link><guid isPermaLink="false">cst-1237</guid><description>Huntress ThreatOps conducted a technical analysis of a vulnerability affecting Kaseya VSA, a product widely used by managed services providers. The team documented findings on the exploitation payload and attack mechanics observed during the incident.</description><pubDate>Tue, 30 Jan 2018 07:00:00 GMT</pubDate></item></channel></rss>