Patch Tuesday Preview: 400 Fixes, Ransomware Sites, and How to Stay Safe This Week
This week, Microsoft is expected to patch nearly 400 security vulnerabilities, the largest number ever in a single update. That's an enormous amount of fixes, but it also tells us that cybercriminals are finding more ways into our systems. The key takeaway: don't delay your updates. Set them to install automatically when possible.
Ransomware on the Rise
Our DarkWatch threat intelligence has spotted a new ransomware leak site active on the dark web, with high-risk warnings. These sites are where attackers publish stolen data from victims who refuse to pay. UK businesses are already listed. If you become a victim, never pay the ransom. It funds more attacks, and there's no guarantee you'll get your data back. Instead, report it to Action Fraud and restore from backups.
WordPress and PaperCut Vulnerabilities
Small businesses are particularly at risk from five critical WordPress plugin and theme flaws that could let attackers take over your site. Update all plugins and themes as soon as new versions are available. Meanwhile, attackers are chaining two flaws in PaperCut print servers to execute code without a password. If you use PaperCut, apply the latest patches immediately.
New Scam: Fake Cloudflare CAPTCHAs
A new campaign called TerminalFix uses fake Cloudflare CAPTCHA pages to trick you into running a script that installs a reverse-tunnel backdoor. Always be wary of any website asking you to copy and paste commands into your terminal or run unknown scripts. Legitimate security checks never ask you to do that.
A Win for Good Decisions
The city of Berlin refused to pay hackers who stole data from its state network. That’s the right move — paying only emboldens criminals. Instead, invest in robust backups, test your recovery procedures, and train your staff to spot phishing attempts.
Action Steps for This Week
- Patch everything: Enable automatic updates for your operating system, apps, and plugins.
- Back up your critical data: Store backups offline or in a separate cloud service.
- Report ransomware: If hit, go to Action Fraud and don’t negotiate.
- Stay alert: Trust nothing that asks for system access or credentials out of the blue.
Stay safe out there, and remember: your best defense is a good backup.
