Cyber risk and advisory programs that identify security gaps and build strategies to address them.
MDR that provides improved detection, 24/7 threat hunting, end-to-end coverage and most of all, complete Response.
Our team delivers the fastest response time in the industry. Threat suppression within just 4 hours of being engaged.
Be protected by the best from Day 1.
24/7 Threat Investigation and Response.
Expert hunting, research and content.
Defend brute force attacks, active intrusions and unauthorized scans.
Protect assets from ransomware, trojans, rootkits and more.
Intelligence and visibility across AWS, O365, DevOps and more.
Configuration escalations, policy and posture management.
Detects malicious insider behavior leveraging Machine Learning models.
Join eSentire and Telarus for a day of golfing.
eSentire will be participating in the Pac NorthWest Virtual Roundtable…
eSentire will be participating in the Mid-Market Enterprise Summit.
On May 11th, 2021, Microsoft released scheduled security patches for fifty-five separate vulnerabilities impacting a variety of Microsoft products . Four vulnerabilities (CVE-2021-31166, CVE-2021-26419, CVE-2021-28476, CVE-2021-31194) are tracked as critical and should be immediate priority for patching. Additionally, Microsoft announced a high impact vulnerability (CVE-2021-31207) affecting on premises Microsoft Exchange servers that may allow threat actors to bypass Microsoft security features.
At this time, there is no indication that any of the vulnerabilities from this month’s release have been exploited in attacks in the wild. Organizations are strongly recommended to review Microsoft’s Patch Tuesday release and apply the available security patches.
What we’re doing about it
What you should do about it
CVE-2021-31166 (CVSS: 9.8): HTTP Protocol Stack Remote Code Execution Vulnerability
CVE-2021-26419 (CVSS: 7.5): Scripting Engine Memory Corruption Vulnerability
CVE-2021-28476 (CVSS: 9.9): Hyper-V Remote Code Execution Vulnerability
CVE-2021-31194 (CVSS: 8.8): OLE Automation Remote Code Execution Vulnerability
CVE-2021-31207 (CVSS: 6.6): Microsoft Exchange Server Security Feature Bypass Vulnerability
For additional details and information on the rest of the vulnerabilities covered in the May Patch Tuesday release, please see the full release from Microsoft.