Tech Tidbits

Tech Tidbit - Lifeguards

"I wanna be a lifeguard. I want to guard your life..."
-Blotto 1979
Three of my kids are certified lifeguards. Two have the elite Ellis Lifeguard certification ...

Tech Tidbit - It is time to make some noise!

School's out for the summer.
My son graduated high school.
The 4th of July is our country's 247th birthday.
It is time to make some noise!
Besides ...

Tech Tidbit - About those VPN Connections

"None shall pass."
-The Black Knight, Monty Python, and the Holy Grail
We continue to see attacks from misconfigured VPNs. Today I want to focus on ...

Tech Tidbit - Beware of SEO Poisoning

I read an article today in which a judge declared that Google monopolized search.

Well, that is a big duh!

How long did it take the government to ...

The Advantages of Embracing Digital Transformation

Exploring the Benefits of Digitalization

Digital transformation is no longer an option. It’s a necessity for school districts aiming to thrive in ...

Tech Tidbit - While you were sleeping

It is Tuesday at 12:29 a.m., at the end of Labor Day weekend. I am driving back from Westchester County Airport, having just flown in from Charlotte, ...

Tech Tidbit - About Protecting Your Macs

I remember those days when the Apple folks would scoff at having to have antivirus. Macs were superior, and Windows devices had all those problems.

The ...

Do You Have the Armor you Need?

Today’s cyber landscape feels a lot like this picture. Anyone who uses a device connected to the internet is under threat. You never know when that ...

CSI is hiring. Come join our growing family!

CSI is growing again.  We are looking for high-quality individuals to work with our service delivery team.

For more information on the positions available, ...

Tech Tidbit - How to protect the cloud on a budget...

There is a new, growing attack surface that is becoming increasingly dangerous to your network operations—the cloud, specifically your Google Apps or ...

Tech Tidbit - Welcome Back!

Welcome back!

This summer flew by, and my summer vacation seems like a distant memory. In my 44 years of helping schools open for the new school year, ...

Tech Tidbit - Second Opinions

A year ago, my very short wife sat in a restaurant during March Madness on a bar stool that was too tall for her. The result was that while getting down ...

CSI's Tech Talk is October 30th....Register today!

We live in interesting times and continue to face unique challenges to keep your school district safe and stable so teachers can teach, students can learn, ...

Tech Tidbit - Thoughts About The AT&T Breach

You have probably heard of the AT&T breach by now. Reports describe it as the largest breach in history with serious national security consequences.

AT&T ...

Tech Tidbit - Who Do You Trust?

"Trust but verify."
-President Ronald Reagan, December 8th, 1987, at the Intermediate-Range Nuclear Forces (INF) Treaty Signing
I watched a presentation ...

Tech Tidbit - Thoughts on the CrowdStrike Event

It has been a rough two weeks for many of us who support technology for our school districts.
We have experienced the worldwide meltdown of CrowdStrike ...

Tech Tidbit - Thoughts About Passwords

Recently it was worldwide "change your password" day!
I have a few thoughts.
If you attended the CSI CyberSecurity event in December, you heard the ...

CSI Tech Talk I October 2023 - Recording Available

We live in interesting times and continue to face some very unique challenges to keep your school district safe and stable so teachers can teach, students ...

CSI's Tech Talk II October 2023 - Recording Available

We live in interesting times and continue to face some very unique challenges to keep your school district safe and stable so teachers can teach, students ...

CSI Tech Talk II May 2023 - Recording Available

Join us, as Scott discusses his latest "Tech Tidbits" including updates on security and industry news since we last got together.
Watch ...

CSI Tech Talk I April 2023 - Recording Available

Join us, as Scott discusses his latest "Tech Tidbits" including updates on security and industry news since we last got together.

Watch it here

×
Please ...

CSI Tech Talk I January 2023 - Recording Available

Tech Tidbits - Scott's updates on security, updates, and industry news since we last got together.
Harden your endpoints as part of your overall ...

Tech Talk II January 2023 - Recording Available

Tech Talk Part II will be a special session on email. We will talk about the following:

Reading email headers. Every time something bad comes into ...

CSI Tech Talk II October 2022 - Recording Available

Bob will be discussing infrastructure upgrades covering hardware "end of life" planning over the next few years as well as new switch management alternatives ...

CSI Tech Talk I October 2022 - Recording Available

Part one of CSI's Fall 2022 technical discussion is oriented toward K-12 public school district technical staff featuring technical and security news, ...

Using CPGs in Real Life - Patching

Everyone knows the adage “No one is perfect”. Unfortunately for anyone with a computer network, the bad actors who want to infiltrate your system ...

Tech Tidbit - No One Is Exempt From Security

My wife works for a multi-billion dollar hospital network you all will know. Every time she signs into their mandated VPN and MFA solution she curses ...

Weekly Tech Tidbit - Malware Defenses

This week, I would like to talk to you about Malware Defenses. This topic is in the NIST Detect and Protect categories.

Antivirus has been around for ...

Tech Tidbit - Are You Caught in Groundhog's Day?

'Those who cannot remember the past are condemned to repeat it'
-George Santayana From his work; Life of Reason, Reason in Common Sense 1905
You have ...

Using CPGs in Real Life - Perform and Test Backups

What would you do if you came into school tomorrow and were told that all your District’s data had been corrupted? Your next step would be to check ...

Tech Tidbit - Happy Thanksgiving!

From all of us at CSI we wish you a Happy Thanksgiving.

We are thankful for all of you. We are proud that we first started working with K-12 school ...

Can You Afford NOT to Protect Your Network?

When it comes to improving network security, the question asked is usually “Can we afford it?” But with Cyber Crime evolving every day, the question ...

Critical VMware Vulnerability - Patch Immediately

VMware has published a security advisory regarding a critical out-of-bounds write vulnerability (CVE-2023-34048) that has been fixed in the latest updates ...

Do You Know Four of the Most Common Cyber-Attacks?

The rate of cyber-attacks has significantly increased over the past few years. Districts of all sizes are at risk of becoming victims of them, which is ...

Tech Tidbit - Making Passwords Simpler and Harder

Last week I discussed the need to have all passwords minimally 12-18 characters to remain safe. While that is an absolute security requirement, we all ...

CISA Step 4 – Minimize Exposure to Common Attacks

Today we continue with our series discussing the highest priority cybersecurity steps as identified in the January 2023 CISA published report “Partnering ...

CISA Step 3 – Perform and Test Backups

Today we continue with our series discussing the highest priority cybersecurity steps as identified in the January 2023 CISA published report “Partnering ...

Boots on the Ground

On any team, there is someone who has the vision and sets goals, and there is someone on the ground who makes sure those things happen. No team can be ...

Tech Tidbit - Ransomware Presentation Tidbits

I watch a lot of Cybersecurity presentations. Ransomware is on everyone's lips as a major concern. Here are two interesting tidbits of information.

...

Chaos or Teamwork?

Have you ever been part of a group where a leader has not been clearly identified? It takes twice as long to get anything done and arguing and conflict ...

Your Weekly Tech Tidbit...Risky Business

In August of 2021, CISA added "Single Factor Authentication" to its list of practices it considers "exceptionally risky" as it exposes you to an "unnecessary ...

Does Cyber Insurance Justify Risky Behavior?

Far too often we hear people say “I don’t need to worry about security tools and training, I have Cyber Insurance”. While this doesn’t apply to ...

Teamwork is the Best Defense Against Cyber Crime

Whether you are a sports enthusiast, a volunteer, or part of a work team, you have experienced first-hand the importance of good teamwork. We have all ...

Business Email Compromise - Be Very Afraid

Business Email Compromise (BEC) has become a security buzzword. It simply means using email to attack and gain access to your network. *Phishing* or *Spearphishing* ...

Welcome Back! We Have Work To Do

Welcome back!

It was a very busy summer for all of us. Summer and the start of the school year felt much more "normal" to us.

Putting my parent ...

NIST Cybersecurity Framework - Malware Defenses

 

This week I would like to talk to you about Malware Defenses. This topic is in the NIST Detect and Protect categories.

Antivirus ...

NIST Cybersecurity Framework - Recover

 

This week I’d like to talk a little bit about the NIST Category - Recover. According to NIST, the Recover Category “identifies ...

NIST Cybersecurity Framework - Respond

In last week’s email, we talked about the third NIST Cybersecurity Framework category – Detect. ...

NIST Cybersecurity Framework - Detect

In last week’s email, we talked about the second NIST Cybersecurity Framework category – Protect. ...

NIST Cybersecurity Framework - Protect

In last week’s email, we talked about the first NIST Cybersecurity Framework category – Identify. This ...

NIST Cybersecurity Framework and You

 

Your district is faced with ever-increasing threats, pressures, and regulations. The list is endless. K-12 Cyberattacks continue ...

Tech Tidbit - I am proud of you

Late in the afternoon on a Friday, I created a bit of a scare for those of you who are part of our Paladin Sentinel monitoring system.  I was doing my ...

Tech Tidbit - Our Hours Are Your Hours

If you subscribe to our Paladin Sentinel monitoring service, hopefully, you know that either myself or one of our technical staff actively sweeps through ...

Tech Tidbit - Online Credential Theft

I was watching a panelist discussion post-mortem discussing firsthand knowledge of 25 major ransomware-style breaches. One of the panelists was an award-winning, ...

Tech Tidbit...Risky Business

 

In August of 2021, CISA added "Single Factor Authentication" to its list of practices it considers "exceptionally risky" as it exposes ...

Tech Tidbits - Happy New Year - Calibrate Your UPSes

"I am watching you...Always watching"
-Roz Monsters Inc.
For New Year's we once again had a holiday crisis. Fortunately, this wasn't an attack. Microsoft ...

Protect Your District from Business Email Compromise

Please join us *tomorrow - Wednesday, October 12th* for an upcoming webinar focusing on Business Email Compromise. Jason Whitehurst, a cybersecurity professional, ...

Weekly Tech Tidbit – Paper's Please

 

The first line of email defense is a properly formed SPF record

"Paper's Please"

Those words ...

Tech Tidbit - The pain of changing passwords

"Treat your password like your toothbrush. Don't let anyone else use it and change it every six months"

-Clifford Stoll

Password security ...

Vulnerability Disclosed in HPE BIOS

Recently I wrote about the increasing vulnerabilities in BIOS/UEFI underneath the operating system and encouraging you to update your devices ...

Tech Tidbit: No More Local Admins!

Your techs *should not* be local admins anymore. It is simply too dangerous.

 

I have personally been a limited user on all ...

Tech Tidbit: Scott' Secret Sauce

How I manage the storm of information and how you can quickly know what I think is important.

 

A few thoughts on how I manage ...

Tech Tidbit: Mind The Gap

 

"Mind the Gap"

As the war unfolds and these "Hacktivist" Guerillas take their shots at both sides of the fight, the details ...

Tech Tidbit - UPS + Surge Protector = Disaster

Surge protectors need to be banned from your wiring closets

Hi Lisa,

A few thoughts on UPSes and Surge Protectors.

If you need ...

Tech Tidbit: Rejection is hard

 

"Everyone fears rejection"

-Derek Jeter

It finally happened. I got kicked in the head and rejected.

Here ...

Tech Tidbits - Happy New Year!

 

"I am watching you...Always watching"

-Roz Monsters Inc.

For New Year's we once again had a holiday crisis. ...

Your Weekly Tech Tidbit...Boring is good

 

Boring Email Formatting = Improved Reliability

We love to use graphics and links in our emails. There are lot ...

Tech Tidbit: Patching your Holy of Holies

Your technical staff's equipment needs to be the best maintained in the district

 

Some thoughts on patching your holy of holies.

If ...

Your Weekly Tech Tidbit...It is probably DNS

 

I have something hard that I really need you to do - audit your DNS. It takes a lot of time. It is boring to do. However, it ...

Tech Tidbit - What I am afraid of

 

As I have gotten older I have developed claustrophobia. MRI machines are now my nemesis. Fortunately, I have not needed one ...

Tech Tidbit - Back to School to Basics

 

I think by now everyone is officially open. I know some districts locally and in the Northeast had horrific transportation issues. ...

Bob's Top 5 for Cybersecurity

 

 

Back in April, I had sent Bob and Scott's top 3 solutions you should have in place NOW to best protect against ...

Your Weekly Tech Tidbit...Beware of "Zombies"

 

"A chain is only as strong as its weakest link"

-Thomas Reid, "Essays on the Intellectual Powers of Man" - 1786

The SolarWinds ...

Your Weekly Tech Tidbit... NIST Data Recovery

 

Today's NIST topic is data recovery. The most obvious example of meeting this NIST standard is maintaining good backups. This ...

Weekly Tech Tidbit - Secure Remote Access

As I write this on Tuesday, March 24, 2020, I do hope that this message finds you well and staying safe as we all adapt to our new normal under the COVID-19 ...

Weekly Tech Tidbit Extra - VPN Best Practices

As part of our client school district's response for Corona virus preparedness, we see an uptick in requests for VPN access into the school district's ...

Weekly Tech Tidbit - Thank You!

As 2019 comes to a close, on behalf of everyone here at CSI, I would like to say thank you for entrusting us with your technology needs.  We appreciate ...

Are Printers The Trojan Horse In Your Network?

We have all heard the story of the Trojan Horse.  The Greeks built it and left it in front of Troy.  The Greek army left.  The Trojans went outside ...

Weekly Tech Tidbit - Implementing DNS Security

Most of can easily agree that our IT universe has been dominated over the past several months by cybersecurity discussions as we daily (sometimes it feels ...

Weekly Tech Tidbit - Ransomware and Backups

We have been having a lot of discussions about how to better protect against ransomware and other threats with the recent attacks that have happened in ...

Weekly Tech Tidbit - Cyber Safety for Students

This week’s Tech Tidbit is shorter on my thoughts and words since the attached link below contains lots of reading on its own.

For the start of the ...

Weekly Tech Tidbit - Managing Switch Stacks

Over the past few years, we have been recommending the use of switch stacks in all your MDF and IDF locations.   This has been done to aid in simplifying ...

Weekly Tech Tidbit - Preventing Data Leaks

In my 20s I went to Tahiti and went on a sunset cruise on the famed "Liki Tiki".   It was an amazing sunset.  Hula girls, and music.   Along the ...

Weekly Tech Tidbit - Do you know your SA Password?

A constant frustration of ours is ensuring "clean" backups.   If you corrupt your data or have a server failure, we need to reliably get that data back.  ...

Weekly Tech Tidbit - Rethinking SSLs

We harp on the fact that if you have *ANY* VPN, or remote access capabilities into your district, you *MUST* use a commercial SSL certificate and not ...

Weekly Tech Tidbit - Patch 3rd Party Applications

I was recently reading a security study that said that 25% of applications are unpatched for an entire year!  As you approach the summer remember that ...

Weekly Tech Tidbit - Network Time Matters - Fix It!

One of the most important principles of a good network design is accurate time.   Windows time is a whole lot like the 1960s car clock - always drifting ...

Weekly Tech Tidbit - External Vulnerability Scans

Do you know how secure you are from the outside world?  Maybe you're new and inherited a network, or there has been so much churn over the years with ...

Weekly Tech Tidbit -Reboot before Updates

Another short and sweet tidbit.

When you are installing software, updates, patches, etc., reboot your server.   I can't tell you the number of times ...

Weekly Tech Tidbit - Vendor Support Contracts

This one is short and sweet.

Once in a while we encounter equipment or software that you have purchased elsewhere, but you want CSI to actively support ...

Weekly Tech Tidbit - 4 Hour On-Site?

Often we all don't get true clarity on the importance of certain issues until you are living them.  That is why for instance Dutchess County BOCES attempts ...

Weekly Tech Tidbit - Secure your DNS

Keeping up with my theme on DNS related posts, this week I will again reprise a post from over a year ago on the importance of implementing proper control ...

Weekly Tech Tidbit - Thanks!

As 2018 comes to a close, on behalf of everyone at CSI I would like to say thank you for entrusting us with your technology needs.  Unlike most of our ...

Weekly Tech Tidbit - The FBI Came To Visit...

The FBI came to visit us last week.  No it wasn't an investigation.  It was for CSI's 3rd annual Security Event.  I have talked about the topic of ...

Weekly Tech Tidbit - 2020 Is Coming

As you go through your normal yearly planning cycles remember that in January 2020 Microsoft will be retiring Windows Server 2008 R2, Windows 7, and Microsoft ...

Weekly Tech Tidbit - FRS vs. DFS-R - Time To Convert

In an Active Directory domain, we generally rely heavily on group policies.   Microsoft best practices say that you should have at least two domain ...

Weekly Tech Tidbit - Air Gap Backups

When all else fails we reach for the backups.   However, increasingly the bad guys are consciously seeking out your backups and deleting them as part ...

Macs Need Advanced Endpoint Protection Too

I can't tell how many times I have heard from non-technical Mac people that, "they don't need anti-virus." The Apple person that sold them their Mac told ...

Weekly Tech Tidbit - Data Leaks

We have to be constantly vigilant to prevent malware, trojans, and other bad actors from taking root in our school networks to steal personally identifiable ...

CSI Fall / Winter Event Schedule

The school year has started and we're anxious to update you on what our webinar, seminar, and Tech Talk schedule for the Fall and Winter.

Wednesday, ...

Weekly Tech Tidbits - Kill the Zombies

During our May Tech Talk meetings one of my summertime recommended tasks was for everyone to find and eliminate “zombie” servers.   Zombie servers ...

Weekly Tech Tidbits - Baby steps to better security

We have been discussing a whole lot of security issues over this past year.  Many of you are already moving forward to address many of our recommendations.  ...

Your Weekly Tech Tidbit - Are your printers secure?

We spend huge amounts of time thinking about server and workstation patches, firewall and switch patches and software patches, but when was the last time ...

Microsoft Licensing Webinar - Wednesday April 25th

 One of the most confusing things we all encounter is Microsoft software licensing.   You hear one explanation and then another.  We are left mystified ...

Your Weekly Tech Tidbit - Spectre and Meltdown

I wanted this week to take a few minutes to share with you our latest thinking on the Intel Spectre and Meltdown fiasco. In a nutshell, ...

Your Weekly Tech Tidbit - Group Policy and Security

You will find on our web site under Webinar recordings, Hardening Active Directory Part I and also Part II. If you haven't watched those presentations, ...

Your Weekly Tech Tidbit - Proper DNS Control

In this week’s Tech Tidbit I want to talk a bit about the importance of implementing proper control of DNS as part of your malware protection program.
DNS ...

Why You Have to Eliminate Local Administrator Rights

Welcome to the second installment of, "Weekly Tech Tidbits".    This week I am going to answer a very common question, "Why do we have to remove local ...

Scott's Tech Tidbits - November Edition

The October Tech Talk meeting was jammed packed with information.   There was more information than time allowed us to present.

Therefore, Scott ...

CSI Tech Talk Dates for the 2017-2018 School Year

We wanted to let you know the CSI Tech Talk meeting and webinar dates for the 2017-2018 school year.

Our Tech Talk free knowledge transfer sessions ...

Apple Releases Security Updates

Apple has released security updates to address vulnerabilities in multiple products. A remote attacker may exploit some of these vulnerabilities to take ...

Microsoft's Education Presentation

Today Microsoft made some announcements regarding education.  At the core of the announcements was the announcement of Windows 10 S on $189 laptops that ...

CSI Tech Talk meeting Tuesday May 9th - Sign Up Now!

**NOTE: Due to ALL THE WINTER SNOW cancellations we pushed this final tech talk of the school year back one week**

Our Tech Talk quarterly, free knowledge ...

CSI is now an authorized Nimble Storage partner

CSI is pleased to announce we are now a Nimble storage partner.  There is a critical need for low cost, high speed, expandable, reliable storage.  Nimble ...

CSI is now an authorized Veeam partner

CSI is pleased to announce that we are a Veeam authorized partner.   CSI believes that Veeam Backup and Replication is the ideal way to backup and restore ...