Pantropic Newsletter #53

Posted May 19, 2026

by Sarah



 

 




Pantropic Newsletter #53 (Feb 2026)

Backups Are Under Attack: How to Protect Your Backups

 

Ransomware operators are increasingly targeting backup systems first, knowing that disabling recovery options gives them maximum leverage. Attackers are not only encrypting production environments but also deleting snapshots, altering retention policies, and encrypting backup repositories to prevent restoration. If backup systems share credentials or network paths with primary infrastructure, they can be compromised just as quickly. Organizations should implement immutable storage, enforce strict access controls, segment backup networks, and regularly test restoration under real-world conditions. Through Pantropic’s partnerships with leading cybersecurity technology providers, we can help assess and strengthen your backup resilience. Reach out to us if you are interested to learn more about safeguarding your recovery strategy.

(Source: Hacker News)

LEARN MORE INFO
Image from gstudioimagen1 on Freepik

Exploitable Vulnerabilities Present in 87% of Organizations

 

A recent industry analysis found that 87 percent of internet-connected devices contain at least one exploitable vulnerability, many tied to outdated firmware, default configurations, or known but unpatched flaws. The exposure extends beyond traditional endpoints to include IoT devices, industrial systems, and network infrastructure that often receive limited oversight. Without full visibility into connected assets, organizations may underestimate the true size of their attack surface. A comprehensive asset inventory, risk-based patching approach, and continuous vulnerability scanning are critical to reducing exposure. Regular review of connected devices should be treated as a core security discipline rather than an occasional audit exercise.

(Source: Infosecurity Magazine)

LEARN MORE INFO

Singapore & Its 4 Major Telcos Fend Off Chinese Hackers

 

Major telecommunications providers in Singapore have reportedly faced coordinated intrusion attempts attributed to suspected Chinese threat actors targeting critical infrastructure and sensitive data systems. Although defenses appear to have prevented significant disruption, the sustained targeting highlights the strategic value of telecom networks to advanced adversaries. Telecommunications providers underpin financial services, government operations, and national connectivity, making them high-impact targets. Organizations should evaluate supply chain dependencies, review vendor security controls, and ensure layered defenses are applied across critical systems. Proactive assessment of infrastructure risk can reduce the likelihood of cascading impact from targeted campaigns.

(Source: Dark Reading)

LEARN MORE INFO

Hackers Disable Windows Security With New Malware Attack

 

A recently observed malware campaign is disabling built-in Windows security protections before deploying additional malicious payloads. By manipulating legitimate system components, attackers can suppress Defender and related protections, reducing the chance of detection. This technique underscores the risk of relying solely on default endpoint configurations. Organizations should confirm that endpoint monitoring includes tamper detection, behavioral analysis, and rapid isolation capabilities. Regular validation of endpoint controls helps ensure security protections cannot be silently neutralized during an attack.

(Source: Tech Republic)

LEARN MORE INFO
Image from Freepik

Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023

 

A critical vulnerability in Cisco SD-WAN software has been actively exploited since 2023, allowing attackers to inject malicious configuration data and potentially redirect or intercept network traffic. Because SD-WAN platforms often connect branch offices and cloud environments, compromise at this layer can provide a high-impact entry point into enterprise networks. Prolonged exploitation indicates that infrastructure components may remain exposed longer than expected. Organizations using affected systems should verify patch status, review configuration integrity, and apply network segmentation to limit lateral movement. Ongoing infrastructure review is essential to prevent networking components from becoming silent threat vectors.

(Source: Bleeping Computer)

LEARN MORE INFO

To view our past newsletter editions, click here. 

Backup and Cybersecurity Solutions Offered by Pantropic

ATEGO® ENTERPRISE
This “white glove” managed service is the next generation secure offsite backup you need right now. We monitor your backups daily, help you troubleshoot any problems, and can assist you with restorations when you need it. Our Data Security Module can perform bi-directional anti-malware scans, content disarm and reconstruction (CDR), and protect your backups with biometric Deep MFA and multi-person workflow, crucial in stopping stolen credential attacks.
CROWDSTRIKE FALCON
A next-generation endpoint protection platform using AI and machine learning to effectively stop breaches, featuring true NGAV, powerful endpoint detection and response (EDR), threat intelligence management, and built-in automation. It delivers real-time visibility, rapid threat hunting, lightweight cloud-native performance, and seamless scalability to secure complex environments with speed and confidence.
Leading desktop and laptop backup solution providing automated and continuous data backup protection with unlimited capacity backup licensing and flexible deployment options. 
World’s largest security awareness training platform with simulated phishing attacks, educating and empowering employees to strengthen IT security against cybercriminals.
GET IN TOUCH

Copyright © 2026 Pantropic Online Pte Ltd. All rights reserved.