News, Trends, and Insights for IT & Managed Services Providers
News, Trends, and Insights for IT & Managed Services Providers
Business of Tech | The Open Gates of Cloud Security: How Attack Surfaces Are Still Vulnerable

The FBI and Cybersecurity and Infrastructure Security Agency have issued a joint advisory warning about the evolving tactics of the Snatch ransomware group. The group has been targeting the Defense Industrial Base and critical infrastructure sectors, using data exfiltration and double extortion techniques. They exploit weaknesses in Remote Desktop Protocol and compromised credentials for initial access, spending months on a victim’s system. Organizations are advised to limit user access, perform regular patching and segmentation, and maintain backups. Paying ransom is strongly discouraged, and incidents should be reported to the FBI and CISA.

A new study by Unit 42 reveals that cloud-based assets and remote access are the most vulnerable threat surfaces. The report highlights that 80% of reported exposures occurred on cloud-based assets, while 85% of organizations had remote access connected to the internet. Attackers scan IPv4 address spaces at machine speed and exploit publicly accessible surfaces within days. Organizations refreshing their cloud-based IT infrastructure contribute to the problem. The study also identifies industry-specific attack surfaces and recommends continuous visibility, vulnerability management, securing remote access, and addressing cloud misconfigurations as solutions.

Why do we care?

How much access is left wide open, even today?  It’s staggering.  This statistic is a red flag for organizations migrating to or operating in the cloud, signaling the urgent need for better cloud security measures.   The Unit 42 report also suggests that different industries have unique vulnerabilities. Tailored approaches may be more effective than one-size-fits-all security solutions… which should be catnip for service organizations.  

While investments in cybersecurity are growing, the latest warnings make it clear that we are far from where we need to be. 

Choose your upgrade:

Get the full benefits of Business of Tech Plus

Insider Access

$12/month

Perfect for MSPs and ITSPs that want full interviews, early access, and ad-free listening

  • Programmatic Ad-free private podcast feedSame show, little interruptions
  • Channel Chatter previews1–2 topics with light insights
  • Early access to interview episodesHear it days before public release
  • Monthly Insider BriefTighter analysis you can share internally
  • Extra audio segmentsCut interviews, behind-the-scenes commentary, quick competitive notes
  • Become an Insider for $12/month

    Leadership Access

    $149/month

    Perfect for MSPs and Vendors that run a team and need the extended tactics, executive summaries, and weekly alignment brief

  • All Insider Access benefits plus . . .
  • Invite your teamIncludes access for 5 team members with option to add more
  • Vendor Strategy BriefsThe entire library, plus new analysis every month
  • Channel ChatterAll topics, full insights, complete vendor discussion + sentiment list
  • Weekly Leadership AlignmentAudio Brief on a private podcast feed (3–5 min, actionable trends)
  • Quarterly State of the Channel Briefing
  • Monthly AMA submission priorityAsk Dave direct questions, and skip the line
  • Get the Leadership Edge for $149/month

    Vendor Partner

    $500/month

    Perfect for channel companies or vendors looking to deepen their engagement with the show.

  • All Leadership Access benefits plus . . .
  • Get highlighted as a show sponsor You'll get placement in the show notes, throughout the website, and on our dedicated sponsors page.
  • Enjoy regular shout outs You'll be featured in a rotating format during the show
  • Become a show sponsor for $500/month

    Search all stories