Postgres and Open Source Experts

Anytime. Anywhere. Since 1997.

Blog

Why You Should Review Your Authentication Strategy

Why You Should Review Your Authentication Strategy

Released in July 2025, NIST SP 800-63 Revision 4 introduced new requirements for authentication strength, identity proofing, and federation security. Many organizations still haven't assessed their systems against these updated standards. Learn what changed, why it matters for compliance, and how to evaluate your current identity controls against the new framework.

Lessons from the CISA and USCG Joint Advisory: What “No Breach” Still Reveals

Lessons from the CISA and USCG Joint Advisory: What “No Breach” Still Reveals

The July 31st advisory from CISA and the U.S. Coast Guard (AA25-212A) is less about what happened and more about what could have. A proactive threat hunt at a U.S. critical infrastructure organization revealed no active compromise, but it uncovered systemic weaknesses like insecure credentials, unrestricted remote access, and insufficient monitoring. This is a textbook case of “security theater”: policies and tools on paper, without enforcement in practice. The takeaway …

Service Monitoring via Hazard Analysis White Paper

Service Monitoring via Hazard Analysis White Paper

A modern approach to IT observability inspired by hazard analysis. Learn how to improve system reliability, reduce monitoring complexity, and proactively manage service risks through Critical Control Points.

Critical Security Alert: Immediate Action Required for Self-Hosted SharePoint Servers (CVE-2025-53770)

A critical, newly disclosed, and actively exploited vulnerability, CVE-2025-53770, affects all self-hosted / on-premises Microsoft SharePoint Server versions. This critical issue does not impact SharePoint Online (Microsoft 365).

The exploit enables attackers to:

  • Bypass authentication
  • Install persistent backdoors
  • Launch ransomware
  • Steal sensitive data

Immediate Steps to Take:

  • Patch all on-premises SharePoint servers immediately following Microsoft guidance
  • Disconnect unpatched servers from the Internet immediately
  • For versions older than SharePoint 2016: …