(866) 251-4459 support@compnetsys.com
FBI Issues Warning

FBI Issues Warning

As you may be aware, the FBI issued a warning last week about a malware botnet called VPNFilter. This malware originated in Russia and attacks “consumer-grade” routers typically purchased from retailers such as Best Buy andor installed in homes by Internet Service Providers such as Spectrum, Time Warner, and Charter.

The malware has not been found to infect commercial grade routers typically installed in your business, such as those from Cisco, Fortinet, SonicWALL or others. If you or any of your staff has one of the following routers installed at home, we recommend the Internet Service Provider be contacted for guidance.
At a minimum, the router should be rebooted – and the router password should be changed to one with a fair amount of complexity. (ISP technicians have a reputation for often not changing the simple “factory default” password when they install a router.) In some cases, a router firmware upgrade may be required.
The affected routers identified so far are:

Linksys (Models E1200, E2500 & WRVS4400N)
Mikrotik Cloud Core Routers (versions 1016, 1036 & 1072)
Netgear (Models DGN2200, R6400, R7000, R8000, WNR1000 & WNR2000)
QNAP (Models TS251 & TS439 Pro)
QNAP NAS devices running QTS software
TP-Link R600VPN

While we are unable to manage the consumer-grade routers targeted in this attack, We can offer you a powerful network security appliance (router/firewall/wireless access point) that can provide commercial-grade protection at your home or office.
If you have teleworkers or executives who access your network by working from home, you should be concerned about business risks created by consumer-grade routers. A relatively inexpensive corporate or business-grade firewall is likely an appropriate solution. Please let us know if you would like more information.

Russian Hackers Target Routers in 50 Countries

Russian Hackers Target Routers in 50 Countries

In a day and time when everyone is being super careful not to click on suspicious links, there’s a new threat lurking. Just about every home and office have a router. It’s an inconspicuous piece of equipment that most of us rarely think about. And now, a new alert issued by the FBI says that Russian hackers have targeted routers in 50 countries around the world.

Why the router?
Routers are rarely updated. Unlike the operating system on a smartphone or computer, most router manufacturers do not send out regular updates for their products. Last January, a complaint was filed against router manufacturer, D-Link. In the complaint, the FTC said that the manufacturer was leaving their users at risk by not installing adequate security measure. Their failure to do so had left many consumers open to attacks from hackers.
Experts are now saying that there’s no incentive for router manufacturers to release regular updates to their products that could stave off attacks. Up to now, these manufacturers have not been held liable and when there’s no liability, manufacturers will often take cost-saving shortcuts.
How hackers are getting in
Using malware to target the VPN filter, cybercriminals are able to collect user data. Once the hacker has control of the router, they can use it to eavesdrop on consumers. This weakness also allows hackers a doorway to all home computers, TVs or anything connected via the router.
The FBI recently discovered one website that hackers had set up to use in their attack. This website was designed to give instructions to the routers that had been taken over. Though shutting this site down did cut off one avenue of attack, the FBI warned that millions of routers were still infected. This leaves millions of consumers around the world vulnerable and most users will not even realize they’ve been hacked.
Who is responsible for the hacks?
The Justice Department said the hacking group referred to itself as “Sofacy” and that they answered to the Russian government. The hacking group also goes by the names Fancy Bear and APT28 and they have been involved in some very high-profile targets over the last few years. This group was blamed for the hacks carried out during the 2016 presidential campaign that targeted the Democratic National Convention.
Cisco Systems Inc. performed its own investigation and found that the targeted routers include Netgear, Belkin’s Linksys, QNAP, Mikro Tik, and TP-Link. There may be others involved as well and most were purchased by consumers at local electronic stores and online. Cisco shared the results of their investigation with the Ukrainian government and the U.S. The FBI said that they believe some of the affected routers were also provided by internet service companies.
New types of warfare between Russia and Ukraine
Russia has long been involved in attacks against Ukrainian companies due to ongoing hostilities between the two countries. In the past, these attacks have cost millions of dollars and exposed the personal, confidential information of both businesses and individuals. At least one attack was responsible for an electricity blackout in Ukraine.
The Ukrainian government recently stated that the Russian government was planning a cyber-attack against some privately held companies, along with Ukrainian state bodies. They believe these attacks were meant to disrupt the Champions League soccer finals which were being held in Kyiv.
What to do next
Experts are recommending that everyone using a router shut it down and reboot it. They also recommend disabling remote manager settings. If at all possible, upgrade the router to the latest firmware and change your password.
The FBI warned, “The size and scope of the infrastructure by VPNFilter malware is significant.”
Their experts said that hackers could render the routers affected completely inoperable if they wanted to, but that wasn’t their primary goal. Instead, they were planning to steal data off the computers, phones, and other connected devices by taking over the routers that controlled internet access. The FBI stated that the malware would be very hard to detect even by professionals because of encryption and other tactics used by the hacking group.

Has Your Dallas Tech Company Told You To Buy Something But Never Helped You Set It Up?

Has Your Dallas Tech Company Told You To Buy Something But Never Helped You Set It Up?

It’s the same old story time and time again… your Dallas IT support provider tells you what to buy, then leaves you holding the bag. NCT Net, on the other hand, is here to help you – every step of the way.

Don’t be embarrassed, it’s happened to everyone.
There was a new client I worked with just last year. They came to me with a problem I’ve encountered over and over.
They said, “My last IT company said I needed to buy this, but they never really helped me set it up or get it working right. It’s just been a waste of money”.
It doesn’t really matter what the technology is. Sometimes it’s a new firewall, sometimes it’s a Wi-Fi router. That’s not what’s important.
How Other Tech Companies Keep Failing You
Dallas IT companies like the one this client had to deal with making two huge mistakes when they do something like this:
They assume that the right technology is all that’s needed.
It’s a hallmark of bad IT support. You go to your Dallas IT support provider with a problem, they take a cursory, Tier-1 glance at it, and decide that the solution is just to throw money at it. Your money, not theirs.
There are a few things wrong with this scenario:

You have to go to them. The right partner in IT doesn’t wait for you to come to them with problems – they assess your business, identify your obstacles, monitor your systems, and do everything they can be proactive about support. They notice issues before you do, and eliminate them before it affects your work.
The solution is more money. While it may eventually be the solution, more often than not, a bad Dallas IT support provider is just going to tell you to spend money. New hardware, software, or something else.
It’s like when you call tech support for your cable box at home. An engaged and capable technician will try a few options before deciding to roll a truck and incur further costs to you or the company they represent. Lazy technicians go right to rolling a truck and getting you off the line.

We’re not like lazy phone support technicians or other Dallas tech companies for that matter – NCT Net is proud to offer Proactive Managed IT Services that follow a proven process that identifies our many clients’ needs, matches them to effective solutions, and keeps their costs as low as possible.
They don’t help you set up the technology.
It seems like a no-brainer, but let me tell you, it’s extremely common for clients to be left fending for themselves when it comes to installation, configuration, and deployment of their new tech.
The reality – setting up your technology isn’t your job. It’d be like hiring someone to furnish your home, but instead, you’re left trying to interpret the IKEA instruction manuals for hours.
In the case where an investment in some kind of new technology really is necessary, we don’t ask you to front the bill and then leave you to figure it out on your own. Our team of expert engineers is available to help in person or over the phone as need be to ensure your new technology is properly installed, configured and deployed.
That way, you get the best possible ROI on your investment – both in our services and the new technology.
Dallas IT Consulting With Your Needs In Mind
With each step your Dallas business takes in becoming a more developed and profitable operation, you need to be sure that your IT systems can support its growth. Arranging one-off consultations with other Dallas IT companies is inconvenient and expensive, but without the right knowledge, your technology may fail to meet the requirements of the next stage of your business.
NCT Net is available to consult on every big decision that involves technology. Proper planning not only helps you to avoid technological missteps that can often result in IT issues, but it also adds further value to your company as it develops effectively.
With your specifics in mind, our team helps you to develop long-term IT plans that take into account important factors like your budget, projections, customer and employee needs and business goals. Ongoing assessments of your IT infrastructure will help to identify any risks or opportunities that should be accounted for as your company expands.
In a nutshell? Our Dallas IT Consulting services offer business and technology expertise that helps your company plan effectively for the future.
Just because you run a business that needs IT, that doesn’t mean you have to be an IT expert. Let NCT Net take the stress out of business technology by providing invaluable IT advice on each and every business decision you deal with.
For more information about our Proactive Managed Services and IT Consulting Services in Dallas, get in touch with NCT Net at (214) 544-3982 or support@nctnet.net.

Data Protection and Regulatory Compliance

Data Protection and Regulatory Compliance

In this age where cybercrime is on the rise, it has become increasingly important to ensure the protection of data. Much of the company data today contains critical and sometimes very personal information. The release of such information would expose the person responsible for liability for breach of confidentiality. Identity theft is on the rise. Sometimes it seems that no one’s private information is safe from intruders. These crimes have undesirable effects on the affected organization, the individual, and the economy. It is imperative that appropriate measures be taken to ensure data protection.
Measures in place
There are various measures that have been put in place to ensure data protection. Persons and organizations dealing in data are usually required to adhere to these measures. An example is the Data Protection Law. This Act mandates protection of all data and puts in place mechanisms to ensure the achievement of this objective. Secondly, this Act creates bodies which are authorized to confirm that these new laws are carried out correctly. It also punishes non-adherence, thus providing the right incentives for persons dealing with data to ensure that they comply with its requirements.
Apart from the Data Protection Law, various regulations have been passed that have a responsibility to protect data by providing guidelines for handling another entity’s information. Regulations are important drivers of laws. Basically, while laws provide the framework that needs to be adopted and followed, regulations provide enforcement and implementation mechanisms.
Without proper regulations, laws cannot be well understood and implemented. The regulations that govern data protection are clear as to the measures and standards that need to be employed for compliance with the Data Protection Law. Compliance with these regulations not only benefits the person whose data is at risk of exposure, it also protects the person holding the data. In the long run, compliance saves the organization and the country a lot in monetary losses. The cost of one data breach is about $1.3 million.
Compliance with regulations
Various measures have been adopted by data users and processers to comply with the rules and regulations. Data processors generally attempt to find the easiest and most cost friendly way of data protection. This may include the use of software specifically designed to make it hard for hackers to break into a computer system. While there are a variety of software programs for this type of data protection, the time-tested Microsoft Office 365 package provides a broad range of services.
Compliance with regulations has the following benefits:

Provides uniform benchmarks since the regulations and standards define the minimum bar for protecting data in the cloud.
It acts as a proof of security as organizations are motivated to design better security controls to build trust with the customers.
It is a proactive innovation since the regulatory bodies encourage and work with cloud service providers to create better technology.

Office 365 offers an inclusive set of certifications and proofs for any cloud service provider. They help organizations comply with national, regional, and industry-specific requirements governing the collection and usage of an individual’s personal information.
Shared responsibility
Unlike most software providing data protection services, the Microsoft Office Package allows for shared responsibility through the cloud. This responsibility is mutual between the data processor, known as the client and the cloud service provider. The client is required to manage the risks that are associated with inadequate data protection or data leakage for his or her end. This ensures responsibility and removes all risks of negligence by the client. At this point, data classification and data accountability is done. This shared responsibility model reduces the customer’s burden.
Shared responsibility may not be as easy as it sounds. The client has to know exactly what is required of him or her and how to meet these requirements. Since these are mostly technological and the client already has his or her hands full with the data processing, it may be difficult to find time to learn and implement shared responsibility.
While Microsoft is well equipped to maintain its end of the bargain, they understand the difficulty that clients face in maintaining their end of it. As such, Microsoft takes it upon themselves to equip their clients with the tools and knowledge required to ensure accountability on their part. An example of how this works is seen in Office 365. This software uses lockboxes to restrict access to data. Clients are given access thus making them a part of the chain-of-command required before access to the data is gained.
This business model helps to reduce the customer’s burden. Microsoft handles the larger part of accountability, which is 78% while the organization is responsible for 22% of the burden.
Wrap up
Microsoft Office 365 contains over 1,100 controls that coordinate with different regulatory requirements. This helps to counter any threat that can be imposed from anywhere across the globe. In addition, it assists individuals and businesses in staying up to date with the ever-evolving industry standards in data protection.

Remember Why We Celebrate Memorial Day

Remember Why We Celebrate Memorial Day

When we think of Memorial Day, we have visions of parades, going to the beach, enjoying a picnic in the park, or gathering with family and friends for a barbeque. But, as most of us know, this is a special day to honor military members who made the ultimate sacrifice for our country. Many of us will be visiting the gravesites and memorials of the men and women who served and died performing military service for our country.
The History Of Memorial Day
This year, Memorial Day is on Monday, May 28th. Memorial Day was first known as Decoration Day. It originally honored only those who lost their lives while fighting in the Civil War. In the spring of 1865 at the end of the Civil War, people throughout the U.S. held tributes to fallen soldiers by decorating their graves with flowers on Decoration Day.
General John A. Logan of the Grand Army of the Republic, proclaimed that the first Decoration Day be observed each year on May 30th.  On the first Decoration Day, General James Garfield made a speech at Arlington National Cemetery where 5,000 attendees decorated the graves of the more than 20,000 soldiers from both the Union and Confederacy. It was during this time that the federal government established the first national cemeteries.
Americans in the northern states followed suit with their own commemorative events, and by 1890 each recognized Decoration Day an official state holiday. Southern states honored their dead on separate days.
After World War I, the holiday evolved to commemorate American military members who died in all wars. In 1966, the federal government declared Waterloo, New York as the official birthplace of Memorial Day. They chose this city because, on May 5, 1866, Waterloo closed businesses so residents had a day where they could decorate the graves of soldiers.
However, a number of other cities claim to be the birthplace of Memorial Day. These include:

Columbus, Mississippi
Richmond, Virginia
Macon, Georgia
Carbondale, Illinois
Boalsburg, Pennsylvania

In 1968, the U.S. Congress passed the Uniform Monday Holiday Act, which established Memorial Day as the last Monday in May. It went into effect in 1971 and Memorial Day has been designated a federal holiday ever since.
In the year 2000, President Clinton signed the “National Moment of Remembrance Act,” which designates 3:00 p.m. local time on each Memorial Day as the National Moment of Remembrance.
Today, cities and towns across America hold Memorial Day parades each year along with military personnel and members of veterans’ organizations. Some of the largest parades take place in Washington, D.C., New York, and Chicago.
What Will You Be Doing On Memorial Day?
When Congress made Memorial Day into a mandatory three-day weekend with the National Holiday Act of 1971, it, unfortunately, caused some to think of it as a vacation weekend and to be distracted from the spirit and meaning of the day.
Some people confuse Memorial Day with Veterans Day. Veterans Day is a commemoration of all the individuals who have served or are currently serving in the nation’s armed forces.
Memorial Day was specifically enacted to honor those who died while serving the country. Because we also think of it as a “beginning of summer” celebration, this can tend to minimize the true meaning of Memorial Day.
Because of this, Hawaii Senator Daniel Inouye, a World War II veteran, introduced a Congressional measure to return Memorial Day to May 30 in 1987. He continued to do so every year until his death in 2012. In 1999, he wrote:
“Mr. President, in our effort to accommodate many Americans by making the last Monday in May, Memorial Day, we have lost sight of the significance of this day to our nation. Instead of using Memorial Day as a time to honor and reflect on the sacrifices made by Americans in combat, many Americans use the day as a celebration of the beginning of summer.” 3
Honoring Our Fallen Military Members
Without the sacrifice of the men and women in our Armed Forces, we wouldn’t enjoy the freedoms we have today. Even if you’re having fun celebrating this Memorial Day holiday, we should all take a moment to remember them.
Civil War – Approximately 620,000 Americans died. The Union lost almost 365,000 troops and the Confederacy about 260,000. More than half of these deaths were caused by disease.
World War I – 116,516 Americans died, more than half from disease.
World War II – 405,399 Americans died.
Korean War – 36,574 Americans died.
Vietnam Conflict – 58,220 Americans died.
Operation Desert Shield/Desert Storm – 383 service members died.
Operation Iraqi Freedom – 4,411 service members died.
Operation New Dawn – 73 service members died.
Operation Enduring Freedom – 2,346 service members died.
Operation Freedom’s Sentinel – 48 service members have died as of May 2018.
Operation Inherent Resolve – 61 service members have died as of May 2018. 1
A national moment of remembrance occurs at 3:00 p.m. local time on Memorial Day. Please join us in taking the time to remember and thank all of our fallen military members.

https://www.cnn.com/2013/05/23/us/memorial-day-fast-facts/index.html
https://www.history.com/topics/holidays/memorial-day-history
http://people.com/celebrity/why-happy-memorial-day-is-inappropriate/