Seattle, WA, USA
1996
  |  By Tracy Hillstrom
If you've glanced at a vulnerability tracker lately, the numbers look alarming. The Forum of Incident Response and Security Teams (FIRST) now projects roughly 66,000 CVEs will be published in 2026; up from a February forecast of 59,427 and closing in on 70,000 by some counts. That would follow a record 2025, which finished at roughly 48,000 disclosed CVEs, itself a sharp climb from about 40,000 the year before. It's tempting to read that curve as a sign that software is getting worse. It isn't.
  |  By The Editor
Guest post by Neil Holme, Founder and CEO of Impact Business Technology, a WatchGuard partner. The cloud environments MSPs manage change every week. Clients adopt new SaaS applications, AI tools, and collaboration services, making it difficult to track what is in use, how it is configured, and which access permissions remain active. Exposure grows without a clear warning sign until an incident occurs. The cloud is also the fastest-growing attack surface an MSP manages.
  |  By Matthew Terry
The European Commission has published its first official guidance to help businesses implement the Cyber Resilience Act (CRA)—the EU regulation establishing cybersecurity requirements for products with digital elements. The timeline is critical: reporting obligations for actively exploited vulnerabilities and severe incidents take effect on September 11, 2026, while the core CRA requirements will become mandatory from December 11, 2027.
  |  By Manu Santamaría Delgado
The NIST’s changes in how the National Vulnerability Database (NVD) operates have fundamentally shifted how organizations interpret the vulnerabilities published in this go-to registry. In the past, the NVD provided vulnerability enrichment data, such as CVSS scores, affected products, CWE classifications, and reference links.
  |  By The Editor
The MSP landscape is evolving. Customers increasingly expect more than technology management, they want trusted partners who can help them understand, reduce, and manage cybersecurity risk. WatchGuard's upcoming “Provider to Advisor: The MSP Shift Toward Risk Leadership” webinar explores exactly this opportunity.
  |  By Sarah Smith
For years, managed service providers (MSPs) have secured customer cloud environments through periodic reviews of each tenant. That approach worked when a customer ran two or three cloud applications. As organizations adopt more SaaS applications, the number of environments, identities, and configurations to monitor also increases. The challenge is already visible.
  |  By Iratxe Vazquez
For years, the sophistication of a cyberattack was closely connected to the sophistication of the attacker behind it. Advanced campaigns required experienced threat actors with the knowledge, resources, and time needed to research targets, understand environments, create convincing interactions, adapt when something failed, and coordinate complex operations. Artificial Intelligence is beginning to change that relationship.
  |  By The Editor
Artificial intelligence is no longer a future consideration for MSPs because it is already reshaping how leading providers run their businesses, protect their clients, and create new revenue streams. Separating real business value from hype requires a clear-eyed, practitioner-driven perspective. Join Marc Laliberte and a panel of MSP and security operations leaders for a candid discussion on how AI is being deployed today.
  |  By The Editor
WatchGuard Technologies, a global leader in unified cybersecurity, has been recognized as a 2026 CRN Annual Report Card (ARC) Award winner in the Security: Network Security—SMB category by CRN, a brand of The Channel Company. The recognition is based on direct feedback from solution providers across North America, who evaluated technology vendors on product innovation, support, partnership, and managed and cloud services. WatchGuard achieved an overall score of 92.8, ranking first in the category.
  |  By Euler Neto
The recent Grandoreiro campaign detected by the WatchGuard Threat Lab team is a clear example of how today’s threats combine different techniques to make detection more difficult and operate more discreetly. In this case, the attack begins with a phishing email designed to persuade the user to click a link. From there, the victim is taken through several redirects and eventually downloads a compressed file from well-known services such as Dropbox or MediaFire.
  |  By WatchGuard Technologies
Artificial intelligence is no longer a future consideration for MSPs because it is already reshaping how leading providers run their businesses, protect their clients, and create new revenue streams. Separating real business value from hype requires a clear-eyed, practitioner-driven perspective.
  |  By WatchGuard Technologies
This week, dive into OpenAI's and METR's analysis of the rogue OpenAI agents that hacked Hugging Face back in July. We go over the full attack timeline discussing the multiple message boards the agents created and the ultimate goal of their attack against Hugging Face and trust us, its as crazy as it gets. Before that, we discuss a recent dark web service that popped up selling 153 million stolen drivers licenses before discussing a research post into a malware implant discovered in inexpensive Chinese routers.
  |  By WatchGuard Technologies
AI should do more than generate answers. It should help MSPs make better decisions. Many MSPs are experimenting with AI, but isolated tools and generic prompts often create more noise than value. Without the right questions, workflows, and operational foundation, AI can become another disconnected technology to manage rather than a meaningful driver of security and growth. This webinar explores five practical AI prompts every MSP should know, and how to apply them across security, service delivery, operations, and business strategy.
  |  By WatchGuard Technologies
This week, we sit down with Euler Neto, a cybersecurity analyst at WatchGuard, to discuss his research into the ErrTraffic Malware-as-a-Service loader found targeting Portuguese-speaking users in recent months.
  |  By WatchGuard Technologies
This week on the podcast, we discuss a research post that defines a new attack technique against AI tools called Cryptographic Context Injection. Before that, we cover an authentication bypass vulnerability in CircleCI's MCP server after discussing 3.6 million records stolen from the Azure tenants of several large organziations.
  |  By WatchGuard Technologies
Employees are increasingly adopting AI tools, working across unsecured networks, and bypassing established security practices, often without their organization's knowledge. The result is a growing class of cybersecurity risks that traditional security controls alone cannot address.
  |  By WatchGuard Technologies
This week on the podcast, we discuss a new White House memorandum that creates a program to authorize American private companies to begin conducting offensive cyber operations. Before that, we discuss a vulnerability write up for a Citrix Netscaler flaw before covering yet another prompt injection vulnerability in a popular AI tool.
  |  By WatchGuard Technologies
Attackers can bypass MFA through stolen sessions, phishing, and MFA fatigue.
  |  By WatchGuard Technologies
Your employees have already adopted AI. The question is whether your organization knows where, how, and with which data. While many companies are encouraging AI innovation, a new security challenge is emerging in parallel: Shadow AI. Employees are connecting AI tools faster than security teams can evaluate them, moving sensitive data into unmanaged applications, and creating blind spots that traditional security controls were never designed to see. Even organizations with mature AI strategies are discovering that sanctioned AI is only part of the story.
  |  By WatchGuard Technologies
An AI model found a way out of its controlled environment by exploiting a third-party vulnerability and gaining internet access.
  |  By WatchGuard
Ransomware is one of the most talked about and publicized security threats in the modern era. What started as a few high-profile attacks caused by a handful of malware variants has developed into a virulent threat landscape in which increasingly unskilled attackers are able to execute highly effective ransomware campaigns against organizations of all sizes and levels of complexity. Small-to-midsize businesses disproportionately fall victim to ransomware, as they often lack the technical skills and tools needed to prevent infection.
  |  By WatchGuard
Risk-based authentication both enhances security and user experience by allowing you to rank the resources you want to protect based on risk level and type of user. This gives you the power to create rules that are unique to the security structure in your organization, therefore enabling more flexibility or higher protection only when necessary.
  |  By WatchGuard
Cyber attacks grab headlines almost daily. WatchGuard's award-winning network security platform not only provides one of the most complete suites of unified security controls on the market today to detect and prevent these attacks, but our strategy of sourcing the best scanning engines to integrate with our built-in defenses boosts security in critical attack areas. Take a closer look at the WatchGuard security platform's all-star team of best-in-class threat management services.
  |  By WatchGuard
In this eBook we provide you with suggestions on how to start providing some basic but vital security services that will improve the security posture of your customers while increasing your Average Revenue (ARPU), such as endpoint security set-up and monitoring.
  |  By WatchGuard
If you are in the retail or hospitality industries, it's important to know exactly how your network security solution maps to PCI DSS standards. This white paper presents a straight-forward review of PCI requirements and how the WatchGuard platform delivers the capabilities you need to ensure mandates are met.
  |  By WatchGuard
The coronavirus pandemic has exposed business continuity inadequacies at many organizations, and highlighted the slow pace of progress in digital transformation. This new reality necessitates a departure from a traditional network-centric security model that assumes every device and user within the network should be trusted. In this eBook we will explore how the dynamics of COVID-19 have impacted security, outline the importance of a zero-trust approach, and discuss how WatchGuard can help your business deliver the security you need during these trying times.
  |  By WatchGuard
Respected PCI-Qualified Security Assessor Coalfire recently completed a technical assessment of the WatchGuard Threat Detection and Response (TDR) solution, validating it for PCI DSS anti-malware use cases. Download the whitepaper to learn more!
  |  By WatchGuard
The coronavirus pandemic has exposed business continuity inadequacies at many organizations, and highlighted the slow pace of progress in digital transformation. This new reality necessitates a departure from a traditional network-centric security model that assumes every device and user within the network should be trusted.

WatchGuard has deployed nearly a million integrated, multi-function threat management appliances worldwide. Our signature red boxes are architected to be the industry's smartest, fastest, and meanest security devices with every scanning engine running at full throttle.

For 25 years, WatchGuard has pioneered cutting-edge cybersecurity technology and delivered it as easy-to-deploy and easy-to-manage solutions. With industry-leading network and endpoint security, secure Wi-Fi, multi-factor authentication, and network intelligence products and services, WatchGuard enables more than 250,000 small and midsize enterprises from around the globe to protect their most important assets including over 10 million endpoints.

The WatchGuard Difference:

  • Intelligent Protection: Effective protection against today’s vast number of evolving threats requires multiple services working intelligently together. Prevent, detect, and instantly respond to cyber attacks with automated policies.
  • Simplified Management: Managing security across your organization has never been simpler. Use out-of-the-box tools to quickly and easily deploy, configure, and maintain your security with the granularity of your choice.
  • Actionable Visiblity: Monitor and report on the health of your IT infrastructure. Actionable visibility tools enable you to proactively identify threats, while providing corrective action against known issues.

In a world where the cybersecurity landscape is constantly evolving, and new threats emerge each day, WatchGuard makes enterprise-grade cybersecurity technology accessible for every company.