• June 2, 2026

Watering Hole Attacks: A Guide for MSPs and Resellers

A client rings after seeing a headline about a new cyber threat. They want to know whether their firewall already covers it, whether staff need more training, and whether this is another one of those attacks that sounds dramatic but rarely affects an SME. That call matters because watering hole attacks sit in an awkward […]

Read More
  • May 31, 2026

False Positive Rates: Reduce Alert Noise, Boost Value

A client rings because they're fed up with security alerts. Their team has started ignoring the notifications, your service desk is wasting time checking things that lead nowhere, and every alert now feels like admin rather than protection. That's a commercial problem, not just a technical one. For any provider selling recurring revenue security services, […]

Read More
  • May 30, 2026

What Is NIST? a Practical Guide for UK Service Providers

A client calls on a Tuesday morning. Their board has asked whether the business is “aligned to NIST”, and now they want an answer from you by lunchtime. You can talk confidently about Microsoft 365, backups, endpoint protection and user policies. Then the conversation shifts to a framework, and the room goes a bit quiet. […]

Read More
  • May 28, 2026

What Is Scareware: Turn Threats Into Revenue in 2026

A client rings five minutes before lunch. Their browser is full screen, a siren is blaring, and a message says the machine is infected and must be cleaned immediately. They want one answer from you. Is this real? Most service providers have had that call, or some version of it. Sometimes it's a panicked office […]

Read More
  • May 27, 2026

ISO 27001 Requirements: A Guide for UK Service Providers

A client asks whether you can “help with ISO 27001”, and many MSPs hear “consulting project”. That's too narrow. The better reading is this: the client is signalling a need for ongoing evidence, repeatable security activity, and someone who can turn compliance pressure into day-to-day control. That changes the commercial model. Instead of selling a […]

Read More
  • May 25, 2026

What Is a Rootkit? MSP Guide to Protection 2026

A client rings after seeing another breach in the news. They ask the usual question. “Are we exposed?” You can check backups, endpoint status, patching, and mailbox security. What you often can't see immediately is whether an attacker already got in, stayed hidden, and is still there. That's where rootkits matter. For MSPs and IT […]

Read More
  • May 24, 2026

Remote Access Trojans: A 2026 MSPs’ Protection Guide

A client rings up with what sounds like a routine support issue. Their laptop is slow. The webcam light came on for a moment. A folder looks different from yesterday. Outlook asked for a password again. None of that sounds dramatic on its own. For an MSP, that's exactly why a remote access trojan is […]

Read More
  • May 23, 2026

Cyber Security SME

A client rings after reading about another breach in the news. They ask a simple question. “Are we exposed?” If you run an MSP, IT support firm, telco, hosting business, or web agency, you're expected to have a credible answer. That moment is where most providers feel the gap. You already handle Microsoft 365, backups, […]

Read More
  • May 21, 2026

Phishing as a Service: A Reseller’s Guide for 2026

A client rings on a Monday morning. Their finance lead has received an email that looks exactly right. The branding matches. The wording is clean. The sender name is familiar. The only reason it was questioned is that the request felt slightly out of character. That scenario isn't unusual any more. It's routine. For MSPs, […]

Read More