Sign in

Geekpoint

@geekpoint.bsky.social
14 followers 1 following 145 posts

Geekpoint provides no-contract IT solutions, managed services, and cybersecurity for small & micro businesses.

PostsRepliesMedia
Geekpoint @geekpoint.bsky.social · 30/09/2026
Your bin might be the easiest place to steal your customer data from. Invoices, bank statements and employee files go in the rubbish and anyone can pull them back out. One rule: personal, financial or customer info gets shredded, not binned. Use a cross-cut shredder. #cybersecurity #datasecurity #s
001
Geekpoint @geekpoint.bsky.social · 29/09/2026
An email from a supplier says their bank details have changed. You update them, pay the invoice, and the money goes to a criminal. Sometimes the supplier's own account was hacked, so it's genuinely from them. Never change bank details without calling on a number you already have. #cybersecurity #fr
000
Geekpoint @geekpoint.bsky.social · 28/09/2026
Researchers found the DragonForce ransomware group hiding inside normal Microsoft Teams traffic, undetected for up to two months. Their malware disguised its connection as ordinary Teams activity. Basic antivirus misses this. Ask your IT provider if what you have would catch it. #cybersecurity #ran
thehackernews.com
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
000
Geekpoint @geekpoint.bsky.social · 27/09/2026
When did anyone last look closely at your card terminals? Skimmers get attached and terminals get swapped, and neither is obvious unless someone checks. Look at each one at the start of the day. If it looks different or loose, stop using it and call your provider. #cybersecurity #payments #smallbus
000
Geekpoint @geekpoint.bsky.social · 26/09/2026
You've thought about what you'd do in a cyberattack, but have you practiced it? Sit your key people down for an hour and talk it through: files encrypted Monday morning. Who do we call first? Can we reach our contacts with email down? Note what nobody could answer. #cybersecurity #incidentresponse
000
Geekpoint @geekpoint.bsky.social · 25/09/2026
Microsoft will never call you about a virus on your computer. Neither will Apple. If a pop-up or a caller says your machine is infected and wants you to call a number, install something or pay, it's a scam. Close it or hang up, then call your own IT provider if you're worried. #cybersecurity #scams
000
Geekpoint @geekpoint.bsky.social · 25/09/2026
If you want your team to work fast, don't skimp on their computers or your internet. Everything moves quicker than it used to. Customers want fast replies, and the jobs often go to whoever gets back to them first. Your team can't be quick if their tools are slow. A laptop that takes an age to load
001
Geekpoint @geekpoint.bsky.social · 24/09/2026
Deleting files doesn't remove them from an old computer or phone. Free tools can pull them back. Before any device leaves, use Reset this PC and remove everything, or a full factory reset on phones. And don't forget the office copier, most store what you scan. #cybersecurity #datasecurity #disposal
000
Geekpoint @geekpoint.bsky.social · 23/09/2026
Who in your business can change the bank details on an invoice? Your accounting software is connected to your bank and holds payroll data. Turn on MFA, give everyone their own login, and use roles so only the people who need to move money can. Review access every few months. #cybersecurity #account
000
Geekpoint @geekpoint.bsky.social · 22/09/2026
MFA isn't bulletproof. Google's June 2026 advisory warns attackers build fake login pages that pass your password and MFA code through to the real site, stealing your session. Use passkeys for important accounts, and never log in through an emailed link. #cybersecurity #MFA #phishing #IToperations
blog.google
Our latest fraud and scams advisory
Our latest fraud and scams advisory
000
Geekpoint @geekpoint.bsky.social · 21/09/2026
Your router or firewall connects your business to the internet, and on default settings it's an easy way in. The admin password is often still the default, the firmware is out of date, and remote management may be switched on. Ask your IT provider to fix all three this week. #cybersecurity #network
000
Geekpoint @geekpoint.bsky.social · 20/09/2026
Your team's home wifi routers are part of your security now. A lot still run the default admin password from the sticker. Have them change it, turn on WPA2 or WPA3, and work from a company device rather than the family laptop. Give every remote worker a short checklist. #cybersecurity #remotework #
101
Geekpoint @geekpoint.bsky.social · 20/09/2026
Soon, some of the calls coming into your business won't be from a real person. Google has started giving people AI assistants that ring businesses for them. The assistant will call a shop to check if something's in stock, book an appointment, or ask about a price. For now this is mostly a consumer
000
Geekpoint @geekpoint.bsky.social · 19/09/2026
You search for software or your bank login and the top result is a paid ad. It looks right, but it's a fake site that installs malware or steals your login. Skip the ads and click the real result below, or type the address yourself. Only download software from the official site. #cybersecurity #mal
000
Geekpoint @geekpoint.bsky.social · 18/09/2026
A stranger walks in behind your employee carrying a box, and nobody stops them. From there they can plug into a network port, take a laptop, or sit at an unlocked computer. Get your team comfortable asking 'can I help you?' and make locking your screen normal when you step away. #cybersecurity #phy
000
Geekpoint @geekpoint.bsky.social · 17/09/2026
Malware still arrives as an email attachment someone opens without thinking. Be wary of .exe, .msi, .scr, scripts like .js or .bat, disk images like .iso, and any Office file asking you to enable macros. Unexpected attachment? Check with the sender another way before opening it. #cybersecurity #phi
000
Geekpoint @geekpoint.bsky.social · 16/09/2026
How many people know the password to your company Instagram? If it's in a spreadsheet or a group chat, you can't see who used it and it walks out the door when someone leaves. Use a password manager with a shared vault so people can use logins without ever seeing the password. #cybersecurity #passw
000
Geekpoint @geekpoint.bsky.social · 15/09/2026
People reported losing $3.5 billion to imposter scams in 2025, per the FTC. That's someone pretending to be your bank, a supplier or your boss to get money moved. Never act on an out-of-the-blue message. Call them back on a number you already have. #cybersecurity #scams #fraud #smallbusiness https:
ftc.gov
FTC Data Show People Reported Losing $3.5 Billion to Imposter Scams in 2025
FTC Data Show People Reported Losing $3.5 Billion to Imposter Scams in 2025
010
Geekpoint @geekpoint.bsky.social · 15/09/2026
By default, a Microsoft account will accept a login attempt from anywhere in the world. Most attacks on Microsoft accounts come from overseas, from automated tools trying stolen passwords by the thousand. If your business only works in one or two countries, there's no reason to allow a login from a
000
Geekpoint @geekpoint.bsky.social · 14/09/2026
If someone gets into your domain account at GoDaddy or Namecheap, they can point your website anywhere and take over your email. Put MFA on that account, turn on the domain transfer lock, and make sure it auto-renews. Businesses lose domains every year by forgetting to renew. #cybersecurity #domain
000
Geekpoint @geekpoint.bsky.social · 13/09/2026
Even with MFA on, your Microsoft 365 lets someone try to log in from anywhere in the world. Conditional access rules fix that. Ask your IT provider to block sign-ins from countries you don't do business in, and block the old sign-in methods that skip MFA entirely. #cybersecurity #microsoft365 #acce
000
Geekpoint @geekpoint.bsky.social · 12/09/2026
Anyone with your meeting link can walk into your client call. In Zoom, Teams or Meet, turn on a waiting room so you approve who joins, add a passcode, lock the meeting once everyone's in, and limit screen sharing to the host. Don't post meeting links publicly. #cybersecurity #videoconferencing #pro
001
Geekpoint @geekpoint.bsky.social · 11/09/2026
SIM swapping is when someone calls your mobile carrier, pretends to be you, and moves your number to their SIM. Now your texts go to them, including your security codes. Put a PIN on your mobile account so nobody can move your number without it. Use an app for 2FA, not texts. #cybersecurity #simswa
000
Geekpoint @geekpoint.bsky.social · 10/09/2026
The accounts you set up for a new starter on day one tend to stick around for years. Give them their own login, not a shared one. Give access to only what their job needs. Turn on MFA from the first login. It's easy to add access later and hard to take it back. #cybersecurity #onboarding #smallbusi
000
Geekpoint @geekpoint.bsky.social · 10/09/2026
When you log into a new tool with your Google account instead of making a fresh password, you're tying that tool to your Google login. Do it enough times and one account controls all of them. It's quick, so most people click it without thinking. The trouble starts if someone gets into that Google
000
Geekpoint @geekpoint.bsky.social · 09/09/2026
Your office security camera, smart TV and video doorbell are small computers on your network, and most still have the password they came with. Change the default password on each, turn on automatic updates, and switch off remote access you don't use. #cybersecurity #IoT #networksecurity #IToperatio
001
Geekpoint @geekpoint.bsky.social · 08/09/2026
Police shut down SocGholish in June 2026, the fake 'your browser is out of date' pop-ups that infected thousands of businesses. They seized 106 servers and cleaned 15,000 hacked sites. The trick will come back, so teach your team: a real update never comes from a website pop-up. #cybersecurity #mal
helpnetsecurity.com
Law enforcement hits SocGholish: 106 servers down, 15,000 sites cleaned - Help Net Security
Law enforcement hits SocGholish: 106 servers down, 15,000 sites cleaned - Help Net Security
000
Geekpoint @geekpoint.bsky.social · 07/09/2026
Your IT person's admin account can change almost everything in your business. If they're logged into it while reading email or browsing, one bad click hands all of that over. They should use a normal account day to day and only sign into admin when they need it. #cybersecurity #microsoft365 #access
000
Geekpoint @geekpoint.bsky.social · 06/09/2026
At least one of your team's work emails is probably already in a leaked password list. Go to haveibeenpwned.com and check. It's free. Anything that shows up, change that password now and anywhere else you reused it. Then ask your IT provider about dark web monitoring. #cybersecurity #passwords #dat
000
Geekpoint @geekpoint.bsky.social · 05/09/2026
That contract you emailed is sitting in someone else's inbox forever, and it can be forwarded to anyone. For anything sensitive, share a link from OneDrive, Google Drive or Dropbox that only the named person can open, set it to expire, and switch it off when they're done. #cybersecurity #datasecuri
000
Geekpoint @geekpoint.bsky.social · 05/09/2026
Everyone's downloading AI tools at the moment, and scammers have caught on. Say someone on your team wants to try a new AI app. They search for it, click the top result, and end up on a page that looks like the real company's site. They download the app. It's fake, and it steals every password save
000
Geekpoint @geekpoint.bsky.social · 04/09/2026
If someone takes over your business Facebook page, they can scam your customers using your name. Turn on two-factor authentication for every social account. Stop sharing one login and use Business Manager so each person has their own access you can remove when they leave. #cybersecurity #socialmedi
000
Geekpoint @geekpoint.bsky.social · 03/09/2026
If your guests, staff phones and work computers are all on the same wifi, they can all reach each other. One infected laptop sits right next to the machine running your accounts. Put guests and smart devices on separate networks. Most routers do this already. #cybersecurity #networksecurity #wifi #
000
Geekpoint @geekpoint.bsky.social · 02/09/2026
Using the same password twice means a breach at some site you forgot about can get someone into your business email. Attackers take leaked passwords and try them everywhere automatically. A strong password doesn't help if you reused it. Use a password manager and turn on MFA. #cybersecurity #passwo
000
Geekpoint @geekpoint.bsky.social · 01/09/2026
Google put out an emergency Chrome update in June 2026 for a flaw attackers were already using. Just visiting a bad web page is enough to get hit, no clicking needed. Click the three dots, Help, About Google Chrome, then Relaunch. Updates only take effect once you restart. #cybersecurity #chrome #p
000
Geekpoint @geekpoint.bsky.social · 31/08/2026
Your website is online 24/7 for anyone to poke at, and most owners never think about its security. Make sure it uses HTTPS, keep its software and plugins updated (outdated plugins are the top way sites get hacked), and lock down the admin login with MFA and a strong password. #cybersecurity #websit
000
Geekpoint @geekpoint.bsky.social · 30/08/2026
Hit with ransomware and your files are locked. Do you pay? Before paying: it doesn't guarantee you get your files back, and in some cases it can break the law. Start with your backups instead. If you can restore yourself, you may not need to pay. Plan this before it happens. #cybersecurity #ransomw
000
Geekpoint @geekpoint.bsky.social · 29/08/2026
Don't let your router or firewall get old. These devices have a shelf life, and once they stop getting security updates, your hacking risk goes up. Ask your IT for a list of your network gear and whether each piece is still supported. Anything past end of life needs replacing. #cybersecurity #netwo
000
Geekpoint @geekpoint.bsky.social · 28/08/2026
The face on your video call might not be real. Deepfakes can now fake a familiar face and voice live, and people have been talked into wiring out fortunes. If someone on a call pushes you to move money fast, verify another way first. Call them back on a number you already have. #cybersecurity #deep
000
Geekpoint @geekpoint.bsky.social · 27/08/2026
You're probably holding way more customer data than you need: old card numbers, files from clients who left years ago. If you don't need it, it's just data for a hacker to steal. Delete what you've no reason to keep, old payment details first. You can't lose what you don't have. #cybersecurity #dat
000
Geekpoint @geekpoint.bsky.social · 26/08/2026
Attackers don't always need your password. They click 'forgot password' and reset it through your recovery email or security questions, and those answers are often on your social media. Lock down your recovery email with MFA, and make up fake answers to security questions. #cybersecurity #accountse
000
Geekpoint @geekpoint.bsky.social · 25/08/2026
From August 2nd 2026, the EU requires AI-generated content to be labeled, and it can apply even outside Europe if you have EU customers. If you use AI for images, video, or text the public sees, you might need to flag it. Worth a quick chat with whoever handles your legal side. #AI #compliance #EUA
digital-strategy.ec.europa.eu
Code of Practice on Transparency of AI-Generated Content
Code of Practice on Transparency of AI-Generated Content
000
Geekpoint @geekpoint.bsky.social · 25/08/2026
That slow old laptop your employee is putting up with is costing you more than a new one would. It's easy to treat a computer as something you only replace when it dies. As long as it still switches on, a new one feels like money you don't need to spend. Every slow start-up in the morning, every w
000
Geekpoint @geekpoint.bsky.social · 24/08/2026
Found a USB stick in the parking lot? Don't plug it in to see what's on it. A dodgy USB drive can install malware the second it's connected, or even act like a keyboard and type commands itself. If you didn't buy it, it goes in the bin, not into your laptop. #cybersecurity #USB #endpointsecurity #I
010
Geekpoint @geekpoint.bsky.social · 23/08/2026
The phone in your pocket holds the same company email and files as your laptop, but rarely gets the same care. Put a screen lock on it, leave automatic updates on, only install apps from the official store, and set up a way to wipe it remotely if it's ever lost or stolen. #cybersecurity #mobilesecu
001
Geekpoint @geekpoint.bsky.social · 21/08/2026
If your team has a different password for every app, single sign-on is simpler, and you may already own it in Microsoft 365 or Google Workspace. One login opens everything. When someone leaves, switch off that one account and they lose all access. Fewer passwords to leak. #cybersecurity #singlesign
000
Geekpoint @geekpoint.bsky.social · 20/08/2026
That handy browser extension, the ad blocker or coupon finder, can read everything you type, including passwords. Some get sold to new owners who push out a malicious update. Check chrome://extensions, delete what you don't use, and have IT approve new ones first. #cybersecurity #browsersecurity #e
000
Geekpoint @geekpoint.bsky.social · 20/08/2026
Your customers are getting their answer before they ever reach your website. Search Google for almost anything now and there's a good chance an AI-written answer sits at the top of the page. They already show up on a large share of searches, and that share keeps climbing. When it's there, most peo
000
Geekpoint @geekpoint.bsky.social · 18/08/2026
Microsoft 365 and Google Workspace ship with security settings switched off, and most businesses never turn them on. Ask your IT to confirm four things: legacy auth is blocked, audit logging is on, external sharing is controlled, and MFA is on for everyone, not just admins. #cybersecurity #microsof
000
Geekpoint @geekpoint.bsky.social · 17/08/2026
Once-a-year security training does almost nothing. People forget it in weeks. A 5-minute reminder once a month sticks far better, especially when it uses real scams like fake 'paste this' prompts. And make it safe to report a click with no blame, so you catch attacks early. #cybersecurity #security
001