Berry Solutions Group

Berry Solutions Group Professional Solutions For Your Business

We are incredibly honored to be recognized by Blair County as Small Business of the Year.Being selected for this award i...
04/27/2026

We are incredibly honored to be recognized by Blair County as Small Business of the Year.

Being selected for this award is a tremendous milestone for Berry Solutions Group, and we’re proud to celebrate this recognition at the 2026 Gala & Annual Celebration tomorrow, Tuesday, April 28.

This would not be possible without the continued trust and support of our partners and clients, as well as the residents of Blair County who believe in what we do and the value of supporting local businesses. We’re grateful to be part of a community that encourages growth, innovation, and collaboration.

As always, we remain committed to delivering dependable, forward‑thinking solutions that help organizations operate securely and efficiently. If you’re ever looking for IT Solutions, Cyber & Physical Security, or Telephone Solutions, let’s start the conversation.

💼 One of the Areas We Truly Excel In: IT ServicesAt Berry Solutions Group, providing dependable, forward‑thinking IT Ser...
04/20/2026

💼 One of the Areas We Truly Excel In: IT Services

At Berry Solutions Group, providing dependable, forward‑thinking IT Services is one of our strongest avenues. As a veteran‑owned business, we bring integrity, discipline, and mission‑focused ex*****on to every solution we deliver.

We proudly support small to medium‑sized businesses, government organizations, and enterprise clients with managed IT services, cybersecurity, cloud solutions, and strategic technology guidance that keeps operations secure, efficient, and scalable.

Beyond IT, we also offer physical security solutions and business telephone systems, delivering a fully integrated approach to technology.

If you’d like to learn more, reach out — we’d be happy to start the conversation.

Five New Exploited Bugs Land in CISA's Catalog — Oracle and Microsoft Among TargetsThe U.S. Cybersecurity and Infrastruc...
11/25/2025

Five New Exploited Bugs Land in CISA's Catalog — Oracle and Microsoft Among Targets

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added five security flaws to its Known Exploited Vulnerabilities (KEV) Catalog, officially confirming a recently disclosed vulnerability impacting Oracle E-Business Suite (EBS) has been weaponized in real-world attacks.

The security defect in question is CVE-2025-61884 (CVSS score: 7.5), which has been described as a server-side request forgery (SSRF) vulnerability in the Runtime component of Oracle Configurator that could allow attackers unauthorized access to critical data.

"This vulnerability is remotely exploitable without authentication," CISA said.

Learn more at: https://thehackernews.com/2025/10/five-new-exploited-bugs-land-in-cisas.html

The Cybersecurity Perception Gap: Why Executives and Practitioners See Risk DifferentlyDoes your organization suffer fro...
11/24/2025

The Cybersecurity Perception Gap: Why Executives and Practitioners See Risk Differently

Does your organization suffer from a cybersecurity perception gap? Findings from the Bitdefender 2025 Cybersecurity Assessment suggest the answer is probably "yes" — and many leaders may not even realize it.

This disconnect matters. Small differences in perception today can evolve into major blind spots tomorrow. After all, perception influences what organizations prioritize, where they allocate resources, and how they respond in critical moments.

Confidence at the Top, Caution on the Ground #
Bitdefender's latest assessment surveyed 1,200 cybersecurity and IT professionals, and at first glance, the results suggest optimism. An impressive 93% say they are "somewhat" or "very confident" in their ability to manage cyber risk as the attack surface expands.

But dig deeper, and the optimism begins to split.

Nearly half (45%) of C-level respondents — including CISOs and CIOs — describe themselves as "very confident" in their organization's readiness. Yet among mid-level managers, that number drops sharply to just 19%

Learn more at: https://thehackernews.com/2025/10/the-cybersecurity-perception-gap-why.html

10 npm Packages Caught Stealing Developer Credentials on Windows, macOS, and LinuxCybersecurity researchers have discove...
11/21/2025

10 npm Packages Caught Stealing Developer Credentials on Windows, macOS, and Linux

Cybersecurity researchers have discovered a set of 10 malicious npm packages that are designed to deliver an information stealer targeting Windows, Linux, and macOS systems.

"The malware uses four layers of obfuscation to hide its payload, displays a fake CAPTCHA to appear legitimate, fingerprints victims by IP address, and downloads a 24MB PyInstaller-packaged information stealer that harvests credentials from system keyrings, browsers, and authentication services across Windows, Linux, and macOS," Socket security researcher Kush Pandya said.

The npm packages were uploaded to the registry on July 4, 2025, and accumulated over 9,900 downloads collectively -

deezcord.js
dezcord.js
dizcordjs
etherdjs
ethesjs
ethetsjs
nodemonjs
react-router-dom.js
typescriptjs
zustand.js

Learn more at: https://thehackernews.com/2025/10/10-npm-packages-caught-stealing.html

11/21/2025

November 2nd, 2025 marked Chris Lytle Fith-year anniversary with Berry Solutions Group. Thanks for everything you do, Chris!

Experts Reports Sharp Increase in Automated Botnet Attacks Targeting PHP Servers and IoT DevicesCybersecurity researcher...
11/20/2025

Experts Reports Sharp Increase in Automated Botnet Attacks Targeting PHP Servers and IoT Devices

Cybersecurity researchers are calling attention to a spike in automated attacks targeting PHP servers, IoT devices, and cloud gateways by various botnets such as Mirai, Gafgyt, and Mozi.

"These automated campaigns exploit known CVE vulnerabilities and cloud misconfigurations to gain control over exposed systems and expand botnet networks," the Qualys Threat Research Unit (TRU) said in a report shared with The Hacker News.

The cybersecurity company said PHP servers have emerged as the most prominent targets of these attacks owing to the widespread use of content management systems like WordPress and Craft CMS. This, in turn, creates a large attack surface as many PHP deployments can suffer from misconfigurations, outdated plugins and themes, and insecure file storage.

Learn more at: https://thehackernews.com/2025/10/experts-reports-sharp-increase-in.html

Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 AccountsCybersecurity company Huntress on Friday ...
11/19/2025

Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 Accounts

Cybersecurity company Huntress on Friday warned of "widespread compromise" of SonicWall SSL VPN devices to access multiple customer environments.

"Threat actors are authenticating into multiple accounts rapidly across compromised devices," it said. "The speed and scale of these attacks imply that the attackers appear to control valid credentials rather than brute-forcing."

A significant chunk of the activity is said to have commenced on October 4, 2025, with more than 100 SonicWall SSL VPN accounts across 16 customer accounts having been impacted. In the cases investigated by Huntress, authentications on the SonicWall devices originated from the IP address 202.155.8[.]73.

The company noted that in some instances, the threat actors did not engage in further adversarial actions in the network and disconnected after a short period of time. However, in other cases, the attackers have been found conducting network scanning activity and attempting to access numerous local Windows accounts.

Learn more at: https://thehackernews.com/2025/10/experts-warn-of-widespread-sonicwall.html

MSS Claims NSA Used 42 Cyber Tools in Multi-Stage Attack on Beijing Time SystemsChina on Sunday accused the U.S. Nationa...
11/18/2025

MSS Claims NSA Used 42 Cyber Tools in Multi-Stage Attack on Beijing Time Systems

China on Sunday accused the U.S. National Security Agency (NSA) of carrying out a "premeditated" cyber attack targeting the National Time Service Center (NTSC), as it described the U.S. as a "hacker empire" and the "greatest source of chaos in cyberspace."

The Ministry of State Security (MSS), in a WeChat post, said it uncovered "irrefutable evidence" of the agency's involvement in the intrusion that dated back to March 25, 2022. The attack was ultimately foiled, it added.

Established in 1966 under the jurisdiction of the Chinese Academy of Sciences (CAS), NTSC is responsible for generating, maintaining, and transmitting the national standard of time (Beijing Time).

"Any cyberattack damaging these facilities would jeopardize the secure and stable operation of 'Beijing Time,' triggering severe consequences such as network communication failures, financial system disruptions, power supply interruptions, transportation paralysis, and space launch failures," the MSS said.

Learn more at: https://thehackernews.com/2025/10/mss-claims-nsa-used-42-cyber-tools-in.html

11/17/2025

Congratulations to the Arc of Washington County as they once again presented Dancing with the ARC Stars! BSG is proud to be one of the many local businesses sponsoring the event. Last year’s competition raised close to $273,000 for the Arc so we can only imagine how well they did this year. We hope all participants enjoyed themselves and the event was another successful one!

Address

Altoona, PA

Alerts

Be the first to know and let us send you an email when Berry Solutions Group posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to Berry Solutions Group:

Share