EPISODE · May 30, 2025 · 19 MIN
DragonForce Ransomware: MSPs Under Attack! (EP 831)
from Uncle Marv's IT Business Podcast (Real Talk for IT Pros & MSPs) · host Dave Sobel
This episode dives deep into the recent DragonForce ransomware attack that targeted an MSP using the SimpleHelp RMM tool, compromising both the provider and its clients. Uncle Marv is joined by Dave Sobel, host of MSP Radio and The Business of Tech podcast, to analyze what went wrong and how MSPs can avoid similar fates. The conversation covers the critical importance of patching known vulnerabilities, the risks of on-premises RMM tools, and the shift toward cloud-based solutions for reducing attack surfaces.Dave Sobel highlights the aggressive tactics of DragonForce, their ransomware-as-a-service business model, and why attackers are increasingly exploiting RMM tools. The episode also explores the concept of zero trust, the need for managed detection and response, and the legal risks MSPs face when failing to meet modern security standards. Listeners will walk away with actionable insights on improving cyber hygiene, rethinking persistent remote access, and evolving their security frameworks to keep up with today’s threats.=== Companies, Products, and Books MentionedMSP Radio / The Business of Tech Podcast: https://www.businessof.techSimpleHelp (RMM): https://simple-help.comDatto RMM: https://www.datto.com/products/rmmN-Able (formerly SolarWinds MSP): https://www.n-able.comAnyDesk: https://anydesk.comAtera: https://www.atera.comMeshAgent: https://meshcentral.com/meshagent.htmlNetSupport Manager: https://www.netsupportmanager.comQuickAssist (Microsoft): https://support.microsoft.com/en-us/windows/quick-assistScreenConnect (now ConnectWise Control): https://www.connectwise.com/software/controlSplashtop: https://www.splashtop.comTeamViewer: https://www.teamviewer.comSophos: https://www.sophos.comCrowdStrike: https://www.crowdstrike.comProofpoint: https://www.proofpoint.comMicrosoft: https://www.microsoft.com=== MUSIC LICENSE CERTIFICATELicensee: Marvin BeeRegistered Project Name: IT Business PodcastItem Title: Upbeat & Fun Sports Rock LogoItem URL: https://elements.envato.com/upbeat-fun-sports-rock-logo-CSR3UETAuthor Username: AlexanderRufireLicense Date: January 1st, 2024Item License Code: 7X9F52DNML === Connect with Uncle Marv🌐 Website: https://www.itbusinesspodcast.com/🎙 Host: Marvin Bee🛒 Uncle Marv’s Amazon Store (gear & tools I recommend): https://amzn.to/3EiyKoZ☕ Support the show: https://ko-fi.com/itbusinesspodcastIf you found value in this episode, share it with another MSP, IT provider, or tech entrepreneur. Your support helps keep practical, no-nonsense IT business conversations coming every week.
What this episode covers
DragonForce’s latest ransomware attack on an MSP using SimpleHelp RMM exposes the urgent need for better patch management, zero trust, and a rethink of persistent remote access. Dave Sobel joins Uncle Marv to break down what went wrong, the evolving threat landscape, and why MSPs must adapt their security playbooks now.
NOW PLAYING
DragonForce Ransomware: MSPs Under Attack! (EP 831)
No transcript for this episode yet
Similar Episodes
Mar 26, 2026 ·1m
Jan 2, 2026 ·47m
Dec 21, 2025 ·46m