I just discovered that the link I put in, didn't make it into the last-published story that went live. It's:
https://arcticwolf.com/resources/bl...-zdi-can-25373-vulnerability-to-deploy-plugx/. It doesn't say or link to how you can do that. I didn't have a link handy to a how to when I responded and was out running an errand. I just thought it'd be quicker/easier/more helpful if I just sent a quick link with a reminder that that's where I would have to start. Sorry if that came off wrong.
Understandable, but you can imagine a bunch of highly technical peeps reading a doom-and-gloom article which is telling them they'll likely have to do extra work on the weekend, and the article not having "Sources, please" for a quick fix...

But thanks for being on top of things, it's why I still read Ars!
For those not in the MSP/channel world, if you see posts on security vulnerabilities from Huntress, believe 'em. They're the real deal, a small security business doing right by their clients, with incredibly deep research at the ready. Love love love them!