{"id":7649,"date":"2026-03-10T11:00:00","date_gmt":"2026-03-10T11:00:00","guid":{"rendered":"https:\/\/www.securitytoday.de\/2026\/04\/02\/post_id-5459\/"},"modified":"2026-07-09T17:17:36","modified_gmt":"2026-07-09T17:17:36","slug":"rmm-tools-as-a-gateway-security-checklist-for-connectwise-kaseya-and-others","status":"publish","type":"post","link":"https:\/\/www.securitytoday.de\/en\/2026\/03\/10\/rmm-tools-as-a-gateway-security-checklist-for-connectwise-kaseya-and-others\/","title":{"rendered":"RMM Gateway: Security Checklist for ConnectWise, Kaseya &amp; Others"},"content":{"rendered":"<p style=\"display:inline-block;background:#69d8ed;color:#fff;padding:4px 14px;border-radius:20px;font-size:0.85em;margin-bottom:18px;\">3 min Reading Time<\/p>\n<p><strong>RMM tools (Remote Monitoring and Management) have privileged access to all managed endpoints by design. This very feature makes them the preferred gateway for attackers. CrowdStrike\u2019s 2024 Threat Hunting Report documents that RMM abuse grew by 70 percent year-over-year, accounting for 27 percent of all hands-on-keyboard intrusions. A compromised RMM server doesn\u2019t mean one compromised customer  &#8211;  it means all customers at once.<\/strong><\/p>\n<h2>TL;DR<\/h2>\n<ul>\n<li>\ud83d\udd12 RMM abuse surged by 70 percent. 27 percent of all hands-on-keyboard intrusions occur via RMM tools (CrowdStrike 2024).<\/li>\n<li>\u26a0\ufe0f Kaseya VSA 2021: A zero-day vulnerability compromised 60 MSPs, affecting up to 1,500 companies, with a ransom demand of 70 million Euro.<\/li>\n<li>\ud83d\udee1\ufe0f ConnectWise ScreenConnect CVE-2024-1709: CVSS 10.0, authentication bypass, trivially exploitable.<\/li>\n<li>\ud83d\udcca 59.4 percent of all ransomware incidents stem from external remote access\/RMM tools (Arctic Wolf 2025).<\/li>\n<li>\ud83d\udd27 CISA (Cybersecurity and Infrastructure Security Agency) and NSA (National Security Agency) recommend: Enforce MFA, network segmentation, allowlisting, and log all RMM sessions.<\/li>\n<\/ul>\n<h2 style=\"margin-top:64px;margin-bottom:20px;padding-top:16px;\">Why Attackers Love RMM Tools<\/h2>\n<p>RMM software is built for legitimate IT operations: deploying updates, monitoring systems, and resolving issues remotely. As a result, the RMM agent has admin rights on every managed endpoint by design, network access to all clients, and the ability to execute code. For an attacker, this is the perfect backdoor  &#8211;  already installed.<\/p>\n<p>The second advantage: Legitimate software is far less likely to be flagged as malicious by security tools. When AnyDesk or ConnectWise ScreenConnect runs on a system, no EDR (Endpoint Detection and Response) raises an alarm. This is called \u201cliving off the land.\u201d In January 2023, CISA, NSA, and MS-ISAC (Multi-State Information Sharing and Analysis Center) issued a joint advisory describing how attackers deliberately use RMM software for persistence and command-and-control without installing malware.<\/p>\n<p>Sophos confirms: AnyDesk and PsExec appeared in more incidents than Cobalt Strike. At least 17 ransomware groups have been observed using AnyDesk, including REvil, Black Basta, and LockBit.<\/p>\n<div class=\"evm-stat evm-stat-row\" style=\"display:flex;gap:16px;margin:32px 0;\">\n<div style=\"flex:1;text-align:center;background:#f0f9fa;border-radius:8px;padding:20px 12px;border-top:3px solid #69d8ed;\">\n<div style=\"font-size:28px;font-weight:700;color:#69d8ed;\">+70 %<\/div>\n<div style=\"font-size:12px;color:#b8c5ce;margin-top:4px;\">RMM abuse (CrowdStrike)<\/div>\n<\/div>\n<div style=\"flex:1;text-align:center;background:#f0f9fa;border-radius:8px;padding:20px 12px;border-top:3px solid #69d8ed;\">\n<div style=\"font-size:28px;font-weight:700;color:#69d8ed;\">27 %<\/div>\n<div style=\"font-size:12px;color:#b8c5ce;margin-top:4px;\">of all intrusions via RMM<\/div>\n<\/div>\n<div style=\"flex:1;text-align:center;background:#f0f9fa;border-radius:8px;padding:20px 12px;border-top:3px solid #69d8ed;\">\n<div style=\"font-size:28px;font-weight:700;color:#69d8ed;\">59,4 %<\/div>\n<div style=\"font-size:12px;color:#b8c5ce;margin-top:4px;\">ransomware via remote access<\/div>\n<\/div>\n<\/div>\n<p style=\"font-size:12px;color:#888;text-align:center;margin-top:-16px;\">Sources: CrowdStrike Threat Hunting Report 2024, Arctic Wolf 2025<\/p>\n<h2 style=\"margin-top:64px;margin-bottom:20px;padding-top:16px;\">Three Incidents That Illustrate the Risk<\/h2>\n<p><strong>Kaseya VSA (July 2021).<\/strong> The REvil group exploited a zero-day vulnerability in Kaseya VSA, a widely used RMM platform for managed service providers (MSPs). Since VSA runs directly on the endpoints of all MSP customers, the attack had an immediate supply-chain impact: fewer than 60 MSPs were directly affected, but up to 1,500 downstream companies were compromised. The Swedish supermarket chain Coop had to close all 800 stores for nearly a week. REvil demanded 70 million Euro for a universal decryptor.<\/p>\n<p><strong>ConnectWise ScreenConnect (February 2024).<\/strong> CVE-2024-1709 received the maximum CVSS score of 10.0. The vulnerability was an authentication bypass: a simple HTTP request to the setup page allowed attackers to overwrite all existing admin accounts and gain remote code execution. Proof-of-concept and Metasploit modules were available immediately. All versions below 23.9.8 were affected.<\/p>\n<p><strong>SimpleHelp (2025).<\/strong> CISA is currently warning about ongoing exploitation of SimpleHelp vulnerabilities (CVE-2024-57727, path traversal) by ransomware actors. This shows: The risk isn\u2019t historical  &#8211;  it\u2019s acute.<\/p>\n<blockquote style=\"border-left:4px solid #69d8ed;margin:32px 0;padding:20px 24px;background:#fafafa;border-radius:0 8px 8px 0;font-size:1.1em;line-height:1.6;color:#333;\"><p>\n&#8220;Attackers deliberately use RMM software for persistence and command-and-control without installing malware. Security tools are significantly less likely to detect legitimate software as malicious.&#8221;<br \/>\n<cite style=\"display:block;margin-top:12px;font-size:0.8em;color:#888;font-style:normal;\">CISA\/NSA\/MS-ISAC Joint Advisory AA23-025A, January 2023<\/cite>\n<\/p><\/blockquote>\n<h2 style=\"margin-top:64px;margin-bottom:20px;padding-top:16px;\">Security Checklist for RMM Tools<\/h2>\n<p>The following measures are based on the <em>CISA Guide to Securing Remote Access Software<\/em> and the <em>Joint Advisory AA23-025A<\/em>.<\/p>\n<p><strong>1. Enforce MFA on every RMM account.<\/strong> Not just for admin access, but for any account that can control RMM sessions  &#8211;  including customer-facing services. <a href=\"https:\/\/www.securitytoday.de\/en\/2026\/02\/21\/post_id-5453\/\">Passkeys\/FIDO2<\/a> where possible.<\/p>\n<p><strong>2. Network segmentation.<\/strong> Isolate RMM management interfaces behind a VPN or in a dedicated admin network. The RMM server must not be accessible from the internet. Implement a zero-trust architecture.<\/p>\n<p><strong>3. Allowlisting instead of blocklisting.<\/strong> Restrict RMM communication to known IP pairs. Only permit approved RMM programs on the network. Any unauthorized RMM tool is a potential attack vector.<\/p>\n<p><strong>4. Log and monitor all RMM sessions.<\/strong> Immediately flag unusual connection times, connections from unknown IP addresses, and unusual session durations. Huntress frequently finds \u201cforgotten\u201d RMM instances in customer networks.<\/p>\n<p><strong>5. Maintain and reduce RMM inventory.<\/strong> Inventory all installed RMM tools. Uninstall unused tools immediately. Huntress reports a 214 percent increase in RMM-related incidents since January 2024. Every unnecessary tool is an attack surface.<\/p>\n<p><strong>6. Vendor security assessment.<\/strong> Regularly evaluate RMM providers: patch frequency, incident response processes, and security certifications. After ConnectWise (CVSS 10.0) and SimpleHelp, supplier assessments are no longer optional.<\/p>\n<div class=\"evm-stat evm-stat-highlight\" style=\"text-align:center;background:#f0f9fa;border-radius:12px;padding:32px 24px;margin:32px 0;\">\n<div style=\"font-size:48px;font-weight:700;color:#69d8ed;letter-spacing:-0.03em;\">CVSS 10.0<\/div>\n<div style=\"font-size:15px;color:#444;margin-top:8px;\">ConnectWise ScreenConnect CVE-2024-1709: maximum severity, trivially exploitable<\/div>\n<div style=\"font-size:12px;color:#888;margin-top:8px;\">Source: NVD, Unit 42, Huntress<\/div>\n<\/div>\n<h2 style=\"margin-top:64px;margin-bottom:20px;padding-top:16px;\">Conclusion: The Biggest Risk Is the Tool Already Running<\/h2>\n<p>RMM tools aren\u2019t an optional risk. They\u2019re already running on endpoints. They already have admin rights. They\u2019re already in the network. The question isn\u2019t <em>whether<\/em> to secure RMM, but <em>how quickly<\/em>. CrowdStrike shows: More than a quarter of all hands-on attacks already use RMM tools as an entry point. Arctic Wolf documents: 59.4 percent of all ransomware incidents originate from external remote access. The CISA checklist above is the starting point. Today.<\/p>\n<h2>Frequently Asked Questions<\/h2>\n<p class=\"st-faq-hint\">Every question is locked. A tap unlocks the answer.<\/p>\n<details>\n<summary><strong>Which RMM tools have been abused in attacks?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">Documented cases include: ConnectWise ScreenConnect, Kaseya VSA, AnyDesk, TeamViewer, SimpleHelp, NinjaOne, and Datto RMM. At least 17 ransomware groups deliberately use AnyDesk. ConnectWise had a vulnerability with a CVSS score of 10.0 in 2024.<\/p>\n<\/details>\n<details>\n<summary><strong>How can I detect RMM abuse in my network?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">Inventory all installed RMM tools (including unauthorized ones). Monitor RMM sessions for unusual times, source IPs, and durations. Set up EDR rules to flag RMM processes starting outside business hours. CISA explicitly recommends allowlisting for RMM communication.<\/p>\n<\/details>\n<details>\n<summary><strong>Should we eliminate RMM tools?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">No. RMM is indispensable for IT operations. But it must be hardened: MFA, network segmentation, logging, and vendor assessments. An unsecured RMM tool is more dangerous than no RMM tool at all.<\/p>\n<\/details>\n<details>\n<summary><strong>How does the Kaseya incident differ from a typical ransomware attack?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">The supply-chain multiplier. Kaseya VSA runs as an agent on the endpoints of all MSP customers. A single compromised server didn\u2019t affect one customer  &#8211;  it impacted up to 1,500 downstream companies simultaneously. This is the structural risk of any centralized management platform.<\/p>\n<\/details>\n<div class=\"evm-styled-box\" style=\"background:#f0f9fa;border-radius:8px;padding:20px 24px;margin:24px 0;border-top:3px solid #69d8ed;\">\n<h2 style=\"margin-top:0;margin-bottom:12px;font-size:1.05em;\">Recommended Reading<\/h2>\n<ul>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/17\/identity-security-gap-what-zero-trust-doesnt-protect-and-how-to-close-it\/\">Identity Security Gap: What Zero Trust Doesn\u2019t Protect<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/02\/27\/post_id-5455\/\">Cloud Misconfigurations: The 10 Most Dangerous Security Flaws<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/07\/post_id-5458\/\">Agentic AI Security: When AI Agents Become Attack Targets<\/a><\/li>\n<\/ul>\n<\/div>\n<div style=\"background:#f0f9fa;border-radius:8px;padding:20px 24px;margin:24px 0;border-top:3px solid #69d8ed;\">\n<!--ST-LOWER-CARDS lang=en--><\/p>\n<h3 style=\"margin:48px 0 18px;padding-left:12px;font-size:1.05em;font-weight:800;color:#e6e3da;border-left:3px solid #69d8ed;line-height:1.2;\">Editor&#8217;s Picks<\/h3>\n<p><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/17\/identity-security-gap-what-zero-trust-doesnt-protect-and-how-to-close-it\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/03\/identity-security-gap-cybersecurity-250x167.jpeg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#69d8ed;margin-bottom:5px;\">Editor&#8217;s Pick<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Identity Security Gap: What Zero Trust Misses and How to Close It<\/span><\/span><\/a><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/02\/27\/cloud-misconfigurations-the-10-most-dangerous-security-gaps-in-aws-and-azure\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/03\/cloud-fehlkonfigurationen-server-rack-250x166.jpeg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#69d8ed;margin-bottom:5px;\">Editor&#8217;s Pick<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Cloud Misconfigurations: Top 10 Security Gaps in AWS and Azure<\/span><\/span><\/a><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/07\/agentic-ai-security-when-ai-agents-become-the-attack-target\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/03\/agentic-ai-security-robot-250x167.jpeg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#69d8ed;margin-bottom:5px;\">Editor&#8217;s Pick<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Agentic AI Security: When AI Agents Become the Attack Target<\/span><\/span><\/a><\/p>\n<h3 style=\"margin:48px 0 18px;padding-left:12px;font-size:1.05em;font-weight:800;color:#e6e3da;border-left:3px solid #69d8ed;line-height:1.2;\">More from the MBF Media Network<\/h3>\n<p><a href=\"https:\/\/mybusinessfuture.com\/en\/cybersecurity-boom-why-nis2-is-turning-germanys-security-industry-into-a-growth\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/07\/net-cybersecurity-boom-nis2-deutschlands-sic-39412011-250x166.jpg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#aa8ac2;margin-bottom:5px;\">MyBusinessFuture<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Cybersecurity Boom: NIS2 Drives Germany\u2019s Security Growth<\/span><\/span><\/a><a href=\"https:\/\/www.digital-chiefs.de\/en\/ciso-compliance-under-nis2\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/07\/net-ciso-compliance-under-nis2-67286561-250x143.jpg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#e8828d;margin-bottom:5px;\">Digital Chiefs<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Managed Security Services: CISO Does Not Bear Sole Liability<\/span><\/span><\/a><a href=\"https:\/\/www.cloudmagazin.com\/en\/2026\/03\/25\/container-supply-chain-security-how-it-teams-can-secure-their-software-supply-ch\/\" style=\"display:flex;align-items:center;gap:14px;padding:12px 14px;margin:0 0 10px;background:#23261f;border:1px solid rgba(105,216,237,0.18);border-radius:12px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 6px 18px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;box-sizing:border-box;width:100%;\"><span style=\"flex:0 0 116px;aspect-ratio:16\/9;overflow:hidden;border-radius:8px;background:#111210;border:1px solid rgba(230,227,218,0.08);display:block;\"><img decoding=\"async\" src=\"https:\/\/www.securitytoday.de\/wp-content\/uploads\/2026\/07\/net-container-supply-chain-security-wie-it-t-655299.jpg\" alt=\"\" loading=\"lazy\" width=\"116\" height=\"65\" style=\"width:100%;height:100%;object-fit:cover;display:block;\"><\/span><span style=\"display:block;min-width:0;\"><span style=\"display:block;font-size:0.68em;font-weight:700;letter-spacing:0.1em;text-transform:uppercase;color:#0bb7fd;margin-bottom:5px;\">cloudmagazin<\/span><span style=\"display:block;font-size:1.0em;font-weight:650;line-height:1.35;color:#e6e3da;overflow-wrap:anywhere;\">Container Supply Chain Security: IT Teams Secure Software Chains<\/span><\/span><\/a><!--\/ST-LOWER-CARDS--><\/p>\n","protected":false},"excerpt":{"rendered":"RMM tools (Remote Monitoring and Management) have privileged access to all managed endpoints by design. This very feature makes them the preferred gateway for attackers. CrowdStrike\u2019s 2024 Threat Hunting Report documents that RMM abuse grew by 70 percent year-over-year, accounting for 27 percent of all hands-on-keyboard intrusions. A compromised RMM server [&hellip;]","protected":false},"author":50,"featured_media":5489,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_yoast_wpseo_focuskw":"rmm tools","_yoast_wpseo_title":"RMM Tools as a Gateway: Security Checklist for ConnectWise, Kaseya, and Others","_yoast_wpseo_metadesc":"RMM tools security: Protect your endpoints from attacks via ConnectWise, Kaseya & more. Get the essential checklist now.","_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_meta-robots-adv":"","_yoast_wpseo_canonical":"","_yoast_wpseo_opengraph-title":"","_yoast_wpseo_opengraph-description":"","_yoast_wpseo_opengraph-image":"","_yoast_wpseo_opengraph-image-id":0,"_yoast_wpseo_twitter-title":"","_yoast_wpseo_twitter-description":"","_yoast_wpseo_twitter-image":"","_yoast_wpseo_twitter-image-id":0,"_evm_slot_owner":"","evm_cvss":0,"evm_risk":0,"evm_casefile":"","evm_primary_cve":"","evm_external_preview_token":"","evm_external_preview_expires":"","_evm_translation_lang":"","featured_post":0,"featured_post_sortierung":0,"_wp_old_slug":["post_id-5459"],"footnotes":""},"categories":[255],"tags":[],"class_list":["post-7649","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-praxis-umsetzung-en"],"evm_reading_time_minutes":7,"wpml_language":"en","wpml_translation_of":5459,"_links":{"self":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/7649","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/users\/50"}],"replies":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/comments?post=7649"}],"version-history":[{"count":8,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/7649\/revisions"}],"predecessor-version":[{"id":21723,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/7649\/revisions\/21723"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media\/5489"}],"wp:attachment":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media?parent=7649"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/categories?post=7649"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/tags?post=7649"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}