Help Desk: (651) 328-8905
Sales Inquiries: (651) 323-1775
At RYMARK IT Navigation, your team of trustworthy IT experts, we provide Minneapolis organizations with reliable, proactive IT support and cybersecurity solutions for seamless operations.





Customer-First Approach
Our proactive, customer-focused culture prioritizes addressing your organization needs, ensuring dependable support with prompt, meaningful responses to keep operations running smoothly.
Problem Solving
As a trusted Minneapolis IT support company, we use a refined six-step process to effectively tackle any IT challenges, providing solutions that align with your organization's objectives and goals.
Best-Practice Solutions
Committed to integrity, honesty, and openness, we deliver IT solutions grounded in trust, transparency, and respect, building lasting partnerships with our clients.
Peace of Mind
As a leading IT support & IT security company, our advanced security measures protect your organization from cyber threats, allowing you to focus on success while we safeguard your digital assets.
Team Players
With a collaborative spirit, we uphold high standards and bring out the best in each other, passionately striving to exceed every goal.

Featured on CBS Minnesota, RYMARK shares practical, expert-led cybersecurity tips to help businesses and individuals stay protected—starting with simple strategies like password management and digital hygiene.
How can you safely remember your passwords?
What happens when you select "report junk" for texts and emails?
Download RYMARK’s Free Security Audit Guide to See How Your Organization's Security Stacks Up.
Email, social media, websites, viruses, malware, web applications, weak passwords, unsecured networks, ex-employees—the list goes on.
Without the right security measures, your assets are susceptible to theft, destruction, or ransom which can lead to lost productivity, irreparable damage to your reputation, and even put you out of organization.
Let RYMARK IT Navigation, your trusted Minneapolis IT Support & IT Security Company help you with our cybersecurity services!

Mark Sommerfeld & Ryan Chester
Managing Partners
As business owners for more than 25 years, we understand the commitment you’ve made and the importance of protecting the organization you’ve worked so hard to build. The experts at RYMARK IT Navigation, your trusted Minneapolis IT Support & IT Security Company, are continually evaluating the latest threats and security measures to protect, detect, and respond to them. We provide solutions that both protect your organization's assets and enable your employees to work more efficiently.
Let us assure you that we place our priority on client relationships, not on turning a high profit. We’re here to maximize your current IT infrastructure, not drain your bank account. We’ll likely even lower your IT costs rather than raise them.
Call (651) 323-1775 today to schedule your appointment. We’re ready to start important IT conversations with organizations just like yours.
Managed IT
We’ll manage all of your IT services for a flat-rate fee.
Cybersecurity
Comprehensive protection against evolving digital threats to safeguard your organization.
IT Projects
Expert planning and execution of IT solutions tailored to your needs.
Network Security
Safeguarding your network effectively from unauthorized access and cyber threats.
Endpoint Patching & Critical Update Management
Ensuring devices stay secure with timely updates and patches.
Password & Multi-Factor Authentication Management
Strengthening access controls with secure authentication solutions.
Email Security
Protecting your email communications from phishing and malware attacks.
Backup & Disaster Recovery
Never worry again about losing your data in the event of any disaster.
Security Awareness Training
Educating employees to recognize and prevent cybersecurity threats.
Endpoint Protection, Detection & Response
Proactive defense against endpoint threats with real-time monitoring.
24/7/365 SOC
Continuous monitoring and swift response to threats by a dedicated security team.
Help Desk Support
Reliable, expert assistance for all your IT issues, anytime you need it.
These 9 questions can help you evaluate how vulnerable your company is and where you can improve.
As an IT support & IT security company, we help you stay ahead of cyber criminals, stay ahead of your competition, reduce IT distractions, and experience the peace of mind that comes with the confidence that you’re protecting your organization.
We value you and your organization. With this in mind, we have established these promises to every client.
Our Service Level Agreement
Customer Satisfaction Guarantee
Monthly/Quarterly Updates & Reports
No Hidden Costs
Clear Plan & Expectations
Explore expert insights, trends, and expert advice on the ever-evolving landscape of information technology. Dive in to discover how we leverage cutting-edge solutions to empower organizations and drive innovation.

A new phishing platform called Kali365 is bypassing multi-factor authentication entirely, and it doesn’t need your password to do it. Here’s what Minneapolis-area businesses need to understand right now
On May 21, the FBI and IC3 issued a public service announcement about a phishing-as-a-service platform called Kali365. Available on Telegram for roughly 50/month, it puts sophisticated account takeover capabilities in the hands of attackers who don’t need technical skills to use it. And it’s specifically designed to get inside Microsoft 365 accounts without triggering your MFA.
If your team uses Outlook, Teams, or OneDrive, this is directly relevant to you.
That’s what makes Kali365 genuinely dangerous. There’s no fake login page. No spoofed website. No intercepted text message. The victim is directed to a real Microsoft page, types in a real code, and unknowingly hands the attacker persistent access to their entire Microsoft 365 environment.
Here’s how the sequence unfolds:
1.The phishing email arrives. An AI-crafted message impersonates a familiar service like SharePoint, DocuSign, or a document-sharing tool. It’s context-aware and built to pass standard email filters.
2.The target visits a legitimate Microsoft URL. The email instructs them to go to microsoft.com/devicelogin, a real Microsoft verification page. Nothing about the destination looks suspicious.
3.They enter the attacker’s device code. The code in the email is tied to the attacker’s device, not the user’s. Entering it links the attacker’s session to the victim’s account.
4.OAuth tokens are captured. Access is persistent. The platform intercepts valid OAuth access and refresh tokens. The attacker now has long-term, password-free access to Outlook, Teams, and OneDrive with no further MFA challenges required.
Why your MFA doesn’t stop this: The victim authenticates on Microsoft’s own domain. From Microsoft’s perspective, the login is completely legitimate. MFA was completed by the user, on a real page. The token theft happens after authentication is done, not during it.
A compromised Microsoft 365 account isn’t just a breached mailbox. It’s an open door.
Outlook and email. Full mailbox access opens the door to business email compromise, wire fraud, and vendor impersonation. Finance, leadership, and operations teams are primary targets.
OneDrive. File exfiltration becomes trivial. Intellectual property, client records, contracts, and internal documents are all reachable without any additional authentication.
Microsoft Teams. The attacker operates under a trusted internal identity. This enables internal social engineering and lateral movement to other staff, vendors, and systems.
Supply chain and partners. If a compromised account belongs to an IT vendor or MSP, attackers can pivot downstream to their clients, creating cascading breaches across multiple organizations.
For organizations in healthcare, financial services, legal, or manufacturing, these aren’t abstract risks. A single compromised tenant can trigger HIPAA exposure, regulatory liability, or client notification requirements.
Because Kali365 uses AI to craft phishing lures tuned to look contextually legitimate, standard email gateway rules and basic user awareness training are not reliable defenses against the initial vector.
The FBI’s mitigations are specific and actionable. The fix isn’t a new product. It’s a policy configuration most organizations haven’t made yet.
•Block device code flow via Conditional Access. Create a policy in Microsoft Entra ID that blocks the OAuth 2.0 device authorization grant for all users. Most organizations have no legitimate need for this flow and don’t know it’s enabled.
•Audit before you block. Review existing device code flow usage first. Conference room systems, smart displays, printers, and IoT devices may depend on it. Identify dependencies so the policy doesn’t lock out critical equipment.
•Block authentication transfer policies. Prevent authenticated sessions from being transferred across devices. This closes a secondary vector Kali365 and similar platforms exploit to extend access.
•Protect emergency access accounts. If you can’t fully restrict device code flow, create exceptions only for break-glass accounts. This prevents an overly broad policy from locking your team out of critical systems during an incident.
Kali365 is a symptom of a wider shift in how attacks are built. Phishing-as-a-service platforms commoditize capability that used to require real technical skill. When something this effective is available to anyone with 50 and a Telegram account, the barrier to entry for a serious breach drops to nearly nothing.
Password complexity rules, standard MFA deployment, and user awareness training are not sufficient controls against token theft. The defense has to move upstream: restrict the protocol, not just the credential.
If your organization hasn’t reviewed its Conditional Access policies recently, this is the signal. We review these configurations as part of our standard security assessments, and in most SMB environments we audit, device code flow is open and unmonitored.
Not sure if your Microsoft 365 environment is exposed?
RYMARK offers a free IT security consultation for Minneapolis-area businesses. We review your Conditional Access policies and identify exposure before an attacker does.
Call (651) 323-1775 or visit rymarkit.com to schedule your free consultation.
Sources: FBI/IC3 PSA260521 (May 21, 2026)|BleepingComputer|Infosecurity Magazine|Malwarebytes|Bitdefender
IT security services encompass measures and practices to protect your systems, networks, and data from potential threats. These services include but are not limited to network security, data encryption, access controls, vulnerability assessments, penetration testing, and incident response.
Managed IT service providers (MSPs) are companies that remotely manage a organization's IT infrastructure and services, such as network management, cybersecurity, and data backup, on a subscription basis. They help organizations streamline operations, reduce costs, and ensure IT systems run efficiently.
IT security services encompass measures and practices to protect your systems, networks, and data from potential threats. These services include but are not limited to network security, data encryption, access controls, vulnerability assessments, penetration testing, and incident response.
We provide a range of services, including Managed IT Services, IT Projects, Cybersecurity Services, Network Monitoring and Management, Backup and Disaster Recovery Services, Vendor Management, CTO and Strategic IT Consulting, Work-from-Home Support, IT Relocation Services, and more.
Managed IT Services offer proactive management of your IT infrastructure, ensuring optimal performance, minimizing downtime, and allowing you to focus on core business activities.
We cater to various industries, including Non-Profit Organizations, Religious Organizations, Schools and Education, Financial Service Organizations, Manufacturers, Legal Industry, Construction, and Professional and Government Services.
We conduct comprehensive IT security assessments to identify vulnerabilities and implement robust security measures, including employee training, to safeguard your IT infrastructure.
An IT security assessment evaluates your IT infrastructure to identify vulnerabilities and potential threats, providing a roadmap to enhance your organization's security posture.
Implementing multi-factor authentication, using strong passwords, and conducting regular employee training on recognizing phishing attempts are effective strategies to protect against such attacks.
Regular network assessments, implementing firewalls, ensuring up-to-date antivirus software, and conducting employee training are crucial steps to enhance network security.
We offer Work-from-Home Support services, ensuring secure and efficient remote work setups for your employees.
Contact our IT support team immediately. We provide Backup and Disaster Recovery Services to help you respond effectively to data breaches and minimize potential damage.
Our IT Security and Support services include assessments and employee training to help your organization comply with relevant industry regulations and standards.
At RYMARK, we believe in using our expertise to strengthen not only businesses, but also the communities they serve. That’s why we’re a proud member of Get Support, Give Support, a nationwide initiative that brings together IT providers to offer free technology services to nonprofits making a difference locally.
For every new client that signs up for our managed IT services, we donate remote monitoring agents to a nonprofit organization in our community. These tools help charities secure, manage, and optimize their IT environments, without adding to their overhead, so they can focus fully on their missions.
Whether it’s helping a shelter stay connected or enabling an education nonprofit to operate more efficiently, this initiative allows us to turn everyday business into tangible, lasting impact.
Because when nonprofits have the right tech support, they can do what they do best: change lives.
Work with a local IT Support Company that understands what it takes to keep your technology aligned with business success. With RYMARK IT Navigation by your side, you get:
Reliable, forward-thinking IT support tailored to your organization
Improved system performance and stronger cybersecurity controls
Peace of mind knowing your technology is managed by experts
Contact us today to schedule your free consultation and build a stronger, more secure IT foundation for your business.