A cyber attack has disrupted nationwide operations and forced Ascension Healthcare Network hospitals to resort to manual systems, divert ambulances, and reschedule appointments and elective surgeries.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Secure Service Edge (SSE) may be the architecture of the future by delivering connectivity and security tools from the cloud to reduce complexity, risk, and cost.
The Russian BlackCat/ALPHV cybergang has claimed responsibility for the Henry Schein ransomware attack and threatened to leak 35 terabytes of internal data. Henry Schein’s devices were encrypted again after ransom negotiations collapsed.
Supply chain security is a hot issue for enterprises with increasing third party data breaches. Recent (ISC)² study indicates these breaches are more likely the fault of a large enterprise partner than a small one.
With the doubling of security vulnerabilities found in popular open source projects between 2018 and 2019, many are concerned on the record being broken again in 2020.
Hackers accessed subscribers’ information and ported their mobile numbers in the Mint data breach after potentially compromising a subscriber management software or a user account.
Online businesses must prioritize credential stuffing mitigations by detecting and preventing automation in credential stuffing, and identifying compromised credentials of legitimate users and forcing them to change password to disincentivize the attackers and break the attack lifecycle.
New cyber incident reporting bill that has been introduced to the Senate would create new ransomware payment reporting requirements if passed, including a strict 24-hour limit for any business with more than 50 employees.
The White House has launched the Cyber Trust Mark labeling program for connected devices to assist consumers in determining whether IoT products are cyber secure.
Setting up the right AI governance is a crucial foundation in these early days of AI. Companies that get governance right will be able to move faster, more confidently in the space – likely outperforming companies that lack the right safeguards to mobilize AI effectively.










