A hybrid-remote working model has created a wider attack surface. Many organizations still tend to make critical mistakes with regards to data security that, if left unaddressed, can lead to drastic consequences for the entire business.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Generally speaking, the more SaaS applications an organization has in its tech stack, the greater the risk of suffering a cyberattack. Many organizations take a hands-off approach to SaaS security, making these applications a prime target for hackers.
Securing Active Directory credentials is absolutely crucial to protect against network breaches. Access management can help put a protective layer at the forefront of your network.
Relying solely on log analytics is a cybersecurity strategy that should be in the rearview mirror. Organizations need to prioritize immediate and precise threat detection with proactive response mechanisms.
An SMS phishing attack compromised cloud communications giant Twilio, leaking customer data and targeted content delivery network provider Cloudflare. Twilio says the data breach impacted at least 125 customers.
Bloomberg reported that Chinese spies planted a grain-sized microchip in motherboards supplied to server manufacturers in an alleged supply chain attack. What are the lessons for enterprises?
How do technology partners, cloud providers, vendors, distributors, customers and organizations earn trust? There is no simple answer, but compliance standards play a significant role. There can be no trust without transparency, and modern compliance helps organizations make their security practices considerably less opaque.
Credit card database of 1.3 million cards for sale on Joker’s Stash could be used to make online banking transactions or create cloned versions of the bank cards.
Passwords are becoming more of a liability than the security asset they were intended to be. Should companies consider passwordless technologies for better benefits and cost savings?
Cybercriminals aren’t just hacking for activism or for fun. They’re running their attacks like a business, targeting organisations to extort money – and they’re getting smarter at it. Don’t get complacent, don’t cut corners and shore yourself up against the people lurking in the cyber-shadows.










