Does your data hygiene pass the cleanliness test?

Issue 6 2023 Information Security, Infrastructure


Ian Engelbrecht.

From smartphones that allow us to stay connected while on the go, to the Internet of Things (IoT) seamlessly merging with our homes, technology has become an inseparable part of our daily existence, intertwining our every action and choice. However, as it has become more pervasive, it has presented an equally great challenge – mitigating the surge of cyberattacks.

In recent years, cyberattacks have become more than just an occasional threat to the security of our data. They have become the norm and represent a constant shadow lurking in the depths of the digital underworld.

As we become increasingly dependent on digital technology for communication, commerce, critical infrastructure and data security, the risks posed by cyberattacks have grown exponentially. In the business world, cyberattacks have taken centre stage and are a reminder of our inherent vulnerability.

This conundrum raises an important question: how do we adapt to a world where cyberattacks have become not just an exception, but an expectation? The answer to this lies in understanding that cyber resilience is not just a nice to have, but an essential criterion for business continuity.

Just as personal hygiene shields us from diseases and illnesses, digital or data hygiene plays a vital role in preserving the integrity of sensitive data and shields organisations against cybercriminals and ransomware attacks.

The relentless rise in ransomware attacks has put the industry in a defensive position in the constant war against these threats. This is, as the Veeam Data Protection Trends Report 2023 unveils, a 9% surge in cyberattacks, with 85% of organisations experiencing at least one attack over the past year, compared to 76% the previous year.

Unfortunately, no organisation, regardless of its security precautions, is entirely immune to attacks. To increase resilience against attackers and ensure minimal damage and disruptions to business operations, it is critical to promote data resiliency throughout an organisation. For organisations to maintain resilience in the face of impending attacks, they must put thorough measures into place that can be implemented both before and after an attack, including swift and reliable recovery procedures.

While many rely on cyber insurance, insights gathered in the Veeam Ransomware Trends Report 2023 indicate that it is becoming increasingly expensive and difficult to acquire, with 21% of organisations noting that ransomware insurance is now excluded from their policies; and does not guarantee that crucial data can be recovered in the event of a successful ransomware attack, with a quarter of those who paid, unable to recover their data.

To mitigate this risk, an incident response playbook is an essential component in safeguarding business resilience and continuity. It aids in more effective preparation for the inevitable, regardless of the attack’s outcome. It should encompass various scenarios and protocols to be followed, include regular updates, and must not be treated as a one-time effort.

The most important element of an incident response playbook is an immutable backup, and while the Veeam Ransomware Trends Report 2023 adds that 87% of organisations have a risk management programme in place that drives their security strategy, only 35% believe that their programme is working effectively.

Alarmingly, only 30% of organisations test their backups, with some going almost two years without testing these backups. This lack of diligence leaves them ill-prepared to successfully recover and get on their feet post-attack.

Clean backup copies that include clean data that is immutable against attacks and does not contain any malicious code, and recurring verification to ensure that backups are recoverable, are the two most common playbook elements in preparation of a ransomware protection plan.

Robust backup and recovery strategies play a crucial role in mitigating data loss after a successful attack. Consequently, it is essential for organisations to regularly test the efficacy of their backups and processes at least once a week to ensure the recoverability of business-critical data. Additionally, implementing multi-person authentication measures internally is vital to prevent the unauthorised deletion of backups by a lone individual.

The year-on-year increase in cyberattacks is worrying, to say the least, and today, it is no longer a case of ‘if’ or ‘when’ a ransomware attack will happen, but how often. Simply put, an immutable and, therefore secure backup, is the only alternative way to mitigate the consequences of an attack, like having to pay a ransom. Having all measures in place to strengthen resiliency and reliable recovery is the first and most important step in warding off a successful attack.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...
Upgrade your PCs to improve security
Information Security Infrastructure
Truly secure technology today must be designed to detect and address unusual activity as it happens, wherever it happens, right down to the BIOS and silicon levels.

Read more...
Open source code can also be open risk
Information Security Infrastructure
Software development has changed significantly over the years, and today, open-source code increasingly forms the foundation of modern applications, with surveys indicating that 60 – 90% of the average application's code base consists of open-source components.

Read more...
DeepSneak deception
Information Security News & Events
Kaspersky Global Research & Analysis researchers have discovered a new malicious campaign which is distributing a Trojan through a fake DeepSeek-R1 Large Language Model (LLM) app for PCs.

Read more...
Fastest PCIe Gen 5.0 NVMe SSD
Products & Solutions Infrastructure
Sandisk has unveiled the WD_BLACK SN8100 NVMe SSD with PCIe Gen 5.0 technology, an internal SSD delivering speeds up to 14 900 MB/s and capacities up to 4 TB, with 8 TB solutions available soon.

Read more...
SA’s strained, loadshedding-prone grid faces cyberthreats
Power Management Information Security
South Africa’s energy sector, already battered by decades of underinvestment and loadshedding, faces another escalating crisis; a wave of cyberthreats that could turn disruptions into catastrophic failures. Attacks are already happening internationally.

Read more...
Unified storage solution
Products & Solutions Infrastructure
CASA Software has announced the local availability of Nexsan’s upgraded unified storage solution, Unity NV4000, which is ideal for mixed workloads, from virtualisation and video surveillance to secure backup and recovery.

Read more...
Almost 50% of companies choose to pay the ransom
News & Events Information Security
This year’s Sophos State of Ransomware 2025 report found that nearly 50% of companies paid the ransom to get their data back, the second-highest rate of ransom payment for ransom demands in six years.

Read more...
Survey highlights cost of cyberdamage to industrial companies
Kaspersky Information Security News & Events
The majority of industrial organisations estimate their financial losses caused by cyberattacks to be over $1 million, while almost one in four report losses exceeding $5 million, and for some, it surpasses $10 million.

Read more...
Digital economy needs an agile approach to cybersecurity
Information Security News & Events
South Africa is the most targeted country in Africa when it comes to infostealer and ransomware attacks. Being at the forefront of the continent’s digital transformation puts South Africa in the crosshairs for sophisticated cyberattacks

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.