Prepare for cyber-physical attacks

SMART Access & Identity 2024 Information Security, Access Control & Identity Management

As the security landscape continues to evolve, organisations must fortify their security solutions to embrace the changing needs of the security and technology industries. Nowhere is this more present than with regard to cybersecurity. As the threat of cyber-physical attacks grows in number and complexity, organisations worldwide will be forced to reconsider the preparedness of their cybersecurity and physical security systems.

In Gallagher’s Security Industry Trends Report1 released in December 2023, Gallagher Security Cyber Architect, Rob Cowsley says, “Cybersecurity and physical security are often inherently linked to one another; it is difficult to have a secure physical solution without considering elements of cybersecurity, and impossible to avoid physical components within a cyber-secure environment. It is becoming increasingly important for businesses to consider both to achieve a holistic security solution.”

To address the shifting needs of organisations and use feedback from its end users and channel partners, Gallagher continues its commitment to customer-centric manufacturing and innovation to address its customers’ current and emerging security needs.

In November 2023, Gallagher released the Controller 7000 (C7000). Designed to deliver stronger cyber protection, new capabilities, scalability, and functionality, the C7000 will help organisations fortify their protections in preparation for future unknown threats.

The C7000 has been developed with powerful cybersecurity functionality; only Gallagher-approved firmware can run on the device, software with known vulnerabilities is prevented from being installed, it is impossible to clone or counterfeit the device, critical cryptographic keys are stored securely; and security infrastructure generates, processes, and stores cryptographic keys and certificates, preventing supply chain attacks. Altogether, the C7000’s layers of baked-in cyber protections equip users with responsive and adaptable technology to safeguard against sophisticated cyber threats for many years to come.

“We hold our products to a higher standard by subjecting them to some of the most rigorous testing in the industry; employing a combination of in-house and third-party penetration testing and collaborating with everyone, from standards accrediting bodies, to hobbyist hackers to fortify our solutions against the threats of the future. As a result, our solutions meet the cybersecurity needs of both commercial entities and those operating in high security, like government bodies, militaries, and critical infrastructure sites,” says Cowsley.

Cybersecurity is not exclusively up to the manufacturer. End users also bear responsibility for maintaining their systems to protect against threats.

One major source of vulnerability is outdated hardware. As cyber risks evolve, out-of-support hardware that no longer receives security updates, or is unable to use the latest protections, leaves end users open to attacks that could have been prevented by an upgrade. Many hackers who find vulnerabilities are finding them in legacy hardware, further exposing the danger these parts pose to end users and the people, data, and assets they aim to protect.

Even running routine regular audits on systems can be an effective tool to safeguard against threats. Audits can reveal problems like blank passwords on highly privileged accounts, or tampering with door sensors, enabling end users to maintain their defences and safeguard against their own worst-case scenarios.

Maintaining cybersecurity can be a challenge, especially as the threat landscape evolves at such a rapid pace. Technologies with built-in cybersecurity reduce the burden of maintenance on users and help ensure systems remain up-to-date and fortified against threats. As Gallagher’s future growth and product roadmap develops, C7000 users will have the foundation in place to immediately benefit from new developments and features as they are released through streamlined updates. Users will have continuous value delivered over the lifespan of the controller, making the return on investment in cybersecurity and functionality worth it for many years to come.

“Cybersecurity is not a destination; it is a continuous journey, and only those prepared to evolve alongside the threat landscape will be able to take their customers on that journey with them,” concludes Cowsley.

[1] www.securitysa.com/*gallagher5


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

95% do not have full trust in cybersecurity vendors
Information Security Security Services & Risk Management
Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels. Lack of verifiable transparency undermines cybersecurity decision-making, according to Sophos-backed research.

Read more...
Africa’s largest Zero Trust platform
NEC XON Information Security Commercial (Industry)
Africa has reached a significant cybersecurity milestone with the successful deployment of the continent’s largest Palo Alto Networks Prisma Access and Prisma Access Browser Zero Trust environment, supporting secure remote access for more than 40 000 users for a large enterprise in Africa.

Read more...
Supply chain attacks top threat over 12 months
Information Security
Supply chain attacks have become the most prevalent cyberthreat confronting businesses over the past year, according to a new Kaspersky global study, with nearly one-third of companies worldwide experiencing a supply chain threat in the past year.

Read more...
From vibe hacking to flat-pack malware
Information Security AI & Data Analytics
HP issued its latest Threat Insights Report, with strong indications that attackers are using AI to scale and accelerate campaigns, and that many are prioritising cost, effort, and efficiency over quality.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Gallagher Security strengthens KwaZulu-Natal presence
Gallagher News & Events Integrated Solutions
Gallagher Security has reinforced its commitment to the KwaZulu-Natal region with its Command the Future event. The full-day event welcomed over 100 channel partners, end users, and consultants, marking Gallagher’s third major event in Durban.

Read more...
Microsoft 365 security is a ticking time bomb
Information Security
Across boardrooms and IT departments, a dangerous assumption persists that because data is stored in Microsoft 365 and Azure, it is automatically secure. This belief is fundamentally flawed and fosters a false sense of protection.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
Centurion raises the bar at HomeSec Expo
Centurion Systems News & Events Access Control & Identity Management Residential Estate (Industry) Smart Home Automation Commercial (Industry)
Centurion Systems unveiled its latest product lines at HomeSec Expo 2026, introducing SMART+, a simpler way for installers and end users to manage their Centurion installations - as well as a few new products.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.