Cyberattacks will not go away

February 2018 Information Security, Infrastructure

It is an inescapable fact that in today’s digital economy, with digital record storage, every enterprise faces some form of cybercrime threat. So it is no longer a matter of ‘if’ it happens, it is a matter of ‘when’.

Andrea Lodolo.
Andrea Lodolo.

What we have learnt from the past is that hacking is becoming a lucrative business and we can only expect this phenomenon to continue to grow with cybercriminals looking for more new and innovative ways to attack companies.

So what can businesses do to protect themselves and their data, especially in the face of increasingly stringent governance regulations coming into force? Internal policies and procedures can only take you so far, and simply cannot be enforced without the appropriate technology. We keep hearing about frictionless security where security technologies are enforced, but at the same time trying to minimise the impact on users, be they internal or external.

I believe that companies have to take security more seriously and implement technology more effectively and stringently. The corporate practice of permitting unlimited access to technical people needs to be curtailed. As we have also seen, more hacks are taking place through development environments which are typically less secure than production. Here too, corporates need to implement technology on a wider scale to close all the potential gaps in their environments.

I also think we may see some pull back from the rush we have witnessed of seeing companies moving to the cloud. With so many high profile companies being breached, including cloud providers, corporates may be a little more wary to move sensitive data to the cloud.

Another trend gaining momentum in the industry is with companies creating code for applications and having a requirement to create secure code. It is becoming paramount to ensure that code is tested for potential breaches before it goes into production, and companies like Veracode are spearheading these efforts. They scan code to identify areas of potential security weakness.

Finally, I also think that blockchain will start to become a major player. It is not in itself a security solution, but the principles of how it is used and implemented may mean it could be less susceptible to the amount of traditional security measures required in systems we use today, especially in financial implementations. Many companies are scrambling to build blockchain-based systems due to the fact that it can potentially increase security across three areas, namely: reduction in identity theft, prevention of data tampering, and negating ‘denial of service’ attacks.

Although these won’t be mainstream for the next couple of years, the trend towards blockchain is accelerating rapidly and many believe this will be the next technology wave, and could well have a bigger influence than the Internet itself.





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...
Identity is a cyber issue
Access Control & Identity Management Information Security
Identity and access management telemetry has emerged as the most common source of early threat detection, responsible for seven of the top 10 indicators of compromise leading to security investigations.

Read more...
Identity and authentication
Technews Publishing SMART Security Solutions Access Control & Identity Management Information Security Security Services & Risk Management
Identity authentication is a crucial aspect of both physical security and cybersecurity. SMART Security Solutions obtained insights into the topic and the latest developments from three companies.

Read more...
From QR code to compromise
Information Security News & Events
A new attack vector involves threat actors using fraudulent QR codes emailed in PDF attachments to bypass companies' phishing security measures by requiring users to scan the code with their mobile phones.

Read more...
Organisations fear AI-driven cyberattacks, but lack key defences
Kaspersky Information Security News & Events Training & Education
A recent Kaspersky study reveals that businesses are increasingly worried about the growing use of artificial intelligence in cyberattacks, with 56% of surveyed companies in South Africa reporting a rise in cyber incidents over the past year.

Read more...
Threats, opportunities and the need for post-quantum cryptography
AI & Data Analytics Infrastructure
The opportunities offered by quantum computing are equalled by the threats this advanced computer science introduces. The evolution of quantum computing jeopardises the security of any data available in the digital space.

Read more...
Vodacom Business unveils new cybersecurity report
Information Security IoT & Automation
Cybersecurity as an Imperative for Growth offers insights into the state of cybersecurity in South Africa, the importance of security frameworks in digital resilience and the latest attack methods adopted by cyberattackers.

Read more...
Smart surveillance and cyber resilience
Axis Communications SA Surveillance Information Security Government and Parastatal (Industry) Facilities & Building Management
South Africa’s critical infrastructure sector has to step up its game regarding cybersecurity and the evolving risk landscape. The sector has become a prime target for cybercriminals on top of physical threat actors, and the consequences of an incident can be far-reaching.

Read more...
NIS2 compliance amplifies skills shortages and resource strain
Information Security Security Services & Risk Management
A new Censuswide survey, commissioned by Veeam Software reveals the significant impact on businesses as they adapt to this key cybersecurity directive, with 95% of EMEA businesses siphoning other budgets to try and meet compliance deadline.

Read more...
Axis introduces ACS Edge and cloud storage
Axis Communications SA Surveillance Infrastructure Products & Solutions
Axis Communications has launched two new solutions within the AXIS Camera Station ecosystem, AXIS Camera Station Edge (ACS Edge) and AXIS Camera Station Cloud Storage (ACS Cloud Storage).

Read more...