Don’t ignore the mobile threat

July 2017 Information Security

The recent global WannaCry cyber attacks brought increased focus worldwide on the vulnerability of corporations and individuals to cyber attacks. It failed however to highlight the very real problem of 50% of all mobile and tablet devices not being protected against cybercrime and malicious threats. In South Africa alone that equates to 40 million entry points into corporations and company networks.

Current malwares attack both mobile devices and desktops, attacks that include key loggers (password theft), adware, viruses and spyware. According to a June 2016 survey from Osterman Research, almost one out of every two participants indicated that their organisation had suffered at least one ransomware attack in the past 12 months. Insurer Beazley claims in a recent report that ransomware attacks quadrupled in number in 2016 over 2015. Beazley said it expected the ‘ease and effectiveness’ of such attacks to propel an even larger increase this year.

The ransomware business is booming, unfortunately, with more consumers and businesses being infected with ransomware that results in encryption of documents, pictures, videos and other important files. New ransomware is not identified by legacy antivirus software due to new distribution technology which bypasses signature identification.

So what are some of the basic guidelines one can follow to safeguard your cellphone or tablet from a cyber attack?

Take care when downloading apps

Cyber criminals can use apps containing malware to infiltrate your smartphone and steal your personal information. Download apps from trusted sources such as Google Play, the Microsoft Window Store and Apple iTunes.

Exercise caution in Wi-Fi hotspots

These pose a major smartphone security risk. If you must use your device in a hotspot, avoid activities such as online shopping, banking or anything that requires submitting your credit card information.

Implement physical security measures

Many smartphone cybersecurity breaches occur due to a lost or stolen device. Never leave your phone out of your sight when you’re in public, and install tracking software so you can locate it quickly if it disappears.

Lock your device when not in use

Locking is a simple step for minimising the smartphone security risk, but it’s a precaution that most owners do not take. You can program your phone to auto-lock when it is not in use.

Roi Shaposhnik, head of international sales, Gold N’ Links Cyber maintains that cyber attacks will continue to increase. “The software to carry out ransomware attacks is becoming increasingly sophisticated and available as a commodity through the Dark Web. Even more of a reason for companies to take a proactive approach and work together with cyber-security companies to find effective solutions against these attacks.”

For more information contact Graham Wright, Gold N’ Links Cyber, +27 (0)83 252 5727, [email protected], www.gnlcyber.com





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

What are MFA fatigue attacks, and how can they be prevented?
Information Security
Multifactor authentication is a security measure that requires users to provide a second form of verification before they can log into a corporate network. It has long been considered essential for keeping fraudsters out. However, cybercriminals have been discovering clever ways to bypass it.

Read more...
SA's cybersecurity risks to watch
Information Security
The persistent myth is that cybercrime only targets the biggest companies and economies, but cybercriminals are not bound by geography, and rapidly digitising economies lure them in large numbers.

Read more...
Cyber insurance a key component in cyber defence strategies
Information Security
[Sponsored] Cyber insurance has become a key part of South African organisations’ risk reduction strategies, driven by the need for additional financial protection and contingency plans in the event of a cyber incident.

Read more...
Deception technology crucial to unmasking data theft
Information Security Security Services & Risk Management
The ‘silent theft’ of data is an increasingly prevalent cyber threat to businesses, driving the ongoing leakage of personal information in the public domain through undetected attacks that cannot even be policed by data privacy legislation.

Read more...
Data security and privacy in global mobility
Security Services & Risk Management Information Security
Data security and privacy in today’s interconnected world is of paramount importance. In the realm of global mobility, where individuals and organisations traverse borders for various reasons, safeguarding sensitive information becomes an even more critical imperative.

Read more...
Sophos celebrates partners and cybersecurity innovation at annual conference
News & Events Information Security
[Sponsored] Sun City hosted Sophos' annual partner event this year, which took place from 12 to 14 March. Sophos’ South African cybersecurity distributors and resellers gathered for an engaging two-day conference.

Read more...
The CIPC hack has potentially serious consequences
Editor's Choice Information Security
A cyber breach at the South African Companies and Intellectual Property Commission (CIPC) has put millions of companies at risk. The organisation holds a vast database of registration details, including sensitive data like ID numbers, addresses, and contact information.

Read more...
Navigating South Africa's cybersecurity regulations
Sophos Information Security Infrastructure
[Sponsored] Data privacy and compliance are not just buzzwords; they are essential components of a robust cybersecurity strategy that cannot be ignored. Understanding and adhering to local data protection laws and regulations becomes paramount.

Read more...
AI augmentation in security software and the resistance to IT
Security Services & Risk Management Information Security
The integration of AI technology into security software has been met with resistance. In this, the first in a series of two articles, Paul Meyer explores the challenges and obstacles that must be overcome to empower AI-enabled, human-centric decision-making.

Read more...
Milestone Systems joins CVE programme
Milestone Systems News & Events Information Security
Milestone Systems has partnered with the Common Vulnerability and Exposures (CVE) Programme as a CVE Numbering Authority (CNA), to assist the programme to find, describe, and catalogue known cybersecurity issues.

Read more...