From the editor's desk: A storm in the cloud

Issue 4 2021 News & Events

The latest ransomware attack, named Kaseya after a company that provides a number of tools to customers all over the world, has hit a number of companies ‘downstream. In other words, some of the companies using Kaseya’s tools were also hit. However, some of these companies were managed service providers (MSPs), which means they provide services to their customers (as-a-service), and some of these companies were also hit.

Nobody knows exactly how many companies were hit with this latest attack (or they are not saying), but it once again comes back to the whole cloud security question. Cloud services, whether we call the cloud, remote or hosted services (or whatever term is in vogue), provide valuable services, mostly at reasonable costs. They can also solve many problems for companies reliant on their technology infrastructure but who don’t want the hassle of running servers and all the other bits and pieces.


Andrew Seldon, Editor

But cloud services are not a silver bullet. Yes, they offer solutions and lower costs in some cases – although South African costs often seem higher than the average – but companies often forget they can never simply hand over their responsibilities to someone else. As Gus Brecher noted in an interview with Hi-Tech Security Solutions about the OSPA awards, which you can read in this issue, “What do you do if the cloud blows away?”.

In Brecher’s context, what happens to cloud storage and other services when connectivity dies, or when your service provider is down for some reason? Hence the need for hybrid solutions that can store your video data onsite (or perhaps on the edge).

More than connectivity, most people assume their cloud data is automatically backed up; check you contract. Service providers obviously take security seriously, but if you are not sure they backup your data (whatever data that may be), it’s time to find out. What happens if your email is lost or corrupted or encrypted? The cloud server will hold the same ‘lost’ data as you have on your laptop or PC. If you don’t have a separate backup, not connected to the live system, your data is gone.

And these days, you need a third backup on some form of removable media that is not connected to your server. That way, if you lose everything in a catastrophe, there is still a way to get up and running again, albeit a slow way. I don’t want to seem negative about cloud services, but we need to be careful.

Those who read the CCTV Handbook last month will recall I mentioned CRaaS (Control Room-as-a-Service). In the next issue of Hi-Tech Security Solutions, we will run an article based on a discussion with a company that runs its entire control room from the cloud. The only hardware it has is the terminals its operators sit in front of as well as connectivity, and backup connectivity, and a backup of the backup (just in case).


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

SABRIC appoints Andre Wentzel as interim CEO
News & Events Financial (Industry) Associations
The South African Banking Risk Information Centre (SABRIC) has announced the appointment of Andre Wentzel as interim chief executive officer, effective immediately.

Read more...
Choicejacking bypasses smartphone charging security
News & Events Information Security
Choicejacking is a new cyberthreat that bypasses smartphone charging security defences to confirm, without the victim’s input or consent, that the victim wishes to connect in data-transfer mode.

Read more...
Paxton cuts emissions by over a third
Paxton News & Events
Paxton has announced a significant reduction in its carbon footprint, cutting emissions by 961 tonnes of CO2e in its 2023 second reporting year.

Read more...
SMARTpod talks to Sophos and Phishield
SMART Security Solutions Technews Publishing Sophos Videos Information Security News & Events
SMARTpod recently spoke with Pieter Nel, Sales Director for SADC at Sophos, and Sarel Lamprecht, MD at Phishield, about ransomware and their new cyber insurance partnership.

Read more...
Cybersecurity and insurance partnership for sub-Saharan Africa
Sophos News & Events Information Security Security Services & Risk Management
Sophos and Phishield Announce first-of-its-kind cybersecurity and insurance partnership for sub-Saharan Africa. The SMARTpod podcast, discussing the deal and the state of ransomware in South Africa and globally, is now also available.

Read more...
Nice unveils MyNice Smartgo
News & Events Access Control & Identity Management
Nice SA has announced the release of MyNice Smartgo, a compact access automation solution, designed specifically for the South African market, combining an easy-to-install device with a user-friendly smartphone application.friendly smartphone application.

Read more...
Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...
Corporate and academic teams can register for Kaspersky contest
Kaspersky News & Events Information Security
Kaspersky has announced the registration opening for its new Kaspersky{CTF} (Capture the Flag) competition, inviting academic and corporate teams from around the globe to compete in a battle of skill, strategy and innovation.

Read more...
SA businesses embrace GenAI, but strategy and skills lag
News & Events AI & Data Analytics
South African enterprises are rapidly integrating Generative AI (GenAI) into their operations, but most are doing so without formal strategies, dedicated leadership, or the infrastructure required to maximise value and minimise risk.

Read more...
Continuous security optimisation.
News & Events Information Security
Cymulate has announced its partnership with SentinelOne, a threat exposure validation and AI-powered cybersecurity platform. The collaboration delivers self-healing endpoint security that empowers businesses to increase protection for every endpoint on their network.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.