Thereās every indication that the pandemic is changing the nature of cyber security. Online threats are evolving to match our new remote-work paradigm, withĀ 91% of businesses reporting an increase in cyberattacks during the coronavirus outbreak.
Hackers are getting more and more sophisticated and targeted in their attacks. Many of these cyber threats have been around for a while, but they are becoming harder for the average user to detect. Beware of these four common types of cyber threats ā and learn what you can do to prevent them.
Advanced phishing attacks
Phishing takes place when a hacker tricks an individual into handing over information or exposing sensitive data using a link (with hidden malware) or a false email. These types of security threats are quiteĀ common, but in recent months they are becoming even more advanced.
Microsoftās recent surveyĀ of business leaders in four countries found that phishing threats are currently the biggest risk to security. Since March, 90% of those polled said that phishing attacks have impacted their organization, and 28% admitted that attackers had successfully phished their users.Ā Recently, phishing emails have targeted enterprises to capture personal data and financial information using one of the followingĀ tactics:
- Posing as a provider of information about COVID-19 vaccines, PPE, and other health and sanitation supplies
- Creating false āportalsā for business owners to apply for government assistance and stimulus funds during the economic shutdown
- Using download links for platforms and tools that help remote teams communicate, such as video conferencing
- Posing as ācritical updateā downloads for enterprise collaboration solutions, such as Microsoft OneDrive, and social media applications
- Targeting IT service providers that ask for payment in order to provide tech support.
Phishing is so effective because it can be very hard to recognize and target individual people, rather than IT vulnerabilities. Yet, they are still ways to lower your risk of phishing.
How to prevent phishing: The best chance to prevent phishing attacks is to educate your teams on what to look for in a phishing message.Ā Poor spelling and grammar, as well as an email address that doesnāt match the user, are telling signs of a phishing message. If an offer seems too good to be true, it is a good sign youāre being scammed.Ā Ā In addition to user education, you can add multi-factor authentication and other interventions to stop phishing messages from getting through. āSpam filters with sandboxing and DNS filtering are also essential security layers because they keep malicious emails from entering the network, and protect the user if they fall for the phishing attempt and end up clicking on a malicious hyperlink,ā said one security expert toldĀ ZDNet.
Ransomware
RansomwareĀ is a type of security threat that encrypts a victimās files so they canāt access their information. The hacker then asks for a ransom āĀ usually payment ā to restore access and decrypt the userās data.
Perhaps the most notorious recent example of a ransomware attack is that of Garmin. In July, Garmin āĀ a navigation and fitness wearables company ā was hit by aĀ ransomware attackĀ that downed service for virtually every Garmin customer.Ā Ā āHackers deployed the ransomware tool WastedLocker, which encrypts key data on a companyās digital infrastructure,ā reportedĀ Cyber Security Hub. āIn the case of Garmin, website functions, customer support, and user applications were all affected. Unlike typical ransomware software, WastedLocker does not steal identifying information and holds it for ransom. Instead, it renders programs useless until decrypted.ā Garmin reportedly paid $10 million for the decryption key to resume services after four days of outages.
Garmin isnāt alone, however. Thereās been aĀ seven-fold increaseĀ in ransomware attacks this year targeting companies of all sizes. So, what can your organization do to protect itself?
How to prevent ransomware: First and foremost, itās important to make sure your security protocols are kept airtight ā and apply security patches as quickly as possible to prevent hackers from exploiting vulnerabilities. A tool like Nightfall can make it easier to maintain a strong defense, with AI monitoring your network for any issues. Multi-factor authentication can also prevent hackers from getting too far into your system. And, you should regularly back up your system so if a cyber ransomware attack does happen, youāll be able to recover some data.
Password-based cyber attacks
AĀ password-based cyberattackĀ is one that targets users who have the same password for multiple sites. Research from the World Economic Forum found thatĀ 4 out of 5 global data breachesĀ are caused by weak/stolen passwords.
There areĀ several different ways a hacker can infiltrate your system using a password-based cyberattack. The most common method is known as a brute force attack. This attack uses a computer program to try to log in to a userās account by trying all possible password combinations, starting with the most common and easiest to guess options ā for instance, ā1234ā or āabcdeā.Ā Ā Sensitive data like passwords,Ā credentials and secrets are in constant danger of exposure, especially as more companies conduct the majority of their business in the cloud. The highly collaborative and always-on nature of cloud services makes it hard to enforce good password practices. Therefore, organizations need data loss prevention (DLP) to secure essential data from being exposed.
How to prevent a password-based attack: make it easy for users and security teams alike to circumvent the risk of password attacks by implementing password-free authentication methods. This is a type of authentication that requires a user to confirm their identity during the login process through a separate channel. ThisĀ extra stepĀ can also protect your workspace in case thereās any account compromised or if a device gets stolen.
IoT and smart medical devicesĀ
The internet of things makes life a lot easier ā and also more open to bad actors. Connected devices are an increasingly popular target for cyber threats. In 2019, cyber-attacks on IoT devicesĀ increased by 300%, according to one report. This includes attacks on everything from laptops and webcams to smart homes (like Google Nest), smartwatches, routers, and other home appliances.
Our personal devices arenāt the only things that are vulnerable. TheĀ Software Engineering Institute of Carnegie Mellon UniversityĀ reported, āAs more devices are connected to hospital and clinic networks, patient data and information will be increasingly vulnerable. Even more concerning is the risk of remote compromise of a device directly connected to a patient. An attacker could theoretically increase or decrease dosages, send electrical signals to a patient or disable vital sign monitoring.āĀ Healthcare providers must also contend with protecting patient data. As many healthcare providers shift to remote work, they become an attractive target for hackers.Ā Protected health informationĀ (PHI) must be kept safe during all cloud-based activities ā yet many SaaS providers, includingĀ Slack, areĀ not HIPAA-compliant right out of the box.
How to prevent IoT attacks:Ā IoT attacks are sophisticated, and the best ways to protect your devices are to use strong passwords and keep your software up to date. Experts also suggest keeping your devicesĀ unlinked from social media.Ā Ā Along with protecting your devices, look for a DLP partner who can protect your patient data while working on SaaS and IaaS platforms. Check out our coverage of instituting and maintainingĀ HIPAA compliance on SlackĀ and schedule a meeting below to learn more about how tools likeĀ Nightfall DLPĀ play a role in keeping PHI safe.







