Every time an employee connects to their corporate network from home, they're creating possible access points for hackers to exploit. When this happens 1,000 times on a single network almost overnight, as it has amid orders for regional lockdowns, it's increasingly difficult to ensure every connection is secure.
The specific security challenges are wide-ranging. While those using company-provided laptops are likely protected by internal safety measures, they could still be vulnerable if their security software isn't updated or their remote network connection isn't perfectly configured. The bigger problem is employees using their own equipment that security teams can't monitor for malicious traffic. For all they know, these devices may already be infected with malware.
A major power utility in southern Europe, for instance, sent home hundreds of employees last week. In a matter of three days, the company increased remote accessibility from just 9% of their machines to 53%, said Andrea Carcano, founder and chief product officer at Nozomi Networks Inc., an industrial security company in San Francisco.
"There's a risk of opening access to all of those plants," said Carcano, whose company provides network security tools to some of those power systems. He declined to name the utility. "That customer has some visibility. But it is a fact: You're opening a new door that used to be closed. If it's an opening for you, it could be an opening for an attacker."
The huge influx of people working at home has expanded the places hackers can exploit. As companies across Europe and the Americas come to grips with this new normal, hackers are tweaking their attacks — sending phishing emails that claim to be about the coronavirus or purport to be from a trusted health agency — to leverage fear of the global pandemic.
There has been a "flood" of cyberscams and hacking attempts related to the virus, according to Michael Daniel, president and chief executive officer of the Cyber Threat Alliance, an intelligence-sharing nonprofit organization. "It's really quite amazing how rapidly the bad guys have moved into that area."
There's also been a surge in hackers targeting work-from-home tools, such as the virtual private networks companies use to let employees re-create their secure office connections, said Andrew Tsonchev, director of technology at cybersecurity firm DarkTrace.
Hackers appear to be targeting the most vulnerable. Data analysis from Italy indicates that companies that have quarantined workers or instructed them to work from home are prime targets for attackers, according to Cynet, a New York-based cybersecurity company.
"This shows the propensity for hackers to shift their focus to remote work environments in order to capitalize on the virus while thwarting corporate security measures," according to a Cynet blog published Wednesday.
With a daily onslaught of scary news about the virus, people who are working at home may be more likely to click on bogus misinformation links spread on social networks, cybersecurity experts said. And because they expect to get out-of-the-ordinary emails from their IT staff, they may be more likely to click on phishing messages.
Employees can do their part at home. Updating password
Comments
Post a Comment