Cyberwarfare: ‘We may not know until it’s well advanced’

https://www.abc.net.au/news/2020-05-15/australia-unprepared-for-security-threats-warns-review/12248332 The report finds Australia is unprepared for an increasingly likely cyberwar. “In many ways, we may not even know when a cyber attack or indeed when a cyber campaign against Australian interests has begun,” says Professor Medcalf. “We may not know until it’s well advanced. There may be all kinds of preparation, pre-positioning, collection […]

A law firm’s worst nightmare… $21M ransom. Whitelisting is the solution.

A cybercriminal ring claiming to have stolen a huge cache of data from a major media and entertainment law firm — whose clients include Bruce Springsteen, Madonna, Elton John and Lady Gaga — is demanding a $21 million ransom payment, according to a published report. New York-based Grubman Shire Meiselas & Sacks this week confirmed its computer systems […]

Government service agents urged to protect clients and themselves

https://www.cyber.gov.au/news/government-service-agents-urged-protect-clients-and-themselves Agents of government services, such as taxation agents and financial advisers, are attractive targets for cybercriminals. The ACSC has published Cyber Security for Agents of Government Services to help agents protect their clients’ valuable and personal information, and their own businesses.

ASD says cyber resilience still far too low across govt

https://www.itnews.com.au/news/asd-says-cyber-resilience-still-far-too-low-across-govt-546818 Agencies still struggling to fully-implement top four. Most federal government agencies are still struggling to fully-implement mandatory cyber security controls, with more than 70 percent reporting below baseline levels of maturity last year. The finding, contained in the Australian Signals Directorate’s first cyber security posture report to parliament, continues a worrying trend first revealed by the national […]

Essential Eight to ISM Mapping

https://www.cyber.gov.au/publications/essential-eight-to-ISM-mapping The Strategies to Mitigate Cyber Security Incidents is a prioritised list of mitigation strategies to assist organisations in protecting their systems against a range of adversaries. While no single mitigation strategy is guaranteed to prevent cyber security incidents, organisations are recommended to implement eight essential mitigation strategies as a baseline. This baseline, known as the Essential […]

Essential 8 overview

The Australian government has disseminated information to improve cybersecurity and better protect our nation’s digital assets since 2010. The “Essential-8” began with the Defence Signals Directorate’s (DSD now ASD) “Top 35” mitigation strategies. Over the ensuing decade little has changed with poor patching still posing the most insidious risk to organisations. The ASD have distilled […]

Toll Group is having to rebuild the core systems that underpin most of its online operations following an infection with a type of ransomware called Nefilim.

After Nefilim ransomware infection. Toll Group is having to rebuild the core systems that underpin most of its online operations following an infection with a type of ransomware called Nefilim. The logistics giant said on Wednesday afternoon it is manually cleaning affected servers and systems “and restoring files from backups”. It has already said it will […]

Crowdstrike and Airlock

Crowdstrike has recently partnered with Airlock and together they make a very strong team. Following is a short video that shows how they can work together: I have also attached the Airlock datasheet so you can read more. If you have any questions or would like a demonstration of Airlock please let us know. #airlock […]