• HOME
  • MEMBERSHIP
  • IN THE COMMUNITY
  • MARKETPLACE
    • SECURITY PRODUCTS
  • ABOUT US
    • PARTNERSHIPS
    • OUR TEAM
  • NEWS & EVENTS
    • EVENTS
    • PRESS RELEASES
    • BLOG
    • MEDIA OVERVIEW
    • GALLERY
  • TIPS & ADVICE
  • HOME
  • MEMBERSHIP
  • IN THE COMMUNITY
  • MARKETPLACE
    • SECURITY PRODUCTS
  • ABOUT US
    • PARTNERSHIPS
    • OUR TEAM
  • NEWS & EVENTS
    • EVENTS
    • PRESS RELEASES
    • BLOG
    • MEDIA OVERVIEW
    • GALLERY
  • TIPS & ADVICE

Knowledge Update: 28 July 2017

28-July-2017
-
Blog
-
No comments
-
Posted by Tom Lejava

This week’s Knowledge Update talks about a bug in smartphones that could lead to unstoppable malware that could be easily spread, the ‘Destruction of Service’ attacks that have happened in the last couple of months and how Infosecurity magazine states that around 400,000 client bank accounts have been accessed by hackers in one of the largest data breaches in Europe.

 

Bug in smartphones could lead to unstoppable malware

 

This story focuses on a recently patched bug that had been found in the chips used to provide wi-fi in iPhones, Samsung Galaxies and Google Nexus phones.

The bug takes advantage of several flaws that exist in the wi-fi chips which allows the attacker to write programs directly onto the chip and seize control of it. Two vulnerable devices simply must be near each other for the virus to spread. The immediate solution for these vulnerabilities is to update business phones’ OS immediately which contains fixes for the flaw.

Organisations which allow Bring Your Own Device policies and allow users to make use of their mobile phones when conducting official tasks, such as email exchange, should ensure that phones are updated with the latest security patches.

Read more.

 

‘Destruction of Service’ attacks

 

Cisco has warned that the recent ransomware attacks such as WannaCry Petya and NotPetya could foreshadow a new breed of attack called ‘Destruction of Service’ (DeOS) attacks. According to the article, “these new DeOS attacks will look to make it impossible for victims to restore affected systems once infected“. Cisco has also claimed that, “the exact make-up of these DeOS attacks will depend on the motivations of the hackers involved and the limits of their creativity and capabilities.”

According to Rob Norris, the head of enterprise and cybersecurity of Fujitsu, “Engagement must start from the top: The C:Suite must understand the risks, ensure their organisation is well prepared and develop a comprehensive plan. Time must also be taken into account to actively test existing networks, spot and quickly address any blind spots in the system and educate the entire workforce on best practice.”

As above, the higher management of an organisation should invest more of their time in cybersecurity to ensure that adequate measures are taken for the safety of the organisation. This includes seeking higher levels of accreditation for the business such as Cyber Essentials Plus and ISO 27001.

Read the full article.

 

Unicredit reveals double breaches affecting 400,000 users

 

According to Infosecurity Magazine, around 400,000 client bank accounts have been accessed by attackers in one of the largest data breaches in Europe. The error had resulted in some users from an external commercial partner being able to access the bank’s client data.

It is important that organisations take necessary precautions to protect confidential data from leaking due to inadequate controls. Further, if organisations outsource their internal functions to third-party providers it is important that service levels are defined, documented and agreed by both parties. Higher management should also ensure that the agreed controls are implemented by the vendor.

Read the full article.

Tags
Cyber Breach
Destruction of Service attacks
Knowledge Update
Malware
Ransomware
← PREVIOUS POST
News Roundup July 2017
NEXT POST →
New Event to Help London Businesses to Prepare for Cyber Breach
Categories
  • Blog
  • Press Release
Recent Posts
  • Is your business cyber-ready?
  • You’ve Got Mail: 5 Tips to Secure Your Email
  • #OneReset - What could you really lose in a hack?
  • Here’s what GDPR means for your business!
  • Essential Advice for Small Business Cyber Security
London Digital Security Centre

We are a Not for Profit organisation, launched by the Mayor of London as a joint venture with the Metropolitan Police and City of London Police.

Leave a Comment

Your feedback is valuable for us. Your email will not be published.
Cancel Reply

Please wait...
Submit Comment

Related News

Other posts that you should not miss.
LDSC knowledge update

Knowledge Update: 26 January 2018

26-January-2018
-
Blog

This week’s Knowledge Update talks about how half of Norway’s population may have been breached, the head of NCSC stating that a major cyber attack in the UK …

Read More →
Posted by Tom Lejava
3 MIN READ

Cyber Aware and Take Five

03-October-2017
-
Blog

Following publication of the latest financial fraud figures, Take Five, a national awareness campaign led by FFA UK, part of UK Finance, delivered with and through a range …

Read More →
Posted by Tom Lejava
1 MIN READ
LDSC knowledge update

Knowledge Update: 10 November 2017

10-November-2017
-
Blog

This week’s Knowledge Update talks about how almost 1 in 5 UK organisations are unprepared for a cyber-attack, most organisations run ’out-of-date’ office software and how DDoS attacks …

Read More →
Posted by Tom Lejava
3 MIN READ
Twitter Follow
Tweets by LondonDSC
Social Connect
News
  • 18-March-2019
    Is your business cyber-ready?
  • 05-February-2019
    You’ve Got Mail: 5 Tips to Secure Your Email
  • OneReset
    23-October-2018
    #OneReset - What could you really lose in a hack?
Contact Us

Company Number : 09639299
Mail to : [email protected]
Address : One Wood Street, London,
United Kingdom, EC2V 7WS.

Built by Cyber Rescue
Privacy   T & C
Copyright London Digital Security Centre (LDSC) 2017
Knowledge Update: 28 July 2017 - London Digital Security Centre
 Logo Header Menu
MENU
  • HOME
  • MEMBERSHIP
  • IN THE COMMUNITY
  • MARKETPLACE
    • SECURITY PRODUCTS
  • ABOUT US
    • PARTNERSHIPS
    • OUR TEAM
  • NEWS & EVENTS
    • EVENTS
    • PRESS RELEASES
    • BLOG
    • MEDIA OVERVIEW
    • GALLERY
  • TIPS & ADVICE