• Home
  • Certifications
    • Adobe
    • Analytics & Data Management
    • Android
    • Application Development
    • AWS
    • Biocertification
    • CCSE
    • CertCop
    • Certification Exam
    • CISCO
    • Cloud Computing & Virtualization
    • CompTIA
    • Cyber & Network Security
    • Database
    • DoD 8140/8570.01
    • eBook
    • EC-Council
    • ECIH
    • EMC2
    • Flash Cards
    • Intel
    • ISACA
    • ISC2
    • ITIL
    • Micro Focus
    • Microsoft
    • Mock Exam
    • on-demand
    • PECB
    • pentest +
    • PMI
    • PostgreSQL
    • Practice Exam
    • project+
    • Red team
    • Splunk
    • SUSE
    • VMware
    • Webinars
    • Wireshark
  • Training Programs
    • Training Catalog
    • Govt./DoD 8570.1 Discount Pricing
    • CertPass Offerings
    • Virtuallivetraining 100% Exam Pass Guarantee
    • Virtuallivetraining Promotions
    • Biometrics Webinars
  • Delivery Methods
    • Virtual Live Training
    • On Demand / Self Study
    • Virtual Live Group Training
    • 1-1 mentoring
  • Exam Prep Tools
    • Mock Exam
    • Practice Exam
    • Complete Bundles
    • Flash Cards
    • Special Price
    • Exam Voucher
    • eBook
  • Services & Solutions
    • CertTemps
    • Corporate Executive Technology Essentials Program
    • Consulting & Technical Support Services
    • Industries
    • Preferred Clients
    • Refer a Friend
    • Training Program Development & Management
  • Resources & Support
    • Scholarship Application Form
    • Host your Course here
    • Exam Prep & Pre-Assessment
    • Special Events & Free Training Offerings
    • Post Training E-mail Support
    • Post Training Evaluation
  • Company
    • Registration Form
    • Become a Virtual Live Training Authorized Training Reseller
    • Locations
    • Shopping Cart
    • Blog
    • Terms and Conditions
    • Testimonial and Clients
    • About Us
    • Why Virtuallivetraining
    Have any question?
    1-630-684-0355
    info@virtuallivetraining.com
    RegisterLogin
    REFER AND EARN        Cart       My orders      
    virtuallivetraining.com
    • Home
    • Certifications
      • Adobe
      • Analytics & Data Management
      • Android
      • Application Development
      • AWS
      • Biocertification
      • CCSE
      • CertCop
      • Certification Exam
      • CISCO
      • Cloud Computing & Virtualization
      • CompTIA
      • Cyber & Network Security
      • Database
      • DoD 8140/8570.01
      • eBook
      • EC-Council
      • ECIH
      • EMC2
      • Flash Cards
      • Intel
      • ISACA
      • ISC2
      • ITIL
      • Micro Focus
      • Microsoft
      • Mock Exam
      • on-demand
      • PECB
      • pentest +
      • PMI
      • PostgreSQL
      • Practice Exam
      • project+
      • Red team
      • Splunk
      • SUSE
      • VMware
      • Webinars
      • Wireshark
    • Training Programs
      • Training Catalog
      • Govt./DoD 8570.1 Discount Pricing
      • CertPass Offerings
      • Virtuallivetraining 100% Exam Pass Guarantee
      • Virtuallivetraining Promotions
      • Biometrics Webinars
    • Delivery Methods
      • Virtual Live Training
      • On Demand / Self Study
      • Virtual Live Group Training
      • 1-1 mentoring
    • Exam Prep Tools
      • Mock Exam
      • Practice Exam
      • Complete Bundles
      • Flash Cards
      • Special Price
      • Exam Voucher
      • eBook
    • Services & Solutions
      • CertTemps
      • Corporate Executive Technology Essentials Program
      • Consulting & Technical Support Services
      • Industries
      • Preferred Clients
      • Refer a Friend
      • Training Program Development & Management
    • Resources & Support
      • Scholarship Application Form
      • Host your Course here
      • Exam Prep & Pre-Assessment
      • Special Events & Free Training Offerings
      • Post Training E-mail Support
      • Post Training Evaluation
    • Company
      • Registration Form
      • Become a Virtual Live Training Authorized Training Reseller
      • Locations
      • Shopping Cart
      • Blog
      • Terms and Conditions
      • Testimonial and Clients
      • About Us
      • Why Virtuallivetraining

      Cybersecurity

      • Home
      • Blog
      • Cybersecurity
      • A wake-up for the world on cyber security

      A wake-up for the world on cyber security

      • Posted by VLT
      • Categories Cybersecurity
      • Date December 21, 2020
      • Comments 0 comment

      Imagine intruders break into your home and loiter undetected for months, spying on you and deciding which contents to steal. This in essence is the kind of access that hackers, assumed to be Russian, achieved in recent months at US government institutions including the Treasury and departments of commerce and homeland security, and potentially many US companies. If the fear in the Cold War was of occasional “moles” gaining access to secrets, this is akin to a small army of moles burrowing through computer systems. The impact is still being assessed, but it marks one of the biggest security breaches of the digital era. Hackers infiltrated updates to network management software from SolarWinds to smuggle malware into the computer systems of its government and corporate clients. The malware can transfer files, reboot computers and disable system services. It appears so far to have been used for espionage, albeit on a grand scale. But since clients included infrastructure operators, it could have been used for sabotage — or shows how similar methods might be used for devastating cyber attacks in the future. The incident should raise red flags across the public and private sectors that there is no such thing as perfect security. Even the most sensitive institutions are vulnerable to compromise operations by sophisticated players; in this case, a leading cyber security company, FireEye, was itself affected. The US and its allies cannot assume technological superiority over their most determined and capable cyber-foes: Russia, China, North Korea and Iran.  Any IT system, moreover, is only as secure as its weakest link. A central feature of this attack is that it utilised the supply chain, gaining access via software from a commercial supplier. While the US and allies have worked to exclude foreign-owned potential security risks such as China’s Huawei from critical infrastructure, threats can emerge via unwitting domestic sources. Private businesses are not equipped to carry out vetting similar to government departments.  Government agencies and private companies alike should therefore take a leaf out of the security services’ book — operating under the constant assumption that they have been compromised, and continually scanning for intruders. The faster breaches can be located and closed, the more likely critical data can be protected. Cybersecurity has to be treated as a priority right up to the most senior levels, and financial and human resources made available to ensure companies and public bodies have the best defences. To strengthen government security, president-elect Joe Biden would be well-advised to reinstate the White House “cyber tsar” role the Trump team axed in 2018. A similarly able successor is needed to Chris Krebs, recently fired by Donald Trump as director of the well-regarded Cybersecurity and Infrastructure Security Agency. Though Mr Trump has threatened to veto it, the National Defense Authorization Act significantly beefs up CISA’s largely advisory authority, giving it power to take over running agencies’ cyber security programmes. A return to multilateralism would also help. Mr Biden should liaise with allies on collective cyber security, and joint sanctions on states engaging in abuses. A “digital Geneva Convention” could update the norms of conflict for the cyber age; Russian president Vladimir Putin — whose Kremlin has denied being behind hacks of the US — has proposed a mutual cyber truce. But the kind of controls once adopted, say, on nuclear arms are tricky to translate into the realm of cyber space.

      • Share:
      Admin bar avatar
      VLT

      Previous post

      Cybersecurity attack: 5 things you can do right now to protect yourself
      December 21, 2020

      Next post

      AI And Its Potential For Cybersecurity
      December 21, 2020

      You may also like

      3e1576bbcb6e7cae1602f176a2bb632a_original
      The Omicron Phishing Scam has already been discovered in the United Kingdom.
      7 December, 2021
      1
      Cybersecurity attack: 5 things you can do right now to protect yourself
      21 December, 2020

      Leave A Reply Cancel reply

      Your email address will not be published. Required fields are marked *

      Search

      Latest Course

      A+ Practice Exam

      A+ Practice Exam

      $99.00 $25.00
      CEH Practice Exams

      CEH Practice Exams

      $99.00
      Hand Geometry Recording

      Hand Geometry Recording

      $295.00

      Latest Posts

      The Omicron Phishing Scam has already been discovered in the United Kingdom.
      07Dec2021
      NSO Group infiltration software allegedly infiltrated the iPhones of American officials.
      07Dec2021
      AI And Its Potential For Cybersecurity
      21Dec2020

      logo-eduma-the-best-lms-wordpress-theme

      1-630-684-0355

      info@virtuallivetraining.com

      •  
      •  
      •  
      •  

      Company

      • About Us
      • Locations
      • Contact us
      • Become an Instructor

      Links

      • Course Registration
      • Courses
      • FAQs

      Support

      • Technical support
      • Corporate Group Training
      • Request a call back
      • Discount/Free Course

      Recommend

      • virtuallivetraining
      • Postgresqlcert
      • Certcop
      • Exam IT
      • Saifirst

      Copyright@ 2005-2022 virtuallivetraining [A CertFirst Company]

      • Privacy
      • Terms
      • Sitemap
      • Purchase

      Login with your site account

      Lost your password?

      Not a member yet? Register now

      Register a new account

      Are you a member? Login now