MFA, commonly known as Multi-Factor Authentication is an enormous boost to online security. It is mainly deployed as (2FA) 2-factor authentication or (3FA) 3-factor authentication models. An evident common tactic cybercriminals use is to send a phishing email and then direct you to a fake login web page to “capture” your username/password. Once they get […]
Except for Zero Day attacks, one of the best ways to keep abreast of current threats and lessen the probability of cyber-attacks is to conduct regular vulnerability assessment for your infrastructure – this helps to identify and evaluate the security posture of your assets before the cyber-actors act. Security posture assessment can either be carried […]
The practice of installing and enforcing restriction as to who has access to our Machines, Data, Networks and Buildings and the likes is very crucial. Access monitoring and control helps Security Administrators to account for what occurs in their space of jurisdiction and to give account of activity logs in case there is security breaches […]
IOT stands for Internet Of Things. It is composed of electronic devices with IP (Internet Protocol) capabilities [e.g IPCameras, smart Televisions, Smart Fridges, Smart Microwave, smart Gates/Doors, smart Air-conditioners and the likes] these network devices are searchable over the internet when connected with the help of IOT devices websites. These devices have been transformed digitally […]
With Social Engineering ( SE ) skills, unsuspecting criminals can pose as familiar individuals with the information they already know about you and trick you to allow them in. Most attacks these days use social engineering as their entry point. For example, instead of trying to find a software vulnerability, a social engineer might call […]
Social Engineering is the art of exploiting human psychology, rather than technical hacking techniques, to gain access to buildings, systems or data. Social Engineering exploitation therefore, is digital equivalent of locking your armored doors but leaving the keys on the door or willfully giving it out to an intruder through carelessness or ignorance. Intruders need […]
Some of tips to observe while using emails include but not limited to the following: Always double-check exactly who you are corresponding with. Use ‘BCC’ (Blind Carbon Copy) when sending emails to large groups or mailing lists. Do not open emails from someone you do not know or trust. Protect your email account from malware […]
Every now and then, patches and updates are being released by system developers to guard against cyber threat actors from exploiting the weakness or loophole identified in machine software. The Cybersecurity and Infrastructure Security Agency (CISA) is aware of publicly available and functional proof-of-concept (PoC) code that exploits CVE-2020-0796 in unpatched systems. Malicious cyber actors […]
Cybersecurity risk is the probability of exposure or loss resulting from a cyber attack or data breach on your organization. Organizations are becoming more vulnerable to cyber threats due to the increasing reliance on computers, networks, programs, social media and data globally. This risk trend is not expected to decrease in the near future. On […]
COVID-19 Exploited by Malicious Cyber Actors This alert provides information on exploitation by cybercriminal and advanced persistent threat (APT) groups of the current coronavirus disease 2019 (COVID-19) global pandemic. APT groups and cybercriminals are targeting individuals, small and medium enterprises, and large organizations with COVID-19-related scams and phishing emails. This alert provides an overview of […]