Business Daily Media

Men's Weekly

.

OAIC Notifiable Data Breaches report

  • Written by Gary Jackson, VP for Asia Pacific, Tenable


The latest Notifiable Data Breaches Report from the Office of the Australian Information Commissioner (OAIC) reveals a glaring truth – cyberattackers are finding the holes in our current defences and profiting from them. The report shows that 446 data breaches were notified in the period between January - June 2021, a 17% decrease from notifications in the second half of 2020. 

While notifications may be down, it’s essential that organisations not let their guard down as ransomware incidents have increased by 24% - a sign that cybercriminals are shifting their tactics. 

There are many contributing factors to this trend, such as the steady rise in cryptocurrency, a sophisticated ransomware value-chain network and a proven business model with double extortion. However, one of the most important drivers of ransomware today is the vast number of software vulnerabilities and misconfigurations threat actors are able to feast on to gain a foothold inside organisations and propagate their attacks. 

This view was echoed in a joint advisory issued on 29 July 2021 by four government agencies, the Australian Cyber Security Centre (ACSC), US' Cybersecurity and Infrastructure Security Agency (CISA), United Kingdom’s National Cyber Security Centre (NCSC) and US' Federal Bureau of Investigation FBI). The advisory alerted organisations about the top 30 exploited vulnerabilities that continue to be routinely exploited despite having patches available.  It’s a cost-effective measure that provides the most bang for the buck; cybercriminals don’t have to spend the capital needed to acquire zero-day vulnerabilities when there are so many unpatched systems to take advantage of. Bad actors of all skill levels and motivations will continue targeting known vulnerabilities in popular software so long as they remain unpatched and vulnerable.

With recent ransomware attacks still on our collective minds, the figures in the report are a much-needed wake-up call to AU organisations to proactively strengthen their defences before it becomes a crisis. If you think about it, ransomware is the monetisation of poor cyber hygiene. It may not be sexy or exciting, but it works.

Organisations must have a robust patch management process in place to ensure they are addressing unpatched vulnerabilities, which are proving to be a valuable tool for cybercriminals. In tandem, the focus must be placed on restricting access to critical systems and key internal data by addressing misconfigurations in the Active Directory to disrupt attack paths. Spearphishing emails or malicious emails with attachments are avenues for ransomware to propagate. Therefore, ensuring that email security gateway and endpoint security are up-to-date along with employee security awareness training could potentially thwart the next ransomware attack.

By and large, the MO for most cybercriminals — whether they be rogue actors or state-sponsored — is the path of least resistance: they’re getting in through the low hanging fruit. Getting the basics right is imperative because the criminals aren’t going anywhere. Let’s not make it so easy for cybercriminals by not doing the basics. Every minute wasted is a minute gained by cyberattackers. 

From Check-in to Touchdown: How AI and smarter systems are transforming the travel industry

Richard Valente, VP of Customer Experience Strategy at TP in Australia, explores how IT-BPM outsourcing is revolutionising the travel sector throu...

Online Christmas shoppers fund climate and biodiversity projects via HealthPost's Click Sphere for Good initiative

Online shoppers with HealthPost’s Flora & Fauna have made 11,000 contributions towards climate and biodiversity projects when ordering parcel ...

US landmark settlement protects SMEs, highlighting flaws in the RBA's proposed blanket card surcharging ban for Australia

Aussie SMEs warn RBA not to ignore global trends, with the current sledgehammer approach threatening business viability and increasing inflation ...

Thryv Australia named Employer of Choice for third consecutive year at Australian Business Awards

Thryv® (NASDAQ: THRY), Australia’s provider of the leading small business marketing and sales software platform, has been awarded the Employer of ...

RogersDigital.com Announces the Launch of TheBulletin.au, a Destination for Business, Policy and Financial Insight

RogersDigital.com has announced the launch of TheBulletin.au, a new national digital publication designed to deliver sharp, data-driven reporting ...

Controlling business spend is helping finance leaders to forecast with confidence

Forecasting has always been central to financial planning; however, traditional methods based on historical trends are no longer enough. Economic ...

hacklink hack forum hacklink film izle hacklink หวยออนไลน์betsmovejojobethttps://vozolturkiyedistributoru.com/Pusulabet Girişสล็อตเว็บตรงgamdom girişpadişahbetMostbetenjoybetkavbetcarros usadospin upMostbetdizipalholiganbet girişnn888trendbetultrabetjojobetDeneme Bonusu Veren Sitelerpusulabet girişjojobet girişpradabetBets10jojobetjojobetjojobetholiganbet色情casibomnakitbahisholiganbetcasibom girişcasibom girişcasibom girişJojobet Girişyakabet1xbet girişjojobetgrandpashabet girişzbahis güncel girişgobahisbetofficeenjoybettrgoalsholiganbetgiftcardmall/mygiftcasibomholiganbetbets10kingbettingmamibetmeritkingcasibom girişmadridbet girişsekabetslot spacemancasibomcasino sitelericasibomJojobetmadridbetkingroyalPorno İzlecasibom girişkolaybetmaç izlebetoviscasibomcasibom girişmasterbettingmasterbettingyakabetartemisbetbetpuanmeritkingartemisbet girişdinamobetprizmabetvdcasinoSekabet girişmarsbahis girişbetkolikultrabetbetsmovemeritking girişbetsmovemeritkinggalabetyakabetyakabetyakabetjojobetbetnanobetpuanSahabetmr pachoaertyerCasibomcolor pickerkonya escortenjoybetultrabet girişholiganbet girişholiganbet girişmavibetmavibetmavibetholiganbetcratosslot girişคลิปหลุดไทยCasibomCasibomholiganbetdeneme bonusu veren siteleronwin girişonwindiyarbakır escortimajbeteskişehir escortjojobet girişbahsegeltimebetjojobetjojobetholiganbetbahiscasinojojobetbets10matbetcasibomRoyal Reelsroyal reelskolaybetKayseri Escortjojobet girişjojobetsweet bonanzaNişantaşı EscortbetvolebetvolebettiltStreameastcasibomKalebetpadişahbetfixbetaviator gameÜsküdar Evden Eve Nakliyatsetrabettimebettimebettimebetbahisoistanbul escort telegramcasibombetparkpantheraproject.netcasibombetsmovejojobet girişcasibombetnanocasibomstreameast한국야동meritkingสล็อตholiganbet girişholiganbet girişpornopadişahbetBetigmabetparkBetigmaBetlora girişgiftcardmall/mygiftgaziantep escorteb7png pokiesbest online casino australiabest online pokies australiareal money pokies online australiabcgame96 casinocrown155 hk casinohb88kh casinopadişahbetjojobetmarsbahisgalabetjojobet girişjojobetcasibombets10bets10betasusjojobetolimposcasinobetbabaholiganbetholiganbetolabahis girişholiganbetdeneme bonusu veren siteler rehneriblooketasyabahis girişpinbahis girişdumanbet girişxslotStreameastmostbetjojobetdaftar situs judi slot gacor hb88 indonesiaJojobet 1113mostbetmostbetmostbetgalabetkingroyalbahis siteleri 2025matadorbetcasinowon girişjojobetjojobetgiftcardmall/mygift check balance visajojobetjojobetซื้อหวยออนไลน์grandpashabetcasibomcasibomsadfasdfsdfasdasdasdasdkonya escortjojobetroyalbetsweet bonanzapin up uzbekistanSlot Heart Casinomamibet logincasinomedklarna.sebetworld96 online casino cambodiaholiganbetwww.giftcardmall.com/mygiftwww.giftcardmall.com/mygiftCasibom Giriştm menards loginbetasuskingbettingsekabet girişe wallet casino australiajojobetplay aristocrat pokies onlinesweet bonanzaholiganbetmaltcasino girişcanlı maç izleklasbahisSahabetcasibomcasibomcratosroyalbetci girişjojobet girişcasibomcasibomdeneme bonusu veren sitelerPinup AZjokerbetjojobetvdcasinomostbetcasibomsitus slot gacormatbetJojobetmigliori casino non aamsasyabahis girişgoogle hit botujojobetCasibomdizipalrealbahisrealbahisperabetperabetbetwoonmatbet