Infrastructure News: October 2021 - January 2022

Page 36

October 2021 - January 2022

Remote working putting organisations at risk of ransomware The Government is urging Kiwi organisations to tighten up the way they enable remote working for staff to avoid the growing risk of cyber attacks

SECURITY

G

overnment cyber security agency, CERT NZ says the majority of ransomware attacks occur through poorly configured remote access systems, which businesses use to allow staff to access systems from outside the office. While there are a range of these in use, one of the most commonly used is Remote Desktop Protocol (RDP), with over 2,500 identified in New Zealand. RDP has a number of weaknesses, which means when it is used over the internet it can be exploited by attackers, and is a leading contributor to the ransomware incidents that CERT NZ receives. “It’s essential that organisations urgently review their remote access systems, and make sure these systems are as secure as they can be. You may need to talk to your IT team or service provider about how to do this,” says Michael Shearer, Principal Advisor – Threats and Vulnerabilities at CERT NZ. CERT NZ is partnering with internet service providers to contact organisations that use internet-exposed RDP to provide advice on how they can make remote working more secure. “Regardless of what technology organisations use to enable remote working, it’s important to keep your sys36 safetynews.co.nz

tem up to date and enable two-factor authentication for logins.” As RDP is often exploited by attackers to gain access to an organisation’s network, CERT NZ recommends organisations consider other options to enable remote working, such as a virtual private network (VPN). Good VPN solutions support two-factor authentication, which adds an extra layer of security, and are designed to be used over the internet. More broadly, CERT NZ is concerned about the growing impact ransomware attacks are having. “Recent events have brought to light the devastating effects a ransomware attack can have on an

organisation. There’s been an increasing trend of these types of attacks globally over the past 18 months, and they’re only going to continue.” CERT NZ has seen an increase in ransomware reports in the second quarter of 2021 (April to June), compared to the first quarter of the year. Reaching a total of 30 reports, this is the high-

est number of ransomware reports made to CERT NZ within one quarter. “These figures do not paint a complete picture of the extent of ransom attacks in New Zealand. These numbers only reflect what has been reported to us, however conversations with our industry partners indicate there are a lot more attacks happening.”

If your organisation has been affected by a ransomware attack, report it: cert.govt.nz/report or 0800 CERT NZ For more information about securing an internetexposed RDP, refer to the CERT NZ website: cert.govt.nz/business/guides/securing-your-internetexposed-rdp-server linkedin.com/company/certnz


Turn static files into dynamic content formats.

Create a flipbook

Articles inside

Wrong name, right product why build-to-rent is struggling

4min
pages 82-84

China builds apartment block in a day

1min
page 79

Kiwi Property kick starts build-to-rent in New Zealand

2min
pages 80-81

New Zealand's housing crisis a breach of human rights

9min
pages 72-75

3D-printed housing

6min
pages 76-78

Tax changes threaten rental market

4min
pages 70-71

Priming your business for post-lockdown recovery

4min
pages 48-49

Site Safe Awards finalists announced

1min
page 65

Where is housing most affordable in New Zealand?

6min
pages 68-69

Facilities management with personal service

1min
pages 66-67

Homebrew 1080 poison hospitalises worker

2min
page 56

Surviving as a modern business

4min
pages 52-53

Is standardised training the way forward?

2min
page 57

Chemical safety relies on meaningful cooperation

3min
pages 54-55

Tips and myths around dogs

2min
pages 46-47

Toxic fumigant banned

3min
pages 34-35

Bastion NZ launch Industrial glove range

1min
pages 36-37

Industry leader in soft fall protection on construction sites

2min
page 41

Safety app a crucial element in building site safety

2min
page 45

Radio technology keeps workers safe and compliant

1min
page 44

Remote working putting organisations at risk

2min
page 38

Unlearning misguided muscle training

6min
pages 42-43

Critical infrastructure vulnerable to hackers

5min
pages 39-40

Has your fuel gone off?

5min
pages 32-33

The fight for common sense and a reasoned debate

3min
pages 26-29

The New Zealand Upgrade Programme cost blowout

10min
pages 22-25

Immigration policies hindering construction sector

6min
pages 14-16

In search of the perfect surface - contractor invents new earth compactor

2min
pages 12-13

Transmission Gully - what went wrong?

11min
pages 18-21

Multi-purpose, safer, faster telehandlers increase productivity

3min
pages 8-9

Australian construction industry cries out for reform

4min
pages 10-11

AC Filter - an engineered solution protecting worker health

3min
pages 5-7

Latest lockdown puts ongoing strain on construction

6min
pages 3-4

How scalable data centres help Mainfreight’s vision

2min
page 17
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.