{"id":9679,"date":"2020-03-27T23:28:14","date_gmt":"2020-03-28T06:28:14","guid":{"rendered":"https:\/\/www.acalvio.com\/?p=9679"},"modified":"2020-03-27T23:28:14","modified_gmt":"2020-03-28T06:28:14","slug":"covid-19-an-ounce-of-prevention-is-worth-a-pound-of-cure","status":"publish","type":"post","link":"https:\/\/acalvio.p2staging.us\/index.php\/2020\/03\/27\/covid-19-an-ounce-of-prevention-is-worth-a-pound-of-cure\/","title":{"rendered":"COVID-19: An Ounce of Prevention is Worth a Pound of Cure"},"content":{"rendered":"<p>[et_pb_section bb_built=&#8221;1&#8243; next_background_color=&#8221;#000000&#8243;][et_pb_row][et_pb_column type=&#8221;4_4&#8243;][et_pb_text admin_label=&#8221;What to do to get in front of todayb\u0000\u0019s Corona-related threats &#8221; _builder_version=&#8221;3.7.1&#8243;]<\/p>\n<h2>What to do to get in front of todayb\u0000\u0019s Corona-related threats <\/h2>\n<p><img loading=\"lazy\" width=\"434\" height=\"294\" src=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2020\/03\/COVID19_Blog_2.jpg\" alt=\"\" class=\"alignnone size-full wp-image-9693\" srcset=\"https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2020\/03\/COVID19_Blog_2.jpg 434w, https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2020\/03\/COVID19_Blog_2-300x203.jpg 300w\" sizes=\"(max-width: 434px) 100vw, 434px\" \/><br \/>\n[\/et_pb_text][et_pb_text admin_label=&#8221;Perhaps the hackerb\u0000\u0019s motto should be&#8221; _builder_version=&#8221;3.7.1&#8243;]<br \/>\nPerhaps the hackerb\u0000\u0019s motto should be b\u0000\u001cDonb\u0000\u0019t Let a Good Crisis Go to Wasteb\u0000\u001d.  That seems like a good choice given the rash of campaigns scams now in the wild that leverage the Coronavirus.  Fear and the desire for information create a fertile environment in which to use social engineering to mount a successful attack.  The methods seen in the last few weeks include the following:<\/p>\n<ul>\n<li><a href=\"https:\/\/blog.reasonsecurity.com\/2020\/03\/09\/covid-19-info-stealer-the-map-of-threats-threat-analysis-report\/\" target=\"_blank\" rel=\"noopener\">Fake COVID-19 Information websites that host malware<\/a><\/li>\n<li>Brand hijacking and abuse <\/li>\n<li><a href=\"https:\/\/www.scmagazine.com\/home\/security-news\/news-archive\/coronavirus\/threat-actors-play-on-peoples-desire-to-help-cure-coronavirus\/\" target=\"_blank\" rel=\"noopener\">Brand hijacking and abuse<\/a><\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text admin_label=&#8221;For enterprise IT Security professionals&#8221; _builder_version=&#8221;3.7.1&#8243;]<\/p>\n<h2>Risk Management and Prioritization<\/h2>\n<p>For enterprise IT Security professionals, the questions (as always) boil down to risk management and prioritization.   What steps should (not b\u0000\u001ccouldb\u0000\u001d) be taken to mitigate the threat most effectively? The answer depends on what industry you are in.  If youb\u0000\u0019re in healthcare and pharma, you must be very vigilant with respect to brand protection, and to specific attacks (usually email-borne) that take advantage of the information needs of your staff.  Large research institution also fall into this category, as does state and local government.<br \/>\n[\/et_pb_text][et_pb_text admin_label=&#8221;On the other hand&#8221; _builder_version=&#8221;3.7.1&#8243;]<\/p>\n<p>On the other hand, a few other responses are basically no brainers for everyone:<\/p>\n<ul>\n<li><strong>Training:<\/strong> Now is a perfect time to give everyone a refresher on email and web policies and expectations of employees for avoiding attacks.  If youb\u0000\u0019re not thrilled with the vendor you use, why not scan the market and see which alternatives have already updated their material to discuss Coronavirus?<\/li>\n<li><strong>E-mail Defenses:<\/strong> Phishing and spear-phishing using the COVID-19 content as the lure are rampant. Evaluate if your solution is effectively blocking them, and if your employees are doing their part to alert the IR\/SOC team to scams that they find in their inbox.<\/li>\n<li><strong>Malware Detection:<\/strong> In an enterprise environment, the biggest risk is that a campaign that leverages the Coronavirus situation will plant malware designed to persist, and to execute later stages of the kill chain opportunistically. Detecting such malware is all the more important given these new insertion strategies based on the virus situation.\n<p>Obviously Deception solutions play a critical role as a malware detection strategy.   The paradigm of b\u0000\u001cassume they will get inb\u0000\u001d has never been more relevant.   Deception solutions such as Acalviob\u0000\u0019s provide malware detection capability both on-prem and in the cloud, without agent software or in-line appliances.  That means that if you decide you need to ramp up your malware defenses to get in front of these new attacks, you can scale up quickly and at very low risk to application availability.  Another further advantage is that you donb\u0000\u0019t have make any changes in order to deal with the crisis at hand.\n<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text admin_label=&#8221;In summary, b\u0000\u001cThe more things change, the more they stay the same&#8221; _builder_version=&#8221;3.7.1&#8243;]<\/p>\n<h2>In Summary<\/h2>\n<p>In summary, <strong>b\u0000\u001cThe more things change, the more they stay the sameb\u0000\u001d<\/strong>.  Keep those internal defenses vigilant and operationally efficient, freeing up time and resources to maintain flexible response.<br \/>\n[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section bb_built=&#8221;1&#8243; fullwidth=&#8221;off&#8221; specialty=&#8221;off&#8221; prev_background_color=&#8221;#000000&#8243;][et_pb_row][et_pb_column type=&#8221;4_4&#8243;][et_pb_code _builder_version=&#8221;3.7.1&#8243;]&lt;p style=&quot;margin-top:36px;&quot;&gt;&lt;\/p&gt;&lt;table class=&quot;table&quot; style=&quot;border: 0px solid #ffffff;&quot;&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;tbody&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;tr&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;td style=&quot;padding:0px;margin:0px;&quot;&gt;&lt;img style=&quot;width: 100%;&quot; src=&quot;https:\/\/acalvio.p2staging.us\/wp-content\/uploads\/2019\/07\/awards.jpg&quot; width=&quot;800px&quot;&gt;&lt;\/td&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;\/tr&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;\/tbody&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;&lt;\/table&gt;&lt;!&#8211; [et_pb_line_break_holder] &#8211;&gt;[\/et_pb_code][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>What to do to get in front of todayb\u0000\u0019s Corona-related threats Perhaps the hackerb\u0000\u0019s motto should be b\u0000\u001cDonb\u0000\u0019t Let a Good Crisis Go to Wasteb\u0000\u001d. <\/p>\n","protected":false},"author":2,"featured_media":10108,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[3],"tags":[],"_links":{"self":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts\/9679"}],"collection":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/comments?post=9679"}],"version-history":[{"count":0,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/posts\/9679\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/media\/10108"}],"wp:attachment":[{"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/media?parent=9679"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/categories?post=9679"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/acalvio.p2staging.us\/index.php\/wp-json\/wp\/v2\/tags?post=9679"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}