HOME | ABOUT US
HOME | ABOUT US
Before understanding the countermeasures, let’s understand the sequence of events pertaining to the Cyber Attacks on All India Institute of Medical Sciences (AIIMS), a premier public medical research institution and a hospital based in New Delhi.
The cyber-attack on AIIMS was reported on 23rd November 2022, this lasted for more than 15 days & only by 6th December 2022,that the hospital was restored to normal, AIIMS confirmed that the trial runs of the e-Hospital server were successful, and most of the lost data had been retrieved. As a result of the incident, several patient care services, including registration, admission, billing, and discharge, appointment systems were inaccessible. Even the ‘e-Hospital,’ application system of the National Informatics Centre (NIC) was impacted by this incident & the hospital’s operations had to run manually to meet the immediate demands.
This ransomware attack could have corrupted huge data and medical records, including Personally Identifiable Information (PII) of patients and healthcare workers, and administrative records kept on blood donors, ambulances, vaccination, caregivers, employee login credentials, sensitive data, and medical records of VIPs. This kind of data is usually sold on the dark web by hackers.
The extent of the attack was so intense that multiple agencies like Delhi Police, the Centre’s Computer Emergency Response Team (CERT), the Ministry of Home Affairs, the Forensic Science Laboratory (FSL), and even the National Investigation Agency (NIA) sprang into action & the findings as reported by various media sources are as below
More could be revealed in times to come, but organizations must take the following steps to proactively prepare against cyber-attacks:
By taking these steps, organizations can proactively prepare against cyber-attacks and reduce the risk of a successful attack. Additionally, in addition to the general cyber security measures, organizations can also implement specific network and data security measures to protect their IT infrastructure and sensitive data. Some of these measures include:
By implementing these network and data security measures, organizations can further strengthen their defence against cyber-attacks and protect sensitive data. It’s important to regularly review and update these measures to ensure that they remain effective in the face of changing cyber security threats.
HOME | ABOUT US
Vulnerability Assessment and Penetration Testing (VAPT) is a process of identifying, evaluating, and prioritizing the vulnerabilities in a computer system, network, or web application. Vulnerability assessment is performed to discover and analyze potential security weaknesses in a system, while penetration testing involves simulating an attack on the system to evaluate the security measures in place and assess the overall resilience against real-world threats.
The purpose of VAPT is to identify potential risks and security weaknesses, prioritize them based on their level of criticality, and provide recommendations for remediation. It helps organizations to ensure that their systems and applications are secure and protected against potential threats & the process in general typically involves the following steps:
A few tools (Open Source and commercial) are used in the above process, typically in combination, as shown below, and new tools are being developed and updated. regularly to meet the evolving needs of the cybersecurity community.
And if you are wondering about the frequency of these VAPT audits it actually depends on several factors, including the size and complexity of the system, the risk profile of the organization, and the evolving threat landscape. In general, regular VAPT helps organizations in staying ahead of evolving cyber threats leading to a strong security posture for the organization.
While these VAPT audits are valuable tools for identifying security risks, they are not perfect and can have certain flaws. Some of the most common flaws with VAPT audits include:
Despite these flaws, VAPT audits remain a valuable tool for identifying and mitigating security risks and are an important component of an overall security program. And if you are convinced that VAPT is no silver bullet for your overall security program, there are several alternatives to Vulnerability Assessment and Penetration Testing (VAPT) that organizations can consider as part of their overall security program:
These alternatives can complement VAPT and provide a more comprehensive understanding of the organization’s security posture. The most appropriate option (or) alternative to choose will depend on the organization’s specific requirements, size, and complexity of its systems and applications.
HOME | ABOUT US
A Network Management System (NMS):- is a software application or set of tools used to manage and monitor the performance, availability, and overall health of a computer network. These tools work by collecting, processing, and analyzing network data in real time. The general steps involved in the process are as follows:
There are many commercial and open-source versions of Network Management Systems (NMS) tools, each with its own set of features and functions and available for on-premises or cloud deployment. Ultimately, the best NMS tool for a particular organization will depend on the specific needs and requirements of that organization. NMS can play a critical role in helping organizations to counter cyber security threats as well as ensure compliance with regulations and standards.
Some ways in which NMS can help include:
What happens when your NMS tool itself gets hackedhe consequences can be severe and far-reaching, depending on the extent and impact of the hack. Some possible outcomes include:
In order to prevent these outcomes, it is important to implement appropriate security measures, such as next generation firewalls, access controls, encryption, and regular software updates, to help protect the NMS tool and the network.
Additionally, it is recommended to regularly back up and store network data in a secure location, to ensure that it can be recovered in the event of a security breach.
Want to know how our solutions can help your business?