Depend on us to get your organisation to the next level.
BCN have a heritage of delivering outcomes through our cloud-first services and currently support over 1200 customers across specialist sectors.
Your tech partner
Posted 4th December 2023
As 2023 closes, we’re seeing a significant increase in cyber-attacks, the attacks are now becoming much more frequent, sophisticated and automated – meaning businesses can often only find out they’ve been attacked when it’s too late.
According to the Cyber Security Breaches Survey 2022, 39% of UK businesses identified a cyber-attack in the last 12 months. However, this figure remained consistent with previous years of the survey, suggesting that enhanced cyber security leads to higher identification of attacks.
Only recently we have seen reports of a UK-based provider of cloud and managed IT services hacked. With the hack reportedly affecting around 80-100 businesses, having huge impacts on operations for those companies.
Another recent example is a UK logistics firm who was the victim of a ransomware event. The event crippled all business functions and ultimately lead to the insolvency of the business and 730 redundancies.
As we are all too familiar with, cyber criminals will target businesses with insecurities or the least path of resistance, so it is integral you are aware of your businesses security posture and are working towards improving it.
Cyber criminals constantly scan your estate and establish any weak points, as well as scanning the dark web where credentials and other nefarious services are sold to hackers. They’ll then look at gaining access to your systems and use other weak points discovered to laterally move upward gaining more access footholds in your systems. Here’s just three of common vulnerabilities and issues cyber-criminals use;
One route cyber criminals use is End of Life (EoL) technology. We’ve seen an increased prominence in EoL attacks due to the lack of security updates and patches, often making it an easy target for cyber criminals to exploit and compromise. It is now too important to ignore that you ensure you are aware of any EoL technology and are working towards pivoting to an alternative.
Another route is Zero-Day issues, this is where there is not yet public vulnerability in a system, this will then need to be patched to deter bad actors, however, this would require having a patch ready to implement. This is where it’s integral to be aware of your posture, or working with a partner that is security aware so they can put the relevant advisories in place to fix or mitigate the vulnerability where possible.
We’re also seeing an increase in firewall vulnerabilities. This is as it gives cyber criminals a direct entry point into a business’s network. Then once they have entry, they have access to a business’s system and data, often leading to a ransom demand to hand access back.
In terms of companies that cyber criminals target, it really is any company, any size. That’s why it’s important to do all you can to protect your business and your employees.
We’re seeing that private cloud and managed service providers are big targets for cyber-attacks due to the potential of data, networks and resource they can tap into, should they successfully gain access. This enables cyber criminals to scale attacks across multiple businesses, disrupting services and compromising numerous systems through one breach.
At BCN, we aim to have 100% of our customers at a recommended level of cyber security posture by 2024 and ensuring that they are at a recommended cyber baseline. To read more about our Cyber Security Pledge, click here.
We also have a baseline that we expect all our customers to be, this is to ensure they are well positioned should they be targeted. This is a level that ensures they have requirements in place to protect themselves should they be targeted by a cyber-attack.
We have a whole host of cyber security products and services available that will help you protect your business from the rising threat of cyber-attacks with an expert team on hand to help: