Unyango okanye uthintelo: ungamelana njani nobhubhane wohlaselo lwe-cyber enegama le-COVID

Usulelo oluyingozi oluye lwatyhutyha kuwo onke amazwe luyekile ukuba yinxalenye yeendaba eziphambili kumajelo eendaba. Nangona kunjalo, ubunyani besoyikiso buyaqhubeka ukutsala umdla wabantu, abathi abaphuli-mthetho basebenzise ngempumelelo. NgokukaTrend Micro, isihloko se-coronavirus kumaphulo e-cyber sisakhokela ngomda obanzi. Kule post, siza kuthetha ngemeko yangoku kwaye sabelane ngombono wethu ngokuthintela izoyikiso ze-cyber zangoku.

Ezinye iinkcukacha


Unyango okanye uthintelo: ungamelana njani nobhubhane wohlaselo lwe-cyber enegama le-COVID
Imephu yeevektha zokusasaza ezisetyenziswa ngamaphulo anegama le-COVID-19. Umthombo: Trend Micro

Esona sixhobo siphambili se-cybercriminals siyaqhubeka sithumela i-spam, kwaye nangona izilumkiso ezivela kwii-arhente zikarhulumente, abemi baqhubeka bevula izinamathiselo kwaye bacofe amakhonkco kwii-imeyile zobuqhetseba, ezinegalelo ekusasazeni ngakumbi kwesongelo. Uloyiko lokufumana usulelo oluyingozi lukhokelela kwinto yokuba, ukongeza kubhubhani we-COVID-19, kufuneka sijongane ne-cyberpandemic - usapho lonke lwezoyikiso ze-cyber "coronavirus".

Ukusasazwa kwabasebenzisi abalandele amakhonkco akhohlakeleyo kubonakala kusengqiqweni:

Unyango okanye uthintelo: ungamelana njani nobhubhane wohlaselo lwe-cyber enegama le-COVID
Ukusasazwa lilizwe labasebenzisi abavule ikhonkco eliyingozi kwi-imeyile ngoJanuwari-Meyi 2020. Umthombo: Trend Micro

Kwindawo yokuqala ngomda obanzi ngabasebenzisi abavela eUnited States, apho ngexesha lokubhala le post kwakukho phantse i-5 yezigidi zeemeko. I-Russia, ekwalelinye lamazwe akhokelayo ngokwemiqathango ye-COVID-19, yayikwakwi-XNUMX ephezulu ngokwenani labemi abakhohlisayo.

Ubhubhane wohlaselo lweCyber


Ezona zihloko zisetyenziswa ngabaphuli mthetho kwii-imeyile zobuqhophololo kukulibaziseka kokuhanjiswa ngenxa yobhubhani kunye nezaziso ezinxulumene ne-coronavirus ezivela kwiSebe lezeMpilo okanye kuMbutho wezeMpilo weHlabathi.

Unyango okanye uthintelo: ungamelana njani nobhubhane wohlaselo lwe-cyber enegama le-COVID
Ezona zihloko zimbini zidumileyo kwii-imeyile zobuqhophololo. Umthombo: Trend Micro

Ngokuqhelekileyo, i-Emotet, i-ransomware ye-ransomware evele ngo-2014, isetyenziswa "njengomthwalo wokuhlawula" kwiileta ezinjalo. Ukwenziwa ngokutsha kwe-Covid kuncede abaqhubi be-malware ukuba banyuse ingeniso yamaphulo abo.

Oku kulandelayo kunokuphawulwa kumkhosi we-Covid scammers:

  • iiwebhusayithi zikarhulumente zobuxoki ukuqokelela idatha yekhadi lebhanki kunye nolwazi lomntu,
  • iindawo zokwazisa ngokusasazeka kwe-COVID-19,
  • iiphothali zomgunyathi zoMbutho wezeMpilo weHlabathi kunye namaZiko oLawulo lweZifo,
  • iintlola ezihambahambayo kunye nezithinteli zizenza iinkqubo eziluncedo ukwazisa malunga nosulelo.

Ukuthintela uhlaselo


Kwimeko yehlabathi, isicwangciso sokujongana ne-cyberpandemic siyafana nesicwangciso esisetyenziselwa ukulwa nosulelo oluqhelekileyo:

  • ukubhaqwa,
  • impendulo,
  • uthintelo,
  • ukuqikelela.

Kucacile ukuba ingxaki inokoyiswa kuphela ngokuphumeza uluhlu lwamanyathelo ajoliswe kwixesha elide. Ukuthintela kufuneka kube sisiseko soluhlu lwamanyathelo.

Kanye njengokukhusela kwi-COVID-19, kuyacetyiswa ukugcina umgama, ukuhlamba izandla, ukuthenga iintsholongwane kunye nokunxiba iimaski, iinkqubo zokubeka iliso kuhlaselo lobuqhetseba, kunye nezixhobo zokuthintela ukungena kunye nokulawula, kunokunceda ukuphelisa ukubakho kohlaselo oluyimpumelelo lwe-cyber. .

Ingxaki ngezixhobo ezinjalo linani elikhulu lezinto ezintle ezingeyonyani, ezifuna izibonelelo ezinkulu ukuba ziqhubeke. Inani lezaziso malunga neziganeko ezilungileyo zobuxoki zinokuncitshiswa kakhulu ngokusebenzisa iindlela zokhuseleko ezisisiseko - ii-antivirus eziqhelekileyo, izixhobo zokulawula izicelo, kunye novavanyo lwesithunzi sesayithi. Kule meko, isebe lezokhuseleko liya kukwazi ukunikela ingqalelo kwizisongelo ezintsha, ekubeni ukuhlaselwa okwaziwayo kuya kuvalwa ngokuzenzekelayo. Le ndlela ikuvumela ukuba usasaze ngokulinganayo umthwalo kwaye ugcine ibhalansi yokusebenza kakuhle kunye nokhuseleko.

Ukulandela umthombo wosulelo kubalulekile ngexesha lobhubhane. Ngokufanayo, ukuchonga indawo yokuqala yokuphunyezwa kwesongelo ngexesha lokuhlaselwa kwe-cyber kusivumela ukuba siqinisekise ngokucwangcisiweyo ukukhuselwa kwe-perimeter yenkampani. Ukuqinisekisa ukhuseleko kuzo zonke iindawo zokungena kwiinkqubo ze-IT, i-EDR (i-Endpoint Detection and Response) izixhobo zeklasi zisetyenziswa. Ngokurekhoda yonke into eyenzekayo ekupheleni kwenethiwekhi, zikuvumela ukuba ubuyisele ulandelelwano lwalo naluphi na uhlaselo kwaye ufumanise ukuba yeyiphi i-node eyayisetyenziswa ngabachwephesha be-cyber ukungena kwinkqubo kwaye isasazeke kwinethiwekhi.

Ukungalungi kwe-EDR yinani elikhulu lezilumkiso ezingahambelaniyo ezivela kwimithombo eyahlukeneyo - iiseva, izixhobo zenethiwekhi, iziseko zefu kunye ne-imeyile. Uphando lwedatha eyahlukileyo yinkqubo yezandla enzima enokukhokelela ekulahlekelweni yinto ebalulekileyo.

XDR njengesitofu sokugonya kwi-cyber


Itekhnoloji ye-XDR, eluphuhliso lwe-EDR, yenzelwe ukusombulula iingxaki ezinxulumene nenani elikhulu lezilumkiso. U-"X" kule ngcaciso imfutshane imele nayiphi na into yeziseko ezingundoqo apho iteknoloji yobhaqo ingasetyenziswa: iposi, inethiwekhi, iiseva, iinkonzo zelifu kunye nogcino-lwazi. Ngokungafani ne-EDR, ulwazi oluqokelelweyo aludluliswanga nje kwi-SIEM, kodwa luqokelelwa kwindawo yokugcina indawo yonke, apho lucwangciswa kwaye luhlalutywe kusetyenziswa ubuchwepheshe beDatha enkulu.

Unyango okanye uthintelo: ungamelana njani nobhubhane wohlaselo lwe-cyber enegama le-COVID
Umzobo weBlock wokusebenzisana phakathi kwe-XDR kunye nezinye izisombululo ze-Trend Micro

Le ndlela, xa kuthelekiswa nokuqokelela nje ulwazi, ikuvumela ukuba ubone ezinye izoyikiso ngokusebenzisa kungekuphela nje idatha yangaphakathi, kodwa kunye nedatha yesongelo yehlabathi. Ngaphezu koko, okukhona idatha eqokelelweyo, izoyikiso ezikhawulezayo ziya kuchongwa kwaye ziphezulu ukuchaneka kwezilumkiso.

Ukusetyenziswa kobukrelekrele bokwenziwa kwenza kube lula ukunciphisa inani lezilumkiso, njengoko i-XDR ivelisa izilumkiso eziphambili eziphuculwe ngomxholo obanzi. Ngenxa yoko, abahlalutyi be-SOC bayakwazi ukugxila kwizaziso ezifuna inyathelo elikhawulezileyo, kunokuba baphonononge ngesandla umyalezo ngamnye ukumisela ubudlelwane kunye nomxholo. Oku kuya kuphucula kakhulu umgangatho woqikelelo lohlaselo lwe-cyber oluzayo, oluchaphazela ngokuthe ngqo ukusebenza komlo wokulwa nobhubhane we-cyber.
Uqikelelo oluchanekileyo luphunyezwa ngokuqokelela kunye nokudibanisa iintlobo ezahlukeneyo zokubona kunye neenkcukacha zomsebenzi ezivela kwi-Trend Micro sensors ezifakwe kumanqanaba ahlukeneyo ngaphakathi kwintlangano-isiphelo, izixhobo zenethiwekhi, i-imeyile kunye neziseko zefu.

Ukusebenzisa iqonga elinye lwenza lula kakhulu umsebenzi wenkonzo yokhuseleko lolwazi, ekubeni ifumana uluhlu olucwangcisiweyo noluphambili lwezilumkiso, lusebenza ngefestile enye yokubonisa iziganeko. Ukuchongwa ngokukhawuleza kwezisongelo kwenza kube lula ukuphendula ngokukhawuleza kubo kunye nokunciphisa iziphumo zabo.

Iingcebiso zethu


Iinkulungwane zamava ekulweni nobhubhane lubonisa ukuba ukuthintela akusebenzi nje kuphela kunonyango, kodwa kuneendleko eziphantsi. Njengoko uqheliselo lwale mihla lubonisa, ubhubhani wekhompyuter unjalo. Ukuthintela usulelo kuthungelwano lwenkampani kubiza kakhulu kunokuhlawula intlawulelo kubarhwaphilizi kunye nokuhlawula iikontraka imbuyekezo ngenxa yezibophelelo ezingafezekiswanga.

Kutshanje UGarmin wahlawula abaqweqwedisi i-10 lezigidi zeedolaukufumana inkqubo ye-decryptor yedatha yakho. Kule mali kufuneka yongezwe ilahleko ekungafumanekiyo kweenkonzo kunye nomonakalo wegama. Ukuthelekiswa okulula kweziphumo ezifunyenweyo kunye neendleko zesisombululo sokhuseleko lwanamhlanje kusivumela ukuba senze isigqibo esicacileyo: ukuthintela izisongelo zokhuseleko lolwazi akusiyo imeko apho ukugcinwa kulunga. Iziphumo zohlaselo oluphumeleleyo lwe-cyber ziya kuxabisa kakhulu inkampani.

umthombo: www.habr.com

Yongeza izimvo