Ukwelashwa noma ukuvimbela: ungabhekana kanjani nobhubhane lokuhlaselwa kwe-inthanethi okunegama le-COVID

Ukutheleleka okuyingozi okuye kwagcwala kuwo wonke amazwe kuye kwayeka ukuba yizindaba ezihamba phambili kwabezindaba. Kodwa-ke, iqiniso losongo liyaqhubeka nokudonsa ukunaka kwabantu, izigebengu ze-inthanethi ezisizakala ngakho. Ngokusho kwe-Trend Micro, isihloko se-coronavirus emikhankasweni ye-cyber sisahola ngemajini ebanzi. Kulokhu okuthunyelwe, sizokhuluma ngesimo samanje futhi sabelane ngombono wethu ngokuvimbela izinsongo zamanje ze-cyber.

Izibalo ezithile


Ukwelashwa noma ukuvimbela: ungabhekana kanjani nobhubhane lokuhlaselwa kwe-inthanethi okunegama le-COVID
Imephu yamavekhtha okusabalalisa asetshenziswa imikhankaso enegama le-COVID-19. Umthombo: Trend Micro

Ithuluzi eliyinhloko labagebengu bamakhompuyutha liyaqhubeka nokuthumela ama-spam, futhi naphezu kwezixwayiso ezivela ezinhlakeni zikahulumeni, izakhamuzi ziyaqhubeka nokuvula okunamathiselwe futhi zichofoze izixhumanisi kuma-imeyili omgunyathi, okunomthelela ekusabalaleni okuqhubekayo kosongo. Ukwesaba ukuthola ukutheleleka okuyingozi kuholela eqinisweni lokuthi, ngaphezu kobhubhane lwe-COVID-19, kufanele sibhekane nobhubhane lwe-cyberpandemic - wonke umndeni wezinsongo ze-cyber "coronavirus".

Ukusatshalaliswa kwabasebenzisi abalandele izixhumanisi ezinonya kubukeka kunengqondo:

Ukwelashwa noma ukuvimbela: ungabhekana kanjani nobhubhane lokuhlaselwa kwe-inthanethi okunegama le-COVID
Ukusatshalaliswa ngezwe labasebenzisi abavule isixhumanisi esinonya esivela ku-imeyili ngoJanuwari-Meyi 2020. Umthombo: Trend Micro

Okokuqala nge-margin ebanzi abasebenzisi abavela e-United States, lapho ngesikhathi sokubhala lokhu okuthunyelwe kwakukhona amacala acishe abe yizigidi ezi-5. I-Russia, nayo engelinye lamazwe ahamba phambili ngokwemibandela yamacala e-COVID-19, iphinde yaba kwabahlanu abaphezulu ngokwenani lezakhamizi ezikhohliseka kalula.

Ubhubhane lwe-Cyber ​​​​attack


Izihloko eziyinhloko ezisetshenziswa izigebengu zama-inthanethi kuma-imeyili omgunyathi ukubambezeleka kokulethwa ngenxa yobhubhane kanye nezaziso ezihlobene ne-coronavirus ezivela kuMnyango Wezempilo noma Inhlangano Yezempilo Yomhlaba.

Ukwelashwa noma ukuvimbela: ungabhekana kanjani nobhubhane lokuhlaselwa kwe-inthanethi okunegama le-COVID
Izihloko ezimbili ezidume kakhulu zama-imeyili omkhonyovu. Umthombo: Trend Micro

Imvamisa, i-Emotet, i-ransomware ransomware eyavela emuva ngo-2014, isetshenziswa β€œnjengomthwalo okhokhelwayo” kulezo zinhlamvu. Ukwakhiwa kabusha kwe-Covid kusize abasebenzisa uhlelo olungayilungele ikhompuyutha bakhulise inzuzo yemikhankaso yabo.

Okulandelayo kungaphawulwa futhi ku-arsenal yabakhwabanisi be-Covid:

  • amawebhusayithi kahulumeni mbumbulu ukuqoqa idatha yekhadi lasebhange kanye nolwazi lomuntu siqu,
  • izingosi ezinolwazi ngokusabalala kwe-COVID-19,
  • izingosi ezingamanga zeWorld Health Organisation kanye neCenters for Disease Control,
  • izinhloli eziphathwayo kanye nama-blocker azenza izinhlelo eziwusizo zokwazisa ngezifo.

Ukuvimbela ukuhlasela


Ngomqondo womhlaba wonke, isu lokubhekana ne-cyberpandemic liyafana neqhinga elisetshenziswa ukulwa nezifo ezijwayelekile:

  • ukutholwa,
  • impendulo,
  • ukuvimbela,
  • ukubikezela.

Kusobala ukuthi inkinga inganqotshwa kuphela ngokusebenzisa isethi yezinyathelo ezihloselwe isikhathi eside. Ukuvimbela kufanele kube isisekelo sohlu lwezinyathelo.

Njengokuvikela i-COVID-19, kunconyelwa ukugcina ibanga, ukugeza izandla, ukuthenga amagciwane nokugqoka imaski, amasistimu okuqapha ukuhlaselwa kobugebengu bokweba imininingwane ebucayi, kanye namathuluzi okuvimbela ukungenwa nokulawula, kungasiza ekuqedeni amathuba okuhlasela okuphumelelayo ku-inthanethi. .

Inkinga ngamathuluzi anjalo inani elikhulu lezinto ezingamanga, ezidinga izinsiza ezinkulu ukuze zicutshungulwe. Inani lezaziso mayelana nezehlakalo ezinhle ezingamanga lingancishiswa kakhulu ngokusebenzisa izindlela zokuphepha eziyisisekelo - ama-antivirus avamile, amathuluzi okulawula izinhlelo zokusebenza, nokuhlola isithunzi sesayithi. Kulokhu, umnyango wezokuphepha uzokwazi ukunaka izinsongo ezintsha, njengoba ukuhlaselwa okwaziwayo kuzovinjelwa ngokuzenzakalelayo. Le ndlela ikuvumela ukuthi usakaze ngokulinganayo umthwalo futhi ugcine ibhalansi yokusebenza kahle nokuphepha.

Ukulandelela umthombo wokutheleleka kubalulekile ngesikhathi sobhadane. Ngokufanayo, ukuhlonza isiqalo sokuqaliswa kokusongela ngesikhathi sokuhlaselwa ku-inthanethi kusivumela ukuthi siqinisekise ngokuhlelekile ukuvikelwa komjikelezo wenkampani. Ukuqinisekisa ukuphepha kuzo zonke izindawo zokungena ezinhlelweni ze-IT, amathuluzi ekilasi e-EDR (Endpoint Detection and Response) asetshenziswa. Ngokurekhoda konke okwenzeka ekugcineni kwenethiwekhi, zikuvumela ukuthi ubuyisele ukulandelana kwezikhathi kwanoma yikuphi ukuhlaselwa futhi uthole ukuthi iyiphi i-node esetshenziswe izigebengu ze-inthanethi ukuze zingene ohlelweni futhi zisakaze kunethiwekhi yonkana.

Ububi be-EDR yinani elikhulu lezaziso ezingahlobene ezivela emithonjeni ehlukene - amaseva, imishini yenethiwekhi, ingqalasizinda yamafu kanye ne-imeyili. Ukucwaninga idatha ehlukene kuyinqubo yezandla edinga abasebenzi abaningi engaholela ekuphutheni okuthile okubalulekile.

I-XDR njengomuthi wokugomela i-cyber


Ubuchwepheshe be-XDR, okuwukuthuthukiswa kwe-EDR, yakhelwe ukuxazulula izinkinga ezihlobene nenani elikhulu lezaziso. U-"X" kulesi sifinyezo umele noma iyiphi into yengqalasizinda okungasetshenziswa kuyo ubuchwepheshe bokubona: i-imeyili, inethiwekhi, amaseva, izinsiza zamafu nezizindalwazi. Ngokungafani ne-EDR, ulwazi oluqoqiwe alumane ludluliselwe ku-SIEM, kodwa luqoqwa endaweni yokugcina indawo yonke, lapho luhlelwa futhi luhlaziywe kusetshenziswa ubuchwepheshe beDatha Enkulu.

Ukwelashwa noma ukuvimbela: ungabhekana kanjani nobhubhane lokuhlaselwa kwe-inthanethi okunegama le-COVID
Vimba umdwebo wokusebenzelana phakathi kwe-XDR nezinye izixazululo ze-Trend Micro

Le ndlela, uma iqhathaniswa nokuqongelela ulwazi nje, ikuvumela ukuthi uthole izinsongo eziningi ngokusebenzisa hhayi idatha yangaphakathi kuphela, kodwa futhi nedathabheyisi yosongo yomhlaba wonke. Ngaphezu kwalokho, lapho kuqoqwa idatha eyengeziwe, izinsongo ezisheshayo zizobonakala futhi kukhuphuke ukunemba kwezixwayiso.

Ukusetshenziswa kobuhlakani bokwenziwa kwenza kube nokwenzeka ukunciphisa inani lezaziso, njengoba i-XDR ikhiqiza izexwayiso ezibaluleke kakhulu ezithuthukiswe ngomongo obanzi. Ngenxa yalokho, abahlaziyi be-SOC bayakwazi ukugxila ezazisweni ezidinga isinyathelo esisheshayo, kunokuba babuyekeze mathupha umlayezo ngamunye ukuze banqume ubudlelwano nomongo. Lokhu kuzothuthukisa kakhulu ikhwalithi yezibikezelo zokuhlaselwa ku-inthanethi okuzayo, okuthinta ngqo ukusebenza ngempumelelo kokulwa nobhubhane lwe-inthanethi.
Ukubikezela okunembile kufinyelelwa ngokuqoqa nokuhlobanisa izinhlobo ezihlukene zokutholwa nedatha yomsebenzi ezinzwa ze-Trend Micro ezifakwe kumaleveli ahlukene ngaphakathi kwenhlangano - ama-endpoint, amadivayisi enethiwekhi, i-imeyili nengqalasizinda yamafu.

Ukusebenzisa inkundla eyodwa kuwenza ube lula kakhulu umsebenzi wesevisi yezokuphepha kolwazi, njengoba ithola uhlu oluhlelekile nolubekwe phambili lwezaziso, olusebenza ngewindi elilodwa lokwethula imicimbi. Ukuhlonzwa okusheshayo kwezinsongo kwenza kube nokwenzeka ukusabela ngokushesha kuzo futhi kunciphise imiphumela yazo.

Izincomo zethu


Okuhlangenwe nakho kwamakhulu eminyaka ekulweni nezifo eziwumshayabhuqe kubonisa ukuthi ukuvimbela akusebenzi nje kuphela kunokwelashwa, kodwa futhi kunezindleko eziphansi. Njengoba umkhuba wesimanje ubonisa, izifo eziwumshayabhuqe zamakhompiyutha ziyafana. Ukuvimbela ukutheleleka kwenethiwekhi yenkampani kubiza kakhulu kunokukhokha isihlengo kubaphangi kanye nokukhokhela osonkontileka isinxephezelo ngezibopho ezingafezwanga.

Muva nje UGarmin wakhokha abakhwabanisi u-$10 millionukuze uthole uhlelo lwe-decryptor lwedatha yakho. Kule mali kufanele kwengezwe ukulahlekelwa okuvela ekungatholakalini kwezinsizakalo kanye nokulimala kwesithunzi. Ukuqhathaniswa okulula kwemiphumela etholwe nezindleko zesixazululo sezokuphepha sesimanje kusivumela ukuthi sifinyelele isiphetho esicacile: ukuvimbela izinsongo zokuphepha kolwazi akuyona into lapho ukonga kufaneleka khona. Imiphumela yokuhlaselwa okuyimpumelelo ku-inthanethi izobiza inkampani kakhulu.

Source: www.habr.com

Engeza amazwana