Over recent weeks, the ongoing spread of the COVID-19 coronavirus has had a major impact on the global economy and how businesses operate as a whole. More and more organizations are moving to a mandated work from home (WFH) model to help limit the spread of the virus — introducing a variety of unique and constantly evolving challenges for security leaders when it comes to mitigating cyber risk.
As an increasing percentage of the workforce moves from corporate IPs to potentially flawed home WiFi networks, the attack surface is expanding and company-issued laptops are being exposed to new vulnerabilities. To make matters worse, malicious actors are using this situation to their advantage and playing on the public’s ongoing fear surrounding the pandemic — with cyber attacks and scams at an all-time high.
Hackers seize the opportunity to advance their objectives
In the first prominent wave of cyber attacks brought on by the coronavirus pandemic, hackers targeted individuals with simple phishing techniques involving emails that appeared to come from an official source, such as the Centers for Disease Control (CDC). These emails contained malicious attachments that downloaded malware to the individual’s computer in an effort to gather personal information.
More recently, hackers started creating spyware-ridden apps that promise live updates regarding the coronavirus, as SC Magazine UK reports. Once these apps are downloaded from bogus websites appearing to belong to legitimate global organizations, they often crash or display an error message while starting to ask for permission to access sensitive data.
As we predicted, many malicious actors soon moved their focus from individual attacks to set their sights on the healthcare sector, government agencies, and other industries. In mid-March, the U.S. Department of Health and Human Services (HHS) fell victim to an attack designed to undermine the government’s response to the pandemic. The hackers in question aimed to slow agency systems by overloading HHS servers with millions of hits over a span of hours.
Within this current climate, the implications of such attacks on healthcare and government agencies can be extremely alarming. As Healthcare IT News reported, a major cyberattack on Brno University Hospital in the Czech Republic earlier in March caused an immediate tech shutdown in the midst of the coronavirus outbreak — forcing the hospital to cancel operations and relocate patients.
The security implications of a widespread shift to the remote office
While these targeted threats become more and more prevalent, an increasing percentage of the workforce is going remote — causing the attack surface to increase exponentially. With more employees working on potentially flawed home WiFi networks than ever before, security leaders are facing new and evolving challenges when it comes to maintaining the desired security posture.