Ingabe Uye Waziveza Muva nje?

by Septhemba 14, 2023I-BI/Analytics0 amazwana

 

Sikhuluma ngokuvikeleka emafini

I-Over Exposure

Ake sikubeke kanje, yini ozikhathazayo ngokuveza? Yiziphi izimpahla zakho ezibaluleke kakhulu? Inombolo yakho Yokuphepha Komphakathi? Ulwazi lwe-akhawunti yakho yasebhange? Amadokhumenti ayimfihlo, noma izithombe? Inkulumo yakho yembewu ye-crypto? Uma uphatha inkampani, noma unesibopho sokugcinwa ngokuphephile kwedatha, ungase ukhathazeke mayelana nezinhlobo ezifanayo zolwazi ezifakwa engcupheni, kodwa ngokuzenzakalelayo.roader isikali. Uphathiswe amakhasimende akho ukuvikelwa kwedatha yawo.

Njengabathengi, sikuthatha kalula ukuphepha kwedatha yethu. Kaningi kulezi zinsuku leyo datha igcinwa emafini. Inani labathengisi linikeza amasevisi avumela amakhasimende ukuthi enze ikhophi yasenqolobaneni idatha esuka kumakhompuyutha awo asendaweni iye efwini. Kucabange njenge-virtual hard drive esibhakabhakeni. Lokhu kukhangiswa njengendlela ephephile nelula yokuvikela idatha yakho. Kulula, yebo. Ungakwazi ukubuyisela ifayela olisuse ngephutha. Ungakwazi ukubuyisela yonke i-hard drive lapho idatha yayo yonakalisiwe.

Kodwa ingabe iphephile? Unikezwa ingidi nokhiye. Ukhiye, ngokuvamile, igama lomsebenzisi nephasiwedi. Ibethelwe futhi yaziwa nguwe kuphela. Kungakho ochwepheshe bezokuphepha bencoma ukuthi ugcine iphasiwedi yakho ivikelekile. Uma othile ezuza ukufinyelela kuphasiwedi yakho, unokhiye obonakalayo wendlu yakho ebonakalayo.

Uyazi konke lokhu. Iphasiwedi yakho yesevisi yefu eyisipele inezinhlamvu ezingu-16 ubude, iqukethe osonhlamvukazi nabancane, izinombolo kanye nezinhlamvu ezikhethekile ezimbalwa. Uyishintsha njalo ezinyangeni eziyisithupha ngoba uyazi ukuthi lokho kwenza kube nzima ku-hacker. Ihlukile kwamanye amaphasiwedi akho – awusebenzisi igama-mfihlo elifanayo kumasayithi amaningi. Yini engase yonakale?

Ezinye izinkampani zinikeza lokho ezikubize ngokuthi “Ifu Lomuntu Siqu.” Western Digital ingenye yalezo zinkampani ezihlinzeka ngendlela elula yokwenza isipele idatha yakho endaweni yakho yomuntu siqu efwini. Isitoreji senethiwekhi sitholakala nge-inthanethi. Ixhumeka kumzila wakho we-Wi-Fi ukuze ukwazi ukuyifinyelela noma yikuphi ngaphakathi kwenethiwekhi yakho. Kalula, ngoba futhi ixhumeke ku-inthanethi, ungakwazi ukufinyelela idatha yakho yomuntu siqu noma yikuphi ku-inthanethi. Ngokukhululeka kuza nengozi.

Isikhundla Sokuyekethisa

Ngasekuqaleni konyaka, abaduni bagqekeza eNtshonalanga DigitalAmasistimu futhi akwazi ukulanda cishe i-10 Tb yedatha. Ama-mailers amnyama abe esebamba imininingwane ukuze ahlengwe futhi azama ukuxoxisana ngesivumelwano esisenyakatho ye-US $ 10,000,000 ukuze kubuyiswe idatha ngokuphephile. Idatha ifana namafutha. Noma mhlawumbe igolide liyisifaniso esingcono. Omunye wabaduni ukhulume ngombandela wokudalulwa igama. Ha! I-TechCrunch ixoxisane naye ngesikhathi esaqhuba lolu hlelo lwebhizinisi. Okuthakazelisayo ukuthi idatha efakwe engozini ihlanganisa ne-Western Digitalisitifiketi sokusayina ikhodi. Lokhu okulingana nobuchwepheshe bokuskena kwe-retina. Isitifiketi sihloselwe ukukhomba ngokuqinisekile umnikazi noma umphathi. Ngalesi skena se-retina ebonakalayo, ayikho iphasiwedi edingekayo ukuze ufinyelele idatha "evikelekile". Ngamanye amazwi, ngalesi sitifiketi lo somabhizinisi wezigqoko ezimnyama angangena emnyango ongaphambili we digital isigodlo.

Western Digital wenqabile ukuphawula ephendula izinsolo zomgebengu wokuthi basekunethiwekhi ye-WD. Umgebengu ongadalulwanga igama uzwakalise ukudumala ukuthi abamele eWestern Digital angazibambi izincingo zakhe. Ngokusemthethweni, ku-a isitatimende sephephandaba, Intshonalanga Digital imemezele ukuthi, "Ngokusekelwe ophenyweni kuze kube manje, Inkampani ikholelwa ukuthi iqembu elingagunyaziwe lithole idatha ethile kumasistimu ayo futhi lisebenzela ukuqonda uhlobo nobubanzi baleyo datha." Ngakho, Western Digital ngumama, kodwa i-hacker iyakhuluma. Ngokuphathelene nendlela abakwenze ngayo, isigebengu sichaza ukuthi basebenzise kanjani ubungozi obaziwayo futhi bakwazi ukuthola ukufinyelela kudatha emafini njengomlawuli womhlaba.

Umlawuli womhlaba, ngokwendalo yendima, uyakwazi ukufinyelela yonke into. Akayidingi iphasiwedi yakho. Unokhiye oyinhloko.

Western Digital Akuyena yedwa

A Ucwaningo nyakenye bathole ukuthi u-83% wezinkampani ezahlolwa sezinawo ezingaphezu kweyodwa ukwephulwa kwedatha, ama-45% akho abesekelwe efwini. I isilinganiso izindleko zokuphulwa kwedatha e-United States zazingama-US $9.44 wezigidi. Izindleko zahlukaniswa zaba izigaba ezine zezindleko - ibhizinisi elilahlekile, ukutholwa kanye nokwenyuka, isaziso kanye nempendulo yokwephulwa kwangemuva. (Anginaso isiqiniseko sokuthi isihlengo sedatha sikusiphi isigaba. Akucaci ukuthi ingabe kukhona yini kwabaphendulayo abakhokhe izimfuno zesihlengo.) Isikhathi esimaphakathi esisithatha inhlangano ukuhlonza nokuphendula ekwephuleni kwedatha cishe izinyanga eziyi-9. Akumangazi-ke ukuthi ngemva kwezinyanga ezimbalwa kudlule iWestern Digital baqale bavuma ukwephulwa kwedatha, basaphenya.

Kunzima ukusho ukuthi zingaki izinkampani eziphulwe yidatha. Ngazi inkampani eyodwa enkulu eyimfihlo eyahlaselwa yi-ransomware. Abanikazi banqaba ukuxoxisana futhi abazange bakhokhe. Lokho kusho ukuthi, esikhundleni salokho, ama-imeyili namafayela edatha alahlekile. Bakhethe ukwakha kabusha yonke into kusukela kuzipele ezingatheleleki kanye nokufaka kabusha isofthiwe. Kube khona isikhathi sokuphumula esibalulekile kanye nokulahleka kokukhiqiza. Lo mcimbi awukaze ube semithonjeni yezindaba. Leyo nkampani yaba nenhlanhla ngoba 66% ezinkampanini ezincane kuya kweziphakathi ezihlaselwa yi-ransomware zigcina zingasebenzi phakathi nezinyanga eziyisi-6.

Uma uke wenza ibhizinisi, noma wasebenzisa izinsiza ze-Capital One, Marriott, Equifax, Target noma i-Uber, kungenzeka ukuthi igama-mfihlo lakho liye lafakwa ebucayini. Ngayinye yalezi zinkampani ezinkulu ihlangabezane nokuphulwa kwedatha okukhulu.

 

  • I-Capital One: Isigebengu sithole ukufinyelela kumakhasimende nabafake izicelo abayizigidi eziyi-100 ngokusebenzisa ubungozi nengqalasizinda yamafu yenkampani.
  • U-Marriott: Ukuphulwa kwedatha kudalule ulwazi kumakhasimende ayizigidi ezingu-500 (lokhu kwephulwa kwephula akuzange kubonwe iminyaka engu-4).
  • I-Equifax: Ulwazi lomuntu siqu efwini kumakhasimende ayizigidi ezingu-147 luye lwadalulwa.
  • Okuhlosiwe: Izigebengu ze-Cybernakele zafinyelela izinombolo zamakhadi esikweletu ayizigidi ezingu-40.
  • I-Uber: Izigebengu zonakalisa ikhompyutha ephathwayo kanjiniyela futhi bathola ukufinyelela kubasebenzisi abayizigidi ezingu-57 nabashayeli abangu-600,000.
  • LastPass[1]: Izigebengu ze-inthanethi zintshontshe idatha ye-vault yamakhasimende angu-33 million ngokwephulwa kwesitoreji samafu sale nkampani yomphathi wamaphasiwedi. Umhlaseli uthole ukufinyelela kusitoreji samafu sika-Lastpass esebenzisa “ukhiye wokufinyelela wesitoreji samafu kanye nokhiye bokukhipha ukubethela kweziqukathi zesitoreji ezimbili” ezebiwe endaweni yayo yonjiniyela.

Ungahlola ukuze ubone ukuthi udalulwe yini ngokwephulwa kwedatha kule webhusayithi: ngishaywe imoto? Thayipha ikheli lakho le-imeyili futhi lizokubonisa ukuthi kungakanani ukwephulwa kwedatha ikheli le-imeyili elitholakale kukho. Isibonelo, ngibhale elinye lamakheli ami e-imeyili ngathola ukuthi bekuyingxenye yokuphulwa kwedatha okuhlukene okungu-25, okuhlanganisa i-Evite. , i-Dropbox, i-Adobe, i-LinkedIn ne-Twitter.

Ukwenqabela Abangane Abangafunwa

Angeke kube khona ukuvunywa komphakathi nguWestern Digital ngayo impela okwenzekile. Isigameko sibonisa izinto ezimbili: idatha esefwini ivikeleke kuphela njengoba abagcini bayo futhi abagcini okhiye kudingeka baqaphele ngokukhethekile. Ukuchaza Isimiso sika-Peter Parker, ngokufinyelela kwezimpande kuza nesibopho esikhulu.

Ukunemba kakhudlwana, umsebenzisi oyimpande kanye nomlawuli womhlaba akufani ncamashi. Zombili zinamandla amakhulu kodwa kufanele kube ama-akhawunti ahlukene. Umsebenzisi oyimpande ungumnikazi futhi unokufinyelela ku-akhawunti yefu yebhizinisi ezingeni eliphansi kakhulu. Kanjalo, le akhawunti ingasusa yonke idatha, ama-VM, ulwazi lwekhasimende — yonke into ibhizinisi eliyivikele emafini. Ku-AWS, kukhona kuphela 10 imisebenzi, okuhlanganisa ukusetha nokuvala i-akhawunti yakho ye-AWS, okudinga ngempela ukufinyelela kwezimpande.

Ama-akhawunti omlawuli kufanele adalwe ukwenza imisebenzi yokulawula (duh). Ngokuvamile kunama-akhawunti amaningi omlawuli ngokuvamile asekelwe kumuntu, ngokungafani ne-akhawunti eyodwa yezimpande. Ngenxa yokuthi ama-akhawunti omlawuli aboshelwe kumuntu oyedwa, ungakwazi ukuqapha kalula ukuthi ubani owenze izinguquko endaweni.

Ilungelo Elincane Lokuphepha Okuphezulu

Inhlolovo yokuphulwa kwedatha ifunde umthelela wezinto ezingu-28 kubucayi bokuphulwa kwedatha. Ukusetshenziswa kokuphepha kwe-AI, indlela ye-DevSecOps, ukuqeqeshwa kwabasebenzi, ukuphathwa kobunikazi nokufinyelela, i-MFA, ukuhlaziya ukuphepha konke kube nomthelela omuhle ekwehliseni inani ledola elilahlekile esigamekweni. Nakuba, ukuhluleka ukuthobela imithetho, inkimbinkimbi yesistimu yezokuvikela, ukushoda kwamakhono okuvikela, nokufuduka kwamafu kwakuyizici ezibambe iqhaza ekwenyukeni kwengqikithi yezindleko ezimaphakathi zokuphulwa kwedatha.

Njengoba uthuthela emafini, udinga ukuqapha kakhulu kunangaphambili ekuvikeleni idatha yakho. Nazi ezinye izindlela ezengeziwe zokunciphisa ubungozi bakho futhi usebenzise indawo ephephile kusuka ku- nokuvikeleka umbono:

1. Ukuqinisekiswa kwe-Muli-factor: sebenzisa i-MFA yezimpande nawo wonke ama-akhawunti oMphathi. Okungcono nakakhulu, sebenzisa idivayisi ye-MFA yehadiwe. Isigebengu esingahle sigebengwini ngeke sidinge igama le-akhawunti nephasiwedi kuphela, kodwa futhi ne-MFA ebonakalayo ekhiqiza ikhodi evumelanisiwe.

2. Amandla ngezinombolo ezincane: Khawulela ukuthi ubani onokufinyelela impande. Abanye ochwepheshe bezokuphepha baphakamisa ukuthi abasebenzisi abangadluli kwabangu-3. Phatha ukufinyelela komsebenzisi wezimpande ngokuzimisela. Uma usebenzisa ukuphathwa kobunikazi kanye nokungagibeli kwenye indawo, kwenze lapha. Uma oyedwa kumbuthano wokwethembana eshiya inhlangano, shintsha iphasiwedi yempande. Phinda uthole idivayisi ye-MFA.

3. Amalungelo E-akhawunti Azenzakalelayo: Lapho unikeza ama-akhawunti amasha omsebenzisi noma izindima, qinisekisa ukuthi anikezwa amalungelo amancane ngokuzenzakalela. Qala ngenqubomgomo encane yokufinyelela bese unikeza izimvume ezengeziwe njengoba kudingeka. Umgomo wokuhlinzeka ngokuvikeleka okuncane ukuze kufezwe umsebenzi uyimodeli ezodlula izindinganiso zokuthobela ukuphepha ze-SOC2. Umqondo wukuthi noma yimuphi umsebenzisi noma uhlelo lokusebenza kufanele lube nokuvikeleka okuncane okudingekayo ukuze kwenziwe umsebenzi odingekayo. Lapho ilungelo elifakwa engcupheni liphakeme, ingozi iba nkulu. Ngokuphambene, lapho ilungelo liyancipha, ingozi iyancipha.

4. Amalungelo okuhlola: Hlaziya futhi ubuyekeze amalungelo anikezwe abasebenzisi, izindima, nama-akhawunti ngaphakathi kwendawo yakho yamafu. Lokhu kuqinisekisa ukuthi abantu banemvume edingekayo kuphela yokwenza imisebenzi abayiqokiwe.

5. Ukuphathwa Kobunikazi kanye Namalungelo Asesikhathini Sakho: Khomba futhi uhoxise noma yimaphi amalungelo amaningi noma angasetshenzisiwe ukuze unciphise ubungozi bokufinyelela okungagunyaziwe. Nikeza kuphela amalungelo okufinyelela kubasebenzisi uma bewadinga ngomsebenzi othile noma isikhathi esilinganiselwe. Lokhu kunciphisa indawo yokuhlasela futhi kunciphisa iwindi lethuba lezinsongo zokuphepha ezingaba khona. https://www.cnbc.com/2022/10/20/former-hacker-kevin-mitnick-tips-to-protect-your-personal-info-online.html

6. Ukuqinisekisa okushunyekiwe: Vimbela ukufakwa kwekhodi okuqinile kokuqinisekisa okungabhaliwe (igama lomsebenzisi, iphasiwedi, okhiye bokufinyelela) kumaskripthi, imisebenzi, noma enye ikhodi. Kunalokho bheka ku-a mphathi wezimfihlo ongazisebenzisa ukuze ubuyise iziqinisekiso ngokohlelo.

7. Ingqalasizinda-njengekhodi (IaC) Ukucushwa: Namathela izinqubo ezihamba phambili zokuphepha lapho ulungiselela ingqalasizinda yakho yefu usebenzisa amathuluzi e-IaC afana ne-AWS CloudFormation noma i-Terraform. Gwema ukunikeza ukufinyelela komphakathi ngokuzenzakalela futhi ukhawulele ukufinyelela ezinsizeni kumanethiwekhi athembekile kuphela, abasebenzisi, noma amakheli e-IP. Sebenzisa izimvume ezinohlamvu oluhle kanye nezindlela zokulawula ukufinyelela ukuze uphoqelele umgomo welungelo elincane.

8. Ukungena Kwezenzo: Nika amandla ukugawulwa kwemithi okuphelele nokuqapha izenzo nemicimbi ngaphakathi kwemvelo yakho yamafu. Thwebula futhi uhlaziye amalogi nganoma imiphi imisebenzi engajwayelekile noma engase ibe yingozi. Sebenzisa ukuphathwa kwelogi okuqinile nolwazi lwezokuphepha kanye nokuphathwa komcimbi (SIEM) ukuze uthole futhi uphendule izehlakalo zokuphepha ngokushesha.

9. Ukuhlolwa Okujwayelekile Kokuba sengcupheni: Yenza ukuhlolwa okujwayelekile kokuba sengozini kanye nokuhlola ukungena ukuze uhlonze ubuthakathaka bokuphepha endaweni yakho yamafu. Peyisha futhi ulungise noma yibuphi ubungozi obuhlonziwe ngokushesha. Gcina umkhondo wezibuyekezo zokuphepha namapeshi akhishwe umhlinzeki wakho wamafu futhi uqinisekise ukuthi asetshenziswa ngokushesha ukuze uvikele ezinsongweni ezaziwayo.

10. Imfundo Nokuqeqesha: Thuthukisa isiko lokuqwashisa ngezokuphepha futhi unikeze ukuqeqeshwa okuvamile kubasebenzi mayelana nokubaluleka kwesimiso sokungabi namalungelo amancane. Bafundise mayelana nezingozi ezingaba khona ezihlobene namalungelo amaningi kanye nemikhuba engcono kakhulu ongayilandela lapho ufinyelela futhi uphatha izinsiza ngaphakathi kwemvelo yamafu.

11. Iziqephu nezibuyekezo: Nciphisa ubungozi ngokubuyekeza njalo yonke isofthiwe yeseva. Gcina ingqalasizinda yakho yefu nezinhlelo zokusebenza ezihambisanayo zisesikhathini samanje ukuze uvikele ezingozini ezaziwayo. Abahlinzeki bamafu bavame ukukhulula iziqephu zokuphepha nezibuyekezo, ngakho-ke ukuhlala unolwazi ngezincomo zabo kubalulekile.

Trust

Kwehlela ekuthembeni - ukunikeza kuphela labo abasenhlanganweni yakho ithemba lokufeza imisebenzi okudingeka bayenze ukuze umsebenzi wabo wenziwe. Ochwepheshe bezokuphepha bayatusa I-Zero Trust. Imodeli yokuphepha ye-Zero Trust isuselwe ezimisweni ezintathu ezibalulekile:

  • Qinisekisa ngokucacile - sebenzisa wonke amaphuzu edatha atholakalayo ukuze uqinisekise ubunikazi bomsebenzisi nokufinyelela.
  • Sebenzisa ukufinyelela okuyilungelo elincane - ngesikhathi kanye nokuvikeleka okwanele.
  • Cabanga ngokuphula umthetho - bethela yonke into, sebenzisa izibalo ezisebenzayo futhi ube nezimpendulo eziphuthumayo endaweni.

Njengomthengi wezinsizakalo zamafu namafu, nayo yehla ekuthembekeni. Kufanele uzibuze, "ingabe ngiyamethemba umthengisi wami ukuthi uzogcina idatha yami eyigugu efwini?" Ukwethemba, kulokhu, kusho ukuthi uthembele kuleyo nkampani, noma enye efana nayo, ukuphatha ukuphepha njengoba sichaze ngenhla. Kungenjalo, uma uphendula ngendlela ephikisayo, ingabe ukulungele ukwenza izinhlobo ezifanayo zomsebenzi wokuphatha ukuphepha endaweni yasekhaya lakho. Ingabe uyazethemba?

Njengenkampani ehlinzeka ngamasevisi efwini, amakhasimende abeke ithemba lawo kuwe ukuze avikele idatha yawo kungqalasizinda yakho yamafu. Kuyinqubo eqhubekayo. Hlala unolwazi mayelana nezinsongo ezivelayo, lungisa izindlela zakho zokuphepha ngokufanele, futhi uhlanganyele nezingcweti ezinolwazi noma abeluleki bezokuphepha ukuze uqinisekise ukuvikeleka okukhulu kwebhizinisi lakho ku-landscape yamafu ehlala ishintsha.

 

  1. https://www.bleepingcomputer.com/news/security/lastpass-hackers-stole-customer-vault-data-in-cloud-storage-breach/

 

I-BI/AnalyticsUkukhangisa
Ungafihli Imininingwane Yakho: Umhlahlandlela Wokuhlanza I-Analytics Spring

Ungafihli Imininingwane Yakho: Umhlahlandlela Wokuhlanza I-Analytics Spring

Khipha Imininingwane Yakho Umhlahlandlela Wokuhlaziya Ukuhlanza Entwasahlobo Unyaka omusha uqala ngokuduma; imibiko yokuphela konyaka iyadalwa futhi icutshungulwe, bese wonke umuntu ezinza ohlelweni lomsebenzi olungaguquki. Njengoba izinsuku ziba zinde nezihlahla nezimbali ziyaqhakaza,...

Funda kabanzi

I-BI/AnalyticsUkukhangisa
I-NY Style vs. I-Chicago Style Pizza: Inkulumo-mpikiswano Emnandi

I-NY Style vs. I-Chicago Style Pizza: Inkulumo-mpikiswano Emnandi

Lapho sanelisa izifiso zethu, zimbalwa izinto ezingamelana nenjabulo yocezu olushisayo lwepizza. Inkulumompikiswano phakathi kwe-pizza yesitayela saseNew York kanye nesitayela sase-Chicago ibangele izingxoxo ezishisayo amashumi eminyaka. Isitayela ngasinye sinezici zaso ezihlukile nabalandeli abazinikele....

Funda kabanzi