[vc_row width=”custom” width_custom=”700px” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22linear-gradient%2890deg%2C%2310133A%2C%23000026%29%22%7D%7D”][vc_column width=”1/1″][vc_row_inner][vc_column_inner width=”1/1″][vc_column_text css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”]

Cybersecurity awareness month

Cybersecurity Awareness Month, or Cyber Month, has been going strong every October since 2004.

It started as a joint effort by the U.S. Department of Homeland Security (DHS) and the National Cyber Security Alliance (NCSA), aiming to raise awareness about the importance of staying safe online.

The goal was simple: help individuals and businesses protect themselves from the growing number of online threats.

Fast forward 20 years, and here we are. Still working together to spread awareness and make the digital world safer for everyone. Each year brings a fresh theme, and this year, it’s all about ‘Secure Our World’.[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”1000px” color_scheme=”alternate”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22center%22%7D%7D”][vc_column_inner width=”1/1″][vc_column_text]

What are the ‘Secure Our World’ topics?

Cybersecurity Awareness Month 2024 is focussed on four key areas.[/vc_column_text][us_separator size=”large”][/vc_column_inner][/vc_row_inner][vc_row_inner][vc_column_inner width=”1/4″][us_iconbox icon=”fal|key-skeleton” link=”%7B%22url%22%3A%22%22%7D” title=”Be secure” title_tag=”h5″ size=”3rem”]Use strong passwords and a password manager[/us_iconbox][/vc_column_inner][vc_column_inner width=”1/4″][us_iconbox icon=”fal|user-shield” link=”%7B%22url%22%3A%22%22%7D” title=”Extra protection” title_tag=”h5″ size=”3rem”]Turn on multifactor authentication[/us_iconbox][/vc_column_inner][vc_column_inner width=”1/4″][us_iconbox icon=”fal|cloud-upload” link=”%7B%22url%22%3A%22%22%7D” title=”No gaps” title_tag=”h5″ size=”3rem”]Update your software regularly[/us_iconbox][/vc_column_inner][vc_column_inner width=”1/4″][us_iconbox icon=”fal|envelope-open-dollar” link=”%7B%22url%22%3A%22%22%7D” title=”Be vigilant” title_tag=”h5″ size=”3rem”]Recognise and report phishing[/us_iconbox][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22linear-gradient%2890deg%2C%23ffffff%2C%23ade0f1%29%22%7D%7D”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner width=”1/1″][vc_column_text]

Overconfidence in cybersecurity

You might be wondering, “why is this campaign still necessary after 20 years?” Despite all the progress made, there’s still a significant gap between confidence and reality when it comes to cybersecurity.

From what we’ve seen firsthand as a business, and what external reports confirm, many organisations feel overly confident in their cybersecurity posture. This often contrasts with the realities they face, particularly after experiencing incidents like ransomware, insider threats, malware, or phishing attacks.

[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22_header_middle_bg%22%7D%7D”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner width=”1/1″][us_image image=”13107″ link=”%7B%22url%22%3A%22%22%7D”][us_separator][vc_column_text]

Use strong passwords and a password manager

We are poor at creating passwords. People think in similar ways, and subsequently the patterns we use to put a password together are also very similar.

According to Kapersky, smart AI-driven algorithms cracked 87 million passwords in under 60 seconds. To top this off, AI can now analyse keystrokes very quickly, making it easier to break passwords.

So what can we do to help combat this? Last year, the NCSC and other organisations suggested using three unrelated words for passwords. Make sure each password is unique for every service you use. This way, if one password is compromised, it won’t affect other accounts.

To create truly strong passwords, use a password manager. Password managers help us create unique and strong passwords without having to remember them ourselves. The best part? You can use them to generate and store complex passwords for you.

But strong passwords alone aren’t enough.[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22linear-gradient%2890deg%2C%23ffffff%2C%23ade0f1%29%22%7D%7D”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner width=”1/1″][vc_column_text]

Turn on multifactor authentication

Despite the benefits of MFA, adoption varies significantly. While over half of businesses worldwide implement some form of MFA, only 4% utilise phishing-resistant MFA, which provides a stronger defence against sophisticated attacks, including those leveraging social engineering tactics.

Example services you can use for MFA:

Less secure options like SMS and voice forms of MFA are also available, but please consider the security implications of using these.

Why are we highlighting this? Because not all MFA is created equal. Watch our video on ‘How to Bypass MFA’ and you’ll see what we mean.[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22_header_middle_bg%22%7D%7D”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner width=”1/1″][vc_column_text]

Update your software

When a pop-up appears asking you to update your software. Do you accept or decline?

It’s easy to click decline. But this seemingly simple decision can have major consequences. Although it’s tempting to click “Remind me later” and continue working, updating your software is critical to the security and efficiency of your system.

Many organisations are reluctant to update their software because they’re afraid of change, don’t want to stretch their budget and are comfortable sticking with what they know.

How can hackers exploit this?

  1. They often start by scanning networks for systems running outdated versions of software. Tools like Nmap can detect software and its version and show whether it’s out of date.
  2. Once they have found outdated software, hackers turn to publicly available databases such as the Common Vulnerabilities and Exposures (CVE) list, which lists known vulnerabilities.
  3. Armed with this information, hackers use exploit kits or their own scripts to exploit these vulnerabilities.

For example, they could use a known exploit to gain unauthorised access, inject malware or steal sensitive data. These attacks are often automated and allow hackers to quickly attack multiple systems.

Regular software updates are important because they close these vulnerabilities and make it harder for hackers to succeed. Without updates, outdated software remains an easy target for cybercriminals, which can lead to security vulnerabilities and significant damage.[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22linear-gradient%2890deg%2C%23ffffff%2C%23ade0f1%29%22%7D%7D”][vc_column width=”1/1″][vc_row_inner css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner width=”1/1″][us_image image=”13110″ link=”%7B%22url%22%3A%22%22%7D”][us_separator][vc_column_text]

Recognise and report phishing

Phishing attacks have become more sophisticated. This has resulted in a 52% increase in impersonation and social engineering attacks. Why is phishing such a significant threat? Because it exploits human vulnerability.

Businesses are putting tremendous amounts of energy and emphasis into employee security and awareness training. On top of this, reducing the volume of phishing emails that are coming into your organisation is simply not going to happen. So, we must be proactive, not reactive and take the burden off our employees.

Email hygiene

The basics of email hygiene (SPF, DKIM and DMARC) validate the authenticity of email domains, ensuring that the originating source is legitimate. But simply enabling these protocols isn’t enough; they must be configured and monitored. For example, where similar domains are created and established these need to be blocked immediately.

AI and email security

As attackers increasingly use AI to craft sophisticated phishing campaigns, such as typo-squatting and deceptive domains, traditional email security tools are being evaded. This is where modern AI-driven behavioural email security comes in. It adds crucial layers of protection before emails reach users.

How does it help? AI and machine learning strengthen email security by analysing both incoming and outgoing emails, detecting anomalies and suspicious patterns to identify potential threats. These are sandboxed, investigated, and tested against behavioural analytics to verify legitimacy. All before reaching the end user.[/vc_column_text][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”900px” color_scheme=”alternate” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22_header_middle_bg%22%7D%7D”][vc_column width=”1/1″][vc_row_inner][vc_column_inner width=”1/1″][vc_column_text css=”%7B%22default%22%3A%7B%22text-align%22%3A%22center%22%2C%22margin-bottom%22%3A%2250px%22%7D%7D”]

Resources for Cybersecurity Awareness Month

[/vc_column_text][/vc_column_inner][/vc_row_inner][vc_row_inner columns_gap=”2rem” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22%23E6F9F9%22%2C%22margin-bottom%22%3A%2230px%22%2C%22padding-left%22%3A%227%25%22%2C%22padding-top%22%3A%227%25%22%2C%22padding-bottom%22%3A%227%25%22%2C%22padding-right%22%3A%227%25%22%2C%22border-radius%22%3A%2210px%22%7D%7D”][vc_column_inner width=”1/2″][vc_column_text]

Security configuration checklist

A staggering 88% of UK companies experienced a cybersecurity breach in the last 12 months. To help improve your security posture, we’ve created this handy checklist of maintenance tasks.[/vc_column_text][/vc_column_inner][vc_column_inner width=”1/2″][us_image image=”13060″ link=”%7B%22url%22%3A%22https%3A%2F%2Fcloudguard.ai%2Fwp-content%2Fuploads%2F2024%2F08%2FCloudGuard-Actionable-Cybersecurity-Configuration-Checklist-2024.pdf%22%7D”][/vc_column_inner][/vc_row_inner][vc_row_inner columns_gap=”30px” css=”%7B%22default%22%3A%7B%22text-align%22%3A%22left%22%7D%7D”][vc_column_inner link=”%7B%22url%22%3A%22%22%7D” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22%23E6F9F9%22%2C%22margin-bottom%22%3A%2230px%22%2C%22padding-left%22%3A%227%25%22%2C%22padding-top%22%3A%227%25%22%2C%22padding-bottom%22%3A%227%25%22%2C%22padding-right%22%3A%227%25%22%2C%22border-radius%22%3A%2210px%22%7D%7D” width=”1/2″][us_image image=”10893″ link=”%7B%22url%22%3A%22%22%7D”][us_separator size=”small”][vc_column_text]

How to Bypass MFA 

Not all forms of multifactor authentication offer the same level of protection. Watch our video to see how hackers utilise social engineering to bypass MFA in real time.[/vc_column_text][us_separator size=”small”][us_btn label=”Watch now” link=”%7B%22url%22%3A%22https%3A%2F%2Fcloudguard.ai%2Fresources%2Fhow-to-bypass-multifactor-authentication%2F%22%7D” style=”28″ align=”left”][/vc_column_inner][vc_column_inner link=”%7B%22url%22%3A%22%22%7D” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22%23E6F9F9%22%2C%22margin-bottom%22%3A%2230px%22%2C%22padding-left%22%3A%227%25%22%2C%22padding-top%22%3A%227%25%22%2C%22padding-bottom%22%3A%227%25%22%2C%22padding-right%22%3A%227%25%22%2C%22border-radius%22%3A%2210px%22%7D%7D” width=”1/2″][us_image image=”13049″ link=”%7B%22url%22%3A%22%22%7D”][us_separator size=”small”][vc_column_text]

Critical Chatter

Stay updated on the latest cybersecurity news with Critical Chatter, curated by our security analysts. Subscribe on LinkedIn for weekly insights into attacks, trends, and news.

[/vc_column_text][us_separator size=”small”][us_btn label=”Read now” link=”%7B%22url%22%3A%22https%3A%2F%2Fwww.linkedin.com%2Fnewsletters%2F7161301398695915520%22%7D” style=”28″ align=”left”][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”1000px” css=”%7B%22default%22%3A%7B%22background-color%22%3A%22linear-gradient%2890deg%2C%2310133A%2C%23000026%29%22%7D%7D”][vc_column width=”1/1″][vc_row_inner content_placement=”middle”][vc_column_inner width=”2/3″][vc_column_text css=”%7B%22default%22%3A%7B%22font-size%22%3A%222rem%22%2C%22line-height%22%3A%2242px%22%2C%22font-family%22%3A%22h1%22%2C%22font-weight%22%3A%22700%22%7D%7D”]Need more help? Book a free chat with our cybersecurity experts to get answers to your biggest challenges. No sales pitch. Just free advice.[/vc_column_text][/vc_column_inner][vc_column_inner width=”1/3″][us_btn label=”Book your free session” link=”%7B%22url%22%3A%22%2Fcyber-clinic%22%7D” style=”28″ align=”center”][/vc_column_inner][/vc_row_inner][/vc_column][/vc_row][vc_row width=”custom” width_custom=”700px” color_scheme=”alternate”][vc_column width=”1/1″][/vc_column][/vc_row]