Hi folks,
Itās that time of year again: to be stuck behind a bus on your commute and to be reminded of the bleak state of ransomware in education. However, itās not the fault of end usersācyber attack methods are anything but static.
Attributed mainly to exploited vulnerabilities, compromised credentials, and good olā phishing, the rise of ransomware throughout the education sector should have Security teams refreshing their curriculums.
Do you block mobile third-party keyboard keyloggers? Have a plan in case of social engineered SIM-swapping? Provide mitigation against malicious repository invitations? Iād venture to guess that the answer is a resounding no.
Thatās why your security awareness program needs an update.
To ensure your end users protect not only themselves, but your organization, it requires teamwork. Now, itās impossible to account for every possible attack vector, but if Security teams update their security policies that allows IT teams to take the lead from there to engage and inform end users on why thereās updates.
Because unlike school, learning about and protecting against cyber attacks is a year-round job. Thatās why it's the perfect time to take the new school year as a sign to spruce up your existing security training because as it turns out, it pays dividends to share your knowledge with others.
And If youāre in need of inspiration to spice up your security training, why not have your end users see if theyāre smarter than a scammer. Youāll either be haunted by the results or impressed. Have fun!
Until next time,
Kenny