Many of us are familiar with the concept of scenario analysis, which deliberates future events by considering alternative possible outcomes. On the other hand, threatcasting is aimed at the identification of specific actions, indicators and concrete steps that can be taken today to disrupt, mitigate and recover from future threats.
StormWarning! Blog
Some time ago, hacking computer systems required a high degree of expertise, which necessitated lots of learning and exercising time. Moreover, the older generation of hackers had to spend months of testing systems and looking for weak entry points before the strike. Things have drastically changed in the past decade. It is now sufficient to get on YouTube or enrol some of the Massive open online course (MOOC) and learn hacking skills. If you are not in a learning mood, there are faster ways to the hacking world.
Today’s economy thrives on disruption. Unless you maintain quality services and keep up with technology, you are likely to become obsolete. Blockbuster, Tower Records, and Myspace are reminders of what can happen if your business fails to adapt and evolve with technology. Quality services, however, increasingly depend on securely keeping up with technology – as we shall see in a moment.
The cyberattack affected the control and communication assets on the operational technology (OT) network of a natural gas compression facility. According to CISA, a cyber threat actor has used a ‘spear phishing’ link to obtain initial access to the company’s information technology (IT) network before pivoting to the OT network:
Traditional technologies are no longer addressing the growing needs of modern business. The applications that power the Internet of Things (IoT) often require response times that cannot be fulfilled using traditional models of data transmission and processing. How is then secure edge computing?
Cybersecurity is today more human than a technical challenge. Thus, a foundation in ethical thinking and behaviour is equally critical for cybersecurity professionals and those that use organisational information systems. Furthermore, getting multiple perspectives on various cybersecurity issues is the key to forming a concrete and inclusive analysis. Here are a few tips on how to verify the trust in dealing with third-party cybersecurity risk management:
- 5G security: Is the cheese already moved?
- Deepfake: A fake news on steroids
- Weak cybersecurity can make benefits of the 4IR null and void
- Dear Board Members, we are under attack!
- Habituation as cybersecurity nightmare and panacea
- Digital Twin technology is cool but the benefits must be protected
- Human factor as a perpetual problem in cybersecurity: Are awareness campaigns wonder drugs?
- Building cybersecurity culture: are we locked into “Cyber Autism”?
- Coffee vs Digital Prosperity
- Insider Threat: Often neglected cybersecurity hazard
What is StormWarning! ?
StormWarning! is a Cybersecurity consultancy. Our experienced team of cybersecurity experts provide cybersecurity assessments, cybersecurity training and cybersecurity solutions to organisations that have a high risk public profile. StormWarning! is your organisation's best defense against the ever growing cascade of innovative security threats raining down on all organisations with a public digital footprint.
What is Cybersecurity?
Cybersecurity is the practice of protecting critical systems and sensitive information from digital attacks. Also known as information technology (IT) security, cybersecurity measures are designed to combat threats against networked systems and applications, whether those threats originate from inside or outside of an organization. StormWarning! is constantly researching the latest cybersecurity threats and building innovative measures to prevent them.
NIST Audit & Targeted Cyber-Risk Training
StormWarning! offers comprehensive Cybersecurity Consulting, with a focus on its Automated Online Auditing Solutions, primarily the NIST CSF Readiness Audit. This audit is prioritized as its results directly inform the organization's needs for targeted cybersecurity training. By identifying specific gaps in risk management knowledge, they deliver precise education via Short Courses—like Cybersecurity Risk Management or Understanding Cybersecurity GRC—to ensure staff and leadership close deficiencies and maintain compliance.
Their full suite of services also includes robust Risk Management planning, development of essential Policies, impactful Cybersecurity Awareness Campaigns, and a security monitoring/incident response platform, StormFront. Additionally, we offer a resource library of Cybersecurity Books authored by our esteemed associate Dr. Zoran Mitrovic.