17 mars 2020 | Local, C4ISR, Sécurité

Online 'phishing' attacks expected to target housebound staffers as COVID-19 spreads

It's a 'huge opportunity' for online crime, one expert warns

The number of "phishing" attacks meant to steal the online credentials of public servants and corporate sector employees now housebound due to the COVID-19 pandemic is on the rise, one cyber security expert warns.

Many attempts are being made against employees who are working from home on virtual private works (VPNs). Cyber experts are still gathering data to establish a direct correlation between the pandemic crisis and the increase in malicious activity.

But Rafal Rohozinski, chief executive officer of the SecDev Group of Companies, said this pandemic moment — when large numbers of employees are at home and receiving instructions from their workplaces on how to connect to internal networks — offers online thieves a "huge opportunity."

Federal government and corporate sector systems were never designed to support a sudden, mass migration of employees from offices to their homes, he said.

"The opening that creates for those who want to wreak havoc through ransomware and malware is really, really significant," said Rohozinski. "And I don't think we're anywhere near prepared for that.

"What we're seeing is an increase in phishing being used as a means to get people's credentials."

U.S. Health Department attacked

The U.S. Health and Human Services Department's website was hit by a cyber attack over several hours on Sunday, an incident which involved overloading its servers with millions of hits.

Officials said the system was not penetrated, although media reports in Washington described it as an attempt to undermine the U.S. government's response to the coronavirus pandemic — and may have been the work of a foreign actor.

Rohozinski said that while the facts are not all in yet, his "professional guess" is that there's a link between the attack and the COVID-19 crisis.

Last week, Canada's top military commander warned that he'd seen recent indications the country's adversaries intend to exploit the uncertainty, confusion and fear generated by the pandemic.

Gen. Jonathan Vance, chief of the defence staff, was not specific about the potential threats — but experts say they could range from hacking to online disinformation campaigns aimed at discrediting the federal government's response.

Rohozinski said he's concerned about the federal government's technical capacity to support thousands of employees on private networks.

"Everybody's moving on to VPNs. Everybody," he said. "This is an enormous pinpoint and an enormous vulnerability."

Federal Digital Government Minister Joyce Murray's office was asked for a response Monday, but was unable to provide an immediate comment.

Many of the country's leading information technology companies are part of the Canadian Cyber Threat Exchange (CCTE), a nonprofit centre where companies can swap information and insights. A CCTE spokeswoman said the corporate sector is better prepared to face the challenges posed by the mass movement of employees to home networks.

Still, there is reason for concern.

"Given we are moving people to work from home now, companies need to ensure that the work from home environment is as safe as the corporate environment and that people are trained to notice these phishing campaigns, just like they were in the corporate environment," said Mary Jane Couldridge, director of business development at the CCTE.

"It's a matter of keeping our community aware of what is impacting Canada daily so we know how to react to it and prevent it from spreading — and not chase rainbows."

Most corporations have plans they'll activate now to cover the wholesale movement of employees to networks outside of the office, she added.

https://www.cbc.ca/news/politics/online-hacking-phishing-covid-19-coronavirus-1.5499725

Sur le même sujet

  • Canadian military on notice to provide logistic support, help vulnerable populations in wake of COVID-19

    31 mars 2020 | Local, Aérospatial, Naval, Terrestre, C4ISR, Sécurité

    Canadian military on notice to provide logistic support, help vulnerable populations in wake of COVID-19

    Canada's top general says the military is in the process of determining what forces would be required to assist federal and provincial governments in responding to the novel coronavirus and that response will be geared to supporting vulnerable populations and providing logistics support. There has been no official call yet for the use of military forces from federal, provincial or territorial governments. But Canadian Forces planners are preparing for such a request. “Our tasks will be geared to support Federal, Provincial, Territorial and Municipal governments and agencies in their efforts to suppress the disease, to support vulnerable populations and to provide logistical and general support to communities,” Chief of the Defence Staff Gen. Jon Vance noted in a statement released Friday on social media. “To do this we are now in the process of identifying the forces required, including our incredibly valuable Primary Reserves and Canadian Rangers. These forces will be organized down to individual level into task forces able to deploy by sea, road or air to where they are needed.” More information will come in the next week, Vance said. But defence sources tell this newspaper that the response if needed will, among other areas, focus on providing support to remote Indigenous communities. Such communities have limited resources, particularly in the area of health and medical capabilities. The Canadian Forces has an extensive logistics capability with its fleet of vehicles and aircraft. It can also set up mobile shelters and medical facilities. Vance noted that many military personnel volunteer in their communities but such work must now be restricted to first responder duties since they are required to be ready for Canadian Forces duties at short notice. “When it's time, we will marshal forces, conduct reconnaissance and deploy as, where and when required,” he added. In his message to military personnel and their families, Vance also announced that the Canadian Forces will go ahead with its annual process of shifting personnel around the country for promotions and new jobs, albeit at a reduced level. The annual military posting season comes at a time when federal government officials are advising Canadians to stay at home and practice physical distancing in an effort to reduce the number of cases of COVID-19. “It is our intention to execute as many of the planned postings as is responsible and reasonable to do,” Vance explained. He noted that the overall number of moves will be reduced significantly and they must be vetted and approved by senior leaders as operationally essential. The busiest time for postings and relocations from one community to another is during what is known as the “Active Posting Season” or APS, according to the Canadian Forces. During APS, about 5,000 to 6,000 members receive their posting messages, usually during the spring and most of the movement is carried out in the summer. Vance said the active posting season will be lengthened to conclude by Dec. 31. In addition, Vance warned that the COVID-19 pandemic is disrupting normal administration procedures for the Canadian Armed Forces or CAF. “To reduce the administrative risks and to preserve our strength as recruiting has almost ceased, transition out of the CAF and retirements may be voluntarily delayed,” he warned. “Those who are releasing voluntarily but wish to remain in the CAF are welcome to do so and appropriate terms of service will be offered. Those wishing to continue with transition may do so, but you must expect significant delays and disruptions.” Vance also encouraged former military personnel to rejoin the Canadian Forces. https://ottawacitizen.com/news/national/defence-watch/canadian-military-on-notice-to-provide-logistic-support-help-vulnerable-populations-in-wake-of-covid-19/

  • CAE appoints Daniel Gelston as group president of defence and security

    10 août 2020 | Local, Aérospatial

    CAE appoints Daniel Gelston as group president of defence and security

    Posted on August 10, 2020; CAE Press Release CAE recently announced the appointment of Daniel Gelston as group president, Defence and Security, effective Aug. 24, 2020. He will be based in Washington, D.C. and will be succeeding Heidi Wood, CAE's executive vice-president, Business Development and Growth Initiatives, who was also acting as interim group president. “I am very pleased to welcome Dan Gelston to CAE's executive management team, as our new group president, Defence and Security. He is a proven leader with more than 20 years of experience in the U.S. military, intelligence community and the global defence industry,” said Marc Parent, CAE's president and chief executive officer. “Dan's energy and his solid track record as a growth-focused leader will be invaluable in driving the growth of our defence business in our core operations and expanding further into an array of related adjacencies that align well to our business strengths. I have no doubt that his industry experience and exceptional leadership will propel our defence business to reach its full potential.” Before joining CAE, Gelston served as president of L3Harris Technologies' Broadband Communications Systems sector and president of Communication Systems-West division. In this role, Gelston led his team to multiple record-breaking years of fiscal performance and significantly improved the business's overall competitive win-rate and pipeline expansion. Prior to his leadership role at L3Harris Technologies, Gelston was president of the Special Security Agreement (SSA) businesses Smiths Detection Inc. and Cobham Tactical Communications and Surveillance. In 2017, he led the SSA-controlled portion of Smith's $710 million Morpho Detection acquisition and the divestment of Smith's Brazil business. In 2015, Gelston led the sale of Cobham's Surveillance Business and served as CEO during its transition to a standalone company. Gelston holds a master of science degree in strategic intelligence from the National Intelligence University and a double-major bachelor's degree in economics and international strategic policy from Bucknell University. Gelston's military experience includes active and reserve duty from 1998 to 2007 as an armor and military intelligence officer. He is a U.S. Army Armor School Draper Awardee and Intelligence Officer School Distinguished Honor Graduate. https://www.skiesmag.com/press-releases/cae-appoints-daniel-gelston-as-group-president-of-defence-and-security

  • Journée Innovation MRO et défense

    7 février 2020 | Local, Aérospatial, Naval, Terrestre, C4ISR, Sécurité

    Journée Innovation MRO et défense

    Journée Innovation MRO et défense Date de l'événement 22 avril 2020 Lieu de l'événement Palais des congrès de Montréal 1001 Jean Paul Riopelle Pl, Montreal, QC H2Z 1H5 Place Jean-Paul-Riopelle, Montréal, QC H2Z 1H5 Contact CHARLOTTE LARAMÉE charlotte.laramee@aeromontreal.ca Retour à la liste ÉVÉNEMENT AÉRO MONTRÉAL Cette année, nous invitons les secteurs de la défense et du MRO à participer à un événement combiné sur une journée. Les participants pourront assister aux conférences de leur choix sur le thème de la défense ou du MRO le matin avant de participer à des ateliers ou à des rencontres B2B et à la visite de la zone d'exposition l'après-midi. Volet au programme défense Cet événement va fournir un aperçu détaillé des programmes d'innovation en défense et des besoins du secteur pour les prochaines années qu'il s'agisse d'innovation, de technologies de ruptures ou encore de cybersécurité. Les sessions B2B/B2G seront complétées de plusieurs conférences utiles sur le développement d'affaires en matière de défense au Canada et sur le marché des exportations. Volet au programme MRO A l'ère de la globalisation, le secteur aérospatial doit faire face à la pression grandissante de la concurrence étrangère et rencontre de nouveaux enjeux, qu'il s'agisse de la pénurie de main d'œuvre ou des changements climatiques. Cette journée conférence apportera des pistes de solutions aux entreprises du secteur MRO qui s'appuieront sur l'innovation, les nouveaux modèles d'affaires ou encore la réglementation. Vous pourrez aussi rencontrer en format B2B / B2G ou dans la zone d'exposition, les donneurs d'ordre, leurs tiers 1 et les responsables gouvernementaux en lien avec ces projets.

Toutes les nouvelles