Daily Mirror (Sri Lanka)

Cybercrimi­nals targeting Mac users with malware attacks

-

Fortinet, a global leader in highperfor­mance cyber security solutions, cautions that Apple devices have recently become attractive targets for cyber attackers due to their fast growing popularity and user demographi­cs.

In many organizati­ons today, C-suite executives and marketing teams are more likely to use Macs. These individual­s not only share valuable informatio­n, they are also very often less technicall­y savvy and therefore, less likely to back up their devices, encrypt stored data, or abide by security best practices.

New attack opportunit­ies and threat vectors are also making the targeting of Mac devices easier and more attractive. For instance, Fortinet’s Fortiguard Labs threat research team is starting to see the developmen­t of hacking tools that target cross-compatible software.

In addition, it has become easier for cybercrimi­nals to scale up their operations against Macs. Due to the rise of cybercrime-as-a-service, cybercrimi­nals have started building malware “franchises”. Instead of targeting Macs one at a time like in the past, criminals can now leverage prebuilt technology to attack vast numbers of potential victims in exchange for sharing profits on the back end. While ransoming one device may not be of much financial value to profession­al cybercrimi­nals, owning hundreds of franchisee­s targeting thousands of devices every day most certainly is. At the same time, such an opportunit­y appeals to many small-time players, such as lone-wolf hackers working out of their parents’ homes.

“When it comes to security, the only constant is change, whether it is the way networks are evolving or how these changes are creating new opportunit­ies for criminals,” said Aamir Lakhani, Fortinet Senior Security Strategist. “It is imperative that companies approach security from a holistic perspectiv­e. This includes making sure that every device is protected across all threat vectors,

including Mac devices that were thought to be secure.”

In response to this new wave of brazen ransom-ware attacks, Fortinet recommends Mac users to take the following preventive measures: 1. Apply patches and updates. Apple regularly provides security updates. Users must make sure they take the time to apply them.

2. Backup your device. Apple’s Time Machine service will automatica­lly create full system backups, which means that should a system get ransomed, one could simply wipe the device and perform a full system restore from backup. Regularly scan backups for vulnerabil­ities and store these backups offline. Offline storage is vital because Time Machine backup systems are often persistent­ly connected to the device being backed up, and risk being compromise­d during an attack. 3.Encrypt data stored on device.

While this may not be effective against many ransom-ware variants, it is still a good practice as it can protect an organizati­on should any device become infected with malware that is designed to steal files and data. 4. Install an endpoint security client. Look for endpoint solutions that will not only protect your device, but tie that security back into your network security strategy, allowing you to leverage and share threat intelligen­ce to better protect your device and its assets. 5.Deploy security that covers other threat vectors. As email is still the number one source for malware and infection, ensure that a robust email security solution is deployed. The same is true for web security tools, wired and wireless access controls, cloudbased security, and network segmentati­on strategies that help detect, isolate and respond to threats found anywhere across a distribute­d environmen­t.

Newspapers in English

Newspapers from Sri Lanka