by Nicki Dowsett in Anti-virus software, Audit Reviews, Back up solutions, cybercrime, Data Loss Prevention, Disaster Planning, Disaster Recovery, General, Helpdesk, Industry News, IT Support, IT Systems, Microsoft, Microsoft 365, Password Security, Ransomware, Remote working, Risk management, SaaS Protection, Security Policies, Software, Uncategorised, Windows 10, Windows 7, Windows Server 2012
By 2022 it is estimated that 70% of organisations will have suffered a business disruption due to unrecoverable data loss in a SaaS application.
More and more businesses are using SaaS (Software as a Service) such as Microsoft Office 365 or Google Workspace (formerly G Suite) it is often assumed that your data is backed up automatically and that these providers will hold all your data, BUT this is not the case. For example Microsoft state the following in their Service Level Agreement (SLA):
“Microsoft is not liable for data loss due to application outages, it is also not liable for data loss due to deprovisioned user accounts.
We recommend that you regularly backup your Content and Data that you store on the services or store using Third-Party Apps and Services.”
MPR IT Solutions invests time and resources to research the Technology market for all of our products and services to establish the best market offerings for our customers, so that you don’t need to.
Datto Saas Protection is a solution that will fit a large proportion of businesses using cloud platforms such as Microsoft Office 365 or Google Workspace (formerly G Suite).
70% of businesses that experience a large data loss will go out of business within a year. By implementing a back up solution today, you will minimise your risk.
Contact us on 0800 030 20 30 to discuss your options today.Read more
The National Cyber Security Agency is reporting an increase of bogus email and internet campaigns to users. With the current global pandemic and many people now working from home the criminals are taking full advantage of more people relying on email as a form of communication.
Over the years, MPR, have unfortunately dealt with a number of situations involving email and Internet campaigns and virus attachments. Now more than ever we ask that you be extra vigilant for any attachments that you receive.
If you do not know the sender – DO NOT OPEN ANY ATTACHMENT, the chances are it is a cyber crime campaign.
If you do know the sender – CHECK THIS IS AN ATTACHMENT YOU ARE EXPECTING, additionally take a close look at the email address. Often criminals will use an almost identical email address to trick people into opening files for example: email@example.com as opposed to the correct email firstname.lastname@example.org.
If you are unsure of any attachment from a known sender please contact the sender by phone to confirm they have in fact sent you an email.
With many of our customer now working from home, on either a personal computer or one provided by their employer – it is vital that all users ensure that anti-virus software is up to date. MPR IT strongly recommends Webroot as being the best on the current market. If you would like more information on Webroot please contact our sales team on 0800 030 20 30 option 1.
Our helpdesk team are committed to answering all queries as fast as we can and we appreciate your patience at this time. We would also like to thank each and everyone of our customers for their support during this busy time and we wish everyone well.Read more
ANTI VIRUS PROTECTION – PROTECTING YOUR BUSINESS
Ransomware! CryptoLocker! Blaster Worm!
In recent years the threat from Cyber-criminals using these and many other virus and malware has been increasing and evolving. An attack on your network can be extremely costly, time consuming and frustrating for you, your employees and your customers.
Don’t think it can’t happen to you, until it’s too late.
MPR IT, is trusted and relied on by hundreds of businesses in the South East for many areas of IT Support and infrastructure, including network protection from such virus and malware threats?
MPR IT Solutions, continually strive to ensure that we offer the market leading services to all our clients. Our team of experts regularly review the market leaders in all services that we offer, and work hard to ensure that we are providing the best services to our clients to meet your individual needs. With this in mind we have recently taken the decision to use Webroot for protecting both our own and our customer networks. We feel that this is the best option in the market.
Contact us today to discuss how we can protect your business 0800 030 20 30 or email@example.comRead more
Email security and cybercrime – Almost daily there is a story that covers this subject in the news, whether it’s a large global corporation or an elderly retired person. So many people are still unaware of the risks that can be faced with email security.
Here at MPR IT, we have sadly gained a considerable amount of experience in dealing with these threats. We would therefore like to remind our customers of some simple guidelines that you should ensure your staff follow for email security. These include recommendations from the Government Cyber Essentials Scheme. We also strongly advise if you or any employee is concerned they have an affected PC/Laptop – call us asap
- Email Attachments – Never open an email or attachment if you don’t know the sender. If you are not expecting an attachment from a known sender – call them and check they did send you something
- Check email addresses – criminals will set up accounts with very similar email addresses making it easy to trick you into thinking you know the sender firstname.lastname@example.org or email@example.com
- Malware Protection – do you have a robust malware in place? This will stop viruses and ransomware from getting through to your emails and employees
- Access Control – encourage your staff to choose passwords that would be hard to guess and not simply change the number on the end each time it needs to be Password or 123456 are not ever going to be good choices. Also ensure that admin passwords are only given out to members of staff that should have access to these.
- Firewalls – investing in a high end firewall can prevent hackers from gaining access to your systems and to make certain there are no leaks.
- Secure configuration – Is your system configured to ensure security for your organisation. Are all laptops, PC’s and phones password protected? Do files need to be password protected?
- Patch Management – the likes of Microsoft and other operating systems regularly release new updates to their software. Ensure you are fully up to date as these updates will often include patches to ensure your systems are more secure. As hackers become more clever the software providers work hard to identify areas to increase security.
We also recommend you view the following websites
- National Cybercrime Website
- Thames Valley Police – Little Book of Cyber Scams
- Thames Valley Police – Little Book of Big Scams
Whilst the majority of news stories cover ransomware and data being lost or damaged, we have known criminals to spend months watching systems, gathering information and general daily routines. Then with a simple email, that looks to have come from a sender you know they have managed to gain access to your bank accounts and emptied them before anyone has realised. Either way it is extremely costly to your business. Please ensure your staff are fully briefed on email security and the types of scams and crimes that can & have happened. If any doubt or you would like more information please contact us to discuss.
Cyberscams affect people in many walks of life. We have all seen the stories in the news of large corporations that have been hacked such as the recent NHS attack or Talk Talk in recent years. Companies of all sizes are at risk to being hacked or cyberscams, SME’s are targeted just as often, we just dont see it reported as much. Even in your personal life you can be at risk for cyberscams, through social media or email. The cyber criminals are getting sharper and also now send text messages as well as emails to trick people. Everyone no matter their age can be at risk.
Cyberscams can be devastating, with criminals asking you to click on a link to confirm your details and taking you to a dummy site that looks very real. They can also access your systems and monitor your activity, create ghost accounts that make you think you are dealing with a supplier you deal with all the time when in fact they are scammers looking to steal your data and money.
Whilst as a company MPR IT, often given advice and have written a number of blogs on this subject, we have recently come across these two books written by Thames Valley and Metropolitan Police. We feel these are extremely useful and would strongly suggest that you take the time to read and digest. Obviously if you have any questions or require any additional support regarding this subject our team will be pleased to help.Read more
Wanna Cry Cyber Attack – Over the last couple of years, I have spent several hours if not days reading articles on cyber crime and hacking as part of my role here at MPR IT. If you follow us on social media you will also see how this is a hot topic for us and we quite often post news stories of hacks and how you can protect yourselves, I have also written a few blogs on the subject (all of which can be found on our website). So, the breaking news on Friday and all over the weekend of the hack affecting over 150 countries around the world, with some 200,000 machines affected this wasn’t entirely a shock for me. All too often I see stories of both large corporations and small one person business being hit by hacking or ransomware.
As a company that takes pride in providing the best support and advice to our customers, our priority is prevention rather than cure, although we do unfortunately have experience on the cure as well. Our key guidelines for protecting your systems are pretty simple:
- Ensure you Operating System is the most current and up to date – Microsoft release patches and updates regularly. This particularly virus is targeted towards out of date, older systems. Please ensure your system is fully up to date. If you have any concerns please contact us and we can check this for you.
- Many virus’s are spread through email attachments – NEVER open anything from someone you don’t know or aren’t expecting. If you are unsure about an email or attachment, call MPR IT or the company where the attachment has come from and enquire as to whether it is legitimate.
- Ensure you permanently delete any emails with attachments that you do not need, or where you don’t know the sender.
- Make sure that you have an up to date Anti Virus – MPR IT can check this for you if you are unsure how up to date this is or if you don’t have anti-virus we can provide anti virus software to your company.
- NEVER share passwords with anyone and make sure that passwords you do have are always different. PASSWORD1 is surprisingly still a popular choice – it’s not a good idea as very easy to guess.
- Back up your data daily and store a copy off site securely as well on site. The worst that can happen if data is backed up is that you lose one days’ work, and not everything.
The virus ‘Wanna Cry’ that hit the world on Friday, and spread over the weekend is mainly targeted at Government departments. Where systems are older and the networks are very large, this allows it to spread so quickly, we are therefore not expecting for this to affect many of our customers, however please be assured that our team are prepared and ready to deal with any issues that you may experience.
To our customers with a contract that includes workstation monitoring, we have already rolled out emergency patches to any potentially affected machines. If you do not have a contract that includes workstation monitoring please contact us and we can look to update any patches or we can review your contract to include workstation monitoring should you wish.
Please take this simple advice and pass to your colleagues and get the message out on how to avoid potential cybecrime hacks and viruses. Hopefully one day soon I won’t be spending so much of my time reading articles on cybercrime.Read more
Ransomware, cryptolocker and cybercrime seem to be the most popular topics in the news this year. I look after the social media here at MPR IT and a large chunk of my role is to review numerous websites looking for news that may be of interest to not only our customers but also to our team. By keeping on top of the news means we can be one step ahead of new technology coming out, and also what to watch out for.
Most of the news seems to be about cybercrime and hackers lately. Companies are attacked daily, from small websites through to the American government. Utility companies, dating sites, children’s toys they have all been in the news and not for the best reasons. Just this week it was reported that train companies in the UK had been hacked. With more and more companies relying on technology to run it, I sadly fear it won’t be long till some unscrupulous organisation will try a major attack to infrastructure.
Whilst reviewing news sites this week, I was extremely pleased to see a report on a University in Florida. They are one small step closer to helping the world combat cybercrime, by designing a technique called Crypto Drop. The report showed that by monitoring activity on targeted files, it was possible to block ransomware when only a tiny percentage had been encrypted. Whilst it is not fail safe, it is a new approach against hackers. The technique includes countermeasures which are triggered once ransomware infiltrates the network. This technique relies on three indicators of ransomware activity:
- Bulk modification of file types
- Dissimilarity – plain text looks nothing like encrypted file
- Entropy – encryption produces high entropy
Whilst running the demonstration it was proven that Crypto Drop can contain the action of malware. Only 0.2% of files were encrypted. In essence this is an early warning system as opposed to a fail safe solution. Ransomware will still be on your network, and action should still be taken to clean the network, however only a small percentage of files will be lost as opposed to the network. This will not be an automated piece of software and will require your network administrator to run the software to help distinguish between expected and unexpected activity.
As we all know the people behind cybercrime are equally as clever and constantly coming up with new ways to infiltrate our systems and come up with new scams, once a program such as this is developed fully and launched they will no doubt be looking at ways to break through Crypto Drop.
So there is a little light at the end of the tunnel in the war against cybercrime. In the meantime please ensure you review your network security and business practises to ensure you do not become a victim to cybercrime. We have blogged before about the best ways to stay ahead of hackers and this technique will be no excuse to not continue ensuring your systems are secure and backed up regularly. If you require any assistance on making sure your network is secure at all times please contact us at MPR IT Solutions.Read more