https://lnkd.in/eQDqm8KD
Back in May of this year, the ICO released a report “Learning from the mistakes of others” which contains aalysis of key risks and advice on how to avoid data breaches - I can't overstate just how valuable the ICO advice is, but also how little has changed over the last year. Phishing remains a major risk to organizations, exacerbated by poor password practices and lack of strong Multi Factor Authentication.
The growth of AI as a tool, not just in crafting social engineering attacks; whether it be drafting convincing emails, voice cloning, or even AI generated video, but also in attacking/cracking passwords and even in creating whole new risks and vulnerabilities as new systems are adopted, has made the need to get the basics right even more critical:
- Use strong, complex, unique passwords
- Enable decent MFA that takes account of vulnerabilities and risk
- Risk assess new tools, particularly those that use novel technologies such as AI, and take note of new exploits and vulnerabilities.