Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - The SME And Understanding The Cyber-Exposure And Known Knowns
Articles

The SME And Understanding The Cyber-Exposure And Known Knowns

Professor John WalkerBy Professor John WalkerNovember 14, 2016Updated:December 30, 20215 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

For some time now I [and most Security Professionals] have been very much aware that the State of Cyber Security is parked in a very dangerous layby. With far too regular reports hitting the press of data breaches and successful hacks against both the private and public sectors. These ranging across a set of targets from the Financial Services, to Oil and Gas, Industrials, and Government assets alike – and this is on a global scale generating trillions in illicit revenue, increasing year-on-year!

In November 2016 I was very much encouraged to see a refreshing Cyber Security event being hosted by a company based in the East Midlands, to spread the word of the real Cyber Threat to business and to educate the great unwashed. This I felt at that time to be significant progress, reaching out to the untrounced masses outside the London catchment. The event enjoyed support by a well-known anti-virus provider, and a couple of other niche security providers residing within the cyber-space. The other encouraging indication was that the event was well supported, and so I was hopeful we were seeing the green shoots of a regional push in my local community to recognise, and to work towards mitigating the cyber-threat at the SME level – however, disappointment was not far away.

The company hosting the event are a respected local brand, so the expectations of accuracy and their own security profile were naturally extant. However, my expectations were soon to be dashed by the discovery of several low-hanging security and cyber exposures – linked to the lack of governance, compliance, and an absence of applying, what would be an expected level of good-practice security to protect their own assets – observations which were arrived at as an on-looker, with no a need to hack anything whatsoever. The following shortfalls were discovered from a simple connection to their guest access point, and a little investigation on the Internet utilising OSINT:

  1. Access to the company Gust WiFi AP was made available, with no need to agree an AUP [Acceptable Use Policy]
  2. 250 Guest WiFi connections were in place at a company with a SME profile of operations
  3. The WiFi footprint went well beyond the company accommodation and was visible from and extended distance
  4. It appeared that some critical servers were also associated cross-guest-to-operationalnetwork – some of which included communications, and security systems
  5. Servers were named as-was– so for an attacker to identify, say the Skype Service was easy
  6. Some O/S were identifiable – [E.g. Apple]
  7. Servers supporting Anti-Ransomware services were identifiable on the Guest Network
  8. IP information and other such useful snippets were published and available to all guests
  9. Open Ports were interesting – some of which can support malicious connection to the end-point device. With others inferring supporting security services – For example:

80/http World Wide Web HTTP
135/msrpc Microsoft RPC services
139/netbios-ssn NETBIOS Session Service
445/microsoft-ds SMB directly over IP
1433/ms-sql-s Microsoft-SQL-Server
3389/ms-term-serv Microsoft Remote Display Protocol

3389/ms-term-serv Microsoft Remote Display Protocol
8080/http-proxy Common HTTP proxy/second web server port
8081/blackice-icecap ICECap user console

  1. Domain Management was poor with critical assets not owned – e.g. .eu [this was a company working with interest in that trading zone]
  2. Over 100 email addresses exposed to Pharming – supporting the potential for a Phishing Campaigns, or easy communications with the end users
  3. External Out-of-Office communications were excessive in contend, and again extended the potential of external attacker abuse – For example giving up the mobile telephone number
  4. Based on the verbose information provided, OSINT Methodologies were easy to employ to associate and gather more target intelligence, supporting identification of real-people end user profiles
  5. The company domain is associated with over 30 threat actors, and malicious entities including malware

The disappointment for me here was – the day very much focused on the threat from Phishing, Social Engineering, and the misuse of information of the very type I had discovered. Even more disappointing, and to some extent frustrating was I dropped a friendly email to the organisation outlining there were several areas which should be considered from the cyber-perspective – which received zero response.

My concerns here are twofold:

  1. That there would seem to be a disjoint on the topic of cyber for those who look to understand the exposures and vulnerabilities it can bring to the table
  2. That the Cyber-Threat may be utilised by some organisations as a marketing ploy to extended their own IT support services

At the end of the day, it is not a case that the company in questions IT assets were not being well supported and maintained. In fact, far from it as my expectation aligned to their profile would suggest they run very robust operations. It is where we get into the world of understanding the wider implications of Cyber-Security and the associated risks where this company fall. Not appreciating their own organisational digital footprint, and the implication of the extended opportunities of compromise it may bring to the table of the Boardroom.

[su_box title=”About Professor John Walker” style=”noise” box_color=”#336588″][short_info id=’66024′ desc=”true” all=”false”][/su_box]

Professor John Walker

John is the Principle at Shadow-Intelligence (Si), partnering with PALISCOPE, BreachAware and iStorage. He is a Visiting Professor at the School of Science and Technology, Nottingham, Trent University (NTU) and holds the appointment of Editor in Chief for the International Journal of Cyber Forensics and Advanced Threat Investigations (CFATI). For the last decade he has delivered training courses in the Middle, and Far East to Commercial, Industrial, the Financial Services Sector, and Military Agencies, including the UAE, US, Pakistan, Saudi Arabia, Malaysia (KL), Singapore, Argentina, and Sao Paulo

He served in the Royal Air Force 22 years’, specialising in Counterintelligence, working with UK Agencies such as GCHQ/CESG, and others in the fields of SIGINT, COMINT and Satellite Communications, holding appointments such as System ITSO for a CIA SCIF.

In the commercials sectors of IT/Cyber he has worked for/with Logica, Bae, T5, GM, Experian, Betfair, Palace of Westminster, House of Lords/Commons, TSol (Treasury Solicitors) and provided Consultancy to the Saudi Arabian MOD, TRA (Telecommunications Authority (Dubai) and the Military Academy of Malaysia (KL) on SOC, CSIRT, Digital Forensics and OSINT. Within the last 5 years he has focused on Geopolitics, with global expertise around the UAE and Russia, Anti-Terrorist Operations (ATO), Cyber-Warfare, Dezinformatsiya (Disinformation) and Maskirovka (Military Deception).

  • Professor John Walker
    China Threat Recap: A Deeper Insight
  • Professor John Walker
    Missing The Point In The Current Age Of Cyber
  • Professor John Walker
    Part 1: Historic To 2022 – The APT And Logical Threats
  • Professor John Walker
    A Hairs Breadth

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

May 20, 20265 Mins Read

Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

May 6, 20265 Mins Read

Why OSINT deserves the same status as other intelligence disciplines

March 17, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}