It’s being reported that Iranian hackers have targeted at least 18 British universities, including those certified by the National Cyber Security Centre (NCSC) to provide degrees in cybersecurity.
Pravin Kothari, CEO at CipherCloud:
The solution? In this particular scenario, two-factor authentication would have stopped these attackers cold. Technologies like access control with time travel detection could have noted the logins coming from two different IP addresses, in two likely very disparate geographical locations, perhaps at near the same time. User Entity and Behavior Analytics (UEBA) might have also noted attempted bulk file downloads or other atypical behavior by the cyber attackers. Finally, if the data stored within the university clouds is encrypted end-to-end, then the cyber attackers would only have access to unintelligible encrypted data. Cloud security basics still apply and can work better than ever. You only have to use them!”
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.