Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Surge in DDoS attacks targeting education and academic sector

Surge in DDoS attacks targeting education and academic sector

As education institutions across the world moved to online learning, cyber threat disruptions have amplified more than ever. Malware, vulnerability exploits, distributed denial-of-service (DDoS), phishing attacks have all struck this sector, increasing in frequency over the past two months.

As schools in the U.S. restarted in remote learning mode, cybersecurity companies noticed a surge in DDoS attacks causing network downtime and pausing classes as a consequence.

Steep curve for DDoS attacks

Data from cybersecurity company Check Point shows that attackers have adopted different methods and tactics when targeting the education and research sectors in the U.S., Europe, and Asia. The end goal also seems to vary from one region to another.

Check Point notes that most of the attacks targeted institutions in the U.S., with an average weekly increase of 30% during July and August in the academic sector. This means a jump from 468 to 608 when compared to May and June.

source: Check Point

The cause of the surge were DDoS attacks, typically deployed by hacktivists. Sometimes, though, behind the disruption are students trying out dedicated tools freely available online.

A South Miami Senior High School junior student was arrested earlier this month for launching eight DDoS attacks against the County Public Schools.

Kaspersky also signaled at the beginning of September that this year saw a sharp rise in DDoS attacks against the education sector, on the backdrop of the pandemic that forced online classes.

“For each month from February to June, the number of DDoS attacks that affected educational resources out of the total number of attacks was 350-500% greater in 2020 than in the corresponding month in 2019,” Kaspersky found.

DDoS affecting education (Q1 2019 vs Q1 2020) source: Kaspersky

Also Read: New Data Protection Laws Australia: How Implementation Works

Not just DDoS

In Europe, the goal of most attacks targeting the academic sector in July and August was information disclosure. Check Point recorded a 24% increase, which translates to a jump from 638 to 793 incidents.

Cyber attacks in Asia hitting the same type of victims also increased, but their nature varied from DDoS to remote code execution and information disclosure.

Check Point says that the weekly average attack activity against academic organizations increased by 21% in July and August, or from 1,322 to 1,598 when compared to the previous two months.

source: Check Point

While DDoS is the most prominent type of attack stemming from the research, other threats also affected the education and research segment. Phishing and malware disguised as legitimate platforms like Zoom, Moodle, or Google Classroom were a common scenario this year.

Additionally, many schools in the U.S. fell victim to ransomware attacks this year. One of the most recent example is the Fairfax County Public Schools (FCPS) that were hit by Maze ransomware and disclosed the attack on Friday.

Previously, ransomware operators attacked Clark County School District and Toledo Public Schools [12].

Also Read: Computer Misuse Act Singapore: The Truth And Its Offenses

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us