11 July 2021

Governments Not Taking Security Seriously - German Edition

It sounds as if they are just throwing in the towel. Rural German district declares disaster after cyberattack

Why do I get the feeling that in some meeting, a manager said (in German), "We're so small; no one will attack us." Right before he denied some expenditure on security.

Local officials confirmed the crime on Friday, saying, "This attack directly affects the entire range of the district's services, including the business of its citizens, which cannot be processed at the moment."

On Saturday, a spokesman for the district told Reuters news agency, "We are almost completely paralyzed."

Officials say the attack occurred on Tuesday and that the district will likely be forced to remain offline for at least a week, leaving it unable to pay out welfare benefits to recipients or finance youth programs.

No mention of backups, or other mitigations. And they didn't identify who the attackers were.

This isn't the 1st German disctrict to be attacked; they are just the first to declare a disaster. (Let's them get a payout from the federal government.)

And it is worth repeating. If your backups are accessible via the network, then they are not backups. Not for the purposes of ransomware. Look up Offline.

No comments:

Post a Comment

Comment Moderation is in place. Your comment will be visible as soon as I can get to it. Unless it is SPAM, and then it will never see the light of day.

Be Nice. Personal Attacks WILL be deleted. And I reserve the right to delete stuff that annoys me.