Malware Will Cripple Cloud And IoT Infrastructure If Not Contained

Junaid Islam

The Malware Cloud Concern

This year we’ve had two cyber attacks in which malware was used to cripple government computer systems. Unless counter-measures are deployed, similar malware attacks can be used against cloud and IoT infrastructure.

2017 started with the Shamoon2 cyber attack on Saudi Arabian government systems.  The attack wiped out data on 50,000 compute devices and servers.  More recently a cyber attack against the Ukraine government called NotPetya wiped out data as well as disabled energy management systems.

The destructive power of both malware attacks derived from the difficulty to patch large numbers of compute devices. Thus while the attacks were not “zero-day”, cyber attackers created weapons-grade malware by adding the ability to laterally search for vulnerable systems.

For organizations migrating to the cloud or deploying IoT infrastructure the recent cyber attacks should be a wake up call to the destructive power of malware that can autonomously hunt for targets!

The increasing number of personal compute devices and supply chain partners connecting to enterprise clouds makes universal endpoint protection impossible. Subsequently, malware can find and propagate from infected compute devices to cloud-based applications. Once infected, hosted apps can become malware super spreaders. However as bad as the risk of malware is to enterprises, the risk to IoT systems is even greater.

The new generation of IoT devices has the ability to autonomously communicate locally and globally.  As IoT devices come in hundreds of different variations with specialized software modules, patching IoT systems is far more difficult than personal compute devices.

Infected IoT devices can spread malware from autonomous vehicles and energy management systems to consumer products and cloud computers – and then back again.  A malware attack on billons of networked IoT devices would take months or years to correct.

Malware Cloud Concern

Fortunately there is a proven counter-measure to weapons-grade malware that is a Software Defined Perimeter (SDP) based application layer access control solution.

Vidder developed an application layer access control solution under the PrecisionAccess brand two years ago.  At that time enterprises with high value intellectual property wanted a counter-measure agianst the office of Personnel Management (OPM) cyber attack.

The OPM attack utilized stolen credentials in combination with lateral movement to find classified data that was hidden deep in the data center.  To ensure similar attacks didn’t happen again, Vidder developed an access solution that verified identity (to stop credential theft) and then provisioned an application layer tunnel (to stop lateral movement).

Application layer access control protects cloud assets by ensuring only authorized devices are granted connectivity.  Only whitelisted applications on the user’s device are allowed access to a specific port on the application server.  If a hosted app should become infected, application layer connectivity ensures that malware can’t spread from the cloud back to the user’s device.

Similarly application layer access control can protect IoT infrastructure from lateral movement malware by only allowing authorized process-to-process connectivity.  Subsequently malware cannot re-task IoT devices or backend cloud infrastructure.

With cyber attackers now developing malware that can hunt for vulnerable compute devices, we must deploy proven counter-measures to protect cloud and IoT assets.  Application layer access control, such as Vidder’s PrecisionAccess, is a proven counter-measure that should be deployed before disaster strikes.

By Junaid Islam

Episode 5: How the Pandemic is Changing Business and the Cloud

An Interview with Ed Dryer of Steadfast With the global pandemic wreaking havoc on business ...

Episode 1: Why Small and Medium Sized Businesses Need an MSP

Small and Medium Sized Businesses Need an MSP Small and medium-sized businesses don’t enjoy the ...

Episode 2: Coronavirus Phishing Emails and Work-from-Home Meetings

Coronavirus Phishing Emails What to watch out for as scammers exploit pandemic panic, and tips ...

SIGNUP FOR OUR FREE NEWSLETTER

Enjoy thought leadership insights, industy news, free tech reports, podcasts and comics.
Something went wrong. Please check your entries and try again.
Jeremy Daniel

Find Competitive Advantage through AWS by Partnering With The Experts

Setting up your cloud configuration is too important to not involve the experts MediaTemple & CloudTweaks Thought Leadership Brand Series So many great business ideas ...
Martin Mendelsohn

How Will COVID-19 Impact Security Talent?

New Security Talent As we emerge from the era of COVID-19, unemployment will recede, and new jobs will be created more rapidly than jobs were ...
Kayla Matthews

40% of Organizations Are Leaving Office 365 Data Vulnerable

Office 365 Data Vulnerable Microsoft Office 365 is a popular platform for individuals and organizations alike. But, recent research shows many organizations are apparently too ...
Ajay

Deep learning to avoid real time computation

Avoid real time computation “The underlying physical laws necessary for the mathematical theory of a large part of physics and the whole of chemistry are ...
Kaylamatthews

New Security Regulation – Cybersecurity Maturity Model Certification (CMMC)

Cybersecurity Maturity Model Certification Changes are on the horizon for the Department of Defense (DoD) and its contractors. Late last year, the DoD announced the ...
David Balaban

Ransomware – Cybercriminal Groups Know The Weak Points

Cybercriminal Groups Grow Data breaches and leaks represent a quickly growing security problem these days. When plenty of people work from home, the risk of ...