Cyber’s Focus On Prevention Hasn’t Worked, Making Cyber Resilience Elusive


We’ve spent decades chasing the illusion of “perfecting prevention.” The industry has poured billions into digital walls, endpoint solutions, SIEM, SOAR and user awareness training—all to build a world in which breaches don’t happen.

However, that world doesn’t exist. The cloud-first shift, SaaS sprawl and identity-driven access have fragmented the enterprise environment and expanded the attack surface in all cardinal directions. In this landscape, prevention has fallen short and been outpaced. Successful attacks keep rising. Credential theft. Exploits. Lateral movement. Data exfiltration. The breach isn’t the exception—it’s the pattern. Stop trying to stop every attack. Start building resilience.

Read more…
Source: Forbes News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Israel keen to set up cyber ‘Iron Dome’ to curb rise in attacks

    May 2, 2022

    Israel’s government on Monday ordered communications firms to step up their cyber security efforts in the wake of a rise in attempted hacking attacks, reports Reuters. New regulations are currently being implemented in which mandatory and unified standards will have to be met, the Communications Ministry and Israel’s National Cyber Directorate said. Under the new rules, firms ...

  • Log4j flaw: Thousands of applications are still vulnerable, warn security researchers

    April 28, 2022

    Months on from a critical zero-day vulnerability being disclosed in the widely-used Java logging library Apache Log4j, a significant number of applications and servers are still vulnerable to cyberattacks because security patches haven’t been applied. First detailed in December, the vulnerability (CVE-2021-44228) allows attackers to remotely execute code and gain access to systems that use Log4j. Not ...

  • NATO enters final phase of project to refresh cyber security technology

    April 24, 2022

    The NCI Agency announced earlier this year that experts had successfully collaborated with industry partners to upgrade the central management of two cyber security systems: the Network Intrusion Protection/Detection System (NIPS) and Full Packet Capture (FPC) system. This contract award begins the next and final phase of the project, where Atos will replace NIPS and ...

  • US govt grants academics $12M to develop cyberattack defense tools

    April 22, 2022

    The US Department of Energy (DOE) has announced that it will provide $12 million in funding to six university teams to develop defense and mitigation tools to protect US energy delivery systems from cyberattacks. Cybersecurity tools developed as a result of the six university-led research, development, and demonstration (RD&D) projects will focus on detecting, blocking, and ...

  • FBI: Ransomware Attacks on Agricultural Cooperatives Potentially Timed to Critical Seasons

    April 20, 2022

    The Federal Bureau of Investigation (FBI) is informing Food and Agriculture (FA) sector partners that ransomware actors may be more likely to attack agricultural cooperatives during critical planting and harvest seasons, disrupting operations, causing financial loss, and negatively impacting the food supply chain. The FBI noted ransomware attacks during these seasons against six grain cooperatives during ...

  • Ukraine says it thwarted Russian cyberattack on electricity grid

    April 12, 2022

    Ukraine said on Tuesday it had thwarted an attempt by Russian hackers last week to damage its electricity grid with a cyberattack. “This is a military hacking team,” said government spokesman Victor Zhora. “Their aim was to disable a number of facilities, including electricity substations.” Kyiv blamed the attack on a group dubbed “Sandworm” by researchers and ...