This session is for members.

Subscribe or log in to watch every GoSec session.

Subscribe Log in

This recording is not available yet.

Impact of the Russia – Ukraine Conflict on your Cybersecurity

Download resources

About this session

David Poellhuber, executive vice-president of Hornetsecurity's Canadian division, delivers a French-language reading of the Russia-Ukraine cyber conflict for Canadian organisations. He opens with footage of the FSB raid on the REvil crew in January 2022 and argues that Russian-American cooperation ended with the invasion. Drawing on a Microsoft study, he shows how cyberattacks now precede kinetic strikes: a wiper the day before the invasion, the Viasat router attack, media outlets before the Kyiv tower strike, lateral movement into the Zaporizhzhia plant. He recalls the 2015 grid attack and NotPetya as precedents, then lays out Canada's exposure through NATO and Five Eyes, the CSE's new active-operations mandate and four risks: recycled zero-days, being caught in the crossfire when a forgotten VM is used by hacktivists, collateral disruption of critical suppliers, and the IT supply chain after Kaseya and SolarWinds. The IT Army of Ukraine gets a sceptical look. He closes with governance and technical measures (policies, response plan, backups, patch-upgrade-replace, email security, MFA, outbound monitoring) and a short Hornetsecurity pitch, noting Law 25 breach notification and rising cyber-insurance premiums.

The Cyberconflict between Russia and Ukraine has spurred numerous “Shields up” warnings from CISA, Certs, our own CCCC, and other agencies. What is the real risk for Canadian businesses? This talk presents the current state of affairs on the cyberwar and some of the tools that can be used to mitigate this new elevated risk.

Key takeaways

  • Expect a cyber component in every armed conflict from now on; cyber operations are timed to support kinetic strikes.
  • State-grade zero-days end up recycled by ransomware crews, so patch, upgrade or replace anything that cannot be kept current.
  • Secure forgotten VMs and unused infrastructure so hacktivists cannot use them to attack a foreign target under your name.
  • MSPs and software vendors are the supply chain: secure your own update and delivery processes because a compromise hits every customer.
  • Prepare governance before the incident: adaptable policies, a rehearsed response plan, a pre-contracted incident responder and cyber insurance while you still qualify.

Speakers

David Poellhuber
David Poellhuber
Executive VP · Hornetsecurity
David Poellhuber, is an entrepreneur with a background in technology. In the aftermath of the dotcom bubble, in 2003, he founded Zerospam. Which has grown rapidly to become a recognized leader in the Canadian spam and malware solutions market. In… Read moreRead less

David Poellhuber, is an entrepreneur with a background in technology. In the aftermath of the dotcom bubble, in 2003, he founded Zerospam. Which has grown rapidly to become a recognized leader in the Canadian spam and malware solutions market. In 2021, Zerospam was acquired by Hornetsecurity and extended its cybersecurity services to offer a full suite of email security solutions. David enjoys as much a good challenge as sharing his vision on new cybersecurity issues along with the high level expertise of his team. He has remained on board and today is leading the Hornetsecurity Canada team with the goal to strengthen its presence across Canada through our partners and distribution network.

Resources

Tags

More from GoSec 2022

Also from David Poellhuber

On the same topic

This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.