Protect Your Business During Staff Holidays

In this next summer security article, and with the summer holiday season upon us, we take a look at the various aspects of protecting your business when your staff are on holiday, offering practical advice and solutions to help you stay secure and efficient while staff are physically away.

Why Worry? 

Holidays are essential for employee well-being and morale, providing a much-needed break and an opportunity to recharge. However, when staff-members take time off, it can create gaps in your business operations, potentially leading to significant issues if not properly managed. The absence of key personnel can disrupt daily operations, leaving critical tasks unattended and increasing the risk of errors and delays.

Identifying Key Risks 

The first step in protecting your business during holiday periods is to identify the key risks that could disrupt operations, to enable you to make a plan to mitigate those risks. For example, these key risks include:

– Operational disruption. When critical staff members are away, daily operations can be significantly impacted. For example, IT support, finance, and management roles are essential to maintaining the flow of business activities. If these roles are not adequately covered, it can lead to delays and inefficiencies.

– Security vulnerabilities. This is another significant risk because during holidays, businesses often experience an increased risk of cyber-attacks due to reduced staff vigilance. Cybercriminals are aware that businesses may be understaffed and see this as an opportunity to exploit vulnerabilities. For example, in the US, The FBI and Cybersecurity & Infrastructure Security Agency (CISA) have observed that attackers often target holidays for ransomware attacks, as network defenders and IT support teams are typically at limited capacity during these times. Also, physical security can become compromised with fewer employees on-site, making it easier for unauthorised individuals to gain access.

– Communication breakdowns are another common issue. Maintaining effective communication when key staff are on holiday can be challenging. This can impact customer service and internal coordination, leading to misunderstandings and delays in response times.

– Compliance risks. The absence of key personnel responsible for regulatory compliance can lead to lapses in adhering to legal requirements, such as GDPR. This can result in data breaches and significant fines.

– Loss of institutional knowledge. When experienced staff members are on holiday, the temporary loss of their expertise can hinder problem-solving and decision-making processes. This can slow down projects and affect the quality of work.

It is therefore essential to have a plan in place to ensure that communication channels remain open and efficient.

Planning Ahead 

To mitigate these risks, proactive planning is essential. For example, this should include creating a holiday schedule well in advance that allows you to manage and track staff leave effectively. There are various tools and techniques available to help with this, such as scheduling software and shared calendars. By planning ahead, you can ensure that there is adequate coverage for critical roles and that no single department is left short-staffed. Other measures you can take include:

– Cross-training employees is another effective strategy. By training staff to cover for each other, you can ensure that essential tasks are still completed even when key personnel are away. Implementing cross-training programs can be done through job rotation, shadowing, and formal training sessions. This not only helps during holiday periods but also improves overall team flexibility and resilience.

– Documenting processes and responsibilities is crucial for ensuring business continuity. Having clear manuals and guides for temporary staff or colleagues who are stepping in can make a significant difference. These documents should detail the essential tasks, procedures, and contact information needed to perform the role effectively. This reduces the learning curve and ensures that critical processes continue smoothly.

– Implementing automated systems and processes where possible. Automation can help maintain consistency and reduce the workload of remaining staff. For example, automated email responses and workflow management tools can ensure that tasks are tracked and completed on time.

– Establishing clear communication protocols. Define how and when employees should communicate about their availability and who will be responsible for decision-making in their absence. This ensures that everyone is aware of their roles and responsibilities, reducing the chances of confusion and delays. For example, ensuring that employees set up out-of-office messages and provide alternative contacts can help maintain communication with clients and partners.

– Conducting regular reviews and updates of the holiday coverage plan can also help ensure that things go smoothly. For example, as your business grows and evolves, so too will your staffing needs and operational processes. Regularly updating your plan ensures it remains effective and aligned with your current business requirements.

By incorporating these strategies into your holiday planning, you can help mitigate the risks associated with staff absences and ensure that your business continues to operate smoothly and securely.

Enhancing Cyber Security 

Cybersecurity is a major concern during holiday periods, as reduced staff presence can lead to increased vulnerabilities, as mentioned. There are, however, measures you can take to keep your business security strong. These include:

– Implementing strong access controls. Setting up multi-factor authentication (MFA) and role-based access controls can significantly enhance security. By limiting access to sensitive information during holiday periods, you can reduce the risk of unauthorised access.

– Regular software updates and patching are also essential to protect against known vulnerabilities. Ensuring that all systems and software are up to date with the latest security patches can prevent many cyber-attacks. Automating updates can help reduce the burden on IT staff (and the chance of human error), ensuring that security is maintained even when your key personnel are away.

– Continuous monitoring for unusual activities is critical. Setting up monitoring systems to detect and alert you to any suspicious behavior can help you respond quickly to potential threats.

– Developing and communicating a clear incident response plan can also be a way to ensure that all staff know what to do in case of a security breach, minimising the impact and facilitating a swift recovery.

Physical Security Measures 

While cybersecurity is crucial, physical security should not be overlooked.

Securing the premises with physical security measures such as alarms, CCTV, and secure entry points is always a good idea. However, before holiday period, it’s worth ensuring that all security systems are functional and tested because complacency risks unauthorised access and stolen assets.

Updating access control policies to reflect holiday schedules is another important step. Limiting physical access to sensitive areas within the premises can reduce the risk of security breaches, i.e. ensuring that only authorised personnel have access during these times can prevent potential threats.

Providing all staff with emergency contact information and establishing clear protocols for emergencies during holidays ensures that everyone knows who to contact and what steps to take if an issue arises. This can help resolve problems quickly and efficiently, minimising disruption.

Maintaining Effective Communication 

Effective communication is key to maintaining operations during holiday periods. Measures that can help with this include:

– Setting up automatic replies and email forwarding. This can ensure that communication with clients and partners remains uninterrupted. It’s also worth noting that any automated replies should be changed back when staff return from holidays. For example, it often looms unprofessional to see replies that state that a person is away by communicating a date that has long passed.

– Informing clients and partners of staff absences and providing alternative contacts can also help with maintaining trust and satisfaction.

– Using collaboration tools such as Microsoft Teams, Zoom, or Slack can help facilitate seamless communication among staff. Ensuring that these tools are accessible remotely allows staff on holiday to stay informed and participate in critical discussions if necessary. Regular check-ins and updates help keep everyone on the same page and ensure that projects continue to progress smoothly.

Continuity in Customer Service 

Customer service should not suffer when staff are on holiday. Proactively communicating with customers about staff holidays and providing alternative contacts or support options ensures that their needs are still met. This transparency helps maintain customer trust and satisfaction.

Although not appropriate or practical for all businesses, for some, hiring temporary staff or contractors to cover critical roles can be an effective solution. Training these temporary staff members to handle specific tasks and responsibilities can ensure that they can perform effectively, and this can help maintain service levels and prevent disruptions.

Automating customer service through solutions like chatbots can also be beneficial. These systems can handle common queries and issues, providing immediate assistance to customers. Ensuring that these automated systems are well-maintained and monitored ensures that they continue to function correctly and provide value.

Other Measures 

We’ve looked at many of the key measures you can take to protect the business when staff are away. There are, of course, depending on the nature of the business, other measures that can be taken. These could include:

– Scheduling IT Audits before holiday periods can help to identify and address any vulnerabilities. This proactive measure can prevent potential breaches.

– Implementing redundant systems and backup resources (setting up duplicate or additional systems and resources) can help ensure that critical operations can continue smoothly even if primary systems fail, or key staff are unavailable.

– Developing a succession plan that identifies key employees who can step in and assume leadership roles temporarily can help the decision-making processes remain intact.

What Does This Mean For Your Business?

Maintaining security and operational continuity during staff holidays is crucial for the continuity, resilience, and success of your business, as well as for maintaining strong relationships with clients and stakeholders. Identifying key risks, planning ahead, enhancing cybersecurity, implementing physical security measures, maintaining effective communication, and ensuring continuity in customer service are all essential strategies to protect your business from potential disruptions and vulnerabilities.

Proactive planning and comprehensive strategies are necessary to prepare for staff absences effectively. While existing work pressures and time limitations can make it challenging to finalise plans in time, the cost and risk of neglecting this planning are strong motivators and highlight the critical importance of this effort.

Also, considering the benefits of a well-prepared business, such as improved resilience, customer satisfaction, and overall operational efficiency, should underscore the importance of setting up proactive employee absence and holiday plans. A well-prepared business is better equipped to handle disruptions, maintain high service levels, and protect its reputation.

In summary then, protecting your business when key staff members are on holiday requires a multifaceted and proactive approach. By taking the proactive steps identified here (as well as others specific to your particular business or industry), you can ensure that your business remains secure, efficient, and responsive, even during times of reduced staff presence.

With summer upon us, now is the time to evaluate your current practices and plans and take the necessary steps to ensure that the right measures are in place to deal with any staff absence, both during the main holiday periods and throughout the year. This preparation will help safeguard your business against any eventuality, ensuring continued success and stability.

Featured Article : Apple Avalanche!

Following Apple’s 5-day Worldwide Developers Conference (WWDC24) last week at Apple Park in Cupertino, California, we take a look at the many new products announced and their key features.

Showcasing New Products 

At Apple’s WWDC24 from June 10 to June 14, Apple showcased a variety of updates and advancements across its software platforms, including iOS, iPadOS, macOS, watchOS, tvOS, and visionOS. Key announcements included significant updates for iOS 18 and macOS 15, as well as new AI integrations and improvements to built-in apps like Photos and Apple Music. Crucially, the conference also highlighted Apple’s commitment to AI technologies and its plans to integrate generative AI capabilities into its devices.

Let’s take a look at the key product and other announcements from WWDC24:

iOS 18 

iOS 18, Apple’s latest iOS for iPhones introduces several significant updates, including a more customisable home screen, a redesigned Photos app with AI-powered editing tools, RCS support in Messages for improved cross-platform communication, and enhancements to the Mail, Calendar, and Maps apps. All these improvements are around making the iPhone more intuitive and powerful for users. Also, the Control Centre has now been revamped to feature a multipage layout with third-party widgets.

One other fun new feature for iOS 18 around user-personalisation will be the ability for iPhone users to make their conversations more enjoyable by creating AI images of people they’re messaging with in a way that’s similar to an AI-upgraded Bitmoji.

iPhones To Use Satellites 

There was also the announcement at WWDC 24 that with iOS 18, iPhone users will be able to send messages via satellite. This feature, available on iPhone 14 models and later, expands upon the existing Emergency SOS via satellite capability. It allows users to send and receive iMessages and SMS texts, including emoji and Tapbacks, even when they are out of range of cellular and Wi-Fi networks.

macOS Sequoia 

Apple’s macOS Sequoia, the latest version of its OS for Macs has been given a range of new features including a new Passwords app, redesigned Reader view in Safari with machine learning integration, upgrades to Messages and Notes, and improved window management. The update also includes enhancements to Continuity, such as iPhone Mirroring. With iPhone Mirroring, (through macOS’ Continuity feature), users can mirror their iPhone’s screen and control it from their Mac laptop or desktop.

All this should mean enhanced user productivity and convenience (better password management), a smarter browsing experience, more efficient multitasking, and improved messaging and note-taking capabilities

iPadOS 18 

iPadOS 18 brings updates to the Notes app, including support for Math Notes and a new Calculator app that supports Apple Pencil. It also introduces a floating tab bar for better navigation and similar home screen customisation options to iOS 18.

watchOS 11 

watchOS 11, the latest version of Apple’s operating system for Apple Watch, adds a redesigned Photos face, a new Translate app, and enhancements to the Fitness app, including a Training Load feature and a customisable Summary mode. It also introduces the Vitals app for health monitoring. The hope is that these new features will provide users with a more personalised and comprehensive fitness and health tracking experience, and a more intuitive and visually engaging interface.

tvOS 18 

tvOS 18, the latest version of Apple’s OS for Apple TV includes AI-enhanced subtitles, Amazon X-Ray-style information while watching, and clearer dialogue options, improving the viewing experience on Apple TV 4K.

‘InSight’ For Apple TV+ 

Those who use Apple TV+ may be pleased with the new InSight feature that displays actors’ names and song titles as they appear on the screen and is similar to Amazon’s X-Ray technology. Also, like Shazam, it highlights the song playing in the TV show or film and, as you may expect, then gives the user the option to add it to their Apple Music playlist.

visionOS 2 

Apple’s OS for the Vision Pro headset, visionOS 2, has received upgrades to enhance the Vision Pro experience with new developer frameworks, an international launch schedule, and improved virtual display features. It also introduces new gestures and SharePlay support in the Photos app. For example, it will allow photos to be transformed into interactive experiences using AI. Notably, users will be able to turn existing images into spatial photos (including photos captured on older devices).

New navigation gestures are also being introduced, and it supports higher resolution and larger virtual displays for connected Macs.

Improvements also include new developer tools like volumetric APIs and TabletopKit for games, adds train support in travel mode, and expands content with new 180-degree 8K video formats through partnerships with content creators.

New Markets For Vision Pro Headsets Announced

Accompanying the news of the upgraded features in visionOS 2, Apple has also announced that it will be making its Vision Pro headset available in eight new countries – China, Japan, Singapore, Australia, Canada, France, Germany and the UK, and that the first release of the headset will be in China, Japan, and Singapore on June 28.

Apple Intelligence 

The most significant announcement from WWDC24 is the introduction of Apple Intelligence, a new AI initiative aimed at integrating personal and private AI capabilities across Apple’s ecosystem. There was some concern that Apple has fallen behind in AI and its announcement that it is partnering with OpenAI to include its technology and ChatGPT, which prompted an angry reaction on X by Elon Musk (citing privacy concerns – although possibly more about competition concerns) is a significant strategic shift for Apple.

Apple Intelligence includes, for example, significant upgrades to Siri (as outlined below), making interactions more natural and advanced, and other functionalities with advanced, personal, and private AI capabilities. Apple CEO, Tim Cook, described Apple Intelligence as “the next frontier” in personal AI and explained that the reason why it is so effective is that it will be able to “understand you and be grounded in your personal context, like your routine, your relationships, your communications and more”. 

Siri Upgrade 

The new Apple Intelligence AI initiative has meant that Siri, Apple’s virtual assistant, has received a substantial upgrade. The AI enhancements make Siri more conversational and contextually aware, so it can handle more complex tasks and understand a wider variety of requests. This should include being able to summarise incoming messages, executing commands across multiple apps, and integrating more naturally with users’ daily activities. Apple has also emphasised how most processing will be done ‘on-device’ to help user privacy.

One significant announcement is, of course, that Siri will also be one of the apps that will be able to use OpenAI’s ChatGPT for “expertise”. Tapping into ChatGPT will also mean that users will also be able to include photos with questions for ChatGPT (via Siri) and even ask questions related to docs or PDFs.

Developers And Siri 

It’s also worth noting here that Siri’s new capabilities will also allow developers to enable voice command access to any app menu items and displayed text without additional coding. This means users can issue commands like “show my presenter notes” in a slide deck or “FaceTime him” from a reminder, enhancing app functionality through natural language interactions and improving user experience.

Next-Generation CarPlay 

Apple provided an updated look at the next-generation CarPlay system, the in-car system that allows users to integrate their iPhone with their vehicle’s infotainment system. The improvements include new Vehicle, Media, and Climate apps, designed to offer a more integrated and enhanced user experience.

What Does This Mean For Your Business? 

The WWDC24 announcements appear to signify a transformative phase for Apple, with their belated yet determined and substantial adoption of AI all the way through their entire estate standing out as a strategic pivot. This initiative, which includes a partnership with OpenAI’s ChatGPT, enhances Siri’s capabilities, making it more contextually aware and conversational. For business users, this means more efficient and natural interactions with their devices, potentially improving productivity and streamlining workflows.

The upgrades across iOS, macOS, iPadOS, watchOS, and tvOS collectively may create a more cohesive and powerful Apple ecosystem. For instance, iOS 18’s customisation options and AI-powered tools should make iPhones more versatile and user-friendly, while macOS Sequoia’s new features may enhance productivity through smarter password management, improved multitasking, and seamless integration with iPhones. These improvements could help businesses better manage their digital environments, ensuring that employees can work more efficiently and securely.

The introduction of Messages via satellite with iOS 18 is significant for businesses operating in remote areas or in sectors where connectivity is often an issue, such as logistics, construction, and outdoor events, i.e. ensuring continuous communication, which is crucial for operational efficiency and safety.

Apple’s Vision Pro headset and the enhanced visionOS 2 signals a move towards more immersive and interactive experiences. For industries such as design, training, and presentations, the ability to turn photos into interactive experiences and use spatial navigation may offer new ways to engage and educate. The expanded international availability of the Vision Pro headset may also open up new markets and opportunities for businesses worldwide.

The updates to watchOS 11, with enhanced fitness and health tracking capabilities, emphasises Apple’s commitment to health and wellness, which may be particularly beneficial for businesses focusing on employee well-being and productivity. The new features in tvOS 18, such as AI-enhanced subtitles and detailed information while watching, enhance the user experience for both personal and professional usage, perhaps making Apple TV a more compelling option, e.g. for business presentations and entertainment.

Overall, Apple’s latest announcements reflect a strategic effort to integrate advanced AI and machine learning technologies across its product range. This not only addresses fears of Apple lagging behind in AI but this could even position Apple as a leader in the AI space. It also offers business users innovative tools to enhance productivity, connectivity, and user-engagement. By leveraging the advancements outlined by Apple at WWDC24, businesses could improve their operational efficiency, employee satisfaction, and customer interactions, which may ultimately give Apple a stronger foothold in the competitive tech marketplace.

Tech News : Apple & OpenAI Partnership : Musk Reacts

Following Apple’s recent announcement that it is partnering with OpenAI for its new AI system (which will see ChatGPT on Apple’s new phones), Elon Musk has threatened to ban Apple devices from his businesses.

Apple And OpenAI 

Apple’s CEO, Tim Cook, announced at the company’s Worldwide Developers Conference that, as part of its new personalised AI system, “Apple Intelligence”, a partnership with OpenAI will see ChatGPT integrated across all platforms – within iOS 18, iPadOS 18, and macOS Sequoia. This also means Apple’s new phones will have ChatGPT access and Apple’s Siri will also be able to “tap into ChatGPT”.

Musk’s Reaction 

The announcement, however, did not go down well with ‘X’/Twitter and SpaceX boss Elon Musk. His reaction was to take to his ‘X’ platform to say: “If Apple integrates OpenAI at the OS level, then Apple devices will be banned at my companies. That is an unacceptable security violation”. 

In another comment, Musk said: “Visitors will have to check their Apple devices at the door, where they will be stored in a Faraday cage”. 

Fact Checked By Own Platform 

Other comments, however, such as Musk saying it’s “patently absurd” to think that Apple, which “isn’t smart enough to make their own AI” would be able to ensure OpenAI protected the security and privacy of its devices, and that Apple “has no clue what’s actually going on once they hand your data over to OpenAI” attracted the fact-checking of his own X platform over “misrepresenting what was actually announced”. 

Why? 

Musk’s objections are primarily focused around security and privacy issues. For example, Musk called the integration an “unacceptable security violation,” fearing it could compromise device security.

Offering another critical reason why Apple is partnering with OpenAI (a partnership he described as “extremely concerning”) to use its products, Musk said Apple “isn’t smart enough to make their own AI.” 

Some, however, may think that the real reasons why Musk is objecting so strongly to the OpenAI / Apple partnership have more to do with factors like:

– A history with OpenAI. Musk co-founded OpenAI but left due to disagreements over the company’s direction. He has since publicly criticised and even sued OpenAI, particularly targeting co-founder Sam Altman.

– Criticism of AI leaders. Elon Musk has had public disputes with notable AI figures, including Meta AI chief Yann LeCun, reflecting his contentious stance on AI development practices.

– Competitive interests. Mr Musk founded xAI, positioning its chatbot, Grok, as a direct competitor to OpenAI’s ChatGPT, highlighting his interest in the AI market.

– Recent funding and valuation. For example, xAI’s recent $6 billion funding round, raising its valuation to $24 billion, may be an indicator of Musk’s serious investment in competing with OpenAI.

What Does Apple Say?

Apple had not (at the time of writing) replied to Musk’s comments. However, Apple’s CEO, Tim Cook, sees ‘Apple Intelligence’ as the company’s next big step, particularly given that it appears to have been slow in adopting AI. Tim Cook said: “Recent developments in generative intelligence and large language models offer powerful capabilities that provide the opportunity to take the experience of using Apple products to new heights”. 

It’s ‘all change’ for Apple recently anyway as it looks like Apple may need to open up its business practices CMA’s Digital Markets Unit (DMU) decides, later this year, it has a ‘Strategic Market Status’ (SMS) and decides that Apple has “substantial and entrenched market power” and a “position of strategic significance”. This could lead to measures for Apple like allowing third-party app stores, enabling app sideloading, unbundling WebKit from browsers, sharing data with competitors, and avoiding preferential treatment of its own services.

What Does OpenAI Say? 

Understandably, Sam Altman, CEO of OpenAI (no stranger to criticism from Elon Musk) seems very happy about the prospect of its partnership with Apple, saying: “We’re excited to partner with Apple to bring ChatGPT to their users in a new way. Apple shares our commitment to safety and innovation, and this partnership aligns with OpenAI’s mission to make advanced AI accessible to everyone. Together with Apple, we’re making it easier for people to benefit from what AI can offer.” 

Altman may also be happy about the fact that Apple is reported to have also had talks with Google about perhaps using Gemini but has opted for OpenAI.  OpenAI also works in partnership with Microsoft and this business relationship has attracted attention over possible antitrust concerns.

What Does This Mean For Your Business? 

The partnership between Apple and OpenAI could represent a significant shift in the tech landscape, particularly for businesses relying on Apple products. For Apple, this collaboration enhances its AI capabilities, integrating ChatGPT into its ecosystem, which could greatly improve user experience and operational efficiency. This move looks like positioning Apple as a major player in the AI field, potentially attracting more customers and boosting its competitive edge.

For OpenAI, aligning with Apple will extend its reach and influence, embedding its technology into widely used consumer devices. This partnership could, therefore, lead to broader adoption of OpenAI’s technologies, fostering innovation and expanding its market presence. However, this could also mean increased scrutiny and the need to ensure robust security and privacy measures to maintain user trust.

Elon Musk’s reaction is a sign of the competitive tensions in the AI industry. His threat to ban Apple devices from his companies highlights concerns over data security and privacy, which are actually critical for businesses to consider. Musk’s stance, however, may also be influenced by his competitive interests, given his involvement with xAI and its chatbot Grok. This rivalry could intensify as companies vie for dominance in the AI market.

For the AI market, this partnership could be a double-edged sword. On one hand, it may accelerate AI integration and innovation, offering businesses advanced tools for efficiency and productivity. On the other hand, it raises concerns about data security, market monopolies, and the ethical implications of widespread AI use. Businesses must weigh these factors when adopting AI solutions, ensuring they align with their security policies and ethical standards.

For business users of Apple products, the integration of ChatGPT means access to powerful AI capabilities that can streamline operations, enhance customer interactions, and drive innovation. However, it also necessitates a reassessment of data security practices to protect sensitive information against potential breaches. As AI continues to evolve, businesses must stay informed and adaptable, leveraging new technologies while safeguarding their interests.

Tech News : NHS Cyber Attack Means Blood Donors Needed Urgently

A recent ransomware cyber-attack on a provider of lab services to the NHS led to so much disruption in several major hospitals that an urgent appeal for donations of O-type blood was issued.

What Happened? 

On Monday 3 June, Synnovis, a provider of lab services, was the victim of a ransomware cyber-attack. The attack on the provider then impacted several major hospitals in London, including King’s College Hospital, Guy’s and St Thomas’, the Royal Brompton, and the Evelina London Children’s Hospital, and primary care services in southeast London. The attack is thought to be the work of Qilin, a Russian group of cyber criminals.

The Effects

Several of the London hospitals affected declared it a critical incident. The effects of the ransomware attack included the cancellation of operations, diverting patients to other trusts, and disruption in key areas such as transplant surgeries and blood transfusions.

Urgent Appeal For Blood Donations 

The attack meant that the affected hospitals couldn’t match patients’ blood as quickly as usual. This, and the fact that blood only has a shelf life of 35 days (so stocks need to be continually replenished), and operations have been cancelled (creating a backlog) because of the cyber-attack led to an appeal. On 10 June, NHS Blood and Transplant (NHSBT) issued the appeal for O-positive and O-negative blood donors to urgently book appointments to donate in one of the 25 town and city centre NHS Blood Donor Centres in England, to boost stocks of O-type blood.

This is due to the fact that when hospitals do not know a patient’s blood type or cannot match their blood, it is safe to use O-type blood. O-negative blood type (8 per cent of the population have it) for example, can be given to anyone and is often known as the “universal blood type”, while O-positive, the most common blood type (35 per cent of donors have it) can be given to anybody with any positive blood type.

Following the disruption caused by the ransomware attack, more units of these types of blood than usual will be required over the coming weeks to support frontline staff to keep services running safely for local patients.

The Motivation? 

It’s been reported that seeking to extort money was not the primary motivation for this attack despite ransomware being used, rather the attack appears to have been carried out just to disable the system.

It’s also been reported that NHS London said shortly after the incident that it had launched a cyber response team. That said, just days before the cyber-attack, reports indicate that NHS England had spent £3m on two contracts (with KPMG and Deloitte) to provide “cyber incident response” services for the next two years.

Why Are Hospitals Targeted So Often By Cyber Criminals? 

Hospitals are often targeted by cyber criminals because they hold critical and sensitive data, often operate with outdated systems, and cannot afford prolonged downtimes, making them more likely to pay ransoms. Additionally, the widespread use of networked medical devices and historical underinvestment in cybersecurity measures make hospitals attractive targets for ransomware and other cyber-attacks.

Many may remember that the last major cyber-attack on UK hospitals was carried out by the notorious ransomware strain “WannaCry” in May 2020. The attack affected numerous NHS trusts across England, causing widespread disruption to services and leading to the cancellation of thousands of appointments and surgeries. That attack exploited a vulnerability in outdated Windows systems, highlighting significant cybersecurity weaknesses in the NHS’s infrastructure.

What Does This Mean For Your Business? 

The ransomware attack on Synnovis and its widespread impact on major London hospitals illustrates the critical importance of cybersecurity for businesses and organisations across all sectors. For UK businesses, this is a stark reminder that cyber threats are an ever-present risk that can have far-reaching consequences. The attack on Synnovis was not an isolated event but is part of a broader trend of increasing cyber-criminal activity targeting critical infrastructure and services.

The disruption to healthcare services highlights the vulnerabilities that many organisations face, particularly those that handle sensitive data and rely on complex, interconnected IT systems. For businesses, this means that ensuring robust cybersecurity measures is not just a technical requirement but a fundamental aspect of operational resilience. Regularly updating software, conducting security audits, and training staff on cybersecurity best practices, for example, are essential steps to mitigate the risk of such attacks.

The financial and reputational damage caused by cyber-attacks can also be devastating. For businesses, a cyber-attack can result in significant downtime, loss of customer trust, and potential legal ramifications if sensitive data is compromised. Investing in cybersecurity is, therefore, not just a defensive measure but a proactive investment in the continuity and sustainability of your business.

The NHS’s swift response in this case, including the deployment of a cyber incident response team (and the recent investment in cybersecurity services), illustrates the importance of having a well-prepared response plan. Businesses should develop and regularly update their incident response plans to ensure they can quickly and effectively respond to any cyber threats. This includes having clear communication strategies in place to keep stakeholders informed during and after an incident.

Also, the urgent appeal for blood donations in the wake of the cyber-attack serves as a poignant reminder of the interconnectedness of our modern world. Disruptions in one sector can have cascading effects across others, emphasising the importance of collaboration and support within and between industries. For businesses, this means building strong partnerships and networks to enhance collective cybersecurity resilience.

The Synnovis cyber-attack which led to so many critical UK healthcare services being severely affected is yet another wake-up call for businesses and organisations of all kinds to prioritise cybersecurity. By taking proactive measures to protect their IT infrastructure, investing in robust security solutions, and preparing comprehensive response plans, businesses can better safeguard against the growing threat of cyber-attacks and ensure their long-term viability in an increasingly digital world.

Security Stop Press : Airline Awareness : Fake X Accounts

Consumer association Which? has warned that scammers are posing as airline customer service representatives on social media to steal sensitive data.

Which? says that scammers are crawling social media (often using bots) to find customers contacting airlines, and then contacting them or infiltrating their existing conversations with an airline via fake ‘X’ (Twitter) accounts.

Which? reports that it has “found examples of bogus X accounts impersonating every major airline operating in the UK, including British Airways, EasyJet, Jet2, Ryanair, Tui, Virgin Atlantic and Wizz Air” and that some have even paid for a blue tick in order to appear genuine. Also, Which? claims that the scammers are often faster at responding than the real airlines!

Tactics scammers have been using to steal data for use in identity fraud or to sell to other criminals include sending victims legitimate looking DMs, directing victims to phishing websites (to harvest card details), and using claims of compensation entitlement to trick victims into downloading a payment (money transfer) app such as Remitly, Skrill and WorldRemit.

The advice is this : before engaging with a company on social media, to check the official website for links to its social media profiles, check when an account joined X, and to check how many followers it has to help reveal whether it is genuine.

Sustainability-in-Tech : New Apps Tackle World’s Fishing Sustainability

With the world facing challenges like tackling overfishing while trying to support those in local communities who rely on fishing for a living, a South Africa-based company has developed apps to address both issues and more.

What Are The Issues? 

Today’s ocean and coastal communities are now threatened by rising temperatures, overfishing and biodiversity loss. Add to this a huge rise in global demand for fish supply and you get overfishing. In fact, with 30 per cent of fisheries are currently overexploited and 60 per cent are fully utilised, the scale and nature of some serious issues around fishing soon become painfully clear.

However, to fully understand the scope of the problem so that it can be effectively tackled, governments and marine scientists first need access to current, accurate, critical data about the origin of fish catches. To help tackle the overfishing problem and restore fish populations, they also require the support of local communities who depend on fishing for their livelihoods.

ABALOBI 

ABALOBI is a hybrid social enterprise, public non-profit technology initiative with ideas and technology to tackle these issues. ABALOBI’s technology is designed specifically to support sustainable fishing practices, empower small-scale fishers, and ensure traceability and transparency within the seafood supply chain. Its platform (designed around 3 apps) has been developed to benefit coastal communities by enhancing their livelihoods for social, economic, and ecological sustainability as well as preserving marine ecosystems (from the threat of overfishing). The apps also help ensure traceability and transparency within the seafood supply chain.

What Are The Three Apps & How Do They Help? 

The 3 apps that feed into the ABALOBI’s fishing sustainability platform are:

1. ABALOBI Fisher. This app is designed for small-scale fishers to log catches and manage their activities, such as recording catch data, tracking efforts, managing finances, and getting weather updates. This helps with resource management, operational efficiency, and safety. This app has been designed to enhance sustainability through accurate data logging, empower fishermen with better management tools, and to improves safety at sea.

2. ABALOBI Marketplace. Among its many features, this app essentially enables direct sales of seafood between fishermen and buyers. For example, fishermen can list catches for direct sale, manage orders, and access market prices. It also ensures full traceability from catch to consumer.

In terms of benefits, this marketplace app provides market access and fair pricing for fishermen, enhances transparency and trust in the supply chain, and can support fair compensation and improved livelihoods for fishers.

3. ABALOBI Monitor. This app provides a means for data collection by researchers and fisheries managers. For example, it collects data on fish stocks and socio-economic conditions, conducts surveys, and offers analytical tools for generating reports.

Being able to access this valuable and accurate data could help support sustainable resource management, inform research and policy decisions, and engage communities to address their needs and promote resilience.

Collectively therefore, these apps and the platform can empower small-scale fishermen, promote sustainable practices, and ensure supply chain transparency.

Well Received 

ABALOBI’s technology has been well received and the company was a finalist for last year’s Earthshot Prize, the global environmental award designed to incentivise solutions to the planet’s greatest environmental challenges.

At the time, Serge Raemaekers, Co-Founder and Managing Director of ABALOBI, said of his company’s technology: “Coastal communities are instrumental in the fight to preserve the health of our oceans. Our technology, developed in partnership with fishing communities, is both easy to use and can be adopted at scale, meaning responsible small-scale fishers across the globe can be appreciated as stewards of the ocean”. 

What Does This Mean For Your Organisation?

The development of technology like ABALOBI’s apps shows how innovative tech-based solutions can address significant global challenges and offer benefits across many industries. For UK businesses, this highlights the potential of apps to gather substantial amounts of accurate data and facilitate connections between diverse stakeholders, such as buyers and sellers or scientists and policymakers.

In ABALOBI’s case, its apparent success in developing technology to promote sustainable fishing practices and enhance the livelihoods of coastal communities illustrates how technology can drive sustainability and transparency, and improve lives. Similar approaches can be applied in different sectors, enabling businesses to optimise resource management, improve operational efficiency, and meet consumer demands for ethical practices.

Also, the ability of ABALOBI’s apps to provide real-time data and insights highlights the importance of accurate information in making informed decisions. Businesses can leverage such data to enhance their supply chains, ensure fair pricing, and build trust with customers and partners.

While technology can play a vital role in tackling tough challenges, it’s often not a standalone solution. Addressing complex issues like overfishing, for example, requires a multifaceted approach, including regulatory support, community engagement, and educational initiatives. For example, enforcing sustainable practices, raising awareness about environmental impacts, and supporting local communities are essential complementary measures.

ABALOBI appears to have developed a technology-based solution to help tackle a very real and pressing global food sustainability issue. For businesses generally, however, it provides an example of how the targeted incorporation of technology into a business strategy can help find workable solutions to problems, improve transparency, and foster resilience. Although ABALOBI is a non-profit initiative, it still serves as an example to other businesses and organisations of how technology can contribute to global sustainability efforts while enhancing their own operations and reputation.

Each week we bring you the latest tech news and tips that may relate to your business, re-written in an techy free style. 

Archives