Tech News : Hacked MSP Fined £6m (Provisionally)
A provisional £6m fine has been imposed on an NHS software provider Advanced Computer Software Group following a 2022 data breach that affected more than 80,000 people.
Advanced Software Group
Founded in 2008, Advanced Computer Software Group, often referred to as “Advanced,” is a UK-based software and IT services company that provides a range of digital solutions primarily to the public sector, healthcare, and private sector organisations. As an IT and software services provider to organisations including the NHS and other healthcare providers, in the eyes of the law, it handles people’s personal information on behalf of these organisations as their ‘data processor’.
What Happened?
In 2022, hackers accessed a number of Advanced’s health and care systems via a customer account that did not have multi-factor authentication. The personal information belonging to 82,946 people was stolen following the attack. This information included phone numbers and the medical records, as well as details of how to gain entry to the homes of 890 people who were receiving care at home.
Serious Failings
John Edwards, UK Information Commissioner, has highlighted how the ICO, which has investigated the incident, provisionally found “serious failings” in Advanced’s “approach to information security prior to this incident”. Mr Edwards noted how Advanced “failed to keep its healthcare systems secure” when it should have been taking steps to secure its systems, such as “regularly checking for vulnerabilities, implementing multi-factor authentication and keeping systems up to date with the latest security patches.”
The Obligations of Data Processors
In his online statement, Mr Edwards noted that although data processors act on the instructions of their clients, the data controllers, data processors, such as Advanced, “still have their own obligations to implement appropriate technical and organisational measures to ensure personal information is kept secure” and this includes “taking steps to assess and mitigate risks”.
Health Service Disruption Also Caused
In his online statement, Mr Edwards also noted that in addition to the theft of personal information, the hack caused disruption to some health services, i.e. disrupting their ability to deliver patient care. Mr Edwards said this meant that “a sector already under pressure was put under further strain due to this incident”.
Provisional Fine
The ICO has stated that on the grounds that Advanced failed to implement measures to protect the personal (and some sensitive) information of the 80,000+ people, it has “provisionally decided” to impose a £6.09m fine on Advanced.
However, despite choosing to issue the statement about it, the ICO’s findings and fine are “provisional”. This means that conclusions shouldn’t be drawn at this stage about whether there’s actually been any breach of data protection law or that a financial penalty will ultimately be imposed.
The Commissioner says that any representations from Advanced will now be carefully considered before any final decision is made “with the fine amount also subject to change.”
Illustrates The Importance of Prioritising Information Security
UK Information Commissioner, said in his statement about the provisional fine: “This incident shows just how important it is to prioritise information security. Losing control of sensitive personal information will have been distressing for people who had no choice but to put their trust in health and care organisations.”
What Does This Mean For Your Business?
The provisional £6 million fine imposed on Advanced Computer Software Group serves as a stark reminder of the critical importance of businesses and organisations prioritising information security. This incident highlights how even well-established companies with significant responsibilities (such as handling sensitive healthcare data) are not immune to severe consequences when security measures are insufficient. The breach at Advanced not only compromised the personal and medical information of over 80,000 individuals but also disrupted essential health services, demonstrating the far-reaching impact of inadequate data protection.
For your business, this underscores the need to rigorously assess and enhance your cybersecurity practices, particularly if you are a data processor or handle sensitive information on behalf of clients. The ICO’s findings point to specific failings, such as the lack of multi-factor authentication and the failure to regularly update systems, which could have prevented the breach. Implementing robust security protocols, including regular vulnerability assessments, system updates, and comprehensive risk mitigation strategies, is not just a legal obligation but a business imperative.
Also, the incident shows how the failure to prioritise information security can lead to significant financial and reputational damage. While the ICO’s decision and fine are currently provisional, the potential for such penalties should serve as a wake-up call for businesses and organisations to take proactive steps in safeguarding personal data. As the Information Commissioner noted, this case demonstrates the distress caused to individuals who trust organisations with their sensitive information, making it clear that maintaining this trust should be a top priority.
Summer Apple Pips : 10 Top iPhone Tricks
Here are 10 top iPhone tips / tricks you may not know about that could make your life easier and help you to be more productive:
1. Digitally Sign Documents
Gone are the days when you needed a printer or scanner to sign important documents. With your iPhone, you can quickly add your signature to any document. Simply take a screenshot of the document, tap the preview thumbnail that appears, and select the Plus icon on the bottom right. From there, choose “Signature” and either draw a new signature or use a stored one. Once you’ve positioned and resized your signature, save the document to share it digitally.
2. Set Up Keyboard Shortcuts for Frequently Used Phrases
If you find yourself repeatedly typing the same phrases, save time by setting up keyboard shortcuts. Navigate to Settings > General > Keyboard > Text Replacement. Tap the plus icon to create a new shortcut, then enter the phrase and a corresponding abbreviation. Now, when you type the abbreviation, your iPhone will automatically expand it to the full phrase. This is especially useful for commonly used business phrases or contact information.
3. Turn Your Keyboard into a Trackpad
Need to edit a text message or email with precision? You can convert your iPhone’s keyboard into a trackpad (like a mousepad on a laptop) by holding down the spacebar. As you press, the keys will disappear, allowing you to move the cursor with your finger. This feature makes it easier to navigate and edit text without having to tap directly on the screen.
4. Extract Text from Photos and Videos
With iPhone’s Live Text feature, you can quickly extract and interact with text found in photos or paused video frames. Simply open the image or video, tap the Live Text icon, and the text will be highlighted. You can then copy, paste, or interact with the text—whether it’s translating a foreign language, dialing a phone number, or visiting a URL. This is a powerful tool for capturing and utilising information on the go.
5. Broadcast Your Screen During Presentations
When you need to share your iPhone screen during a virtual meeting, you can easily do so by using the screen recording feature. Access the Control Centre and long-press the Screen Recording button. You’ll be able to choose an app like Zoom, Google Meet, or Skype to broadcast your screen directly. This is a seamless way to share presentations, demonstrate apps, or provide training sessions remotely.
6. Enhance Audio Quality in Voice Memos
If you often use the Voice Memos app to record meetings, interviews, or notes, you can significantly improve the audio quality by reducing background noise. After recording, tap the equaliser icon and toggle on “Enhance Recording.” This feature filters out ambient noise, ensuring your voice is clear and professional, making your recordings more useful for later reference.
7. Customise Safari Settings for Specific Websites
Not all websites are created equal and some may require different settings for optimal viewing. In Safari, you can tailor the appearance and functionality for individual sites. While browsing, tap the AA icon in the address bar to adjust the font size, enable Reader mode, or choose to always view the desktop version of the site. This feature ensures a consistent and comfortable browsing experience, especially when working with content-heavy websites.
8. Efficiently Move Multiple Apps at Once
Reorganising your home screen doesn’t have to be a tedious process. Instead of moving apps one by one, you can select multiple apps simultaneously. Press and hold one app until it starts to wiggle, then tap additional apps with another finger to create a group. You can then drag this group to a new location or page on your home screen, saving you time and effort.
9. Scan and Save Documents with the Notes App
The Notes app on your iPhone doubles as a portable scanner, making it easy to digitise documents. Open a new note, tap the camera icon, and select “Scan Documents.” The app will automatically detect the edges of the document and capture a clear, high-quality scan. This feature is invaluable for quickly saving and sharing contracts, receipts, or any other important paperwork while on the move.
10. Silence Unknown Callers to Minimise Distractions
If you’re tired of being interrupted by unwanted calls, you can enable the “Silence Unknown Callers” feature. Go to Settings > Phone > Silence Unknown Callers, and any number not in your contacts will be automatically directed to voicemail. You’ll still receive a notification of the missed call, and the number will appear in your Recents list. This feature helps you stay focused on important tasks without unnecessary interruptions.
These 10 tips should help you make the most of your iPhone, boost your productivity, and streamline your daily tasks.
Security Stop Press : Hiring a Hacker?
It’s been reported that US Security Awareness Training Company ‘KnowBe4’ unknowingly hired a North Korean hacker as a (remote) software engineer. The hacker used stolen identity and AI-generated imagery to circumvent KnowBe4’s due diligence and was even able to make it through four rounds of interviews before being offered the position.
However, KnowBe4 discovered the hacker’s true identity during a routine security audit when they noticed that a series of suspicious actions had been performed by the new employee. Once identified, the hacker’s access was immediately revoked, the breach was reported to authorities, and the incident, described as an “organisational learning moment” prompted an internal review.
KnowBe4 has suggested that this incident may be part of a broader North Korean campaign to infiltrate US organisations by posing as remote IT staff. The advice to businesses is that HR departments should thoroughly scrutinise remote candidates, especially for critical infrastructure roles or positions with access to sensitive data.
Sustainability-in-Tech : Floating Solar Panels Could Power Entire Countries
New research has concluded that floating solar panels could have the potential to meet the entire electricity needs of certain countries.
Helping To Decarbonise National Economies
The findings of the research (from Bangor and Lancaster Universities and the UK Centre for Ecology & Hydrology) suggest that with a conservative 10 per cent surface area coverage, floating solar photovoltaics could produce sufficient energy to contribute a considerable fraction (16 per cent on average) of the electricity demand of some countries. This means that floating solar panels could play an important role in decarbonising national economies.
Why Floating Solar Panels?
Solar energy is predicted to be the dominant renewable energy source by 2050, especially considering the growth of solar photovoltaics (PVs) been exceeded all projections. This is most likely because of their cost effectiveness, the global nature of the resource, and their flexibility in deployment.
In their results (published in nature.com), the researchers noted that the main reasons why floating solar photovoltaics (FPVs), also known as ‘floatovoltaics’, have advantages over conventionally deployed PVs that have enabled them to be deployed rapidly around the world (particularly on artificial bodies of water) include:
– The need for land-use change, where the alternative is a ground-mounted system. This is beneficial in land-scarce countries and regions with high land prices.
– FPV systems have lower temperatures, and thus higher efficiencies, compared to land-based systems.
How Much Electricity Could They Produce?
Based on the researchers’ idea that they could be deployed in 68,000 lakes and reservoirs worldwide, numerical modelling and calculations indicate that FPVs could generate approximately 1302 terawatt hours (TWh) of electricity annually. This equates to four times the total annual electricity demand of the UK!
Where?
In terms of ideal locations, the researchers identified the best areas for FPV deployment as lakes and reservoirs within 10km of population-centres, away from protected areas, and with no more than six months of freezing a year.
As for which countries FPVs could help meet the energy demands via this renewable energy technology, the researchers highlighted Bolivia, Finland and even China. They also highlighted how FPVs could improve access to electricity in countries such as Chad or Malawi.
Challenges
Despite the obvious potential benefits of deployment in some countries, the researchers also highlighted some challenges to the deployment of PPVs in some parts of the world and potential negative points, including:
– In many regions (e.g. sub-Saharan Africa), it is not simply a question of electricity supply but also connection, which can be difficult.
– Although globally the deployment of FPVs could lead to a total annual reduction of 0.45 billion tonnes of CO2 (2021 figures), in some countries where the carbon intensity of electricity is already very low, there could be a negative impact of FPV on total CO2 emissions, i.e. they could lead to higher CO2.
– In nations where the energy supply is dominated by hydro and wind, FPVs may increase CO2 emissions given PVsʼ higher carbon intensity.
– The impacts of FPVs on water body carbon cycling and their knock-on impacts on, among other things, CO2 emissions from water bodies are unknown.
– The total reduction in CO2 emissions highlighted by the research were based on water body constraint estimates which could vary depending on the number of water bodies included in any national-scale or global analysis.
Could Reduce Water Evaporation
One other potential benefit of deploying large numbers of PV modules mounted on (moored) floats covering the surface of a water body noted by the researchers is the potential for reducing water scarcity by mitigating water loss via evaporation. This could be particularly helpful for drought-stricken areas.
Evaporation of water in key reservoirs and lakes has been shown to be accelerating globally under climate change.
What Does This Mean For Your Organisation?
Covering existing bodies of water with solar floating solar panels to produce clean energy from the sun could, according to this research, represent a significant opportunity in terms of enhancing sustainability while securing a reliable and cost-effective energy source. The findings suggest that covering even a modest portion of water bodies with FPVs could markedly contribute to a whole nation’s electricity supply. This shift towards more sustainable energy practices could reduce costs and dependency on traditional energy sources, thereby benefiting countries, their economies, businesses, and the planet.
Embracing floating solar technology, contributing to the reduction of carbon emissions, and supporting the decarbonisation of national economies, could, it seems, play a pivotal role in combating climate change.
Also, the ancillary benefits of using FPVs at scale, such as reducing water evaporation, may also be particularly relevant for people living and organisations operating in water-scarce regions. This technology offers the dual advantage of generating renewable energy while conserving precious water resources. For organisations and businesses using the (presumably cheaper and abundant) power and benefitting from such initiatives, this could help them demonstrate their commitment to resource efficiency and environmental stewardship. This could be a powerful message in corporate social responsibility reports and sustainability communications.
However, despite the huge potential of FPVs, there are challenges associated with their deployment including potential connectivity issues in regions with underdeveloped electricity infrastructure. For organisations in these areas, it may be necessary to work collaboratively with local authorities and communities to improve grid connections and ensure the effective usage of FPVs. Also, understanding the environmental impact of FPVs on local ecosystems is crucial, but is not yet understood because it hasn’t happened at scale. Comprehensive environmental assessments, therefore, could be conducted to mitigate any negative effects, ensuring that the deployment of FPVs does not inadvertently harm the environment.
Investing in FPVs also appears to offer the promise of long-term financial benefits. The higher efficiency of FPVs compared to traditional land-based systems could result in more stable and predictable energy costs, providing a hedge against volatile energy markets. This stability may prove invaluable for long-term strategic planning and the overall resilience of the organisations operating in areas where FPVs are deployed.
Video Update : Use ChatGPT To Summarise a Web Page
This video tutorial shows two different ways to summarise a web page using ChatGPT.
[Note – To Watch This Video without interruptions, It’s best to download it first].
Tech Tip – Clipboard Sync Across Devices for Seamless Copy-Paste
You may not know thay Windows allows you to sync your clipboard across devices so you can copy content on one device and paste it on another. This is especially useful if you work across multiple Windows devices. Here’s how it works:
– To enable Clipboard Sync, go to Settings > System > Clipboard.
– Toggle on Sync across devices.
– Choose between ‘Automatically sync text that I copy’ or ‘Never automatically sync text that I copy’.
– To use Clipboard Sync, copy content on one Windows device (e.g. press Ctrl + C).
– On another synced device, press Ctrl + V to paste the copied content.