Cybersecurity — The art of prevention
Hacking has become a business — and a lucrative one at that — and is accordingly carried out by business people! A large proportion of the attacks that have taken place in recent years can be attributed to organized crime. Entire companies have been set up that do nothing other than hack and blackmail other companies. In addition, cyber attacks have become an integral part of warfare, especially economic and social destabilization. The disruption of the running of a society can be realized not only through spectacular hacks of hospitals or energy suppliers, but also through “smaller” attacks, such as on bakeries or supermarkets. Last year alone, there were several cases in which the shelves of the local supermarket in a village were empty because a hacker attack disrupted the IT systems of a store chain.
AI has a very special effect on cybersecurity. While in other industries it ensures that companies need fewer staff to provide a certain level of service, the opposite is the case here.
First of all, it behaves as usual: the great strength of AI lies in pattern recognition. If it is trained to recognize weaknesses in IT systems, it can search for further weaknesses itself and point them out accordingly. These results are anything but perfect and must always be checked and processed manually. For hacker groups, this means that a few highly specialized experts can train AI models, which then significantly increase the effectiveness of all the inexpensive hackers that are recruited. In this way, many more systems can be scanned and attacked. This enables broader waves of attacks on more companies and increases the efficiency of the groups enormously. This forces companies to also rely on AI-supported defense measures in order to keep up.
There is no blueprint that can be used to build a company safely. However, there are basic rules that should be observed and implemented. The general rule is: prevention before detection before reaction. — This simple principle is often disregarded.
In recent years, we have seen a number of companies that were really well protected. What they all had in common was that they did not blindly purchase solutions and products, but first developed a
Arwid Carlo Zang heads a company that specializes in holistic and preventive cybersecurity solutions. The focus of greenhats is on white hacking, continuous vulnerability testing and customized cybersecurity training for employees, managers and IT experts. In addition to his extensive experience as an auditor for critical infrastructures (KRITIS), Arwid is the author of the book “Hacker vs.