Zum Hauptinhalt springen
••
IT NachrichtenBMW schafft still und leise den Diesel ab(03.10.2026 um 07:50 Uhr)
••••••
IT NachrichtenOktoberfest: Macht KI-Slop die Wiesn kaputt?(03.10.2026 um 07:47 Uhr)
••••
IT NachrichtenBMW schafft still und leise den Diesel ab(03.10.2026 um 07:50 Uhr)
••••••
IT NachrichtenOktoberfest: Macht KI-Slop die Wiesn kaputt?(03.10.2026 um 07:47 Uhr)
••
Intelligence View
⚡ tsecurity.de Intelligence

AA20-073A: Enterprise VPN Security

Original release date: March 13, 2020SummaryAs organizations prepare for possible impacts of Coronavirus Disease 2019 (COVID-19), many may consider alternate…

Beitrag
0
Seite
0
↗ Quelle (us-cert.gov)
Social ReaktionenReagiere als Erste:r — dein Feedback zählt!
Original release date: March 13, 2020

Summary

As organizations prepare for possible impacts of Coronavirus Disease 2019 (COVID-19), many may consider alternate workplace options for their employees. Remote work options—or telework—require an enterprise virtual private network (VPN) solution to connect employees to an organization’s information technology (IT) network. As organizations elect to implement telework, the Cybersecurity and Infrastructure Security Agency (CISA) encourages organizations to adopt a heightened state of cybersecurity.


Technical Details

The following are cybersecurity considerations regarding telework.



  • As organizations use VPNs for telework, more vulnerabilities are being found and targeted by malicious cyber actors.

  • As VPNs are 24/7, organizations are less likely to keep them updated with the latest security updates and patches.

  • Malicious cyber actors may increase phishing emails targeting teleworkers to steal their usernames and passwords.

  • Organizations that do not use multi-factor authentication (MFA) for remote access are more susceptible to phishing attacks.

  • Organizations may have a limited number of VPN connections, after which point no other employee can telework. With decreased availability, critical business operations may suffer, including IT security personnel’s ability to perform cybersecurity tasks.

Mitigations

CISA encourages organizations to review the following recommendations when considering alternate workplace options.



  • Update VPNs, network infrastructure devices, and devices being used to remote into work environments with the latest software patches and security configurations. See CISA Tips Understanding Patches and Securing Network Infrastructure Devices.

  • Alert employees to an expected increase in phishing attempts. See CISA Tip Avoiding Social Engineering and Phishing Attacks.

  • Ensure IT security personnel are prepared to ramp up the following remote access cybersecurity tasks: log review, attack detection, and incident response and recovery. Per the National Institute of Standards and Technology (NIST) Special Publication 800-46 v.2, Guide to Enterprise Telework, Remote Access, and Bring Your Own Device (BYOD) Security, these tasks should be documented in the configuration management policy.

  • Implement MFA on all VPN connections to increase security. If MFA is not implemented, require teleworkers to use strong passwords. (See CISA Tips Choosing and Protecting Passwords and Supplementing Passwords for more information.)

  • Ensure IT security personnel test VPN limitations to prepare for mass usage and, if possible, implement modifications—such as rate limiting—to prioritize users that will require higher bandwidths.

  • Contact CISA to report incidents, phishing, malware, and other cybersecurity concerns.

References


Revisions


  • March 13, 2020: Initial Version

This product is provided subject to this Notification and this Privacy & Use policy.




🔍 CTI & Forensik

Cyber Threat Intelligence & Forensik

ATT&CK-Navigator · IoC-Radar · Exploit-Belege
MITRE ATT&CK Matrix Navigator
Enterprise-Matrix · nur belegte Techniken
14 Taktiken
1 belegte Technik
T1566TA0001 · Initial Access
Phishing
Mitigation: M1054 User Training & Email Gateway Filtering
Quelle: Kontext-Klassifikation des Artikeltextes
Reconnaissance
Resource Development
Initial Access
Execution
Persistence
Privilege Escalation
Defense Evasion
Credential Access
Discovery
Lateral Movement
Collection
Command and Control
Exfiltration
Impact
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
3 Knoten · 2 Relationen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten AA20-073A: Enterprise VPN Security

Thematisch verwandte Begriffe: AA20073A, Enterprise, Security · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

💬 Kommentare werden geladen…
Zum Aktualisieren ziehen
Nächster Beitrag