{"id":11730,"date":"2024-05-21T09:44:20","date_gmt":"2024-05-20T21:44:20","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=11730"},"modified":"2024-05-21T09:44:20","modified_gmt":"2024-05-20T21:44:20","slug":"what-happened-when-we-got-told-wed-been-hacked","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=11730","title":{"rendered":"What happened when we got told we\u2019d been hacked?"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>\u201cWe\u2019ve been hacked\u201d. When you hear that the world stops. What does this mean? How bad is it? How can we manage that?\u00a0 That was the news earlier this week. It was quite confronting!<\/p>\n<h3>Suddenly your careful plans for the day are thrown aside as your priorities have instantly changed. <\/h3>\n<p>[\/et_pb_text][et_pb_image src=&#8221;\/wp-content\/uploads\/2024\/05\/HackerBanner.png&#8221; title_text=&#8221;HackerBanner&#8221; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; animation_style=&#8221;zoom&#8221; border_width_all=&#8221;1px&#8221; border_style_all=&#8221;outset&#8221; border_width_bottom=&#8221;1px&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p><strong>The key questions are:<\/strong><\/p>\n<ul>\n<li>What is the extent of the damage?<\/li>\n<li>How can we mitigate it?<\/li>\n<li>Who do we need to inform, what do we need to advise and when do we need to?<\/li>\n<li>How could this have happened?<\/li>\n<\/ul>\n<p>When we got the call, the Incident Response Plan swung into action. We started with a quick SLT briefing. This made sure everyone was caught up and allowed us to review the questions above.<strong><\/strong><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>It was early in the incident, so we didn\u2019t yet have the answers. My takeaway was the importance of keeping perspective. Despite our natural tendency to \u2018jump\u2019, it was vital to make sure there is no overreaction.<\/p>\n<p>Once the questions were being asked, it became clear very quickly that this was a fire-drill. Our team had picked up an alert and escalated that to trigger a practice run. We get alerts from time to time and always double\/triple check because we can&#8217;t\u00a0 afford to overlook anything.\u00a0 In this case, by checking and verifying it against the various tools we have in place, we quickly determined that it wasn\u2019t a real incident. Nevertheless, it was a good opportunity to run a practice test and we learned a lot.<\/p>\n<p>As the business owner, my immediate reaction was disbelief, and the second was relief. I know how seriously we take cyber-risk; I knew the many layers of protective tools in place, and I knew they are constantly checked and maintained. Nevertheless, I asked the team to verify the checks, and it was comforting when the double-check confirmed everything was as it should be.<strong><\/strong><\/p>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_image src=&#8221;\/wp-content\/uploads\/2024\/05\/CyberEmergencyBox.jpeg&#8221; title_text=&#8221;CyberEmergencyBox&#8221; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; animation_style=&#8221;fold&#8221; border_radii=&#8221;on|1px|1px|1px|1px&#8221; border_width_all=&#8221;1px&#8221; border_color_all=&#8221;#222222&#8243; border_style_bottom=&#8221;inset&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>The other question asked was \u2018what else could be done\u201d and there were a couple of suggestions. All were of marginal benefit but we\u2019re still going to explore them. The peace of mind of knowing that we\u2019ve done everything we can is overwhelmingly comforting.<\/p>\n<h2>Lessons \u2013 these cyber-fire-drills are brilliant practice.<\/h2>\n<p>Having an incident response plan is vital, and then testing and adjusting it for experience can only make it better.\u00a0 \u00a0For example, we wanted to assess our plan for how it operates after hours, or when key-staff are unavailable.\u00a0\u00a0<\/p>\n<p>Secondly, it is comforting to know that we have taken every reasonable precaution as we understand them to date. We know that this is a point in time and there will be new technologies that will become available and will become necessary to add to our defences.<\/p>\n<p><strong>If you would like to run a fire-drill event simulation of your own, please get in touch with your account manager.<\/strong><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u201cWe\u2019ve been hacked\u201d. When you hear that the world stops. What does this mean? How bad is it? How can we manage that?\u00a0 That was the news earlier this week. It was quite confronting! Suddenly your careful plans for the day are thrown aside as your priorities have instantly changed. The key questions are: What [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":11735,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-11730","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/11730","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=11730"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/11730\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=11730"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=11730"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=11730"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}