Matt Radolec

Cyber Discovery is a free, extra-curricular programme, delivered by SANS Institute for the UK Government, that is open to students aged 14-18 across England, Scotland and Northern Ireland.

It uses games, challenges and role playing to teach the basics of cybersecurity in a safe and fun setting. By encouraging students to think about cybersecurity early, the aim is to ensure the safety of our nation by bolstering our defences now.  

Students have until 7 January to register and complete the series of fun assessment challenges.

If they score highly enough, they will be invited to take part in the next phase, which offers hundreds of similar challenges designed to teach students the basics of cyber security in a fun and exciting way.

‘Tis the season to be jolly... if you’re a cybercriminal.

Christmas is a time for giving and receiving, and every year without fail kids draw up their gift wish lists, which may include the latest tech gadgets such as smartphones, gaming consoles, tablets, ‘intelligent toys’ and a plethora of apps to fill their new devices.

However, many of the tech gifts that we’re buying for our loved ones – particularly if they’re connected to the internet – aren’t as safe as we think.

And if students aren’t aware of the potential risks – and parents don’t have the right knowledge or awareness themselves – then Christmas could turn into a technology disaster for all involved.

Recent research commissioned by SANS Institute looked at the attitudes and behaviours of 1000 UK parents and 1000 UK students aged 14-18 towards cybersecurity, and found that some UK households may not be equipped with the right skills to fend off cyber criminals, either at Christmas or in the longer-term.

Beware those dodgy apps!

41% of students who believe their devices are insecure said this was a result of never reading privacy policies in full or never checking the security of the apps they download (52% of students). 

Could these students potentially be putting their devices at risk, and into the hands of cyber criminals by downloading dodgy apps?

Disconnect? Parents educating kids

46% of students who have heard of cybersecurity, said they heard about it from their parent or guardian. However, only 28% of parents who have heard of cybersecurity said that they themselves are ‘very aware’ of it.

If parents are not confident about their knowledge or aware of the potential risks that come with connected devices, then chances are that teenagers may not be practising good security hygiene either.

What’s more, only 39% of parents who believe that the devices their children own or have access to are secure, report that they regularly check their children’s devices.

But cybersecurity is for life, not just for Christmas; and parents and children need to be aware of online risks all year round. Cybersecurity awareness has a wider impact too.

As a nation, we are facing a critical shortage of cybersecurity skills, and with today’s young people poised to become our future workforce, the nation desperately needs to recruit more knowledgeable professionals into the cybersecurity industry to stop the bad guys from holding our technology – and our lives – to ransom.

The best way to do this is to catch students at a younger age, and educate them about cybersecurity and what a career in the industry could bring.

“People mistakenly believe they are not a target for cyber attackers. But the truth is, if you use technology in any way, you have value to hackers,” commented James Lyne, Head of Research and Development at SANS Institute.

“It’s fair to say that many young people are now more digitally literate than their parents, so we’re encouraging the younger generations to take a more active role in their own cyber education – and maybe even that of their parents!

"Security is not just about protecting personal devices, though. It could ultimately be as important as helping to protect the country at large. This is why it’s important to share knowledge and reinforce the right type of behaviours online so that we’re not leaving ourselves exposed to the idle hands of hackers – at Christmas, or otherwise.”

Following the news around hackers stealing more than $800,000 from Cape Cod Community College last week through an email phishing scam Cyber Security expert Matt Radolec offers the following comment:

There has been another hack where the human element was exploited.  When will people learn we must not provide access to computers to anyone, especially if it’s a large university or other public organization, where security minded individuals are often the minority?

All jokes aside, humans are the weakest element of any security program and there is no shortage of people at a university. 

Students, Faculty, and Staff of these large institutions are working around the clock making there be a huge priority for 24/7 convenient access to technology. 

This constant easy access opens many avenues of attack or threat vectors for these public institutions. Often security controls which would be found in similarly sized private organisations don’t exist in the public sector, whether due to complexity or lack of funding. 

This creates gaps in defensive posture which attackers know to exploit. 

All though the exact details of this attack aren’t clear a few likely pitfalls in this space come to mind:

1. Lack of security/control on the compromised endpoint

If a student, faculty or staff of the university was using their own machine, they may not have the same security controls, like anti-malware which may be on a university provided computer. 

2. Lack of security awareness by the compromised user

There is so much education going on at institutions there may not be enough of a focus on how to avoid social engineering scams, especially those well-crafted phishing emails.

3. Lack of security controls to protect the money

If institutions treated their information systems like they would a bank vault, surely $800,000 wouldn’t have walked out the door.  Most public organizations have a near wide-open access model to ensure all users can access and share information rapidly to drive innovation.

This comes at the price of overlooking the least privilege model completely and perhaps forgetting to secure internal systems while still allowing for easy collaboration between students and teachers. 

Organisations should treat their computer systems like they are physical assets which need protecting, make sure all the right security controls are in place all the time, educate all users or how attackers are after their information, and provide a defence-in-depth program built on the concept of least privilege and limiting who can access what when.

Matt Radolec, Security Architect Manager at Varonis

You may also be interested in these articles:

Register, Login or Login with your Social Media account:


Advertisers

Upcoming FE Events

Advertiser Skyscrapers

Latest Education News

Further Education News

The FE News Channel gives you the latest education news and updates on emerging education strategies and the #FutureofEducation and the #FutureofWork.

Providing trustworthy and positive Further Education news and views since 2003, we are a digital news channel with a mixture of written word articles, podcasts and videos. Our specialisation is providing you with a mixture of the latest education news, our stance is always positive, sector building and sharing different perspectives and views from thought leaders, to provide you with a think tank of new ideas and solutions to bring the education sector together and come up with new innovative solutions and ideas.

FE News publish exclusive peer to peer thought leadership articles from our feature writers, as well as user generated content across our network of over 3000 Newsrooms, offering multiple sources of the latest education news across the Education and Employability sectors.

FE News also broadcast live events, podcasts with leading experts and thought leaders, webinars, video interviews and Further Education news bulletins so you receive the latest developments in Skills News and across the Apprenticeship, Further Education and Employability sectors.

Every week FE News has over 200 articles and new pieces of content per week. We are a news channel providing the latest Further Education News, giving insight from multiple sources on the latest education policy developments, latest strategies, through to our thought leaders who provide blue sky thinking strategy, best practice and innovation to help look into the future developments for education and the future of work.

In May 2020, FE News had over 120,000 unique visitors according to Google Analytics and over 200 new pieces of news content every week, from thought leadership articles, to the latest education news via written word, podcasts, video to press releases from across the sector.

We thought it would be helpful to explain how we tier our latest education news content and how you can get involved and understand how you can read the latest daily Further Education news and how we structure our FE Week of content:

Main Features

Our main features are exclusive and are thought leadership articles and blue sky thinking with experts writing peer to peer news articles about the future of education and the future of work. The focus is solution led thought leadership, sharing best practice, innovation and emerging strategy. These are often articles about the future of education and the future of work, they often then create future education news articles. We limit our main features to a maximum of 20 per week, as they are often about new concepts and new thought processes. Our main features are also exclusive articles responding to the latest education news, maybe an insight from an expert into a policy announcement or response to an education think tank report or a white paper.

FE Voices

FE Voices was originally set up as a section on FE News to give a voice back to the sector. As we now have over 3,000 newsrooms and contributors, FE Voices are usually thought leadership articles, they don’t necessarily have to be exclusive, but usually are, they are slightly shorter than Main Features. FE Voices can include more mixed media with the Further Education News articles, such as embedded podcasts and videos. Our sector response articles asking for different comments and opinions to education policy announcements or responding to a report of white paper are usually held in the FE Voices section. If we have a live podcast in an evening or a radio show such as SkillsWorldLive radio show, the next morning we place the FE podcast recording in the FE Voices section.

Sector News

In sector news we have a blend of content from Press Releases, education resources, reports, education research, white papers from a range of contributors. We have a lot of positive education news articles from colleges, awarding organisations and Apprenticeship Training Providers, press releases from DfE to Think Tanks giving the overview of a report, through to helpful resources to help you with delivering education strategies to your learners and students.

Podcasts

We have a range of education podcasts on FE News, from hour long full production FE podcasts such as SkillsWorldLive in conjunction with the Federation of Awarding Bodies, to weekly podcasts from experts and thought leaders, providing advice and guidance to leaders. FE News also record podcasts at conferences and events, giving you one on one podcasts with education and skills experts on the latest strategies and developments.

We have over 150 education podcasts on FE News, ranging from EdTech podcasts with experts discussing Education 4.0 and how technology is complimenting and transforming education, to podcasts with experts discussing education research, the future of work, how to develop skills systems for jobs of the future to interviews with the Apprenticeship and Skills Minister.

We record our own exclusive FE News podcasts, work in conjunction with sector partners such as FAB to create weekly podcasts and daily education podcasts, through to working with sector leaders creating exclusive education news podcasts.

Education Video Interviews

FE News have over 700 FE Video interviews and have been recording education video interviews with experts for over 12 years. These are usually vox pop video interviews with experts across education and work, discussing blue sky thinking ideas and views about the future of education and work.

Events

FE News has a free events calendar to check out the latest conferences, webinars and events to keep up to date with the latest education news and strategies.

FE Newsrooms

The FE Newsroom is home to your content if you are a FE News contributor. It also help the audience develop relationship with either you as an individual or your organisation as they can click through and ‘box set’ consume all of your previous thought leadership articles, latest education news press releases, videos and education podcasts.

Do you want to contribute, share your ideas or vision or share a press release?

If you want to write a thought leadership article, share your ideas and vision for the future of education or the future of work, write a press release sharing the latest education news or contribute to a podcast, first of all you need to set up a FE Newsroom login (which is free): once the team have approved your newsroom (all content, newsrooms are all approved by a member of the FE News team- no robots are used in this process!), you can then start adding content (again all articles, videos and podcasts are all approved by the FE News editorial team before they go live on FE News). As all newsrooms and content are approved by the FE News team, there will be a slight delay on the team being able to review and approve content.

 RSS IconRSS Feed Selection Page