Six practices, one lifecycle: advise, assess, comply, protect, monitor, respond. Most engagements begin with an assessment and stay for the monitoring.
Each industry page names the specific obligations that apply — SEBI CSCRF for market infrastructure, CEA guidelines for utilities, DPDP for everyone holding personal data.
What a year it’s been! The last 12 months have seen a dramatic increase in the frequency and severity of cyber-attacks in new normal times post pandemic times. Remote Working or Work of anywhere has created situations more complex with Zero Trust env
What a year it’s been! The last 12 months have seen a dramatic increase in the frequency and severity of cyber-attacks in new normal times post pandemic times. Remote Working or Work of anywhere has created situations more complex with Zero Trust environment (Never trust Always Verify).
As we bid adieu to year 2022, lets lookback on key incidents and highlights for retrospections, learning for better wisdom in 2023
As of December 2022, investment fraud is the costliest form of cybercrime, with an average of $70,811 lost per victim. It is clear that the rate and cost of data breaches are increasing. Since 2001, the victim count has increased from 6 victims per hour to 97, a 1517% increase over 20 years.
Key Cyber Facts - 2022:
As per 3rd party survey and reports, below are the key facts and scary trends:
A new organization gets hit by Ransomware in every 14 seconds.
Email is the primary entry point of 94% of malware attacks
560,000 new pieces of Malware are discovered every day.
98% of attacks use social engineering.
85%of cybersecurity breaches are caused by human error.
There has been an 87% increase in malware infections over the last 10 years.
Ransomware costs for 2023 are projected to cost $30 billion
Globally, an estimated 30,000 websites are hacked each day.
43% of cyber-attacks target small businesses.
Flashbacks of Major Cyber Incidents 2022:
What a year it’s been! The last 12 months have seen a dramatic increase in the frequency and severity of cyber-attacks.
Oil India: A major cyber-attack at Oil India Ltd. last 13th April. targeted their IT facilities in Assam and hackers demanded $7.5 million as per media reports.
Razorpay: In May, 2022 the hacker(s) had created false approvals that were sent to Razorpay against the 831 failed transactions, resulting in a loss amounting to INR 7.38 Cr.
Cleartrip: In July, Cleartrip, a popular travel-booking platform in India faced a major data breach and the stolen data was found available in the dark web.
Tata Power: In October, power generation company Tata Power reported a cyber-attack on their IT Systems
Facebook: On October 2022, Facebook revealed that over 400 Android and iOS apps users were targeted and more than 1M people's login credentials were stolen.
Microsoft: Microsoft faced a data breach last October 2022 and customer data got exposed including names, email addresses, email content, company names, phone numbers and files related to transactions.
AirAsia: 5 million passengers and entire employee’s personal data for Air Asia got exposed on a Ransomware Attack in Nov, 2022
Amazon: 2,783 snapshots leaked on a Ransomware attack at Amazon RDS.
AIIMS:In AIIMS Cyberattack on 23rd Nov 2022, 5 Servers were Affected & About 1.3 TB of Data Encrypted with 11 days disruption of services.
CDSL: In November, Central Depository Services Limited (CDSL) detected a malware attack on few of its systems and affected their operations
ICMR: Over 6000 Attempts were targeted in ICMR Server in November
Twitter’s : Hacker claimed to have possession of 5.4 million Twitter accounts for sale.
Google: Google Cloud has revealed it blocked the largest seven-layer distributed denial-of-service (DDoS) attack ever recorded last august.
Indian Railways: In a very recent news in Dec, 2022, it has been revealed over 3crore passenger data got exposed.
The list can be endless and the consequences are not only impacting nations, but also society, individuals and enterprises. The losses are not specific to a so specific industry, rather across verticals and geographies. The outcome is beyond financial losses as it is touching our lives.
It is high time we learn from the incidents and have retrospection on our cyber strategies to have better wisdom in the year 2023
Let the new Sunrise of 2023 brings brighter and safer new tomorrow.
Let’s aspire to have better wisdom with happiness and prosperity for the New Year 2023.
Raksha Bandhan celebrates one of the most cherished bonds—one built on love, trust, and protection. But in today’s digital world, protection means more than being there for your sibling. It also means helping them protect their personal data, digital
The deadline is fixed. The implementation window is shrinking. Is your organisation ready for India’s Digital Personal Data Protection (DPDP) regime? As of 24 August 2026, 262 days remain until 13 May 2027, when the principal operational provisions o
Thirty minutes with a practitioner rather than a salesperson. If the requirement somebody has handed you does not match what you actually need, that is a more useful thing to find out now than in week nine.