1 article with this tag
A VPN appliance is the key to the inside of an organisation, and in Japan it is the entry point in roughly two thirds of ransomware cases where the route is known. The Digital Agency's GSS incident followed the same shape: in through a VPN vulnerability, then a maintenance operator's account used to reach a large volume of files. This site's view: a VPN appliance is an asset you should only keep if you can keep patching it, and the defense rests on three things — patch speed, narrow privileges after entry, and detecting bulk access.