Don’t let AI distract from cybersecurity basics, officials and executives warn | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware


WASHINGTON — Advances in artificial intelligence aren’t changing the fact that simple cybersecurity failures remain the most consequential, government and industry leaders warned on Tuesday.

“What will prevent the attacks in the next 18 months are the same things that would have prevented the attacks of yesterday,” Jason Bilnoski, a deputy assistant director in the FBI’s Cyber Division, said during a panel here at the Billington Cybersecurity Summit.

Core practices such as identity management, perimeter monitoring, cyber hygiene and strong multifactor authentication remain as essential as ever, Bilnoski said.

“Speed and capability is certainly increasing with the use of AI, but the end state is still the same,” he said. “How actors are compromising, whether it’s criminal or nation-state, still stays the same.”

The FBI recently urged organizations to fix basic security failures as part of its Operation Winter Shield campaign. “Implementing them can be hard at times, depending on your organization,” Bilnoski told the audience, but “if we can harden up those top 10 controls … it would certainly reduce the risk of both criminal and nation-state targeting [of] our environments.”

Senior officials from other members of the Five Eyes intelligence-sharing alliance echoed Bilnoski’s points during another session.

“Understanding your assets, getting rid of legacy tech, speeding up patching cycles so that we are responding to vulnerabilities as fast as we can — all of that helps, irrespective of the adversary,” said Catriona Robinson, the head of New Zealand’s National Cyber Security Centre.

Richard Horne, the chief executive of the UK’s National Cyber Security Centre, added that “what AI is doing is shining a spotlight on those organizations that haven’t focused on the basics.”

David Imbordino, the director of the NSA’s Cybersecurity Directorate, made a similar point.

“The basics are no longer boring,” he said, “and AI can’t outrun the basics.”

Understanding the environment

One of the best ways for businesses to stay ahead of adversaries is to understand what’s on their networks, speakers said during the Billington discussions.

Matthew Shallbetter, the director of strategy for the federal civilian portfolio at cybersecurity vendor Armis Federal, said organizations should ask questions such as, “Where are the devices on my network? Where [are they] coming from? Do I know the supply chain?”

Businesses should watch for employees installing untrusted technology that could expose their networks to serious supply-chain security risks. “They might put a camera on there from some vendor you don’t want,” he said.

“You have to know what you have,” Shallbetter added. “You have to know how it’s interconnected.”

That is important not only for securing one’s own network, he said, but also for preventing an attack from spreading to vendors and suppliers. “Being able to be a good steward of your part of the internet is critical to make sure that the entire internet is secure.”

Network mapping can help a business understand “what’s at risk if those systems are compromised, and then what can an adversary do when they’re in the environment?” Bilnoski said.

“Of course, [it’s] important to focus on who could be targeting you,” he added, acknowledging that the FBI prioritizes attribution in its investigations. But what matters more, he said, is “understanding the adversary’s intent once they get there.”

AI’s real impact

The conversations at Billington took place as organizations struggle to understand how seriously they should worry about AI — and how extensively they should adopt it for their defensive strategies.

Speakers mostly advised businesses not to let the current AI hype cycle distract them from the basics of cyber hygiene.

“Be swift but not hasty,” New Zealand’s Robinson said. “Resist the breathless rush to grab the sexy new tools.”

At the same time, several Five Eyes officials acknowledged that AI was transforming how they did cyber defense.

——————————————————-


Click Here For The Original Source.