Truer words were never spoken - computer ransomware

| No Comments

Karl Denninger hits it out of the park - a blast of truth:

Ransomware: Cut The Head Off The Snake

... ... deletia ... ...

Ransomware is rather simple, really: Don't do stupid things with critical control and infrastructure equipment.  As I've said before the real problem isn't "ransomware" per-se; it has no value unless the ransom can be paid and further, unless said infrastructure is connected to the Internet either directly or indirectly (e.g. through some other device) it can't get on the network in the first place.

I'd be more than happy to redesign anyone's infrastructure so that this can't happen.  You could run Windows XP on that network if you wanted to and, other than by direct, intentional sabotage by an employee nothing's getting in there.

But -- your snowflakes that work there couldn't use their computer on their desk to play on Facesucker, Instascrew or the myriad other time-wasting things they do.  They couldn't run their "side hustle" on the company dime or play around on Tinder.  Their phone wouldn't work in the building network and the USB ports would either be disabled in firmware or stuffed full of hot glue to prevent someone from jamming a thumb drive in there contaminated with whatever.  And there could be no exceptions, including out of the CEOs and CTO's offices, which is where a lot of them originate these days because, well, privilege with office.  Nope.

Without both policy and enforcement you have nothing and that means putting a stop to the cryfest from people up and down the line.  You're here to do a job, period, and here are the parameters.  Violate them, you will get caught and my boot is going to be up your ass ejecting you out the door no matter who you are.

What he said. Simply put - the employee has absolutly zero need to connect to the internet on a work machine during working hours.  Emails and connections to other sites can be surveiled and routed through a good firewall. Privacy? Don't make me laugh - this IS work related is it not?

Have a couple of older systems set up in the break room if you must.

Leave a comment

March 2023

Sun Mon Tue Wed Thu Fri Sat
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31  

About this Entry

This page contains a single entry by DaveH published on June 5, 2021 8:11 PM.

So very true - Praise the Lord and send in those Benjamins was the previous entry in this blog.

Slept in this morning - a day of rest is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Monthly Archives

Pages

OpenID accepted here Learn more about OpenID
Powered by Movable Type 5.2.9