How to protect networks in times of uncertainty

(Image credit: Shutterstock)

In a matter of days, alongside numerous other disruptions, the workplace has undergone a wholesale upheaval. Instead of in-person meetings, access to local networks and fileshares, and casual conversations in breakrooms, we’re spending all our time on video conferences, using home Wi-Fi networks and trying to stay in touch with colleagues in every way possible short of seeing them in person. My workplace is even hosting virtual yoga sessions with our instructor leading us through our poses over a web session. As much as I couldn’t have imagined wanting this just a few weeks ago, today it’s a welcome break from the onslaught of bad news.

Thinking back to the network, organisations to varying degrees have been accommodating and even encouraging a remote workforce for many years now, but few organisations of size have had to deal with a large majority of their employees accessing enterprise resources entirely from the outside of their office locations. Suddenly, the VPN is the central connection point for the majority of the enterprise.

But even as there are frantic attempts to ensure that the capacity of these networks is sufficient to withstand the increased demands, those of who follow the threat landscape are concerned about the risk to enterprises that are dependent on these services. One key aspect of the risk is the availability of the service.

Our past experiences lead us to the following understanding:

· Distributed Denial of Service (DDoS) attacks against the availability of Internet-based services will occur. This is not a new thing - we observed 8.4 million attacks in 2019

· The adversary, regardless of motivation, will focus on the services that matter the most at any given time. During these times, we can expect that VPN concentrators will quickly ratchet up to the top of the list of services that enterprises depend on

· Similarly, institutions that are in focus today - government agencies, healthcare organisations, financial institutions - will see a level of targeting

· The large population of disaffected people with time on their hands will contribute to this phenomenon. These are times of high anxiety for everyone and as the economic consequences are felt across our populations, it is possible that some subset of society will channel their anger online

While the individual enterprise or educational institution can’t address the causes of these attacks by itself, they can certainly prepare for the eventuality that their online services – think remote access for employees, portals for vendors and partners, online retail, educational testing – can be targeted during the times, causing further challenges during these already trying times.

There are a number of measures that everyone can take to protect against these attacks:

· Reconsider what needs to be behind the VPN – where possible use well-established SaaS-based services for productivity suites, collaboration tools etc. This will reduce the dependency on the VPN in the first place

· Establish split tunnelling and acceptable use policies – you don’t want your employees gaming on their corporate equipment and you certainly don’t want it traversing your VPN, both for the added cost but also the risk of your network getting targeted for a gaming advantage

· Run table-top exercises to understand your DDoS posture – whether you’re following best practices involving dedicated equipment and a managed service to back you up, or you’re counting on being lucky and not being targeted (I wouldn’t recommend this), it’s imperative that you have a good handle on how you expect to respond to a DDoS attack. This is vastly superior to figuring it out while you’re under attack.

We have plenty to worry about in these times and it’s unfortunate that the availability of your remote services has to be on that list, but it does. Fortunately, there are well understood means to overcome these challenges, unlike some of the other ones we confront in these times. Remote network access has vaulted to the forefront of technologies enabling the enterprise and those of us responsible for its availability need to do our best to protect them.

Hardik Modi is AVP Engineering, Threat and Mitigation Product at Netscout

Hardik Modi

Hardik Modi is AVP Engineering, Threat and Mitigation Product at Netscout.

Netscout is a world leader in service assurance with application and network assurance solutions, and security assurance with advanced DDoS and Advanced Threat (AT) solutions.

Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
NetSuite EVP Evan Goldberg at SuiteConnect London 2025
"It's our job to deliver constant innovation” - NetSuite head on why it wants to be the operating system for your whole business
Monster Hunter Wilds
Monster Hunter Wilds Title Update 1 launches in early April, adding new monsters and some of the best-looking armor sets I need to add to my collection