Hackers are using increasingly sophisticated tools to bypass target organisations' built-in security measures. istockphoto.com
Hackers are using increasingly sophisticated tools to bypass target organisations' built-in security measures. istockphoto.com

Companies need data dieting to fend off appetites of cyber criminals



Cyber hackers may be attacking the UAE with new security threats designed to take advantage of the increased adoption of new technologies such as cloud computing and mobile communications, if reports are to be believed.

According to a report by the cyber-security company Mandiant, which was founded by the former United States air force cyber forensics investigator Kevin Mandia, the UAE is a prime target for cyber espionage emanating from China.

Mandiant claims to have traced a series of hacking attacks around the world to a unit of the Chinese People's Liberation Army. Outside North America, the main focus of the attacks, the alleged Chinese army hackers have concentrated on 13 other countries including the UAE. The Chinese foreign ministry, however, rejected the accusations yesterday.

But whatever the source, the intruders launch well-defined attacks that apparently have been honed over years and designed to steal large volumes of valuable intellectual property.

The hackers revisit the victim's network to steal technology blueprints, proprietary manufacturing processes, test results, business plans, pricing documents, partnership agreements and emails plus contact lists.

Alan Brill, the senior managing director of the security firm Kroll Advisory Solutions, says new internet technologies such as cloud computing, the increasingly prevalent practice of hosting all company data on remote computer banks managed by a third party, also present new dangers.

"We now have a lot of technology partners we don't think about. Are you using cloud storage or processing services? How do they protect your data? Where do they store it? Are they using data centres in countries with limited cyber-crime laws?" says Mr Brill.

He adds that in some companies, departments are making deals with cloud providers without reference to the central IT department and without even going to the company's legal counsel for advice.

The malicious computer software that was used to attack Middle Eastern oil companies last year, reportedly erasing data on three quarters of Aramco's corporate personal computers, is now being used to steal corporate information, often without the victim's knowledge, reports Kroll. "The hackers are taking advantage of so-called 'zero day' exploits, which are so new that defensive systems - like antivirus scanners - can't recognise them," says Mr Brill.

As well as the new generation of "zero day" attacks that exploit a previously unknown vulnerability in a computer application, hackers send seemingly innocent emails to company employees to obtain information such as passwords and user names, a process known as "phishing". Often the emails link to a bogus website.

"They craft a very well-built phishing email that links to a drive-by malware site that creates an infection simply by visiting it. The email itself seems benign, and is not stopped by filters," says Mr Brill.

Kroll says the hackers are also using increasingly sophisticated tools such as a form of attack called an "SQL injection" to bypass target organisations' built-in security measures. "The hacker sends a string of data to your system via a regular internet connection that contains commands to your database. If you're vulnerable, your database answers them, and you can lose tens of thousands of records," says Mr Brill.

Kroll says it essential that all organisations take measures to protect themselves from malicious hacking attacks.

"With the advent of the internet, everyone connected to it is on the front lines of the battle. If you're not taking defensive steps, you should expect to be hacked," says Mr Brill. "Even worse, you might be hacked and not know it."

In addition to traditional security software patches, Kroll recommends a line of cyber defence called "white listing", which limits the programmes an organisation's computers will run to those on a pre-approved list. If the programme is not on the list, as would be the case with a malicious hacking attack, it will not run. Kroll also recommends that companies limit access to their data by measures such as restricting the number of "privileged" internet accounts they allow.

Another recommendation is that companies go on what is called a "data diet", which means identifying and keeping only that data which is needed. Many organisations keep vast digital stores of outdated information.

But Kroll believes that, despite the current publicity surrounding large-scale attacks, such as those allegedly carried out from China, the real threat still comes from company insiders.

Michael Du Bose, a managing director at Kroll, says "insiders, not outside hackers, are involved in more than two thirds of all cyber cases involving theft of intellectual property".

Malevolent insiders can take the form of disgruntled employees, opportunists, or contractors.

"Statistics only go so far in describing the severity of risk caused by this particular type of cyber threat. Real-life examples paint a more complex and persuasive picture," says Mr Du Bose.

"The FBI doubled the number of trade-secret arrests in the last four years, and the overwhelming majority of those prosecutions involved insiders."

Famous left-handers

- Marie Curie

- Jimi Hendrix

- Leonardo Di Vinci

- David Bowie

- Paul McCartney

- Albert Einstein

- Jack the Ripper

- Barack Obama

- Helen Keller

- Joan of Arc

The National's picks

4.35pm: Tilal Al Khalediah
5.10pm: Continous
5.45pm: Raging Torrent
6.20pm: West Acre
7pm: Flood Zone
7.40pm: Straight No Chaser
8.15pm: Romantic Warrior
8.50pm: Calandogan
9.30pm: Forever Young

A MINECRAFT MOVIE

Director: Jared Hess

Starring: Jack Black, Jennifer Coolidge, Jason Momoa

Rating: 3/5

UAE currency: the story behind the money in your pockets
UAE currency: the story behind the money in your pockets
MATCH INFO

Uefa Champions League quarter-final second leg:

Juventus 1 Ajax 2

Ajax advance 3-2 on aggregate

Test

Director: S Sashikanth

Cast: Nayanthara, Siddharth, Meera Jasmine, R Madhavan

Star rating: 2/5

Book%20Details
%3Cp%3E%3Cem%3EThree%20Centuries%20of%20Travel%20Writing%20by%20Muslim%20Women%3C%2Fem%3E%3Cbr%3E%3Cstrong%3EEditors%3A%20%3C%2Fstrong%3ESiobhan%20Lambert-Hurley%2C%20Daniel%20Majchrowicz%2C%20Sunil%20Sharma%3Cbr%3E%3Cstrong%3EPublisher%3A%20%3C%2Fstrong%3EIndiana%20University%20Press%3B%20532%20pages%3Cbr%3E%3C%2Fp%3E%0A
Biog:

Age: 34

Favourite superhero: Batman

Favourite sport: anything extreme

Favourite person: Muhammad Ali 

SPEC%20SHEET%3A%20APPLE%20M3%20MACBOOK%20AIR%20(13%22)
%3Cp%3E%3Cstrong%3EProcessor%3A%3C%2Fstrong%3E%20Apple%20M3%2C%208-core%20CPU%2C%20up%20to%2010-core%20CPU%2C%2016-core%20Neural%20Engine%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EDisplay%3A%3C%2Fstrong%3E%2013.6-inch%20Liquid%20Retina%2C%202560%20x%201664%2C%20224ppi%2C%20500%20nits%2C%20True%20Tone%2C%20wide%20colour%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EMemory%3A%3C%2Fstrong%3E%208%2F16%2F24GB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStorage%3A%3C%2Fstrong%3E%20256%2F512GB%20%2F%201%2F2TB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EI%2FO%3A%3C%2Fstrong%3E%20Thunderbolt%203%2FUSB-4%20(2)%2C%203.5mm%20audio%2C%20Touch%20ID%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EConnectivity%3A%3C%2Fstrong%3E%20Wi-Fi%206E%2C%20Bluetooth%205.3%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EBattery%3A%3C%2Fstrong%3E%2052.6Wh%20lithium-polymer%2C%20up%20to%2018%20hours%2C%20MagSafe%20charging%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ECamera%3A%3C%2Fstrong%3E%201080p%20FaceTime%20HD%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EVideo%3A%3C%2Fstrong%3E%20Support%20for%20Apple%20ProRes%2C%20HDR%20with%20Dolby%20Vision%2C%20HDR10%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EAudio%3A%3C%2Fstrong%3E%204-speaker%20system%2C%20wide%20stereo%2C%20support%20for%20Dolby%20Atmos%2C%20Spatial%20Audio%20and%20dynamic%20head%20tracking%20(with%20AirPods)%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EColours%3A%3C%2Fstrong%3E%20Midnight%2C%20silver%2C%20space%20grey%2C%20starlight%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EIn%20the%20box%3A%3C%2Fstrong%3E%20MacBook%20Air%2C%2030W%2F35W%20dual-port%2F70w%20power%20adapter%2C%20USB-C-to-MagSafe%20cable%2C%202%20Apple%20stickers%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EPrice%3A%3C%2Fstrong%3E%20From%20Dh4%2C599%3C%2Fp%3E%0A
COMPANY PROFILE
Name: Kumulus Water
 
Started: 2021
 
Founders: Iheb Triki and Mohamed Ali Abid
 
Based: Tunisia 
 
Sector: Water technology 
 
Number of staff: 22 
 
Investment raised: $4 million 
NO OTHER LAND

Director: Basel Adra, Yuval Abraham, Rachel Szor, Hamdan Ballal

Stars: Basel Adra, Yuval Abraham

Rating: 3.5/5

Score

New Zealand 266 for 9 in 50 overs
Pakistan 219 all out in 47.2 overs 

New Zealand win by 47 runs

New Zealand lead three-match ODI series 1-0

Next match: Zayed Cricket Stadium, Abu Dhabi, Friday

Mercer, the investment consulting arm of US services company Marsh & McLennan, expects its wealth division to at least double its assets under management (AUM) in the Middle East as wealth in the region continues to grow despite economic headwinds, a company official said.

Mercer Wealth, which globally has $160 billion in AUM, plans to boost its AUM in the region to $2-$3bn in the next 2-3 years from the present $1bn, said Yasir AbuShaban, a Dubai-based principal with Mercer Wealth.

Within the next two to three years, we are looking at reaching $2 to $3 billion as a conservative estimate and we do see an opportunity to do so,” said Mr AbuShaban.

Mercer does not directly make investments, but allocates clients’ money they have discretion to, to professional asset managers. They also provide advice to clients.

“We have buying power. We can negotiate on their (client’s) behalf with asset managers to provide them lower fees than they otherwise would have to get on their own,” he added.

Mercer Wealth’s clients include sovereign wealth funds, family offices, and insurance companies among others.

From its office in Dubai, Mercer also looks after Africa, India and Turkey, where they also see opportunity for growth.

Wealth creation in Middle East and Africa (MEA) grew 8.5 per cent to $8.1 trillion last year from $7.5tn in 2015, higher than last year’s global average of 6 per cent and the second-highest growth in a region after Asia-Pacific which grew 9.9 per cent, according to consultancy Boston Consulting Group (BCG). In the region, where wealth grew just 1.9 per cent in 2015 compared with 2014, a pickup in oil prices has helped in wealth generation.

BCG is forecasting MEA wealth will rise to $12tn by 2021, growing at an annual average of 8 per cent.

Drivers of wealth generation in the region will be split evenly between new wealth creation and growth of performance of existing assets, according to BCG.

Another general trend in the region is clients’ looking for a comprehensive approach to investing, according to Mr AbuShaban.

“Institutional investors or some of the families are seeing a slowdown in the available capital they have to invest and in that sense they are looking at optimizing the way they manage their portfolios and making sure they are not investing haphazardly and different parts of their investment are working together,” said Mr AbuShaban.

Some clients also have a higher appetite for risk, given the low interest-rate environment that does not provide enough yield for some institutional investors. These clients are keen to invest in illiquid assets, such as private equity and infrastructure.

“What we have seen is a desire for higher returns in what has been a low-return environment specifically in various fixed income or bonds,” he said.

“In this environment, we have seen a de facto increase in the risk that clients are taking in things like illiquid investments, private equity investments, infrastructure and private debt, those kind of investments were higher illiquidity results in incrementally higher returns.”

The Abu Dhabi Investment Authority, one of the largest sovereign wealth funds, said in its 2016 report that has gradually increased its exposure in direct private equity and private credit transactions, mainly in Asian markets and especially in China and India. The authority’s private equity department focused on structured equities owing to “their defensive characteristics.”

Formula Middle East Calendar (Formula Regional and Formula 4)
Round 1: January 17-19, Yas Marina Circuit – Abu Dhabi
 
Round 2: January 22-23, Yas Marina Circuit – Abu Dhabi
 
Round 3: February 7-9, Dubai Autodrome – Dubai
 
Round 4: February 14-16, Yas Marina Circuit – Abu Dhabi
 
Round 5: February 25-27, Jeddah Corniche Circuit – Saudi Arabia
Israel Palestine on Swedish TV 1958-1989

Director: Goran Hugo Olsson

Rating: 5/5

THE BIO

Favourite place to go to in the UAE: The desert sand dunes, just after some rain

Who inspires you: Anybody with new and smart ideas, challenging questions, an open mind and a positive attitude

Where would you like to retire: Most probably in my home country, Hungary, but with frequent returns to the UAE

Favorite book: A book by Transilvanian author, Albert Wass, entitled ‘Sword and Reap’ (Kard es Kasza) - not really known internationally

Favourite subjects in school: Mathematics and science

%3Cp%3E%3Cstrong%3EDirector%3A%3C%2Fstrong%3E%20Nag%20Ashwin%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarring%3A%20%3C%2Fstrong%3EPrabhas%2C%20Saswata%20Chatterjee%2C%20Deepika%20Padukone%2C%20Amitabh%20Bachchan%2C%20Shobhana%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E%E2%98%85%E2%98%85%E2%98%85%E2%98%85%3C%2Fp%3E%0A
The specs
 
Engine: 3.0-litre six-cylinder turbo
Power: 398hp from 5,250rpm
Torque: 580Nm at 1,900-4,800rpm
Transmission: Eight-speed auto
Fuel economy, combined: 6.5L/100km
On sale: December
Price: From Dh330,000 (estimate)
The Buckingham Murders

Starring: Kareena Kapoor Khan, Ash Tandon, Prabhleen Sandhu

Director: Hansal Mehta

Rating: 4 / 5

THE BIO

Favourite car: Koenigsegg Agera RS or Renault Trezor concept car.

Favourite book: I Am Pilgrim by Terry Hayes or Red Notice by Bill Browder.

Biggest inspiration: My husband Nik. He really got me through a lot with his positivity.

Favourite holiday destination: Being at home in Australia, as I travel all over the world for work. It’s great to just hang out with my husband and family.

 

 

Real estate tokenisation project

Dubai launched the pilot phase of its real estate tokenisation project last month.

The initiative focuses on converting real estate assets into digital tokens recorded on blockchain technology and helps in streamlining the process of buying, selling and investing, the Dubai Land Department said.

Dubai’s real estate tokenisation market is projected to reach Dh60 billion ($16.33 billion) by 2033, representing 7 per cent of the emirate’s total property transactions, according to the DLD.

Skewed figures

In the village of Mevagissey in southwest England the housing stock has doubled in the last century while the number of residents is half the historic high. The village's Neighbourhood Development Plan states that 26% of homes are holiday retreats. Prices are high, averaging around £300,000, £50,000 more than the Cornish average of £250,000. The local average wage is £15,458. 

PREMIER LEAGUE FIXTURES

Tuesday (UAE kick-off times)

Leicester City v Brighton (9pm)

Tottenham Hotspur v West Ham United (11.15pm)

Wednesday

Manchester United v Sheffield United (9pm)

Newcastle United v Aston Villa (9pm)

Norwich City v Everton (9pm)

Wolves v Bournemouth (9pm)

Liverpool v Crystal Palace (11.15pm)

Thursday

Burnley v Watford (9pm)

Southampton v Arsenal (9pm)

Chelsea v Manchester City (11.15pm)

In-demand jobs and monthly salaries
  • Technology expert in robotics and automation: Dh20,000 to Dh40,000 
  • Energy engineer: Dh25,000 to Dh30,000 
  • Production engineer: Dh30,000 to Dh40,000 
  • Data-driven supply chain management professional: Dh30,000 to Dh50,000 
  • HR leader: Dh40,000 to Dh60,000 
  • Engineering leader: Dh30,000 to Dh55,000 
  • Project manager: Dh55,000 to Dh65,000 
  • Senior reservoir engineer: Dh40,000 to Dh55,000 
  • Senior drilling engineer: Dh38,000 to Dh46,000 
  • Senior process engineer: Dh28,000 to Dh38,000 
  • Senior maintenance engineer: Dh22,000 to Dh34,000 
  • Field engineer: Dh6,500 to Dh7,500
  • Field supervisor: Dh9,000 to Dh12,000
  • Field operator: Dh5,000 to Dh7,000
Key facilities
  • Olympic-size swimming pool with a split bulkhead for multi-use configurations, including water polo and 50m/25m training lanes
  • Premier League-standard football pitch
  • 400m Olympic running track
  • NBA-spec basketball court with auditorium
  • 600-seat auditorium
  • Spaces for historical and cultural exploration
  • An elevated football field that doubles as a helipad
  • Specialist robotics and science laboratories
  • AR and VR-enabled learning centres
  • Disruption Lab and Research Centre for developing entrepreneurial skills
Dubai works towards better air quality by 2021

Dubai is on a mission to record good air quality for 90 per cent of the year – up from 86 per cent annually today – by 2021.

The municipality plans to have seven mobile air-monitoring stations by 2020 to capture more accurate data in hourly and daily trends of pollution.

These will be on the Palm Jumeirah, Al Qusais, Muhaisnah, Rashidiyah, Al Wasl, Al Quoz and Dubai Investment Park.

“It will allow real-time responding for emergency cases,” said Khaldoon Al Daraji, first environment safety officer at the municipality.

“We’re in a good position except for the cases that are out of our hands, such as sandstorms.

“Sandstorms are our main concern because the UAE is just a receiver.

“The hotspots are Iran, Saudi Arabia and southern Iraq, but we’re working hard with the region to reduce the cycle of sandstorm generation.”

Mr Al Daraji said monitoring as it stood covered 47 per cent of Dubai.

There are 12 fixed stations in the emirate, but Dubai also receives information from monitors belonging to other entities.

“There are 25 stations in total,” Mr Al Daraji said.

“We added new technology and equipment used for the first time for the detection of heavy metals.

“A hundred parameters can be detected but we want to expand it to make sure that the data captured can allow a baseline study in some areas to ensure they are well positioned.”

MATCH INFO

Uefa Champions League final:

Who: Real Madrid v Liverpool
Where: NSC Olimpiyskiy Stadium, Kiev, Ukraine
When: Saturday, May 26, 10.45pm (UAE)
TV: Match on BeIN Sports