2. Why is cyber security important?
A study by the Federal Criminal Police Office (BKA) found that cybercrime activities already increased by 15 percent in 2019 compared to the previous year. According to estimates by the digital association BITKOM, economic damage worth over 100 billion euros occurred as a result. Hackers and cybercriminals thus cause major problems in the public and economic spheres. At this point, therefore, maximum vigilance is required from every type of company and organisation, because cybercrime will not let up in the future.The types of cyber threats
Cyberattacks or cyberthreats are, for the most part, relatively fleeting concepts. However, cyberattacks on companies, organisations or even states can take a wide variety of concrete forms. The following examples are among the best known and most common.
Malware
Malware means malicious software. Cybercriminals or hackers design these malicious programmes to infect, sabotage and damage their victims' IT systems. The motivations of such cyber attacks can be financial or even political. Malware can be divided into further subcategories:
- Virus: A programme that replicates itself. It thus spreads in a system and infects it with a harmful code.
- Spyware: Software that spies on the user's activities (e.g. passwords, financial information and other sensitive data) without the user's knowledge.
- Adware: A form of covert spyware that spies on users' online behaviour and displays ads tailored to them.
- Ransomware: Hackers create software that locks important files of their victims. They only release them again after paying a ransom.
- Botnets: Malware that infect entire computer networks and use them for illegal activities.
- Phishing: Criminals send emails to their victims that look like official emails from reputable companies or financial institutions. They ask for sensitive data such as passwords or credit card information.
- Man-in-the-middle attack: Unauthorised persons take advantage of poorly secured WLAN networks to intercept sensitive information during data exchange.
- Denial of service attack: Hackers prevent organisations and businesses, as well as their operations, from fulfilling important requests from legitimate users. They do this by flooding the network with traffic.
- SQL injection: In the targeted attacks on SQL databases, hackers exploit vulnerabilities to inject malicious code and spy on data.
Possible consequences of a lack of cybersecurity
Cyber attacks have far-reaching consequences for private individuals, small, medium-sized and large companies or organisations. These can be devastating:
- Fines and compensation payments
- Costs for additional man-hours for internal and external IT service providers or cybersecurity companies that need to respond to attacks and restore lost data or damaged infrastructure
- Costs for vulnerability analysis to prevent further cyber attacks
- Disruption of productivity and thus of the value-adding activity of a company
- Additional costs for PR measures to protect one's own image or restore a damaged reputation
- Dealing with legal consequences requires additional hours of work by legal counsel
- Damage to a company's reputation can lead to an adverse financial outlook and impairment of value