Hackers are using increasingly sophisticated tools to bypass target organisations' built-in security measures. istockphoto.com
Hackers are using increasingly sophisticated tools to bypass target organisations' built-in security measures. istockphoto.com

Companies need data dieting to fend off appetites of cyber criminals



Cyber hackers may be attacking the UAE with new security threats designed to take advantage of the increased adoption of new technologies such as cloud computing and mobile communications, if reports are to be believed.

According to a report by the cyber-security company Mandiant, which was founded by the former United States air force cyber forensics investigator Kevin Mandia, the UAE is a prime target for cyber espionage emanating from China.

Mandiant claims to have traced a series of hacking attacks around the world to a unit of the Chinese People's Liberation Army. Outside North America, the main focus of the attacks, the alleged Chinese army hackers have concentrated on 13 other countries including the UAE. The Chinese foreign ministry, however, rejected the accusations yesterday.

But whatever the source, the intruders launch well-defined attacks that apparently have been honed over years and designed to steal large volumes of valuable intellectual property.

The hackers revisit the victim's network to steal technology blueprints, proprietary manufacturing processes, test results, business plans, pricing documents, partnership agreements and emails plus contact lists.

Alan Brill, the senior managing director of the security firm Kroll Advisory Solutions, says new internet technologies such as cloud computing, the increasingly prevalent practice of hosting all company data on remote computer banks managed by a third party, also present new dangers.

"We now have a lot of technology partners we don't think about. Are you using cloud storage or processing services? How do they protect your data? Where do they store it? Are they using data centres in countries with limited cyber-crime laws?" says Mr Brill.

He adds that in some companies, departments are making deals with cloud providers without reference to the central IT department and without even going to the company's legal counsel for advice.

The malicious computer software that was used to attack Middle Eastern oil companies last year, reportedly erasing data on three quarters of Aramco's corporate personal computers, is now being used to steal corporate information, often without the victim's knowledge, reports Kroll. "The hackers are taking advantage of so-called 'zero day' exploits, which are so new that defensive systems - like antivirus scanners - can't recognise them," says Mr Brill.

As well as the new generation of "zero day" attacks that exploit a previously unknown vulnerability in a computer application, hackers send seemingly innocent emails to company employees to obtain information such as passwords and user names, a process known as "phishing". Often the emails link to a bogus website.

"They craft a very well-built phishing email that links to a drive-by malware site that creates an infection simply by visiting it. The email itself seems benign, and is not stopped by filters," says Mr Brill.

Kroll says the hackers are also using increasingly sophisticated tools such as a form of attack called an "SQL injection" to bypass target organisations' built-in security measures. "The hacker sends a string of data to your system via a regular internet connection that contains commands to your database. If you're vulnerable, your database answers them, and you can lose tens of thousands of records," says Mr Brill.

Kroll says it essential that all organisations take measures to protect themselves from malicious hacking attacks.

"With the advent of the internet, everyone connected to it is on the front lines of the battle. If you're not taking defensive steps, you should expect to be hacked," says Mr Brill. "Even worse, you might be hacked and not know it."

In addition to traditional security software patches, Kroll recommends a line of cyber defence called "white listing", which limits the programmes an organisation's computers will run to those on a pre-approved list. If the programme is not on the list, as would be the case with a malicious hacking attack, it will not run. Kroll also recommends that companies limit access to their data by measures such as restricting the number of "privileged" internet accounts they allow.

Another recommendation is that companies go on what is called a "data diet", which means identifying and keeping only that data which is needed. Many organisations keep vast digital stores of outdated information.

But Kroll believes that, despite the current publicity surrounding large-scale attacks, such as those allegedly carried out from China, the real threat still comes from company insiders.

Michael Du Bose, a managing director at Kroll, says "insiders, not outside hackers, are involved in more than two thirds of all cyber cases involving theft of intellectual property".

Malevolent insiders can take the form of disgruntled employees, opportunists, or contractors.

"Statistics only go so far in describing the severity of risk caused by this particular type of cyber threat. Real-life examples paint a more complex and persuasive picture," says Mr Du Bose.

"The FBI doubled the number of trade-secret arrests in the last four years, and the overwhelming majority of those prosecutions involved insiders."

ENGLAND SQUAD

Goalkeepers Pickford (Everton), Pope (Burnley), Henderson (Manchester United)

Defenders Alexander-Arnold (Liverpool), Chilwell (Chelsea), Coady (Wolves), Dier (Tottenham), Gomez (Liverpool), James (Chelsea), Keane (Everton), Maguire (Manchester United), Maitland-Niles (Arsenal), Mings (Aston Villa), Saka (Arsenal), Trippier (Atletico Madrid), Walker (Manchester City)

Midfielders: Foden (Manchester City), Henderson (Liverpool), Grealish (Aston Villa), Mount (Chelsea), Rice (West Ham), Ward-Prowse (Southampton), Winks (Tottenham)

Forwards: Abraham (Chelsea), Calvert-Lewin (Everton), Kane (Tottenham), Rashford (Manchester United), Sancho (Borussia Dortmund), Sterling (Manchester City)

Conservative MPs who have publicly revealed sending letters of no confidence
  1. Steve Baker
  2. Peter Bone
  3. Ben Bradley
  4. Andrew Bridgen
  5. Maria Caulfield​​​​​​​
  6. Simon Clarke 
  7. Philip Davies
  8. Nadine Dorries​​​​​​​
  9. James Duddridge​​​​​​​
  10. Mark Francois 
  11. Chris Green
  12. Adam Holloway
  13. Andrea Jenkyns
  14. Anne-Marie Morris
  15. Sheryll Murray
  16. Jacob Rees-Mogg
  17. Laurence Robertson
  18. Lee Rowley
  19. Henry Smith
  20. Martin Vickers 
  21. John Whittingdale

Mercer, the investment consulting arm of US services company Marsh & McLennan, expects its wealth division to at least double its assets under management (AUM) in the Middle East as wealth in the region continues to grow despite economic headwinds, a company official said.

Mercer Wealth, which globally has $160 billion in AUM, plans to boost its AUM in the region to $2-$3bn in the next 2-3 years from the present $1bn, said Yasir AbuShaban, a Dubai-based principal with Mercer Wealth.

Within the next two to three years, we are looking at reaching $2 to $3 billion as a conservative estimate and we do see an opportunity to do so,” said Mr AbuShaban.

Mercer does not directly make investments, but allocates clients’ money they have discretion to, to professional asset managers. They also provide advice to clients.

“We have buying power. We can negotiate on their (client’s) behalf with asset managers to provide them lower fees than they otherwise would have to get on their own,” he added.

Mercer Wealth’s clients include sovereign wealth funds, family offices, and insurance companies among others.

From its office in Dubai, Mercer also looks after Africa, India and Turkey, where they also see opportunity for growth.

Wealth creation in Middle East and Africa (MEA) grew 8.5 per cent to $8.1 trillion last year from $7.5tn in 2015, higher than last year’s global average of 6 per cent and the second-highest growth in a region after Asia-Pacific which grew 9.9 per cent, according to consultancy Boston Consulting Group (BCG). In the region, where wealth grew just 1.9 per cent in 2015 compared with 2014, a pickup in oil prices has helped in wealth generation.

BCG is forecasting MEA wealth will rise to $12tn by 2021, growing at an annual average of 8 per cent.

Drivers of wealth generation in the region will be split evenly between new wealth creation and growth of performance of existing assets, according to BCG.

Another general trend in the region is clients’ looking for a comprehensive approach to investing, according to Mr AbuShaban.

“Institutional investors or some of the families are seeing a slowdown in the available capital they have to invest and in that sense they are looking at optimizing the way they manage their portfolios and making sure they are not investing haphazardly and different parts of their investment are working together,” said Mr AbuShaban.

Some clients also have a higher appetite for risk, given the low interest-rate environment that does not provide enough yield for some institutional investors. These clients are keen to invest in illiquid assets, such as private equity and infrastructure.

“What we have seen is a desire for higher returns in what has been a low-return environment specifically in various fixed income or bonds,” he said.

“In this environment, we have seen a de facto increase in the risk that clients are taking in things like illiquid investments, private equity investments, infrastructure and private debt, those kind of investments were higher illiquidity results in incrementally higher returns.”

The Abu Dhabi Investment Authority, one of the largest sovereign wealth funds, said in its 2016 report that has gradually increased its exposure in direct private equity and private credit transactions, mainly in Asian markets and especially in China and India. The authority’s private equity department focused on structured equities owing to “their defensive characteristics.”

Key facilities
  • Olympic-size swimming pool with a split bulkhead for multi-use configurations, including water polo and 50m/25m training lanes
  • Premier League-standard football pitch
  • 400m Olympic running track
  • NBA-spec basketball court with auditorium
  • 600-seat auditorium
  • Spaces for historical and cultural exploration
  • An elevated football field that doubles as a helipad
  • Specialist robotics and science laboratories
  • AR and VR-enabled learning centres
  • Disruption Lab and Research Centre for developing entrepreneurial skills
Volvo ES90 Specs

Engine: Electric single motor (96kW), twin motor (106kW) and twin motor performance (106kW)

Power: 333hp, 449hp, 680hp

Torque: 480Nm, 670Nm, 870Nm

On sale: Later in 2025 or early 2026, depending on region

Price: Exact regional pricing TBA

The specs

AT4 Ultimate, as tested

Engine: 6.2-litre V8

Power: 420hp

Torque: 623Nm

Transmission: 10-speed automatic

Price: From Dh330,800 (Elevation: Dh236,400; AT4: Dh286,800; Denali: Dh345,800)

On sale: Now

The White Lotus: Season three

Creator: Mike White

Starring: Walton Goggins, Jason Isaacs, Natasha Rothwell

Rating: 4.5/5

Company%20Profile
%3Cp%3E%3Cstrong%3EName%3A%20%3C%2Fstrong%3EDirect%20Debit%20System%3Cbr%3E%3Cstrong%3EStarted%3A%3C%2Fstrong%3E%20Sept%202017%3Cbr%3E%3Cstrong%3EBased%3A%3C%2Fstrong%3E%20UAE%20with%20a%20subsidiary%20in%20the%20UK%3Cbr%3E%3Cstrong%3EIndustry%3A%3C%2Fstrong%3E%20FinTech%3Cbr%3E%3Cstrong%3EFunding%3A%3C%2Fstrong%3E%20Undisclosed%3Cbr%3E%3Cstrong%3EInvestors%3A%3C%2Fstrong%3E%20Elaine%20Jones%3Cbr%3E%3Cstrong%3ENumber%20of%20employees%3A%3C%2Fstrong%3E%208%3Cbr%3E%3C%2Fp%3E%0A
SPECS
%3Cp%3E%3Cstrong%3EEngine%3A%20%3C%2Fstrong%3E2-litre%204-cylinder%20petrol%20(V%20Class)%3B%20electric%20motor%20with%2060kW%20or%2090kW%20powerpack%20(EQV)%0D%3Cbr%3E%3Cstrong%3EPower%3A%3C%2Fstrong%3E%20233hp%20(V%20Class%2C%20best%20option)%3B%20204hp%20(EQV%2C%20best%20option)%0D%3Cbr%3E%3Cstrong%3ETorque%3A%3C%2Fstrong%3E%20350Nm%20(V%20Class%2C%20best%20option)%3B%20TBA%20(EQV)%0D%3Cbr%3E%3Cstrong%3EOn%20sale%3A%20%3C%2Fstrong%3EMid-2024%0D%3Cbr%3E%3Cstrong%3EPrice%3A%20%3C%2Fstrong%3ETBA%0D%3C%2Fp%3E%0A
Monday's results
  • UAE beat Bahrain by 51 runs
  • Qatar beat Maldives by 44 runs
  • Saudi Arabia beat Kuwait by seven wickets
NO OTHER LAND

Director: Basel Adra, Yuval Abraham, Rachel Szor, Hamdan Ballal

Stars: Basel Adra, Yuval Abraham

Rating: 3.5/5

BIGGEST CYBER SECURITY INCIDENTS IN RECENT TIMES

SolarWinds supply chain attack: Came to light in December 2020 but had taken root for several months, compromising major tech companies, governments and its entities

Microsoft Exchange server exploitation: March 2021; attackers used a vulnerability to steal emails

Kaseya attack: July 2021; ransomware hit perpetrated REvil, resulting in severe downtime for more than 1,000 companies

Log4j breach: December 2021; attackers exploited the Java-written code to inflitrate businesses and governments

UAE-based players

Goodlands Riders: Jamshaid Butt, Ali Abid, JD Mahesh, Vibhor Shahi, Faizan Asif, Nadeem Rahim

Rose Hill Warriors: Faraz Sheikh, Ashok Kumar, Thabreez Ali, Janaka Chathuranga, Muzammil Afridi, Ameer Hamza

The specs: 2018 Nissan Altima


Price, base / as tested: Dh78,000 / Dh97,650

Engine: 2.5-litre in-line four-cylinder

Power: 182hp @ 6,000rpm

Torque: 244Nm @ 4,000rpm

Transmission: Continuously variable tranmission

Fuel consumption, combined: 7.6L / 100km

GAC GS8 Specs

Engine: 2.0-litre 4cyl turbo

Power: 248hp at 5,200rpm

Torque: 400Nm at 1,750-4,000rpm

Transmission: 8-speed auto

Fuel consumption: 9.1L/100km

On sale: Now

Price: From Dh149,900

Skewed figures

In the village of Mevagissey in southwest England the housing stock has doubled in the last century while the number of residents is half the historic high. The village's Neighbourhood Development Plan states that 26% of homes are holiday retreats. Prices are high, averaging around £300,000, £50,000 more than the Cornish average of £250,000. The local average wage is £15,458. 

BACK%20TO%20ALEXANDRIA
%3Cp%3E%3Cstrong%3EDirector%3A%20%3C%2Fstrong%3ETamer%20Ruggli%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarring%3A%20%3C%2Fstrong%3ENadine%20Labaki%2C%20Fanny%20Ardant%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E3.5%2F5%3C%2Fp%3E%0A
COMPANY PROFILE
Name: Kumulus Water
 
Started: 2021
 
Founders: Iheb Triki and Mohamed Ali Abid
 
Based: Tunisia 
 
Sector: Water technology 
 
Number of staff: 22 
 
Investment raised: $4 million 
UAE currency: the story behind the money in your pockets
At a glance

Global events: Much of the UK’s economic woes were blamed on “increased global uncertainty”, which can be interpreted as the economic impact of the Ukraine war and the uncertainty over Donald Trump’s tariffs.

 

Growth forecasts: Cut for 2025 from 2 per cent to 1 per cent. The OBR watchdog also estimated inflation will average 3.2 per cent this year

 

Welfare: Universal credit health element cut by 50 per cent and frozen for new claimants, building on cuts to the disability and incapacity bill set out earlier this month

 

Spending cuts: Overall day-to day-spending across government cut by £6.1bn in 2029-30 

 

Tax evasion: Steps to crack down on tax evasion to raise “£6.5bn per year” for the public purse

 

Defence: New high-tech weaponry, upgrading HM Naval Base in Portsmouth

 

Housing: Housebuilding to reach its highest in 40 years, with planning reforms helping generate an extra £3.4bn for public finances

While you're here
Real estate tokenisation project

Dubai launched the pilot phase of its real estate tokenisation project last month.

The initiative focuses on converting real estate assets into digital tokens recorded on blockchain technology and helps in streamlining the process of buying, selling and investing, the Dubai Land Department said.

Dubai’s real estate tokenisation market is projected to reach Dh60 billion ($16.33 billion) by 2033, representing 7 per cent of the emirate’s total property transactions, according to the DLD.

The%C2%A0specs%20
%3Cp%3E%3Cstrong%3EEngine%3A%3C%2Fstrong%3E%204-cylinder%202-litre%3Cbr%3E%3Cstrong%3ETransmission%3A%20%3C%2Fstrong%3E9-speed%20automatic%3Cbr%3E%3Cstrong%3EPower%3A%20%3C%2Fstrong%3E252%20brake%20horsepower%3Cbr%3E%3Cstrong%3ETorque%3A%20%3C%2Fstrong%3E352Nm%3Cbr%3E%3Cstrong%3EPrice%3A%20%3C%2Fstrong%3Efrom%20Dh146%2C700%3Cbr%3E%3Cstrong%3EOn%20sale%3A%20%3C%2Fstrong%3Enow%3C%2Fp%3E%0A
if you go

The flights

Emirates have direct flights from Dubai to Glasgow from Dh3,115. Alternatively, if you want to see a bit of Edinburgh first, then you can fly there direct with Etihad from Abu Dhabi.

The hotel

Located in the heart of Mackintosh's Glasgow, the Dakota Deluxe is perhaps the most refined hotel anywhere in the city. Doubles from Dh850

 Events and tours

There are various Mackintosh specific events throughout 2018 – for more details and to see a map of his surviving designs see glasgowmackintosh.com

For walking tours focussing on the Glasgow Style, see the website of the Glasgow School of Art. 

More information

For ideas on planning a trip to Scotland, visit www.visitscotland.com

A MINECRAFT MOVIE

Director: Jared Hess

Starring: Jack Black, Jennifer Coolidge, Jason Momoa

Rating: 3/5

Scoreline

UAE 2-1 Saudi Arabia

UAE Mabkhout 21’, Khalil 59’

Saudi Al Abed (pen) 20’

Man of the match Ahmed Khalil (UAE)

How to wear a kandura

Dos

  • Wear the right fabric for the right season and occasion 
  • Always ask for the dress code if you don’t know
  • Wear a white kandura, white ghutra / shemagh (headwear) and black shoes for work 
  • Wear 100 per cent cotton under the kandura as most fabrics are polyester

Don’ts 

  • Wear hamdania for work, always wear a ghutra and agal 
  • Buy a kandura only based on how it feels; ask questions about the fabric and understand what you are buying
Specs

Engine: Dual-motor all-wheel-drive electric

Range: Up to 610km

Power: 905hp

Torque: 985Nm

Price: From Dh439,000

Available: Now

UAE currency: the story behind the money in your pockets
A little about CVRL

Founded in 1985 by Sheikh Mohammed bin Rashid, Vice President and Ruler of Dubai, the Central Veterinary Research Laboratory (CVRL) is a government diagnostic centre that provides testing and research facilities to the UAE and neighbouring countries.

One of its main goals is to provide permanent treatment solutions for veterinary related diseases. 

The taxidermy centre was established 12 years ago and is headed by Dr Ulrich Wernery. 

Cricket World Cup League 2

UAE squad

Rahul Chopra (captain), Aayan Afzal Khan, Ali Naseer, Aryansh Sharma, Basil Hameed, Dhruv Parashar, Junaid Siddique, Muhammad Farooq, Muhammad Jawadullah, Muhammad Waseem, Omid Rahman, Rahul Bhatia, Tanish Suri, Vishnu Sukumaran, Vriitya Aravind

Fixtures

Friday, November 1 – Oman v UAE
Sunday, November 3 – UAE v Netherlands
Thursday, November 7 – UAE v Oman
Saturday, November 9 – Netherlands v UAE