{"id":309,"date":"2023-07-04T12:54:36","date_gmt":"2023-07-04T12:54:36","guid":{"rendered":"https:\/\/smart.zadig.cloud\/?post_type=scenario&#038;p=309"},"modified":"2023-11-17T11:37:23","modified_gmt":"2023-11-17T11:37:23","slug":"sensitive-data-theft","status":"publish","type":"scenario","link":"https:\/\/smart.zadig.cloud\/it\/scenarios\/sensitive-data-theft\/","title":{"rendered":"Furto di Dati Sensibili"},"excerpt":{"rendered":"<p>La sottrazione dei dati pu\u00f2 essere molto pericolosa per qualsiasi azienda, soprattutto quando i dati sottratti contengono informazioni personali identificabili o addirittura documenti di identit\u00e0.<br \/>\nAnche se il rischio non \u00e8 completamente eliminabile, ZADIG Smart \u00e8 in grado di proteggervi da vari attacchi, preservando la vostra privacy (e quella dei vostri utenti).<\/p>","protected":false},"featured_media":1764,"template":"","meta":[],"acf":{"stage":"This luxury hotel is celebrated as a renowned establishment of exceptional repute, where unparalleled services and unforgettable experiences await discerning guests. Exuding opulence and elegance in every detail, the hotel offers a myriad of exquisite amenities and personalized offerings that cater to the discerning tastes of its esteemed clientele.\r\n\r\nWith an unwavering commitment to excellence, the hotel boasts world-class concierge service, ensuring that every guest's desires and preferences are meticulously attended to. Exclusive access to coveted events and venues, as well as bespoke dining experiences crafted by renowned chefs, are just a few examples of the extraordinary offerings that set this luxury hotel apart.\r\n\r\nBy seamlessly integrating cutting-edge technology with impeccable hospitality, this luxury hotel creates a sanctuary of elegance and tranquility, allowing discerning guests to indulge in a world of unmatched luxury and exceptional service.","timeline_new":[{"title":"Evening","content":[{"hour":"18:17","description":"The attacker check-in to the luxury hotel, appearing like any other guest."},{"hour":"23:02","description":"Under the cover of darkness, the attacker discreetly unplugs the ethernet cable from their room's smart TV, getting ready for the illicit activity."},{"hour":"23:05","description":"The attacker initiates a deliberate and slow network scan, taking precautionary measures to avoid arousing suspicion."},{"hour":"00:23","description":"The network scan is completed, and the attacker identifies an unprotected NAS within the hotel's network, providing a potential gateway to valuable data."}],"gravity":"#FFFFFF"},{"title":"Night","content":[{"hour":"00:24","description":"With unauthorized access obtained, the attacker begins exploring the contents of the NAS, searching for worthwhile information."},{"hour":"00:35","description":"Within the NAS, the attacker stumbles upon a folder containing ID cards dating back to last months' guests. Additionally, a comprehensive Excel file with missing guest information is discovered."},{"hour":"00:41","description":"Unable to find further valuable data, the attacker proceeds to extract and copy on their personal device the previously identified information."},{"hour":"00:52","description":"Satisfied with the data obtained, the attacker concludes their activities and goes to sleep, leaving no trace of their nefarious actions."}],"gravity":"#E7324A"},{"title":"Morning","content":[{"hour":"07:03","description":"The attacker checks out of the hotel, blending in with other departing guests, leaving behind no indication of their true intentions."},{"hour":"09:21","description":"Having reached a secure location, the attacker begins inspecting the retrieved data, examining carefully its potential value and relevance."}],"gravity":"#E7324A"}],"consequences":[{"title":"Legal Liability","description":"All user data were found in the dark web, and were tracked back to this attack. Those info where used to make illegal activities with the users' name. The hotel is facing dozen of trials, with nearly no chance of being proven innocent."},{"title":"Economic Losses","description":"Legal expenses, reparations, productivity and time losses, a steep drop in reservations... A simple ethernet cable is costing this hotel Millions of dollars, with way more to come."},{"title":"Reputation Damage","description":"Being known to put guest's privacy as a priority, this hotel has completely lost all the trust clients. Years of hard work, destroyed in a single night."}],"the_other_way":"<strong>This complex (yet powerful) attack could have been completely stopped not only in one, but even in three different phases: at the real edge, in the network, and during data access.<\/strong>\r\n\r\nAlthough just a single protection could have prevented the leak, with ZADIG Smart we have integrated all three those protection, to give you the best possible security prevention.","the_other_way_suggestions":[{"title":"Network Authentication","description":"Keep out intruders! Allow only authorized devices to connect to your network through robust network authentication measures. By implementing stringent authentication protocols such as 802.11x, you can ensure that only trusted devices gain access. Our solution also includes seamless auto-configuration of devices using our Mobile Device Management (MDM) system, simplifying the onboarding process while maintaining a high level of security. Don't leave your network vulnerable to unauthorized access \u2013 fortify it with strong network authentication.","image":1783},{"title":"Network Segmentation","description":"Segregate different traffic and enhance your network security. By implementing network segmentation, you create independent partitions that prevent unauthorized lateral movement within your network. Keep trusted and untrusted traffic separate, minimizing the risk of data breaches. Our solution empowers you to control traffic flow, ensuring that critical information remains secure. Take charge of your network security by segregating your network and safeguarding your valuable assets.","image":1785},{"title":"Active Directory","description":"Boost security with Active Directory. Embed strong, centralized authentication into your systems to ensure high levels of protection. Active Directory provides a comprehensive solution for managing user accounts and enforcing security policies. With a single credential, you can streamline authentication processes while maintaining stringent security measures. Gain granular control over user permissions, preventing unauthorized access and data breaches. Active Directory empowers you to establish a robust security framework, safeguarding your sensitive data with ease.","image":1779}]},"_links":{"self":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/scenario\/309"}],"collection":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/scenario"}],"about":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/types\/scenario"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/media\/1764"}],"wp:attachment":[{"href":"https:\/\/smart.zadig.cloud\/it\/wp-json\/wp\/v2\/media?parent=309"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}