{"id":8027,"date":"2020-04-07T20:42:28","date_gmt":"2020-04-07T20:42:28","guid":{"rendered":"https:\/\/www.securitytoday.de\/2026\/04\/02\/post_id-2027\/"},"modified":"2026-07-06T15:27:07","modified_gmt":"2026-07-06T15:27:07","slug":"cyberattacks-new-security-vulnerabilities-emerge-from-remote-work","status":"publish","type":"post","link":"https:\/\/www.securitytoday.de\/en\/2020\/04\/07\/cyberattacks-new-security-vulnerabilities-emerge-from-remote-work\/","title":{"rendered":"Cyberattacks: New Security Vulnerabilities Emerge from Remote Work"},"content":{"rendered":"<p><strong>The coronavirus crisis is forcing more and more people to work from home. Early consequences of this lightning-fast digital transformation are already apparent &#8211; cybercriminals are having a field day. Here are four practical tips to help you stay protected.<\/strong><\/p>\n<p>Almost everyone is affected by the COVID-19 pandemic &#8211; and cybercriminals are cashing in with COVID-19 spam and coronavirus-themed phishing scams, making the deal of a lifetime. This works for three reasons: First, many people are afraid. Second, many want to help &#8211; and are therefore more likely to open attachments or click links they\u2019d normally distrust. And third, of course, millions of employees across Germany are now working remotely.<\/p>\n<p>Few people have received formal training on how to work securely from home &#8211; after all, most had to switch workplaces overnight. Even the Bavarian government appears to have fallen behind: Developers from the magazine <em>c\u2019t<\/em> were able to join a <a href=\"https:\/\/www.heise.de\/ct\/artikel\/c-t-deckt-auf-Bayerischer-Innenminister-bespricht-Corona-Krise-in-ungeschuetzter-Videokonferenz-4680288.html\">video conference with the state\u2019s interior minister<\/a> because the system wasn\u2019t secured.<\/p>\n<p>Here are four tips to keep hackers away from your company\u2019s sensitive data:<\/p>\n<h2>1. Keep Work and Personal Activities Separate<\/h2>\n<p>Many of us use a single device for both work and private life &#8211; and buying a second laptop simply isn\u2019t an option for most. In such cases, using two separate browsers can already help significantly. Creating a dedicated user account on the device &#8211; without administrator rights &#8211; adds another layer of protection. Avoid using your partner\u2019s or a friend\u2019s laptop for work-related tasks. After all, you can\u2019t tell just by looking whether a device is infected with malware or spyware.<\/p>\n<h2>2. Use Secure Communication Channels<\/h2>\n<p>Information previously discussed only in the office now needs to be shared digitally. Unencrypted emails, Skype calls, and many chat services are essentially free tickets for hackers to access sensitive data.<\/p>\n<p>Messaging apps like Signal and Threema offer robust security. Surprisingly, WhatsApp also uses end-to-end encryption &#8211; just like Facebook Messenger. While the social media giant can see <em>when<\/em> and <em>with whom<\/em> someone communicates, it cannot read the <em>content<\/em> of those messages.<\/p>\n<h2>3. Use Strong, Unique Passwords\u2026<\/h2>\n<p>\u2026everywhere. Attackers can rapidly test massive numbers of password combinations using so-called brute-force attacks. Don\u2019t forget to change default passwords for your Wi-Fi network and router as well.<\/p>\n<p>Best practices include:<\/p>\n<ul>\n<li>At least 12 characters for standard accounts; 16 or more for critical accounts (mix uppercase and lowercase letters, numbers, and symbols).<\/li>\n<li>A unique password for every account (reusing passwords &#8211; or slight variations thereof &#8211; is an open invitation to hackers).<\/li>\n<li>Using a reputable password manager (e.g., 1Password, LastPass, or KeePass)<\/li>\n<\/ul>\n<h2>4. Think Before You Click<\/h2>\n<p>Attackers lure victims with urgent-sounding information and advice, sneak fake coronavirus-related apps into Google Play and Apple\u2019s App Store, or impersonate public health authorities.<\/p>\n<p>Ultimately, responsibility lies with the employee. Strong passwords won\u2019t help if you recklessly open email attachments, download files, or install software without scrutiny. If you don\u2019t trust a sender 100%, pick up the phone and verify.<\/p>\n<p>That\u2019s harder to do while working remotely &#8211; but all the more essential.<\/p>\n<p>&nbsp;<\/p>\n<h2>Related Articles<\/h2>\n<ul>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2021\/04\/07\/post_id-2804\/\">How decision-makers can prevent attacks on mail servers<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2020\/10\/23\/post_id-2624\/\">Cybersecurity vs. network security &#8211; what\u2019s the difference?<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/?p=2428\">Auth0 launches new bot-detection solution for enhanced protection<\/a><\/li>\n<\/ul>\n<p style=\"font-weight:700;color:#e6e3da;font-size:1.05em;margin:48px 0 16px;\">More from the MBF Media Network<\/p>\n<div style=\"display:flex;flex-direction:column;gap:14px;margin-bottom:40px;\"><a href=\"https:\/\/www.mybusinessfuture.com\" class=\"st-net-card\" style=\"display:block;padding:16px 18px;background:#23261f;border:1px solid rgba(105,216,237,0.22);border-radius:10px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 2px 10px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;\"><span style=\"display:block;margin-bottom:6px;font-size:0.72em;font-weight:700;letter-spacing:0.06em;text-transform:uppercase;color:#aa8ac2;\">MyBusinessFuture<\/span><span style=\"display:block;color:#e6e3da;line-height:1.45;\">Digitalization in SMEs: Best Practices<\/span><\/a><a href=\"https:\/\/www.cloudmagazin.com\" class=\"st-net-card\" style=\"display:block;padding:16px 18px;background:#23261f;border:1px solid rgba(105,216,237,0.22);border-radius:10px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 2px 10px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;\"><span style=\"display:block;margin-bottom:6px;font-size:0.72em;font-weight:700;letter-spacing:0.06em;text-transform:uppercase;color:#0bb7fd;\">cloudmagazin<\/span><span style=\"display:block;color:#e6e3da;line-height:1.45;\">Cloud as an Enabler of Digital Transformation<\/span><\/a><\/div>\n<h2>TL;DR<\/h2>\n<ul>\n<li>Almost everyone is affected by the COVID-19 pandemic &#8211; and cybercriminals are cashing in with COVID-19 spam and coronavirus-themed phishing scams, making the deal of a lifetime.<\/li>\n<li>We give you four tips to keep hackers away from your company\u2019s sensitive data:<\/li>\n<li>If you don\u2019t trust a sender 100%, call them to verify.<\/li>\n<li>And third, of course: millions of employees across Germany are now working remotely.<\/li>\n<\/ul>\n<h2>Key Facts<\/h2>\n<p><strong>Phishing volume:<\/strong> Over 3.4 billion phishing emails are sent globally every day.<\/p>\n<p><strong>Detection rate:<\/strong> Only 3 percent of employees report suspicious emails to their IT department.<\/p>\n<h2>Frequently Asked Questions<\/h2>\n<p class=\"st-faq-hint\">Every question is locked. A tap unlocks the answer.<\/p>\n<details>\n<summary><strong>What\u2019s the difference between data protection and information security?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">Data protection governs the lawful handling of personal data &#8211; including legal basis, purpose limitation, and data subject rights. Information security encompasses the technical and organizational measures designed to protect <em>all<\/em> data against loss, manipulation, or unauthorized access.<\/p>\n<\/details>\n<details>\n<summary><strong>Does every company need a Data Protection Officer?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">In Germany, appointing a Data Protection Officer is mandatory if at least 20 people regularly process personal data using automated systems &#8211; or if special categories of data (e.g., health data) are processed.<\/p>\n<\/details>\n<details>\n<summary><strong>What rights do data subjects have under the GDPR?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">The right of access, rectification, erasure (\u201cright to be forgotten\u201d), restriction of processing, data portability, and objection. Companies must respond to such requests within one month.<\/p>\n<\/details>\n","protected":false},"excerpt":{"rendered":"The coronavirus crisis is forcing more and more people to work from home. Early consequences of this lightning-fast digital transformation are already apparent &#8211; cybercriminals are having a field day. Here are four practical tips to help you stay protected. Almost everyone is affected by the COVID-19 pandemic &#8211; and cybercriminals are cashing in with [&hellip;]","protected":false},"author":55,"featured_media":2031,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_yoast_wpseo_focuskw":"remote work","_yoast_wpseo_title":"Cyberattacks: New Security Vulnerabilities Emerge from Remote Work","_yoast_wpseo_metadesc":"Cyberattacks: Protect your remote workforce from emerging security threats. Discover key vulnerabilities and actionable solutions now. Stay safe today.","_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_meta-robots-adv":"","_yoast_wpseo_canonical":"","_yoast_wpseo_opengraph-title":"","_yoast_wpseo_opengraph-description":"","_yoast_wpseo_opengraph-image":"","_yoast_wpseo_opengraph-image-id":0,"_yoast_wpseo_twitter-title":"","_yoast_wpseo_twitter-description":"","_yoast_wpseo_twitter-image":"","_yoast_wpseo_twitter-image-id":0,"_evm_slot_owner":"","evm_cvss":0,"evm_risk":0,"evm_casefile":"","evm_primary_cve":"","evm_external_preview_token":"","evm_external_preview_expires":"","_evm_translation_lang":"","featured_post":0,"featured_post_sortierung":0,"_wp_old_slug":["post_id-2027"],"footnotes":""},"categories":[255],"tags":[],"class_list":["post-8027","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-praxis-umsetzung-en"],"evm_reading_time_minutes":5,"wpml_language":"en","wpml_translation_of":null,"_links":{"self":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8027","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/users\/55"}],"replies":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/comments?post=8027"}],"version-history":[{"count":7,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8027\/revisions"}],"predecessor-version":[{"id":19890,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8027\/revisions\/19890"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media\/2031"}],"wp:attachment":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media?parent=8027"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/categories?post=8027"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/tags?post=8027"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}