Health Care And Medical Client

Critical Medical Testing provider uses TecSec to recover from Phishing attack

The Challenge

A medical testing provider working internationally to supply highly confidential test results enlisted TecSec to secure their data.

TecSec provided the company with a disaster recovery solution (DRS) and through our monitoring, we identified several very basic errors on their server. These were putting the company’s systems at risk and affecting the day-to-day running of the business.

Our investigation identified that they had been cyber attacked, and the attack was interfering with their systems. Due to the weaknesses in their systems, a cyber-criminal also gained access to their email and hijacked an invoice meant for their supplier. By altering the bank details on the invoice it meant that the cybercriminal received money instead of their supplier.

After our initial investigation, we performed a full audit of their entire systems (including their servers and PCs).

Our Solution

On their network we found:
• Expired Anti-virus licenses
• Unsupported, unused, and old software installed on their server
• Their anti-virus un-operational
• A disabled firewall.

One of their servers was completely unprotected, un-maintained, and left at risk. Due to the use of an unsupported Windows software their previous IT company had installed, the server didn’t receive any of the updates that Microsoft sent out over the space of 3 years, leaving it vulnerable to a cyber-attack.

Working with the company we came up with a pro-active plan which would suit their needs as a business. This entailed updating, securing, and protecting all necessary hardware and software. We installed anti-malware, updated and deleted all unnecessary software, secured and protected the server, as well as activating their firewall.