Intelligent CIO Africa Issue 25 | Page 74

/ FINAL WORD There’s a machine that stops phishing attacks. It’s called the human brain. Phishing attacks remain a source of anguish for CISOs and security professionals. But those who choose to just throw technology at the problem are overlooking a vital component of their defence – the ‘human firewall’. Kamel Tamimi, Principal Security Consultant, Cofense Inc, tells us more... U ntil human nature changes (don’t hold your breath) phishing attacks that target unwary people will be a headache. Two recent headlines show the Middle East and Africa are not being spared. Last November, a leading regional bank issued a customer alert about a phishing email dangling a value-added tax refund. Naturally, the email purported to come from the bank. Whose pulse wouldn’t quicken at the thought of getting some money back? The following month, Amnesty International warned of several credential phishing campaigns, likely from the same attackers, targeting Middle Eastern and North African organisations. In one campaign, the threat actors took aim at accounts on ‘secure’ emails services like Tutanota and ProtonMail. It would be nice if automation could solve the problem completely. But while automated systems, Machine Learning and AI can help, malicious emails are still getting past the perimeter. Just ask the regional bank and Amnesty International. 74 INTELLIGENTCIO www.intelligentcio.com