Breaking Down The Cyber Security Strategy 2023-2030: Phase Three (2029-2030)

The third and final phase, or “horizon” of the Australian Cyber Security Strategy for 2023–2030, will represent the cumulation of work done up to that point, and is set to take place in the years 2029-2030. This phase is more globally focused and aims to leverage the capabilities that Australia builds through phases one and […]

Breaking Down The Cyber Security Strategy 2023-2030: Phase Two (2026-2028)

The first phase, or “horizon” for the Australian Government’s Cyber Security Strategy 2023-2030 is focused on building foundations and preparedness. For the second phase (2026-2028), the government has flagged that the intent will be one of scale and maturity. Phase two will take the foundations laid in phase one and begin to accelerate them, with […]

Breaking Down The Cyber Security Strategy 2023-2030: Phase One (2023-2025)

The Australian government’s Cyber Security Strategy 2023-2030 is a robust and ambitious plan that aims to take Australia from being highly vulnerable to cyber risk, to being one of the world leaders.  This will be achieved over three “phases.” According to that strategy, the country needs to be acting on phase one now, while preparing […]

The ASD Cyber Threat Report Doesn’t Need To Be A Case Of Doom And Gloom

The ASD (Australian Signals Directorate) has released its Cyber Threat Report for 2022-2023.  Nothing that is found in the report should surprise anyone in the community, though the numbers remain as concerning as ever, in the sense that cyber risk is very real.  According to the ASD data, nearly 94,000 reports of cybercrime were made […]

How Legal SOCs Are Challenged By The Well-Meaning Government “Cyber Shields” Strategy (And What To Do About It)

Recently, the Australian government announced a plan to create six “cyber shields” for layered protection in Australia against the ever-escalating cyber threat that government, organisations and individuals alike face. It is a well-meaning and earnest response from the government, but it also poses several significant logistical challenges for any legal firm that handles sensitive data […]

Can we use and trust AI in Cyber Security?

Can we use and trust AI in cyber security? Here at Brace168 we have been having endless discussions on how we could use AI tools such as ChatGPT to improve our security operations.  Although machine learning and other AI tools have been in use for quite some time, we see enormous potential for the latest […]

March 2022 Okta LAPSUS$ security incident

At 2:09pm on the 22nd of March 2022 (AEDT), the advanced persistent threat actor (APT) group “LAPSUS$” released screenshots and claims, on the encrypted messaging app Telegram [1] they had achieved superuser access to the Okta Cloud platform, as well as access to other internal systems including the Okta Atlassian suite and Okta Slack channels. The […]

TikTok bans: why should other social media get a pass?

While social media can be a powerful marketing tool, it is not risk free. TikTok is the latest in a long line of social media platforms to draw negative press and government approbation. Many organisations have chosen to ban TikTok from their devices around national security and privacy concerns: but the issues are not limited […]