IT specialists

Practical information on keeping systems and data safe from attack.

CERT TEC 180518 WEB 245

Critical Controls

Implement and test backups

After an incident, restoring your data from backups is often the best way to return to business as usual. Performing and

2019 05 16 MTP 0632

Critical Controls

Application allowlisting

Application allowlisting (otherwise known as whitelisting) is a method of strictly controlling what programs can be run

Guide

How to report a vulnerability

If you find a vulnerability in a service or product, you should report it to the individual or organisation (the 'vendor

Advisory

Apple iMessage vulnerability being exploited

14 September 2021

CERT TEC 180518 WEB 83

Critical Controls

Principle of least privilege

The principle of least privilege means only having the access you need to do your job. Restricting the level access to o

Guide

Reporting a vulnerability to CERT NZ

A vulnerability is a weakness in software, hardware, or an online service. Vulnerabilities can be exploited to damage a

Advisory

Active scanning for Microsoft Exchange Proxyshell vulnerability

8 August 2021

q1 2021 quarterly report card

News

Cyber security incidents continue to rise

CERT NZ’s latest report shows Kiwis reported more than 1,400 cyber security incidents from 1 January to 31 March.

3 June 2021

samoa cert

News

Cyber security strengthens in the Pacific with the launch of SamCERT

A partnership between New Zealand and Samoa has strengthened cyber security resilience in the Pacific with the establish

27 May 2021

Advisory

SonicWall EOL Devices Targeted by Ransomware

15 July 2021

CERT TEC 180518 WEB 83 v2

Critical Controls

Centralised logging

Storing and securing your logs in a central place makes log analysis and alerting easier.

Guide

Default credentials

Change the passwords on any systems that come with default credentials before you use the systems in your environment.

Advisory

Vulnerability in SolarWinds Serv-U Fileserver being Exploited

13 July 2021

CERT STREET 180621 WEB 1

News

Concerns over security increase as more people hit the online shops

Research shows that as more people are transacting online, concerns about the security of online shopping are on the min

29 April 2021

CERT TEC 180518 WEB 265

Critical Controls

Network segmentation and separation

When paired together, segmentation and separation can add an additional level of access control and security to your net

Guide

Cloud-based identity providers and authentication

Using single sign-on with a large cloud identity provider allows your users to protect fewer passwords and your IT staff