{"id":2002,"date":"2022-05-13T13:37:39","date_gmt":"2022-05-13T17:37:39","guid":{"rendered":"https:\/\/increasec.com\/?p=2002"},"modified":"2022-05-13T13:38:14","modified_gmt":"2022-05-13T17:38:14","slug":"cybersecurity-zone-defense","status":"publish","type":"post","link":"https:\/\/increasec.com\/?p=2002","title":{"rendered":"Cybersecurity Zone Defense:"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">We can think of Cybersecurity as having 3 basic zones; Red, Yellow, Green.<br>Red Zone is the internet. Make sure everything here is locked down tight, No compromises. Zone includes your firewall, Website, Cloud based services like Office365, and arguibly Wifi.<br>Yellow Zone is anywhere that a user opens email. Phishing is rampant and opening the wrong email gives bad guys a foothold into your Yellow Zone. If a firewall port-forwards to a server it is Yellow Zone.<br>Green Zone is Servers and Appliances. Bad Guys need to go through the Yellow Zone to get here.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This gives us a priority for where to start<br>Start in the Red Zone,<br>-use a service to test what ports are open on your firewall, GeoFilter them<br>-make sure any OS and Software that is port-forwarded is updated and has no critical CVE&#8217;s<br>-add GeoFiltering and 2FA to your Cloud services like Office365<br>-make sure your Firewall and VPN have the latest patches, consider turning on Auto-updates<br>-replace SSL VPN with anything else<br>-Scan your website for vulnerabilities<br>-If you use WordPress, update plug-ins, replace unsupported plugins with supported ones<br>-If your website takes orders and handles cash, hire a consultant to verify it is secure!<br>-Filter email for bad SPF, executeable files, strip macros from office documents, discard password protected zip files.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you have spare cycles, start securing your Yellow Zone<br>-set your Firewall to block browsing to Russia, China, Ukraine. and known bad IP addresses.<br>-Get approval and Phish your users. Hand out prizes. Rick-Roll liberally.<br>-make backups, test them, now if you screw something up you can restore it.<br>-if you have a M$ domain, run PingCastle, fix the easy stuff yourself, contract the hard stuff<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">unfinished<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We can think of Cybersecurity as having 3 basic zones; Red, Yellow, Green.Red Zone is the internet. Make sure everything here is locked down tight, No compromises. Zone includes your&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[4],"class_list":["post-2002","post","type-post","status-publish","format-standard","hentry","category-uncategorised","tag-security"],"_links":{"self":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2002","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2002"}],"version-history":[{"count":1,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2002\/revisions"}],"predecessor-version":[{"id":2003,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2002\/revisions\/2003"}],"wp:attachment":[{"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2002"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2002"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2002"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}