IT in Manufacturing


Recovering from a cyberattack

January 2025 IT in Manufacturing

While many organisations have invested heavily in frontline defence tools to try to keep out bad actors, they have spent far less time and money preparing for what happens when the criminals eventually get in. And they will get in. With the use of AI among bad actors growing more prevalent, hackers are proving more adept than ever at infiltrating enterprise networks. Meanwhile, the fallout from breaches is growing more severe. As a result, businesses must shift their strategic thinking to emphasise how to quickly and securely recover from a cyberincident.

Polymorphic cybersecurity landscape

In recent years, the landscape of cybersecurity has evolved drastically, challenging enterprises to rethink their IT resilience strategies in the face of increasingly sophisticated cyberthreats. Traditionally, businesses could rely on fortified security perimeters and robust backup systems to recover from disruptions like natural disasters or network outages. However, the advent of cloud computing has rendered these defences obsolete, expanding IT environments and multiplying the attack surfaces. Today, organisations navigate through a plethora of software tools daily, trying to address the polymorphic nature of cyberattacks.

AI-driven cyberthreats and rising costs

Concurrently, hackers leverage AI to exploit vulnerabilities, presenting a daunting advantage over enterprises still grappling with how to effectively deploy AI in their defence strategies. The consequences of cyberbreaches have escalated dramatically, with breaches averaging $5 million per incident, alongside severe reputational damage and legal ramifications under new disclosure regulations. A pivotal requirement for businesses now lies in fortifying their defence strategies, with a heightened focus on safeguarding backup data.


Darren Thomson, Field CTO of Security, EMEAI at Commvault.

Challenges with traditional data recovery

Traditional data recovery methods, relying on retrieving the latest backup, are no longer foolproof. Increasingly, cybercriminals infiltrate backup data, infecting crucial recovery systems with ransomware and other malware. The persistence of these threats is evident, with attackers remaining undetected within systems for an average of 277 days before discovery, embedding malicious software into recovery data repositories. A significant majority of ransomware attacks now targets backup repositories, exploiting the short retention periods of clean data, leaving enterprises vulnerable to deploying infected data unknowingly during recovery efforts.

Comprehensive cyber-recovery solutions

This scenario amplifies the severity of attacks, compounding the damage inflicted by hackers. To combat these threats effectively, enterprises must invest in comprehensive cyber-recovery solutions that integrate seamlessly into their existing infrastructure. Historically, businesses sought secure restoration environments through costly dark sites or cloud storage solutions, which posed unpredictable risks.

Bridging organisational silos

Today, advancements in technology offer platforms that streamline the creation of secure backup environments, ensuring swift recovery capabilities in the event of a cyberincident. A fundamental strategy gaining prominence is the ‘3, 2, 1’ approach, requiring businesses to maintain three copies of their data, with at least two stored in separate locations. Crucially, one repository should remain ‘air gapped’, securely isolated in a cloud-based offline centre accessible only to authorised personnel. This setup provides a clean repository for data recovery and validation, essential during regular audits to detect anomalies and ensure compliance with cybersecurity regulations. Despite these advancements, organisational silos between security and recovery teams remain a challenge.

Prioritising cyber recovery

Traditionally, cybersecurity falls under the purview of chief information security officers (CISOs), while data backup and recovery are managed by IT teams reporting to chief information officers (CIOs). This disconnect delays the detection and response to breaches, underscoring the critical need for integrated approaches that unify security and recovery efforts. Moreover, the integration of AI-powered technologies like Security Information Management (SIM) and Security Orchestration, Automation and Response (SOAR) systems offers enhanced detection capabilities, enabling real-time alerts and coordinated responses across security and recovery teams.

By bridging these gaps and leveraging advanced technologies, enterprises can significantly reduce downtime and mitigate the impact of cyberincidents. As cyberthreats continue to evolve, enterprises must prioritise cyber recovery as a cornerstone of their security strategies. By aligning recovery capabilities with proactive security measures, businesses can swiftly navigate cyberincidents and safeguard their backup environments against ongoing digital threats, ensuring operational continuity and resilience in an increasingly volatile cybersecurity landscape.

For more information contact Commvault, +27 86 111 4625, [email protected], www.comvault.com




Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Prefabricated data centres for an AI-focused future at the edge
Schneider Electric South Africa IT in Manufacturing
As AI technologies continue to advance, data centres are being pushed to the edge, reshaping their operations to meet daily demands. To meet the relentless demands of AI workloads at the edge, prefabricated data centre solutions offer a scalable, efficient and fast alternative to traditional builds.

Read more...
Quantum computing and its impact on data security: a double-edged sword for the digital age
IT in Manufacturing
Quantum computing is poised to redefine the boundaries of data security, offering groundbreaking solutions while threatening modern encryption’s foundations. For third-party IT providers, this duality presents both a challenge and an opportunity to lead organisations through one of the most significant technological transitions in decades.

Read more...
Next-generation road-legal race car.
Siemens South Africa IT in Manufacturing
Siemens Digital Industries Software has announced that Briggs Automotive Company (BAC) will move to the Siemens Xcelerator portfolio of industry software and use it to develop the next generation of its single-seater road-legal race car, Mono.

Read more...
Cybersecurity at a crossroads
IT in Manufacturing
here’s a growing unease in boardrooms, data centres and cabinet offices across South Africa. It’s not just about economic headwinds or political uncertainty, it’s about something quieter, more technical and yet just as dangerous - the rising tide of cyber threats.

Read more...
Enabling a sustainable industrial organisation
IT in Manufacturing
This article explains the top sustainability trends and key actions that you can leverage to become a more sustainable organisation.

Read more...
Navigating discrete manufacturing in South Africa through digitalisation
IT in Manufacturing
South Africa’s discrete manufacturing sector faces mounting pressure from global competition, fragmented supply chains and outdated infrastructure. In this complex environment, digitalisation is a critical lever for survival, resilience and growth.

Read more...
Africa’s pragmatic approach to AI and how data centres are enabling it
Schneider Electric South Africa IT in Manufacturing
In Africa, the current AI momentum is driven by a fundamental need, building a resilient digital infrastructure that addresses the real-world challenges of the continent’s communities.

Read more...
World first simulation of error-correctable quantum computers
IT in Manufacturing
Quantum computers still face a major hurdle on their pathway to practical use cases, their limited ability to correct the arising computational errors. In a world first, researchers from Chalmers University of Technology in Sweden have unveiled a method for simulating specific types of error-corrected quantum computations.

Read more...
Platform to accelerate supply chain decarbonisation
Schneider Electric South Africa IT in Manufacturing
Schneider Electric has launched Zeigo Hub by Schneider Electric, a powerful new digital platform designed to help organisations decarbonise their supply chains at scale.

Read more...
Future-ready data centres
IT in Manufacturing
The white paper ‘Future-Ready Data Centres’ by Black & Veatch outlines how integrating sustainable design principles not only helps meet ESG goals but also ensures reliability, operational efficiency and business continuity in the face of climate change and growing digital demand.

Read more...









While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd | All Rights Reserved