<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>SCT Wk 10 - Cyber Risks by Jaime Wong</title>
      <link>https://padlet.com/rmit_university/security</link>
      <description></description>
      <language>en-us</language>
      <pubDate>2024-03-19 06:53:32 UTC</pubDate>
      <lastBuildDate>2026-03-24 01:50:45 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url></url>
      </image>
      <item>
         <title>Pang An Shen</title>
         <author>s4157457</author>
         <link>https://padlet.com/rmit_university/security/wish/3835067695</link>
         <description><![CDATA[<p><strong>1. Mid-size 3PL (Singapore)</strong><br><em>Risks:</em> Ransomware on warehouse systems, IoT/AGV vulnerabilities, data breaches of shipment/customer data, disruption to port integrations.<br><em>Strategies:</em> Zero-trust access, regular patching, endpoint detection &amp; response (EDR), network segmentation for IoT/OT, secure API gateways, staff phishing training, and incident response plans aligned with Cyber Security Agency of Singapore guidelines.</p><p><strong>2. Global Fashion Retailer</strong><br><em>Risks:</em> E-commerce attacks (DDoS, credential stuffing), POS malware, supply chain breaches via vendors, theft of customer payment data.<br><em>Strategies:</em> Multi-factor authentication, web application firewalls, tokenization of payments, third-party risk audits, continuous monitoring, and compliance with PCI DSS.</p><p><strong>3. Automotive Manufacturing Supplier</strong><br><em>Risks:</em> Industrial espionage, ransomware halting production, compromise of industrial control systems (ICS), IP theft.<br><em>Strategies:</em> Segregate IT/OT networks, deploy intrusion detection for ICS, strict access control, encryption of design data, regular backups, and alignment with ISO/IEC 27001 and automotive cybersecurity frameworks.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:29:20 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835067695</guid>
      </item>
      <item>
         <title>Putri Nurwahyuniawan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835068760</link>
         <description><![CDATA[<p><strong>1) Mid-size 3PL (Singapore)</strong></p><p><strong>Risks:</strong> Mainly ransomware or system attacks that disrupt warehouse and delivery operations, plus data leaks from customer shipment info and third-party integrations.<br><strong>Solutions:</strong> Strengthen basic security like system updates, access control, and backups. Also train staff and check partner systems to reduce risks.</p><p><strong>2) Large global fashion retailer</strong></p><p><strong>Risks:</strong> High risk of data breaches (customer and payment data), online store attacks, and supply chain vulnerabilities across regions. This can damage brand reputation.<br><strong>Solutions:</strong> Use stronger security like encryption, MFA, and secure payment systems. Add DDoS protection, follow global standards, and have a clear incident response plan.</p><p><strong>3) Automotive manufacturing supplier</strong></p><p><strong>Risks:</strong> Cyberattacks on machines and production systems, causing shutdowns or defects, plus theft of design and technical data.<br><strong>Solutions:</strong> Separate IT and production systems, monitor networks, control access, and secure sensitive data when sharing with partners.</p><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:30:00 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835068760</guid>
      </item>
      <item>
         <title>yawen</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835069257</link>
         <description><![CDATA[<p>1. Mid-size 3PL company</p><p>Cyber Risks: Supply chain data leakage, ransomware attacks on WMS/TMS, IoT device vulnerabilities, PDPA non-compliance.</p><p>Solutions: End-to-end data encryption, zero-trust access control, regular ransomware recovery drills, IoT network segmentation, employee phishing training.</p><p><br/></p><p>2. Global fashion retail company</p><p>Cyber Risks: Cross-border data compliance conflicts, DDoS attacks on e-commerce platforms, payment card data breaches, IP theft of designs, supply chain vulnerabilities.</p><p>Solutions: Regional data governance, cloud DDoS protection, PCI DSS-compliant payment tokenization, DRM for design assets, third-party security audits.</p><p><br/></p><p>3. manufacturing supplier</p><p>Cyber Risks: ICS/OT system intrusions, design IP theft, supply chain vulnerability propagation, production-line ransomware, sensitive project data leaks.</p><p>Solutions: OT/IT network isolation, ICS threat monitoring, DLP for IP protection, Auto-ISAC threat intelligence sharing, business continuity planning for production outages.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:30:15 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835069257</guid>
      </item>
      <item>
         <title>Siyu Huang</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835069474</link>
         <description><![CDATA[<p>1. A mid‑size 3PL company in Singapore faces risks such as data breaches, ransomware, third‑party vulnerabilities and phishing. Solutions include MFA, employee training, data encryption, vendor audits and backup plans.</p><p>2. A global fashion retailer faces risks including customer data theft, e‑commerce attacks, compliance issues and reputational damage. Solutions include PCI compliance, WAF and DDoS protection, data governance and regular security testing.</p><p>3. An automotive supplier faces risks like ICS attacks, IP theft, supply chain compromise and production‑line ransomware. Solutions include OT/IT segmentation, industrial security systems, supplier assessments and employee training.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:30:23 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835069474</guid>
      </item>
      <item>
         <title>Zandra</title>
         <author>s4202141</author>
         <link>https://padlet.com/rmit_university/security/wish/3835071506</link>
         <description><![CDATA[<ol><li><p>Mid-size 3PL company in Singapore </p></li></ol><p><br/></p><p>Cyber Risk : data breach of shipment, client and tracking information. </p><p><br/></p><p>Solution : adopting multi-factor authentication (MFA) and strict access control to prevent the breach of data. </p><p><br/></p><ol start="2"><li><p>Large retail company in fashion industry</p></li></ol><p><br/></p><p>Cyber risk : e-commerce website attacks such as fake websites, and customer data theft (personal information leaked) </p><p><br/></p><p>Solution : end-to-end encryption </p><p><br/></p><ol start="3"><li><p>Manufacturing supplier </p></li></ol><p><br/></p><p>Cyber risk : industrial control system and attacks during production </p><p><br/></p><p>Solution : separate IT and OT networks and implement the intrusion detection system </p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:31:43 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835071506</guid>
      </item>
      <item>
         <title>Shannon Koh</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835072244</link>
         <description><![CDATA[<ol><li><p>3PL - IoT Vulnerabilities: Data breaches of confidential company shipments and processes</p></li><li><p>Fashion retailer - DDoS: Data breach and loss of costumer confidential information</p></li><li><p>Automotive - IoT Vulnerabilities: Hackers can access machines connected to IoT and disrupt operations</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:32:14 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835072244</guid>
      </item>
      <item>
         <title>Devin Zachary Suvin</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835072389</link>
         <description><![CDATA[<ol><li><p>For a mid-sized 3PL company in Singapore, cyber risks mainly come from ransomware, phishing attacks, and vulnerabilities through third-party connections, as their systems are tightly integrated with customers and vendors. A successful attack can disrupt warehouse or transport operations almost immediately. To manage this, the company should implement multi-factor authentication, maintain secure data backups, train employees to spot phishing attempts, and tighten control over external system access.</p><p><br/></p></li><li><p>In the case of a large global fashion retail company, the main risks involve customer data breaches, online platform attacks, and payment system exploitation due to its heavy reliance on e-commerce and global transactions. These incidents can quickly harm brand reputation and customer trust. To reduce exposure, the company should adopt stronger security frameworks, secure its payment infrastructure, continuously monitor threats, and establish a clear incident response process.</p><p><br/></p></li><li><p>For an automotive manufacturing supplier, cyber threats are more focused on intellectual property theft and disruptions to production systems. Since operations depend on proprietary designs and automated manufacturing, any breach can lead to both financial and competitive losses. The company should separate IT and operational networks, restrict access to sensitive information, monitor systems in real time, and enforce cybersecurity standards across its supply chain.</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:32:21 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835072389</guid>
      </item>
      <item>
         <title>Evona</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835072449</link>
         <description><![CDATA[<p>1) Mid-size 3PL (Singapore)</p><p>Risks: Data breach, ransomware</p><p>Solutions: MFA, training, backup systems</p><p>2) Global Fashion Retailer</p><p>Risks: Customer data theft, e-commerce attacks</p><p>Solutions: Encryption, AI monitoring, vendor control</p><p>3) Automotive Supplier</p><p>Risks: System attacks, IP theft</p><p>Solutions: Secure OT systems, access control, updates</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:32:24 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835072449</guid>
      </item>
      <item>
         <title>gouk xin tong chloe</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835072718</link>
         <description><![CDATA[<p>1. Mid-size 3PL company in Singapore</p><p>A mid-size 3PL company in Singapore faces cyber risks such as ransomware attacks on warehouse systems, data breaches involving client logistics data, phishing attacks on employees, and vulnerabilities in IoT devices like RFID scanners. These risks can disrupt operations and damage client trust. To address them, the company should implement multi-factor authentication, maintain regular data backups, and deploy endpoint security solutions. Employee training and network segmentation are also important to reduce human error and secure connected devices.</p><p><br/></p><p>2. Large global fashion retail company</p><p>A global fashion retailer is exposed to cyber risks including customer data breaches, DDoS attacks on e-commerce platforms, POS malware in physical stores, and account takeovers. Additionally, reliance on third-party vendors increases security vulnerabilities. To mitigate these risks, the company should use end-to-end encryption, adopt a Zero Trust security model, and conduct regular system testing. Strengthening POS security, applying fraud detection tools, and managing vendor risks are also essential measures.</p><p><br/></p><p>3. Manufacturing supplier in the automotive industry</p><p>A manufacturing supplier in the automotive industry faces risks such as cyberattacks on industrial control systems, ransomware disrupting production, and theft of intellectual property. Legacy systems further increase exposure to cyber threats. To reduce these risks, the company should separate IT and operational networks, enforce strict access controls, and regularly update systems. Implementing intrusion detection systems and having a clear incident response plan are also critical for maintaining secure and continuous operations.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:32:36 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835072718</guid>
      </item>
      <item>
         <title>Hew Jia Xuan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835072772</link>
         <description><![CDATA[<p>1. A mid-size 3PL company in Singapore may face cyber risks such as data breaches, ransomware attacks, and hacking of tracking systems. To reduce these risks, the company should use strong passwords and two-factor authentication, install security software, back up data regularly, and train staff to avoid phishing emails.</p><p><br/></p><p>2. A large retail company in the global fashion industry may face cyber risks like customer data leaks, e-commerce website attacks, and supply chain system breaches. To manage these risks, the company should encrypt customer data, use secure payment systems, update systems regularly, and implement cybersecurity monitoring tools.</p><p><br/></p><p>3. A manufacturing supplier in the automotive industry may face cyber risks such as hacking of industrial systems, theft of design information, and disruption of production. To prevent these issues, the company should separate IT and operational systems, apply strict access control, monitor networks, and conduct regular security audits.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:32:38 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835072772</guid>
      </item>
      <item>
         <title>Chong Jing Yi</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835073809</link>
         <description><![CDATA[<p><br/></p><p><strong>1. Mid-size 3PL company in Singapore</strong></p><p><br/></p><p>Cyber risks:</p><ul><li><p>Data breaches because the company stores customer delivery details and logistics data.</p></li><li><p>Ransomware attacks because operations rely heavily on digital warehouse and transport systems.</p></li><li><p>System hacking because logistics platforms are connected to multiple partners.</p></li></ul><p><br/></p><p>Solutions:</p><ul><li><p>Use encryption and regular backups because it protects sensitive data and allows recovery.</p></li><li><p>Train employees because many attacks (e.g. phishing) target human errors.</p></li><li><p>Install firewalls and update systems because it reduces vulnerabilities to attacks.</p></li></ul><p><br/></p><p><br/></p><p><br/></p><p><strong>2. Global fashion retail company</strong></p><p><br/></p><p>Cyber risks:</p><ul><li><p>Payment data theft because customers make online transactions globally.</p></li><li><p>Website attacks (e.g. DDoS) because high traffic makes them attractive targets.</p></li><li><p>Fake websites/scams because strong brands are often impersonated.</p></li></ul><p><br/></p><p>Solutions:</p><ul><li><p>Secure payment systems (SSL, 2FA) because it protects customer financial data.</p></li><li><p>Strengthen website security because it ensures the site remains accessible.</p></li><li><p>Monitor and take down fake sites because it protects brand reputation.</p></li></ul><p><br/></p><p><br/></p><p><strong>3. Automotive manufacturing supplier</strong></p><p><br/></p><p>Cyber risks:</p><ul><li><p>Production disruption because factories depend on automated systems.</p></li><li><p>Intellectual property theft because designs and technology are valuable.</p></li><li><p>Supply chain attacks because they are connected to major car manufacturers.</p></li></ul><p><br/></p><p>Solutions:</p><ul><li><p>Separate IT and OT systems because it prevents attacks spreading to production.</p></li><li><p>Limit access control because only authorised staff should access sensitive data.</p></li><li><p>Conduct regular security audits because it helps detect and fix weaknesses early.</p></li></ul><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:33:14 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835073809</guid>
      </item>
      <item>
         <title>Essa</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835075791</link>
         <description><![CDATA[<p>1. A mid-size 3PL company may face cyber risks such as data breaches, ransomware attacks, phishing, and system hacking. To reduce these risks, the company should use strong passwords and two-factor authentication, train employees, back up data regularly, and install security systems like firewalls and antivirus.</p><p><br/></p><p><br/></p><p>2. A large fashion retail company may face risks such as customer data theft, website hacking, DDoS attacks, and insider threats. To manage these risks, the company should encrypt data, secure payment systems, monitor its network, conduct regular audits, and control employee access.</p><p><br/></p><p><br/></p><p>3. A manufacturing supplier may face risks such as system hacking, intellectual property theft, supply chain attacks, and malware. To prevent these, the company should separate IT and operational systems, use secure networks, update software regularly, monitor systems, and work with trusted partners.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:34:43 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835075791</guid>
      </item>
      <item>
         <title>gam yen</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835076358</link>
         <description><![CDATA[<p>1. Mid-size 3PL company located in Singapore </p><p>Chasen operates as a Singapore-based logistics provider specialising in equipment relocation and integrated supply chain services. Its scale and service scope make it a strong representation of a mid-sized third-party logistics (3PL) firm, particularly for analysing warehousing, transportation coordination, and value-added logistics activities.</p><p>2. Large retail company in fashion industry either branches globally</p><p>Fast Retailing is one of the world’s largest apparel companies, managing brands such as UNIQLO and GU across multiple international markets. Its extensive global presence and structured supply chain make it highly relevant for examining retail operations, sourcing strategies, and omnichannel distribution in the fashion industry.</p><p> 3. Manufacturing supplier in automotive industry</p><p>DENSO is a leading global supplier of automotive components and systems, supporting major vehicle manufacturers worldwide. Its operations provide a strong case for analysing manufacturing processes, supplier networks, and supply chain resilience within the automotive sector.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:35:10 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835076358</guid>
      </item>
      <item>
         <title>Kaung Myat Thu </title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835076545</link>
         <description><![CDATA[<p><strong>1. </strong><br>This company may face ransomware attacks, data breaches of shipment information, and phishing targeting employees. It should use strong cybersecurity software, train staff on cyber awareness, apply multi-factor authentication, and keep regular data backups.</p><p><strong>2. </strong><br>The retailer may face risks such as customer payment data theft, website hacking, and insider threats. It should implement secure payment systems, encrypt data, control employee access, and conduct regular cybersecurity monitoring.</p><p><strong>3. </strong><br>The supplier may face hacking of production systems, theft of design information, and malware disrupting operations. It should separate factory and office networks, use data encryption, monitor systems for threats, and prepare a cyber incident response plan.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:35:19 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835076545</guid>
      </item>
      <item>
         <title>Xhui</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835076802</link>
         <description><![CDATA[<p><br/></p><ol><li><p>Mid-size 3PL (Singapore)<br>Risks: ransomware, shipment data breaches, IoT tracker compromise, third-party exposure.<br>Solutions: network segmentation, encrypted data (in transit/at rest), secure IoT devices, MFA, vendor risk management, continuous monitoring, and incident response planning.</p></li><li><p>Global fashion retail<br>Risks: e-commerce attacks, payment fraud, credential theft, IoT (RFID/smart store) vulnerabilities, supply chain breaches.<br>Solutions: zero-trust architecture, WAF, PCI DSS compliance, strong IAM, IoT security controls, fraud detection, and supplier risk governance.</p></li><li><p>Automotive supplier (manufacturing)<br>Risks: IP theft, industrial espionage, OT/IIoT cyberattacks, production disruption.<br>Solutions: IT/OT segregation, strict access control, device security, encryption, SIEM monitoring, patch management, and supply chain security standards.</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:35:31 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835076802</guid>
      </item>
      <item>
         <title>DU ZIXUAN </title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835077307</link>
         <description><![CDATA[<p>1. Mid-size 3PL in Singapore</p><p> <em> Risks: </em> API Vulnerabilities: Risks arising from insecure digital integrations with e-commerce platforms or customs systems.</p><p>   Logistics Data Tampering: Unauthorized modification of shipment tracking, delivery addresses, or clearance credentials.</p><p> <em> Strategies: </em> Cyber Insurance: Secure a cyber liability policy to hedge against regulatory fines and financial losses resulting from data breaches.</p><p>    Continuous Authentication: Implement a Zero Trust framework requiring ongoing identity verification for all internal employees and external partners.</p><p>2. Large Fashion Retailer</p><p> <em> Risks: </em> Customer Data Leaks: Exposure of Personally Identifiable Information (PII) and payment data across global branches.</p><p>  Upstream Supplier Risk: Security breaches at smaller garment suppliers leading to production delays or design theft.</p><p> <em> Strategies: </em> Third-Party Risk Management (TPRM) Platform: Utilize automated platforms to perform continuous cybersecurity ratings and audits of the global supplier network.</p><p>3. Automotive Manufacturing Supplier</p><p> <em> Risks: </em> Industrial Control System (ICS) Attacks: Unauthorized access to SCADA or factory networks that could disrupt production lines.</p><p>   Intellectual Property (IP) Theft: Cyber espionage targeting proprietary designs, material formulas, or specialized manufacturing processes.</p><p> <em> Strategies: </em> Physical and Network Isolation: Strictly segregate the Operational Technology (OT/Production) network from the Office (IT) network to prevent cross-contamination of threats.</p><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:35:41 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835077307</guid>
      </item>
      <item>
         <title>christopher s4157532</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835077311</link>
         <description><![CDATA[<ol><li><p>Risks: cyber risks, data-related risks, fraud and transaction manipulation, operational disruption. </p><p>Solutions: third-party risk management, information management and data protection, permissioned access controls, incident response planning, human resource security</p></li><li><p>Risks: data protection and privacy risks, brand and trust attacks, fraud in e-commerce trabsactions, third-party and global supply chain risks, data visibility and governance issues</p><p>Solutions: data governance and visibility, encryption and secure data exchange, fraud prevention systems, trust transparency amd provenance, globak security coordination, security strategy assessment and penetration testing</p></li><li><p>Risks: IP theft, operational disruption, malware in hardware/software, multi-tier supplier risk, data location and segregation issues</p><p>Solutions: strong information security controls, secure system architecture, vulnerability mitigation and penetration testing, resilience and recovery planning, third-party risk management</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:35:41 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835077311</guid>
      </item>
      <item>
         <title>ZHANG HANGMING</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835077916</link>
         <description><![CDATA[<p>1. Mid-size 3PL company in Singapore</p><p>A mid-size 3PL company depends heavily on WMS, TMS, GPS tracking, EDI, and warehouse scanning systems. Its main cyber risks are ransomware, phishing, and system disruption, which can delay deliveries, cause inventory errors, and interrupt communication with customers and suppliers.</p><p>To reduce these risks, the company should use MFA, role-based access control, regular data backup, and network segmentation between warehouse devices and office systems. It should also train staff to spot phishing emails and regularly update WMS and TMS software.</p><p><br/></p><p>2. Large global fashion retail company</p><p>A global fashion retailer uses <strong>POS systems, e-commerce platforms, RFID, ERP, and supplier portals</strong>. Its main risks are customer data breaches, payment fraud, and cyberattacks on online or store systems, which can damage sales, customer trust, and inventory visibility.</p><p>The company should protect data through <strong>encryption, secure payment systems, real-time monitoring, and regular patching</strong>. It should also secure RFID and inventory systems, and control third-party access to supplier and cloud platforms.</p><p><br/></p><p>3. Manufacturing supplier in the automotive industry</p><p>An automotive supplier relies on <strong>ERP, MES, IoT sensors, CAD files, and OT systems</strong> to support production and just-in-time delivery. Its main cyber risks are attacks on factory systems, theft of design data, and supplier system compromise, which can stop production and affect the whole supply chain.</p><p>The business should separate <strong>IT and OT networks</strong>, restrict vendor and engineer access, and use continuous monitoring and backup systems. It should also secure design files and supplier connections to keep production stable and reliable.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:36:05 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835077916</guid>
      </item>
      <item>
         <title>Yap YuFan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835078013</link>
         <description><![CDATA[<p>Mid sized 3PL companies are vulnerable to Botnets as they require several internet devices during operations. To prevent the risk of this the business will need to reinforce the safety of the device and inform transporter/drivers to never pass the device to anyone else and to keep it to themselves.</p><p><br/></p><p>Global fashion retailers run the risk of DDoS attack, the businesses can reinforce their network by investing into a DDoS protection</p><p><br/></p><p>Automotive suppliers runs the risk of hacking into their industral systems. As a preventions, their businesd should separate all IT and operational systems and ensure secure networks and regular software updates</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:36:10 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835078013</guid>
      </item>
      <item>
         <title>LinXin Qi</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835078328</link>
         <description><![CDATA[<p>1. Mid-size 3PL Company (Singapore)</p><p>Key Cyber Risks: Supply Chain Ransomware: As a mid-size entity, they lack the massive security budgets of their multinational clients but hold the "keys to the kingdom" (shipment schedules, inventory levels). Attackers target them to disrupt the supply chains of larger clients.</p><p>2. Large Retail Company (Fashion Industry, Global Branches)</p><p>Key Cyber Risks: E-commerce Skimming (Magecart): Fashion retail relies heavily on e-commerce transactions. Attackers inject malicious JavaScript into the checkout page to steal credit card details in real-time.</p><p>3. Manufacturing Supplier </p><p>Key Cyber Risks:Supply Chain Sabotage: Attackers may compromise the supplier to inject malicious code or compromised components into the automotive supply chain, which poses a safety risk to vehicles and a massive liability risk to the supplier.</p><p><br/></p><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:36:24 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835078328</guid>
      </item>
      <item>
         <title>Cheryl</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835079766</link>
         <description><![CDATA[<p>1. Mid-size 3PL company (Singapore)</p><p>- Cyber attacks (ransomware/malware), data breaches, third-party partners</p><p>- Solution: use data encryption, strong passwords and MFA,  train staff to recognise phishing emails, have a backup and recovery plan </p><p><br/></p><p>2. Large retail fashion company (global)</p><p>- Cyber risks, customer data breaches, payment fraud, and website attacks (DDoS), third-party cyber risk </p><p>- Solution: encrypt customer and payment data, use secure payment systems, control who can access data, regularly check the security of suppliers and partners, cloud security, firewalls, and fraud detection systems </p><p><br/></p><p>3. Manufacturing supplier (automotive)</p><p>- Hackers may try to access production systems and stop manufacturing operations, risk of IP theft (product designs and technical data), smart factories using IoT devices </p><p>- Solution: separate office IT systems from production systems and limit access to critical systems, regular system updates, security testing, data backups </p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:37:28 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835079766</guid>
      </item>
      <item>
         <title>huiwen</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835079967</link>
         <description><![CDATA[<p>Mid size 3PL: ransomeware attack, credential thefts and unauthorised access-&gt;vendor risk assessment, strict access control, include cybersecurity clauses in the contract with 3PL.</p><p><br/></p><p>Large retail company (global): Data breaches, website attacks, email marketing platforms-&gt; have MFA, encrypt consumer data, conduct continuous penetration test with drills etc.</p><p><br/></p><p>Manufacturing supplier (automotive): ransomeware attack on production line, supply chain infiltration, IP, etc-&gt; audit remote access (MFA), separate the networks, monitor 3PL partners</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:37:34 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835079967</guid>
      </item>
      <item>
         <title>Gabriel Chong</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835080469</link>
         <description><![CDATA[<p>1) Data breach: exposure of customer data</p><p>Ransomware attacks that can disrupt warehouse operations. Phishing &amp; email compromise such as fake invoices. Solutions: Recommend employee awareness training, ransomware protection. </p><p>2) Customer data breaches, POS malware, supply chain attack. Solutions: Secure E-commerce systems, AI-based fraud detection.</p><p>3) Industrial Control System (ICS) attack, Intellectual property (IP) theft, Ransomware on production systems. Solutions: Separate production systems from corporate IT networks, Strict access control for operators &amp; engineers, Continuous monitoring (SOC), patch and update systems regularly </p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:37:51 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835080469</guid>
      </item>
      <item>
         <title>Jordan Tang</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835080839</link>
         <description><![CDATA[<ol><li><p>Malware inserted in the company’s software or hardware that will cause damage to the company’s files affecting operations. Eg. Ransomware. Solutions are data encryption, employee training and data back up</p></li><li><p>Customer and company data breach.  Strengthen companies data protection and privacy by encrypting sensitive informations.</p></li><li><p>Ransomware, that will halt manufacturing operations by affecting the equipments used in production. Employee training, do not be over reliant on the equipments, have a manual fall back production process.</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:38:02 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835080839</guid>
      </item>
      <item>
         <title>Yi Sheng S4127301</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835081925</link>
         <description><![CDATA[<p>1) Supply chain attack | Clients, custom brokers, carriers connect into the system, which result in a weaker link risk.    Data breaches | Shipment data, customer contract, and trade information.                                                                 Ransomware attacks | Logistics systems (WMS, TMS) are highly time-senstive and with a downtime may lead to immediate financial loss.                                                           2) E-commerce attacks | Credential stuffing, fake accounts and payment fraud. Massive customer data breaches | gathering payment info, personal data, lead to regulatory and brand damage.                                                                   3) Intellectual property (IP) theft | Designs, specifications and proprietary processes.                                                         Legacy system vulnerabilities | Old machines often cannot be patched easily.                                                           Ransomware halting production | very high impact in manufacturing environment</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:38:43 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835081925</guid>
      </item>
      <item>
         <title>Week 10</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835082009</link>
         <description><![CDATA[<p>YE YINT LIN</p><ol><li><p>They cyber attack may affect their service website due to the web can’t taking the order as usual. They need to use the permissions controls for data exchange and visibility to make sure the people who access their website is from their internal staff.</p></li><li><p>They may receive the wrong order that use the wrong address to order and hack the system to showing the wrong data in their system they need to make the data identification and encryption to guarantee the security </p></li><li><p>Service quality may go down need to do the double check in personally to make surely the order was real.</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:38:47 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835082009</guid>
      </item>
      <item>
         <title></title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835082458</link>
         <description><![CDATA[<p>Here is a shortened one-page summary, within approximately 500 words.</p><p>---</p><p>Cybersecurity Risks &amp; Strategies by Business Type</p><p>1. Mid-size 3PL Company (Singapore)</p><p>· Key Risks: Business email compromise (BEC) leading to invoice fraud; ransomware disrupting warehouse and transport systems; data leakage of client shipment information; third-party vulnerabilities from integrated carriers; PDPA compliance exposure.</p><p>· Strategies: Segment operational technology (OT) from IT networks; enforce MFA on all external portals and email; conduct vendor risk assessments; deploy DMARC and anti-phishing controls; run ransomware tabletop exercises.</p><p>2. Large Fashion Retailer (Global)</p><p>· Key Risks: POS malware targeting physical stores; digital skimming (Magecart) on e-commerce sites; account takeover of customer loyalty accounts; theft of upcoming designs and intellectual property; cross-jurisdictional privacy compliance (GDPR, CCPA, PDPA).</p><p>· Strategies: Maintain PCI DSS compliance with POS segmentation; deploy web application firewall (WAF) and client-side security against skimming; implement adaptive authentication; use DLP to protect design files and customer PII; establish a unified global incident response plan.</p><p>3. Automotive Manufacturing Supplier</p><p>· Key Risks: OT/industrial control system compromise disrupting production lines; ransomware halting just-in-time delivery, triggering OEM penalties; industrial espionage targeting proprietary processes; legacy unpatched OT environments; loss of TISAX or ISO/SAE 21434 certification.</p><p>· Strategies: Apply IEC 62443 controls with network segmentation and unidirectional gateways; implement 24/7 OT monitoring separate from IT; enforce secure remote access with session recording; maintain offline OT backups; develop joint incident response plans with OEM customers.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:39:08 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835082458</guid>
      </item>
      <item>
         <title>Tay Wen Xuan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835082624</link>
         <description><![CDATA[<ol><li><p><strong>Mid-size 3PL company in Singapore</strong></p><p><strong>Risks: </strong>WMS breaches causing inventory manipulation, Insecure API integrations with e-commerce platforms, Ransomware disrupting warehouse operations and Customer data leaked</p><p><br/></p><p><strong>Strategies: </strong>Zero trust access for all devices, Secure APIs with authentication and monitoring, Network segmentation, Offline backups for recovery, End-to-end data encryption</p><p><br/></p></li><li><p><strong>Global fashion retail company</strong></p><p><strong>Risks: </strong>Payment skimming on e-commerce sites, POS malware in physical stores, Third-party/vendor vulnerabilities</p><p><br/></p><p><strong>Strategies: </strong>Client-side script protection, Adaptive multi-factor authentication, Payment tokenisation, Continuous vendor risk assessment, Regional data segmentation</p><p><br/></p></li><li><p><strong>Automotive manufacturing supplier</strong></p><p><strong>Risks: </strong>Attacks on OT systems halting production, Theft of proprietary designs, Legacy system vulnerabilities, Supply chain software compromise</p><p><br/></p><p><strong>Strategies: </strong>IT and OT network separation, Application whitelisting in production, Signed firmware updates, Real-time anomaly monitoring</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:39:14 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835082624</guid>
      </item>
      <item>
         <title></title>
         <author>s4201557</author>
         <link>https://padlet.com/rmit_university/security/wish/3835084992</link>
         <description><![CDATA[<ol><li><p>Mid-size 3PL company in SG: </p><p>cyber risks: freight partners, port authorities, sensitive trade documentation and client contracts</p><p>solution: conduct regular third-party vendor risk assessments</p></li><li><p>Global Fashion Retailer: </p><p>cyber risks: Point-of-sale (POS) system breaches, e-commerce platform vulnerabilities, and large scale customer data theft</p><p>solution: Implement a threat detection systems, encryption, web application firewalls and ensure regular security testing</p></li><li><p>Manufacturing supplier in automotive industry:</p><p>Cyber risk: Cybersecurity risks at the convergence of information technology and operational technology, intellectual property theft of Research and Design Data (R&amp;D)</p><p>Solutions: Apply robust access controls and encryption to all design and engineering department </p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:40:38 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835084992</guid>
      </item>
      <item>
         <title>Aurasa Thepphalangsy </title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835086037</link>
         <description><![CDATA[<ul><li><p><strong>Mid-size 3PL:</strong><br>Faces ransomware, phishing, and IoT vulnerabilities that can disrupt warehouse and logistics operations. Recommended strategies include Zero Trust architecture, employee cybersecurity training, secure backups, and network segmentation to protect systems and ensure operational continuity.</p></li><li><p><strong>Large global fashion retail company:</strong><br>Exposed to customer data breaches, POS malware, and DDoS attacks affecting global sales. Should implement encryption, AI-based threat detection, multi-factor authentication (MFA), and strong cloud security to protect customer data and maintain system reliability.</p></li><li><p><strong>Automotive manufacturing supplier:</strong><br>At risk of industrial control system (ICS) attacks, intellectual property theft, and legacy system vulnerabilities. Should adopt IT/OT system segmentation, strict access controls, regular patching, and cybersecurity standards to safeguard production and sensitive data.</p></li></ul>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:41:28 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835086037</guid>
      </item>
      <item>
         <title>yong kwan chua</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835089769</link>
         <description><![CDATA[<ol><li><p>Mid-size 3PL in SG</p></li></ol><p>Risks: Ransomware/data breach attacks, poorly secured IoT infrstrurcture, limited resources and investments in cybersecurity.</p><p><br/></p><p>Solutions: Zero-trust access control, Patch and update software regularly and timely, implement strong encryption of sensitive data and password policies</p><p><br/></p><ol start="2"><li><p>International Fashion Retail Company</p></li></ol><p>Risks: Fragmented supply chain 3rd party risk, e-commerce/payment system attacks and reputational risks</p><p><br/></p><p>Solutions: </p><ul><li><p>Conduct <strong>third-party cybersecurity audits</strong></p></li><li><p>Require vendors to meet minimum security standards</p></li><li><p>Monitor partner access continuously</p></li><li><p>Restrict access to design files</p></li><li><p>Use watermarking and encryption</p></li><li><p>Monitor dark web for leaked assets</p></li></ul><p><br/></p><ol start="3"><li><p>Manufacturing supplier</p></li></ol><p>Risks: Intellectual property and design data theft, as well as espionage and supply chain compromise.</p><p><br/></p><p>Solutuions:</p><ul><li><p>Embed cybersecurity into product design (hardware + software)</p></li><li><p>Follow standards like ISO/SAE 21434</p></li><li><p>Encrypt design files</p></li><li><p>Restrict access to engineering systems</p></li><li><p>Monitor for data exfiltration</p></li><li><p>Track software and component origins</p></li></ul>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:44:26 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835089769</guid>
      </item>
      <item>
         <title>Amos Chan Wee Geng S4156818</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835091663</link>
         <description><![CDATA[<p>1. Mid-Size 3PL company located in Singapore </p><p><br/></p><p>Risk: Spyware infecting servers, causing a Data breach, leading to shipping documentation and customer inventory data being leaked</p><p><br/></p><p>Solution: encrypting data and cybersecurity training for staff to avoid falling for phishing scams</p><p><br/></p><p><br/></p><p>2. Large retail company in the fashion industry with branches globally   </p><p><br/></p><p>Risk: Customer data breach. All customer data, like payment details and personal data like sizing and purchase history, is likely stored in a central server </p><p><br/></p><p>Solution: Stronger access control.  Sensitive data like payment details is only to be accessed with laptops that are in the intranet </p><p><br/></p><p>3. Manufacturing Supplier in the automotive industry </p><p><br/></p><p>Risk: Attack on digital systems controlling manufacturing. Much of the automotive industry relies on digital systems to control the robots used for manufacturing. Attacks might halt production, leading to supply disruption </p><p><br/></p><p>Solution: Network Segregation. Do not allow the computers controlling the robots to connect to the internet thereby reducing the chances of atatck </p><p><br/></p><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:45:54 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835091663</guid>
      </item>
      <item>
         <title>Ronny Koh</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835092238</link>
         <description><![CDATA[<p>1) Mid-size 3PL company may provide services for a  wide range of businesses, increasing third-party cyber risk. They can classify business partners by risk levels and assign access levels based on trust and need for sensitive data. Data visibility and governance needs to be enforced strictly depending on the partner, limiting access where applicable.</p><p>2) Large international retail company in fashion industry, faces cyber attack risks. To prevent hardware and software attacks, train employees on data handling and hardware use (no personal devices), use DLP, encryption and other supporting technology systems to protect data, and DDOS protections for their networks.</p><p>3) manufacturing supplier may be among the smallest organizations in the automotive supply chain, and thus targeted by malicious actors against the bigger vehicle companies. they should practice data protection and data locality strategies, enforcing encryption and digital logging to locate and protect data at every stage</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:46:22 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835092238</guid>
      </item>
      <item>
         <title>lixuan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835092870</link>
         <description><![CDATA[<ol><li><p>Cyber risk: temperature sensors, RFID and barcode scanners are examples of linked devices that could be used as network entry points. </p><p>Strategies: Secure IoT framework by using device authentication, firmware updates, and network isolation for all warehouse technologies</p></li><li><p>Cyber risk: e-commerce platform attacks as cyberattacks frequently target internet channels, particularly during periods of high demand. Strategies: Advanced threat detection like AI-driven monitoring could help, use real-time monitoring to find odd login or transaction trends.</p></li><li><p>Cyber risk: software supply chain attack to mitigate these risks, manufacturers should implement robust security protocols and conduct regular audits of their software vendors. Additionally, investing in employee training on cybersecurity best practices can further enhance protection against potential threats.</p><p>Strategies: Implement code signing verification, only accept updates from trusted and certified vendors, and regularly audit software suppliers for security compliance.</p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:46:53 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835092870</guid>
      </item>
      <item>
         <title>Chan Yong Qing</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835092919</link>
         <description><![CDATA[<p><strong>1. Mid-size 3PL (Singapore)</strong><br><strong>Risks:</strong> Data breaches, ransomware, third-party vulnerabilities.<br><strong>Solutions:</strong></p><ul><li><p>Use MFA, encryption, and employee phishing training.</p></li><li><p>Conduct regular audits and ensure secure backups.</p></li></ul><p><br/></p><p><strong>2. Global Fashion Retailer</strong><br><strong>Risks:</strong> Data breaches, online store attacks, supply chain vulnerabilities.<br><strong>Solutions:</strong></p><ul><li><p>Implement MFA, secure payments, and firewalls.</p></li><li><p>Regular vulnerability scans and incident response plans.</p></li></ul><p><br/></p><p><strong>3. Automotive Manufacturing Supplier</strong><br><strong>Risks:</strong> Cyberattacks on production systems, loss of design data.<br><strong>Solutions:</strong></p><ul><li><p>Separate IT and production systems, encrypt sensitive data.</p></li><li><p>Use intrusion detection and secure backups.</p></li></ul>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:46:55 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835092919</guid>
      </item>
      <item>
         <title>Xin Yi Gan</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835096025</link>
         <description><![CDATA[<ol><li><p>Mid size 3PL Company </p><p>Risk: </p><p>Data breaches eg. customer shipment data, addresses and invoices</p><p>Solutions: Use multifactor authentication (MFA) for all systems and implement strong cyber security systems. </p></li><li><p>Large global fashion retail company </p><p>Risk: e-commerce attacks through fake websites or payment fraud, supply chain cyber attacks and brand reputation damage when data leaks through customer trust</p><p>Solutions: Use secure payment system, install web application firewalls </p></li><li><p>Manufacturing supplier</p><p>Risk: industrial system hacking causing production lines disrupted</p><p>Solutions: use access control system by limiting who can access sensitive data</p><p><br/></p></li></ol>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:49:26 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835096025</guid>
      </item>
      <item>
         <title>chia bing henn</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835098554</link>
         <description><![CDATA[<p><strong>1) Mid-size 3PL company (Singapore)</strong></p><p><strong>Key Cyber Risks</strong></p><p>A mid-sized third-party logistics (3PL) provider typically relies heavily on warehouse management systems (WMS), transport management systems (TMS), and real-time tracking.</p><ul><li><p><strong>Ransomware attacks</strong> – Hackers can lock shipment data, halting operations.</p></li><li><p><strong>Phishing &amp; credential theft</strong> – Employees handling orders/emails are frequent targets.</p></li><li><p><strong>Data breaches</strong> – Exposure of customer shipment data, addresses, or contracts.</p></li><li><p><strong>System downtime</strong> – Disruption to routing, inventory tracking, and deliveries.</p></li><li><p><strong>IoT vulnerabilities</strong> – Smart warehouses (RF scanners, sensors) can be entry points.</p></li></ul><p><strong>Recommended Solutions</strong></p><ul><li><p><strong>Multi-factor authentication (MFA)</strong> for all systems (especially WMS/TMS).</p></li><li><p><strong>Regular data backups</strong> (offline + cloud) to recover from ransomware.</p></li><li><p><strong>Employee cybersecurity training</strong> (phishing awareness is critical).</p></li><li><p><strong>Network segmentation</strong> to isolate warehouse systems from corporate IT.</p></li><li><p><strong>Adopt frameworks like Cyber Security Agency of Singapore guidelines</strong> for SMEs.</p></li><li><p><strong>Endpoint detection &amp; response (EDR)</strong> tools to detect suspicious activity early.</p></li></ul><p><strong>2) Large global fashion retail company</strong></p><p><strong>Key Cyber Risks</strong></p><p>Global retailers have complex digital ecosystems (e-commerce, POS systems, supply chain integrations).</p><ul><li><p><strong>Payment data breaches</strong> – Credit card theft from POS or online stores.</p></li><li><p><strong>E-commerce attacks</strong> – DDoS attacks during peak sales, website defacement.</p></li><li><p><strong>Supply chain attacks</strong> – Vendors or partners becoming entry points.</p></li><li><p><strong>Account takeover (ATO)</strong> – Customer accounts hacked for fraud.</p></li><li><p><strong>Brand/reputation damage</strong> – Data leaks can severely impact trust globally.</p></li><li><p><strong>Insider threats</strong> – Employees with access to sensitive customer or pricing data.</p></li></ul><p><strong>Recommended Solutions</strong></p><ul><li><p><strong>PCI DSS compliance</strong> for payment security.</p></li><li><p><strong>Zero Trust Architecture</strong> (no user/system is automatically trusted).</p></li><li><p><strong>Web Application Firewalls (WAF)</strong> to protect e-commerce platforms.</p></li><li><p><strong>AI-based fraud detection</strong> for unusual purchasing behavior.</p></li><li><p><strong>Third-party risk management programs</strong> to assess vendor security.</p></li><li><p><strong>Global Security Operations Center (SOC)</strong> for 24/7 monitoring.</p></li><li><p><strong>Data encryption</strong> (both at rest and in transit).</p></li></ul><p><strong>3) Manufacturing supplier in automotive industry</strong></p><p><strong>Key Cyber Risks</strong></p><p>Automotive suppliers are increasingly digitised and connected to OEMs, making them high-value targets.</p><ul><li><p><strong>Intellectual property (IP) theft</strong> – Designs, blueprints, and proprietary processes.</p></li><li><p><strong>Industrial control system (ICS) attacks</strong> – Disruption of production lines.</p></li><li><p><strong>Ransomware in OT environments</strong> – Can halt manufacturing completely.</p></li><li><p><strong>Supply chain compromise</strong> – Attackers use supplier access to target major automakers.</p></li><li><p><strong>Legacy system vulnerabilities</strong> – Older machines not designed with security in mind.</p></li></ul><p><strong>Recommended Solutions</strong></p><ul><li><p><strong>IT/OT network segregation</strong> to protect production systems.</p></li><li><p><strong>Adopt standards like ISO/IEC 27001 and NIST Cybersecurity Framework</strong>.</p></li><li><p><strong>Strict access controls</strong> for engineers and external partners.</p></li><li><p><strong>Regular patching &amp; vulnerability assessments</strong> (especially legacy systems).</p></li><li><p><strong>Industrial cybersecurity monitoring tools</strong> for real-time detection.</p></li><li><p><strong>Incident response planning</strong> to minimise downtime in case of attack.</p></li></ul>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:51:23 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835098554</guid>
      </item>
      <item>
         <title>lin fang</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835105498</link>
         <description><![CDATA[<p>1. Mid-size 3PL company in Singapore</p><p>Cyber Risks:</p><p>	Supply chain attacks through third-party vendors</p><p>	Ransomware disrupting logistics operations</p><p>	Data breaches (customer and shipment data)</p><p>	Vulnerabilities in IoT/warehouse systems</p><p>Recommended Strategies:</p><p>	Implement Zero Trust security model</p><p>Regular data backups and anti-ransomware solutions</p><p>	Conduct third-party risk assessments</p><p>	Employee cybersecurity awareness training (phishing)</p><p>	Segment and secure IoT networks</p><p><br/></p><p>2. Large global fashion retail company</p><p>Cyber Risks:</p><p>	E-commerce attacks (DDoS, payment fraud)</p><p>	Customer data breaches (credit card, personal data)</p><p>	Account takeovers (internal or customer accounts)</p><p>	Brand reputation damage</p><p>Recommended Strategies:</p><p>	Ensure PCI DSS compliance for payment security</p><p>	Use Multi-Factor Authentication (MFA)</p><p>	Deploy AI-based fraud detection systems</p><p>	Encrypt sensitive customer data</p><p>	24/7 security monitoring (SOC)</p><p><br/></p><p>3. Manufacturing supplier in automotive industry</p><p>Cyber Risks:</p><p>	Attacks on Industrial Control Systems (ICS)</p><p>	Intellectual property theft (designs, blueprints)</p><p>	Production downtime due to cyberattacks</p><p>	Supply chain infiltration</p><p>Recommended Strategies:</p><p>	Separate IT and OT networks</p><p>	Secure SCADA/industrial systems</p><p>	Apply strict access control (least privilege)</p><p>	Regular patching and vulnerability scanning</p><p>	Implement Data Loss Prevention (DLP) systems</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 01:56:39 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835105498</guid>
      </item>
      <item>
         <title>Xu Jiayi</title>
         <author></author>
         <link>https://padlet.com/rmit_university/security/wish/3835138625</link>
         <description><![CDATA[<p>1. 3PL companies based in Singapore face cyber risks such as email scams and information security issues on online platforms. For example, the logistics industry routinely handles a large volume of cross-border payments and booking fee settlements. Hackers can impersonate overseas agents or clients to request changes to payment accounts, thereby diverting funds. At the same time, most logistics companies’ shipping agency departments currently rely on online booking platforms and hold cargo manifests and shipper/consignee information. If easily cracked passwords are used when storing information online, this can easily lead to information and data breaches, resulting in financial losses.</p><p><br/></p><p>The suggestions involve adding security verification to the payment process and applying strong encryption to critical information.</p><p><br/></p><p>2.The cyber risks facing global fashion retailers include online business disruptions and damage to brand reputation. For example, these companies’ official websites, mobile apps, and online stores are among their core sales channels. A large-scale cyberattack could cause websites to crash and orders to go unprocessed, resulting in direct revenue losses during peak sales periods such as Black Friday or new product launches. At the same time, hackers may compromise social media accounts, member databases, or official websites to post false promotional information or tamper with product prices, severely damaging the brand’s reputation.</p><p><br/></p><p>Suggestions include establishing a proactive reputation threat monitoring system, as well as setting up alternative platforms and contingency sales plans.</p><p><br/></p><p>3.Automotive suppliers face the cyber risk of data tampering in smart manufacturing equipment. For example, production processes are increasingly shifting toward robotic assembly lines. The growing number of networked machines in supplier factories often contain known vulnerabilities that are difficult to patch. Attackers can remotely infiltrate these systems and maliciously tamper with their control programs, resulting in physical defects being secretly introduced into large batches of components during production, such as frame weld points failing to meet strength standards—or causing final quality inspection processes to erroneously pass defective parts due to malicious software. This deliberate, large-scale sabotage of quality can lead to catastrophic recall losses.</p><p><br/></p><p>Suggestions include physically isolating production equipment networks and deploying dedicated industrial firewalls to block direct access to critical production equipment from external networks. Additionally, an independent manual review process should be implemented for the results of finished product quality inspections.</p>]]></description>
         <enclosure url="" />
         <pubDate>2026-03-23 02:18:10 UTC</pubDate>
         <guid>https://padlet.com/rmit_university/security/wish/3835138625</guid>
      </item>
   </channel>
</rss>
