{"id":10298,"date":"2022-01-27T14:06:01","date_gmt":"2022-01-27T13:06:01","guid":{"rendered":"https:\/\/jimber.io\/blog\/cyberattaque-de-la-croix-rouge-un-entretien-avec-des-cyber-experts\/"},"modified":"2025-08-04T16:37:19","modified_gmt":"2025-08-04T14:37:19","slug":"cyberattaque-de-la-croix-rouge-un-entretien-avec-des-cyber-experts","status":"publish","type":"post","link":"https:\/\/jimber.io\/fr\/blog\/cyberattaque-de-la-croix-rouge-un-entretien-avec-des-cyber-experts\/","title":{"rendered":"Cyberattaque de la Croix-Rouge : Un entretien avec des cyber-experts"},"content":{"rendered":"<p>La Croix-Rouge internationale est attaqu\u00e9e. Elle a \u00e9t\u00e9 victime d&rsquo;une cyberattaque massive. Les donn\u00e9es sensibles d&rsquo;au moins 515 000 personnes vuln\u00e9rables sont en danger. Certaines de ces personnes fuyaient des conflits ou recherchaient des membres de leur famille qu&rsquo;elles avaient perdus \u00e0 la suite d&rsquo;une catastrophe, d&rsquo;un conflit ou d&rsquo;une d\u00e9tention.   <\/p>\n<h2 id=\"\">L&rsquo;\u00e9volution de la cyberattaque de la Croix-Rouge<\/h2>\n<p>La cyberattaque a \u00e9t\u00e9 d\u00e9couverte sur des serveurs appartenant au Comit\u00e9 international de la Croix-Rouge. L&rsquo;organisation d&rsquo;aide internationale ne sait pas qui a ex\u00e9cut\u00e9 l&rsquo;attaque. Mais elle sait que les donn\u00e9es ont \u00e9t\u00e9 vol\u00e9es \u00e0 une entreprise externe \u00e0 Gen\u00e8ve, en Suisse. Aucune donn\u00e9e sensible ne semble avoir \u00e9t\u00e9 divulgu\u00e9e pour l&rsquo;instant. Les donn\u00e9es sensibles proviennent d&rsquo;au moins soixante organisations nationales de la Croix-Rouge et du Croissant-Rouge. On ne sait pas encore dans quelle mesure les donn\u00e9es de la Croix-Rouge de Flandre sont menac\u00e9es. Le Comit\u00e9 international de la Croix-Rouge s&rsquo;inqui\u00e8te des risques potentiels pour les personnes qu&rsquo;il tente de prot\u00e9ger. Si des informations sensibles concernant des personnes disparues venaient \u00e0 \u00eatre divulgu\u00e9es, la peur et la souffrance des familles seraient encore plus difficiles \u00e0 supporter. L&rsquo;organisation d&rsquo;aide internationale s&rsquo;est sentie oblig\u00e9e de fermer ses syst\u00e8mes informatiques. Mais que faire en cas de cyberattaque ? Nous avons interrog\u00e9 quelques-uns de nos d\u00e9veloppeurs de logiciels pour obtenir quelques r\u00e9ponses.          <\/p>\n<figure class=\"w-richtext-figure-type-image w-richtext-align-center\" data-rt-type=\"image\" data-rt-align=\"center\">\n\n<figure class=\"wp-block-image aligncenter size-full\"><img decoding=\"async\" class=\"wp-image-7265\" src=\"https:\/\/jimber.io\/wp-content\/uploads\/2025\/04\/red-cross-cyberattack-jimber-300x200-1.jpeg\" alt=\"cyberattaque de la croix-rouge jimber\" title=\"\"><\/figure>\n<\/figure>\n<h3 id=\"\">Question 1: Hello Alex and Jelle, what are your roles at Jimber exactly?<\/h3>\n<p>We are software developers who have studied ethical hacking. Right now, we are working on one of the core projects of Jimber. Jimber has three core projects or solutions; Browser Isolation, Web App Isolation, and the Digital Vault. We have been working on the Browser Isolation project for over 3 years. You can see Browser Isolation as our base Isolation technology that we also use in our Web App Isolation and in the Digital Vault. We use these technologies to protect browsers, corporate applications, files, and passwords against cyberattacks.<\/p>\n<figure class=\"w-richtext-figure-type-image w-richtext-align-center\" data-rt-type=\"image\" data-rt-align=\"center\">\n<div><img decoding=\"async\" id=\"\" src=\"https:\/\/jimber.io\/wp-content\/uploads\/2025\/04\/Alex-jimber.jpeg\" alt=\"alex jimber\" width=\"auto\" height=\"auto\" title=\"\"><\/div>\n<\/figure>\n<figure class=\"w-richtext-figure-type-image w-richtext-align-center\" data-rt-type=\"image\" data-rt-align=\"center\">\n<div><img decoding=\"async\" id=\"\" src=\"https:\/\/jimber.io\/wp-content\/uploads\/2025\/04\/Jelle-jimber.jpeg\" alt=\"Jelle jimber\" width=\"auto\" height=\"auto\" title=\"\"><\/div>\n<\/figure>\n<h3 id=\"\">Question 2: What do you think will happen to the personal data the hackers have accessed?<\/h3>\n<p>This is something no one can know for certain, only the hackers can decide what they will do with the personal data. They could sell it to the highest bidder. Or they could just publish them online for everyone to see. But the latter is rather unlikely since there are no scandals to be made public. Another possibility would be that they use the data themselves to con these people in some way. But most of the time this would be done by the people buying the data.Therefore, we assume the hackers will just sell the data and be done with it.<\/p>\n<h3 id=\"\">Question 3: What is the most common cyberattack?<\/h3>\n<p>Ransomware is a type of malware that hackers use to threaten you. Attackers can threaten to publish the victim\u2019s personal data. Or they can hold it hostage until the victims pay a ransom.<\/p>\n<h4 id=\"\">How does this attack work?<\/h4>\n<p>The attack works by tricking a user into downloading and executing a malicious piece of software. This software encrypts all data on your system.<\/p>\n<h4 id=\"\">What would be the consequences of a cyberattack like that?<\/h4>\n<p>This attack could have severe consequences. It could cause temporary or permanent loss of data, a complete shutdown or lockdown of your company\u2019s operations, and financial loss because of the lockdown. Ransomware prevents you from accessing your computer files, systems, or networks. These attacks are also difficult to investigate. They affect society in many ways. They can damage reputations or have a big emotional impact on vulnerable people.<\/p>\n<figure class=\"w-richtext-figure-type-image w-richtext-align-center\" data-rt-type=\"image\" data-rt-align=\"center\">\n<div><img decoding=\"async\" id=\"\" src=\"https:\/\/jimber.io\/wp-content\/uploads\/2025\/04\/ransomware-attack-300x169.jpeg\" alt=\"ransomware attack red cross jimber\" width=\"auto\" height=\"auto\" title=\"\"><\/div>\n<\/figure>\n<h3 id=\"\">Question 4: How would you prevent such an attack with the Jimber solutions?<\/h3>\n<h4 id=\"\">Browser Isolation<\/h4>\n<p>Using Browser Isolation could prevent less advanced users from downloading and running malicious executables. The file could be contained in an isolated environment.Our Isolation technology is a zero-trust technology. This means that the technology doesn\u2019t trust any website. However, that doesn\u2019t mean that our technology blocks websites. All websites and websites remain accessible and the user doesn\u2019t notice anything. This way, you can be confident your important information stays safe. You can also work anywhere you want and careless employees are no longer a risk.Isolated Browsing moves all user browsing activity in an isolated environment and secures the threats. It allows users to access any website instead of keeping them away from unsafe websites. Viruses or cyberattacks are contained in the isolated Jimber container and are removed as soon as the session is closed. This way, the viruses and cyberattacks are no longer a threat to your organization. Web content never actually reaches your computer and malware is never able to enter your system.Without Browser Isolation, hackers can place malware in the code and your pc would just translate it and execute the code. At Jimber, we redirect the code to another server with virtual computers. This server sends back a stream of images instead of the source code of the website. This way, the code is not accessible or customizable anymore. This stream of images makes it unhackable.<\/p>\n<h4 id=\"\">Web App Isolation<\/h4>\n<p>Web App Isolation also uses the same principle as Browser Isolation. It\u2019s also our isolation technology, but now it protects web applications. Web app security uses a certain \u2018container\u2019 between web apps and the computer of the end-user. This way APIs are protected and application vulnerabilities can\u2019t be exploited by malware anymore. Now, your company\u2019s applications are protected against cyberattacks.<\/p>\n<h4 id=\"\">The Digital Vault<\/h4>\n<p>This digital &lsquo;safe&rsquo; uses Web App Isolation. It&rsquo;s a secure environment to share and save documents. It\u2019s also a vault where credentials can easily be shared without actually sharing your passwords. This way, your sensitive data can\u2019t be hacked, intercepted, or accessed by unauthorized people.<\/p>\n<h4 id=\"\">Cybersecurity audits &amp; pentests<\/h4>\n<p>By having us audit your company, we could locate weak points in your infrastructure and\/or employees, preventing them from doing dangerous things. During a cybersecurity audit, we look for the biggest issues of your organization. We analyze what systems are safe and what systems could create some problems.This analysis includes:<\/p>\n<ul id=\"\">\n<li id=\"\">Wi-Fi segmentation between guest and private check<\/li>\n<li id=\"\">A global scan of servers on-premise and of machines<\/li>\n<li id=\"\">Firewall and rules check<\/li>\n<li id=\"\">VPN, IP, and camera check<\/li>\n<li id=\"\">A user awareness check of emails and passwords<\/li>\n<li id=\"\">Website check for SQL injection and updates<\/li>\n<li id=\"\">Update of policies<\/li>\n<li id=\"\">Outdated devices \/ operating systems that are end of life check<\/li>\n<li id=\"\">Backup policy<\/li>\n<li id=\"\">Type WiFi encryption safe \/ not safe check<\/li>\n<\/ul>\n<p>Through a report we let you know our concrete advice on what you can do to optimize your systems.With a pentest, we can go even further than with a security audit. We test all apps, websites, networks, APIs, input fields and specific vulnerabilities to exclude all possible risks.<\/p>\n<figure class=\"w-richtext-figure-type-image w-richtext-align-center\" data-rt-type=\"image\" data-rt-align=\"center\">\n<div><img decoding=\"async\" id=\"\" src=\"https:\/\/jimber.io\/wp-content\/uploads\/2025\/04\/cybersecurity-solutions-red-cross-hack-jimber-300x188.jpeg\" alt=\"cybersecurity solutions red cross hack jimber\" width=\"auto\" height=\"auto\" title=\"\"><\/div>\n<\/figure>\n<h3 id=\"\">Question 5: What other general tips can you give us to prevent cyberattacks and limit the damage?<\/h3>\n<p>Develop cybersecurity policies. Such as:<\/p>\n<ol id=\"\">\n<li id=\"\">Train your employees to prevent cyberattacks.<\/li>\n<li id=\"\">Make a proper update schedule of all systems\/printers\/laptops\/servers\/\u2026<\/li>\n<li id=\"\">Install spam filters and anti-malware software.<\/li>\n<li id=\"\">Perform routine security audits.<\/li>\n<li id=\"\">Use security solutions on all your devices.<\/li>\n<li id=\"\">Beware of pop-ups, links, downloads, and e-mail attachments.<\/li>\n<li id=\"\">Use multi-factor authentication or passwordless authentication.<\/li>\n<li id=\"\">Perform regular backups.<\/li>\n<\/ol>\n<p>Discover our <a id=\"\" href=\"https:\/\/jimber.io\/en\/solutions\/\" target=\"_blank\" rel=\"noopener\">cybersecurity solutions<\/a>!Read more about the Red Cross cyberattack here: <a id=\"\" href=\"https:\/\/www.vrt.be\/vrtnws\/nl\/2022\/01\/20\/internationale-rode-kruis-getroffen-door-grootschalige-cyberaanv\/#:~:text=Het%20Internationale%20Comit%C3%A9%20van%20het,het%20ICRC%20op%20zijn%20website\" target=\"_blank\" rel=\"noopener\">https:\/\/www.vrt.be\/vrtnws\/nl\/2022\/01\/20\/internationale-rode-kruis-getroffen-door-grootschalige-cyberaanv\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>La Croix-Rouge internationale est attaqu\u00e9e. Elle a \u00e9t\u00e9 victime d&rsquo;une cyberattaque massive. Les donn\u00e9es sensibles d&rsquo;au moins 515 000 personnes vuln\u00e9rables sont en danger. Certaines de ces personnes fuyaient des conflits ou recherchaient des membres de leur famille qu&rsquo;elles avaient perdus \u00e0 la suite d&rsquo;une catastrophe, d&rsquo;un conflit ou d&rsquo;une d\u00e9tention. L&rsquo;\u00e9volution de la cyberattaque [&hellip;]<\/p>\n","protected":false},"author":10,"featured_media":7270,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[9],"tags":[],"class_list":["post-10298","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-non-categorise"],"acf":[],"_links":{"self":[{"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/posts\/10298","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/comments?post=10298"}],"version-history":[{"count":1,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/posts\/10298\/revisions"}],"predecessor-version":[{"id":10301,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/posts\/10298\/revisions\/10301"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/media\/7270"}],"wp:attachment":[{"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/media?parent=10298"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/categories?post=10298"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jimber.io\/fr\/wp-json\/wp\/v2\/tags?post=10298"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}