Tails in I.T. – July Edition

What’s inside the July edition? 

  • Meet our new First Responder
  • Don’t be caught by phishing emails 
  • Exciting new super-tax deduction: what is it and how can you get it?

Meet Our New First Responder Matt!

Hi there, I’ Matt; the newest starter here at brokenStones. I’m the new First Responder and really looking forward to helping everyone out in the exciting world of IT and with their IT stuff.

Computers have always been a passion of mine, which really is what lead me here. Everyone is extremely welcoming and has really helped me in settling into a completely new environment. Having come from a Sales/Support role in a big tech retailer I’m more than use to lending a helping hand. Immediately I feel this is a place for the future and I’m really looking forward to learning more about how I can make I.T. easier for everyone!

Everything You Need To Know About Phishing 

What is Phishing?

Phishing is a type of attack in which cyber criminals trick victims into handing over sensitive information or installing malware. The idea of phishing is that attackers are dangling a fake lure, a fake email or link, hoping that users will bite and provide criminals with the information they need.

What does a Phishing Email look like?

There are some main characteristics of phishing emails which you should look out for:

  • Attachments or links
  • Spelling or grammar mistakes
  • A sense of urgency
  • Making use of general greetings like “Dear customer’ rather than using your name

3 Main Types of Phishing Emails

 

There are several different types of email phishing attackers a hacker might use, here are some of the most common:

Deceptive Phishing 
  • This is the most common type of phishing attack
  • The aim is usually to get you to a click a link that’ll either download some malicious software to your device or try to capture your username and/or password
Spear-Phishing
  • With Spear-Phishing, cyber-criminals have done their research on you, and gathered some personal information which they’ll use to target you.
  • Social media tends to be a great resource for gathering information – what aspects of your life do you or others share about you on social media?
CEO Fraud (and whaling)
  • The aim of this type of attack is to trick an employee to do something believing it’s the CEO or senior manager asking for it.
  • Attackers may use a spear-phishing attack against the CEO – the attackers will compromise the CEOs email account and then just sit and watch; read the CEOs emails and see how they speak. Then use that information to try and trick employees using the same language which the CEO would normally use.

6 Ways You Can Protect Yourself & Your Business

 

  • Don’t click – Don’t click on any links or attachments. If you get an email from a company, asking you to do something e.g., change your password with a link to do so, go onto a separate browser and search for the site directly.
  • Find a different method or mode of communication to verify the email – you may have had a suspicious email from your boss asking you to pay an invoice, or from a friend or family member asking you to transfer them money. Call them, send a text, or speak to them in person to make sure it was from them and not an attacker.
  • DNS & Web Filtering Advanced Web and DNS Filtering software on your machines and on your network which will scan a link or website anytime someone tries to access that link. This is really important for laptops which are used out of the office where they don’t benefit from the same firewall protection as when they are in the office. 
  • Dark Web Monitoring – Monitoring the dark web will allow you to see what credentials have been compromised. These will alert you if any of your passwords have appeared for sale on the Dark Web. It means at least when we do get compromised, we can be aware and change our details quickly. 
  • Security Awareness Assessments & Training – What training do you provide for your staff? Don’t forget to make sure the training is delivered to the WHOLE company, including your senior executives, they tend to be more of a valuable target. 
  • Be Paranoid! If something doesn’t look quite right, it probably isn’t. Stop and think about it rather than just pile on. Be Paranoid.

130% Super Tax Deduction

 

The new super tax deduction is the single biggest tax incentive any UK government has ever given for business investment into assets and equipment.

For expenditure incurred from 1 April 2021 until the end of March 2023, companies can claim 130% capital allowances on qualifying plant and machinery investments. Under this super tax deduction, for every £1 you spend on qualifying plant and machinery equipment, you’ll get 25p back. 

So, what equipment qualifies for the deduction

Most tangible capital assets used in the course of a business are considered plant and machinery for the purposes of claiming capital allowances. There is not an exhaustive list of plant and machinery assets. The kinds of assets which may qualify for either the super-deduction or the 50% FYA include, but are not limited to: 

  • Solar panels 
  • Computer equipment and servers 
  • Tractors, lorries, vans 
  • Ladders, drills, cranes 
  • Office chairs and desks, 
  • Electric vehicle charge points 
  • Refrigeration units 

If you are looking to make additional investments to help grow and improve your business this deduction tax will help you to bring these planned investments forward as well as allowing you to incur lower costs. And of course, at brokenStones we’d love you to have some shiny new computer equipment. Having quicker computers will be sure to put a smile on your employees faces as well! Plus, if you have any new staff starting, nothing gives a warm welcome like some brand-new computer equipment! 

To find out more about this opportunity, go to https://www.gov.uk/government/publications/new-temporary-tax-reliefs-on-qualifying-capital-asset-investments-from-1-april-2021