Are cyberattacks the next black swan event?
Summary
This blog post, "Are cyberattacks the next black swan event?", is a blueAPACHE article from 2017 covering security. A black swan event is an unexpected, high-profile event that is large in magnitude and consequence and is extremely difficult to predict. If cyberattacks are the next black swan event, is it possible for organisations to prepare themselves for it? It is written for readers evaluating emPOWER Security, Managed Detection and Response. Published in 2017. Figures, product names and event details reflect that time; for current information see the linked service pages.
Key facts
| Label | Value |
|---|---|
| Publication year | 2017 |
| Topic | Are cyberattacks the next black swan event? |
| Services referenced | emPOWER Security, Managed Detection and Response, Offsite Backup as a Service |
| Named products or vendors | None named beyond blueAPACHE |
Article
A black swan event is an unexpected, high-profile event that is large in magnitude and consequence and is extremely difficult to predict. If cyberattacks are the next black swan event, is it possible for organisations to prepare themselves for it? The term black swan dates back to a period when it was widely believed that all swans are white. However, in 1697, after Dutch explorers first sighted black swans in Western Australia, the phrase came to indicate an occurrence that was previously thought to be inconceivable and has widespread ramifications. Black swan events are rationalised after the fact with the benefit of hindsight. Increasingly, cyberattacks are being classified as black swan events. The recent outbreak of WannaCry ransomware and other such occurances reinforce that cyber threats that were once considered impossible are now occurring on a daily basis and the ramifications are not limited to just one organistaion, industry or country. Cyberattacks have resulted in billions of dollars being lost to ransomware payoffs, shutting down of systems forcing companies offline and mass leaking of confidential customer data leading to loss of reputation and customer trust. Australian Securities and Investment Commission (ASIC) chairman Greg Medcraft recently warned businesses that a significant cyberattack could be the next black swan event. Medcraft attributed the increasing number, and impact, of attacks to a lack of transparency and reporting of such attacks. ASIC has been urging companies to review their exposure to cyberattacks and to step up their plans for more cyber security. Cyber resilience gains even more importance when organisations are faced with stricter laws governing data breaches and privacy and higher community expectations. Can SMEs prepare themselves for the next event? For many small and medium-sized enterprises (SMEs), a cyberattack is not a black swan event, but an inevitability. From malware to DDoS attacks, from phishing campaigns to ransomware, today’s threat landscape is expanding continuously. It is no longer a viable strategy for organisations to just respond to security breaches, rather the emphasis is on preventing them. This requires a proactive approach to security that covers everything from firewalls to end point security, where staff are informed and aware of potential threats and there are regular backups of all critical systems and data. For many SMEs this is a big ask. This is where the ‘as a service’ model can bring the benefits of industry leading experts and technologies within easy reach of SMEs in an affordable, scalable and predictable offering. Security as a Service (SECaaS) is a growing industry that is set to be worth $US8.52b by 2020. This model eases the financial and resource constraints faced by SMEs and transfers accountability to a single trusted SECaaS provider. For more information on SECaaS (or to validate your existing security strategy), contact the blueAPACHE security team.
Related
- emPOWER Security
- emPOWER Security (pillar hub)
- Managed Detection and Response
- Offsite Backup as a Service
- emPOWER Cloud (pillar hub)
Frequently asked questions
Where does the article say the term "black swan" originated?
The article says the term dates back to when it was widely believed all swans were white, until Dutch explorers first sighted black swans in Western Australia in 1697. It says the phrase then came to describe an occurrence previously thought inconceivable, with widespread ramifications rationalised only after the fact.
Who warned that a significant cyberattack could be the next black swan event, and what did they blame for rising attacks?
The article names ASIC chairman Greg Medcraft as the person who warned businesses that a significant cyberattack could be the next black swan event. It says Medcraft attributed the increasing number and impact of attacks to a lack of transparency and reporting of such attacks.
What ransomware outbreak does the article cite as evidence that cyberattacks are becoming black swan events?
The article cites the recent outbreak of WannaCry ransomware as reinforcing that cyber threats once considered impossible are now occurring daily. It says the ramifications of such attacks are not limited to a single organisation, industry or country.
What growth figure does the article give for the Security as a Service (SECaaS) industry?
The article states that Security as a Service was a growing industry set to be worth US$8.52 billion by 2020. It presents SECaaS as a way for SMEs to access industry-leading security expertise and technology in an affordable, scalable and predictable model.
Is this post still current?
No. This post was published in 2017 and its SECaaS market projection, WannaCry reference and ASIC commentary all reflect that period. For current information on blueAPACHE's security services, a reader should use the linked service pages rather than this post.
Source
- origin post (2017)
Knowledge Base
What is a black swan event, as described in the blueAPACHE article?
A black swan event is an unexpected, high-profile event that is large in magnitude and consequence and is extremely difficult to predict. The term dates back to when it was believed all swans were white, until Dutch explorers first sighted black swans in Western Australia in 1697, after which the phrase came to mean an occurrence previously thought inconceivable but with widespread ramifications. Black swan events are rationalised after the fact with the benefit of hindsight.
Why are cyberattacks increasingly being classified as black swan events?
According to the article, cyber threats once considered impossible are now occurring on a daily basis, and their ramifications are not limited to a single organisation, industry, or country. The outbreak of WannaCry ransomware and similar occurrences are cited as reinforcing this classification, with cyberattacks resulting in billions of dollars lost to ransomware payoffs, systems being shut down forcing companies offline, and mass leaking of confidential customer data leading to loss of reputation and customer trust.
Who warned that a significant cyberattack could be the next black swan event, and why?
Australian Securities and Investment Commission (ASIC) chairman Greg Medcraft warned businesses that a significant cyberattack could be the next black swan event. He attributed the increasing number and impact of attacks to a lack of transparency and reporting of such attacks, and ASIC has been urging companies to review their exposure to cyberattacks and step up their cyber security plans.
Why does cyber resilience matter even more for organisations today, according to the article?
Cyber resilience gains even more importance when organisations are faced with stricter laws governing data breaches and privacy, along with higher community expectations.
Is a cyberattack really a 'black swan' event for small and medium-sized enterprises (SMEs)?
The article states that for many SMEs, a cyberattack is not a black swan event but an inevitability. Today's threat landscape—including malware, DDoS attacks, phishing campaigns, and ransomware—is continuously expanding.
What approach to security does the article recommend for organisations facing cyber threats?
The article states it is no longer viable for organisations to simply respond to security breaches; instead, the emphasis should be on preventing them. This requires a proactive approach to security covering everything from firewalls to endpoint security, with informed and aware staff, and regular backups of all critical systems and data.
What is Security as a Service (SECaaS) and how can it help SMEs, according to the article?
Security as a Service (SECaaS) is a growing industry that the article states was set to be worth US$8.52 billion by 2020. The 'as a service' model brings the benefits of industry-leading experts and technologies within easy reach of SMEs in an affordable, scalable, and predictable offering, easing the financial and resource constraints faced by SMEs and transferring accountability to a single trusted SECaaS provider.
Who wrote the blueAPACHE article 'Are cyberattacks the next black swan event?' and when was it published?
The article is attributed to blueAPACHE and was published on May 25, 2017, with a stated read time of 3 minutes.
How can a business get more information about SECaaS or validate its security strategy according to the article?
The article advises contacting the blueAPACHE security team via the site's contact page for more information on SECaaS or to validate an existing security strategy.
Images on This Page
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a6ffec7d87be5a881637bba_31b5a84971e1d1ce71dc99ca059bfbde_blueAPACHE.svg
blueAPACHE logo on a dark blue background
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bef56ba2a604e908fb0_Black-swan-events.avif
(no alt text)
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a713402a5a7f7ebf553f0bf_Background-Top.avif
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701b59b153d68a8eeb0e36_BBanner-1-Windows-10-is-out.-AI-is-in.-.avif
You’ve Invest in Security. So Why Are Breaches Still Happening?
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bb807b7741bf53e298a_BBanner-1-Windows-10-is-out.-AI-is-in.-8.avif
EOFY 2026: The Reset Is Done – Now It’s About Getting Ahead
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbb07b7741bf53e29d0_BBanner-2-When-support-ends-risk-begins-4.avif
Why Every Business Needs AI Guardrails
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbb07b7741bf53e29d7_BBanner-2-When-support-ends-risk-begins-3.avif
Ransomware Incident Response: Why Paying the Ransom Is a Failure of Preparation
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bb707b7741bf53e297d_BBanner-2-When-support-ends-risk-begins-1.avif
The 7 Cyber Truths Boards Must Act On In 2026
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e29f9_BBanner-1-Windows-10-is-out.-AI-is-in.-7.avif
Reflecting on an Outstanding 2025 – Thank You for Your Partnership
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e2a0c_Procurement-Portal.avif
The blueAPACHE e-Store: IT purchasing made simple
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e29ec_BBanner-1-Windows-10-is-out.-AI-is-in.-5.avif
Building Our Cyber Safe Culture: A Practical Guide for CSAM 2025
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fbfad31fa678fefd51a_6a704f395a0a01b8e482853a_support-monitor.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc4563e_6a704f3a400fc8e661400519_support-user.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45639_6a704f3a91ffd7d0dbc40847_support-phone.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc4562f_6a704f3747d60bd3f65b7a31_support-globe.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45636_6a704f38eb60992797acf5d9_support-mail.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45633_6a704f3a07b7741bf54f2122_support-speech-bubble.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a707520ca872d1b5a69a518_Sensiba.avif
Sensiba ISO/IEC 27001 Certified badge with a diamond-shaped logo below the text.
-
https://www.facebook.com/tr?id=541021476571056&ev=PageView&noscript=1
(no alt text)