Connect with us

News

HP Wolf Security Study Reveals Alarming Platform Security Gaps In Device Lifecycle

Published

on

HP Inc. (NYSE: HPQ) has released a new report highlighting the far-reaching cybersecurity implications of failing to secure devices at every stage of their lifecycle.

This was made known in a statement released on December 12, 2024.

The findings show that platform security, securing the hardware and firmware of PCs, laptops, and printers, is often overlooked, weakening cybersecurity posture for years to come.

Advertisement

The report, based on a global study of 800+ IT and security decision-makers, ITSDM, and 6000+ work-from-anywhere employees, shows that platform security is a growing concern, with 81% of IT decision-makers agreeing that hardware and firmware security must become a priority to ensure attackers cannot exploit vulnerable devices.

However, 68% report that investment in hardware and firmware security is often overlooked in the total cost of ownership for devices. This is leading to costly security headaches, management overheads, and inefficiencies further down the line.

According to the statement, Key findings from across the five stages of the device lifecycle include:
Supplier Selection: In addition, 34% say a PC, laptop or printer supplier has failed a cybersecurity audit in the last five years, with 18% saying the failure was so serious that they terminated their contract. 60% of ITSDMs say the lack of IT and security involvement in device procurement puts the organization at risk.

Advertisement

Onboarding and Configuration: More than half (53%) of ITSDMs say BIOS passwords are shared, used too broadly, or are not strong enough. Moreover, 53% admit they rarely change BIOS passwords over the lifetime of a device.

Ongoing Management: Over 60% of ITSDMs do not make firmware updates as soon as they’re available for laptops or printers. A further 57% of ITSDMs say they get FOMU (Fear Of Making Updates) in relation to firmware. Yet 80% believe the rise of AI means attackers will develop exploits faster, making it vital to update quickly.

Monitoring and Remediation: Every year, lost and stolen devices cost organizations an estimated $8.6bn. One in five WFA employees have lost a PC or had one stolen, taking an average 25 hours before notifying IT.

Advertisement

Second Life and Decommissioning: Nearly half (47%) of ITSDMs say data security concerns are a major obstacle when it comes to reusing, reselling, or recycling PCs or laptops, while 39% say it’s a major obstacle for printers.

READ ALSO: HP Wolf Security Offers Unique Business PC Protection Against Physical Cyberattacks

“Buying PCs, laptops or printers is a security decision with long-term impact on an organization’s infrastructure. The prioritization, or lack thereof, of hardware and firmware security requirements during procurement can have ramifications across the entire lifetime of a fleet of devices – from increased risk exposure, to driving up costs or negative user experience – if security and manageability requirements are set too low compared to the available state of the art,” warns Boris Balacheff, Chief Technologist for Security Research and Innovation at HP Inc.

Advertisement

Balacheff continues: “It’s essential that end-user device infrastructures become resilient to cyber risks. This starts with prioritizing the security of hardware and firmware and improving the maturity of how they are managed across the entire lifecycle of devices across the fleet.”

The report highlights the growing need for IT and security to be part of the procurement process for new devices, to set the requirements and verify vendor security claims, Oversights in the supplier selection process and onboarding and configuration limitations impact device security across the lifecycle.

52% of ITSDMs say procurement teams rarely collaborate with IT and security to verify suppliers’ hardware and firmware security claims.
45% of ITSDMs admit they have to trust suppliers are telling the truth as they don’t have the means to validate hardware and firmware security claims in RFPs.
48% of ITDMS even say that procurement teams are like “lambs to the slaughter” as they’ll believe anything vendors say.

Advertisement

78% of ITSDMs want zero-touch onboarding via the cloud to include hardware and firmware security configuration to improve security.
57% of ITSDMs feel frustrated at not being able to onboard and configure devices via the cloud.
Almost half (48%) of WFA workers who had a device delivered to their home complained that the onboarding and configuration process was disruptive.

“You will always need to choose technology providers you can trust. But when it comes to the security of devices that serve as entry points into your IT infrastructure, this should not be blind trust,” comments Michael Heywood, Business Information Security Officer, Supply Chain Cybersecurity at HP Inc. “Organizations need hard evidence – technical briefings, detailed documentation, regular audits and a rigorous validation process to ensure security demands are being met, and devices can be securely and efficiently onboarded.”

Challenges and frustrations around the ongoing management, monitoring and remediation of devices, 71% of ITSDMs say the rise in work-from-anywhere models has made managing platform security more difficult, impacting worker productivity and creating risky behaviors:

Advertisement

One in four employees would rather put up with a poor-performing laptop than ask IT to fix or replace it because they can’t afford the downtime.
49% of employees have sent their laptop to be repaired, and say this took over 2.5 days to fix or replace the device, forcing many to use their personal laptop for work or to borrow one from family or friends, blurring the lines between personal and professional use.
12% had an unauthorized third-party provider repair a work device, potentially compromising platform security and clouding IT’s view of device integrity.

Monitoring and remediating hardware and firmware threats to prevent threat actors accessing sensitive data and critical systems is vital. However, 79% of ITSDMs say their understanding of hardware and firmware security lags behind their knowledge of software security. Moreover, they lack mature tools that would give them the visibility and control they would want to manage hardware and firmware security across their fleets:

63% of ITSDMs say they face multiple blind spots around device hardware and firmware vulnerabilities and misconfigurations.
57% cannot analyze the impact of past security events on hardware and firmware to assess devices at risk.
60% say that detection and mitigation of hardware or firmware attacks is impossible, viewing post-breach remediation as the only path.

Advertisement

“Post-breach remediation is a losing strategy when it comes to hardware and firmware attacks,” warns Alex Holland, Principal Threat Researcher in the HP Security Lab. “These attacks can grant adversaries full control over devices, embedding deep within systems. Traditional security tools are blind to these threats as they tend to focus on the OS and software layers, making detection nearly impossible. Preventing or containing these attacks in the first place is critical to stay ahead, or else organizations risk a threat they cannot see and cannot remove.”

Second life and decommissioning: how data security concerns are leading to an e-waste epidemic

Platform security concerns are also impeding organizations’ ability to reuse, recycle or resell end of life devices:

Advertisement

59% of ITSDMs say it’s too hard to give devices a second life and so they often destroy devices over data security concerns.
69% say they are sitting on a significant number of devices that could be repurposed or donated if they could sanitize them.
60% of ITSDMs admit their failure to recycle and reuse perfectly usable laptops is leading to an e-waste epidemic.

Complicating matters further, many employees sit on old work devices. This not only prevents devices from being repurposed, but it also creates data security risks around orphaned devices that still may carry corporate data.

70% of WFA employees have at least 1 old work PC/laptop at home or in their office workspace.
12% of WFA workers have left a job without returning their device right away – and almost half of these say they never did.

Advertisement

More than two thirds (69%) of organizations say their approach to managing device hardware and firmware security only addresses a small part of their lifecycle. This leaves devices exposed, and teams unable to monitor and control platform security from supplier selection to decommissioning.

Addressing these platform security gaps, HP Wolf Security recommends a comprehensive approach to managing device hardware and firmware security across the entire lifecycle. This includes collaborative supplier selection and auditing, secure zero-touch onboarding and configuration, ongoing monitoring and management, effective monitoring and remediation, and secure decommissioning and second-life management.

 

Advertisement
Advertisement
Comments

News

Out-of-school: Group To Enroll Adolescent Mothers In Bauchi

Published

on

Women Child Youth Health and Education Initiative (WCY) with support from Malala Education Champion Network, have charted a way to enroll adolescent mothers to access education in Bauchi schools.

Rashida Mukaddas, the Executive Director, WCY stated this in Bauchi on Wednesday during a one-day planning and inception meeting with education stakeholders on Adolescent Mothers Education Access (AMEA) project of the organisation.

According to her, the project targeted three Local Government Areas of Bauchi, Misau and Katagum for implementation in the three years project.

Advertisement

She explained that all stakeholders in advancing education in the state would be engaged by the organisation to advocate for Girl-Child education.

READ ALSO:Maternal Mortality: MMS Tackling Scourge —Bauchi Women Testify

The target, she added, was to ensure that as many as married adolescent mothers and girls were enrolled back in school in the state.

Advertisement

Today marks an important step in our collective commitment to ensuring that every girl in Bauchi state, especially adolescent who are married, pregnant, or young mothers has the right, opportunity, and support to continue and complete her education.

“This project has been designed to address the real and persistent barriers that prevent too many adolescent mothers from returning to school or staying enrolled.

“It is to address the barriers preventing adolescent mothers from continuing and completing their education and adopting strategies that will create an enabling environment that safeguard girls’ rights to education while removing socio-cultural and economic obstacles,” said Mukaddas.

Advertisement

READ ALSO:Bauchi: Auto Crash Claimed 432, Injured 2,070 Persons In 1 Months — FRSC

She further explained to the stakeholders that the success of the project depended on the strength of their collaboration, the alignment of their actions, and the commitments they forge toward the implementation of the project.

Also speaking, Mr Kamal Bello, the Project Officer of WCY, said that the collaboration of all the education stakeholders in the state with the organisation could ensure stronger enforcement of the Child Rights Law.

Advertisement

This, he said, could further ensure effective re-entry and retention policies for adolescent girls, increased community support for girls’ education and a Bauchi state where no girl was left behind because of marriage, pregnancy, or motherhood.

“It is observed that early marriage is one of the problems hindering girls’ access to education.

READ ALSO:Bauchi: Auto Crash Claimed 432, Injured 2,070 Persons In 1 Months — FRSC

Advertisement

“This organisation is working toward ensuring that girls that have dropped out of school due to early marriage are re-enrolled back in school,” he said.

Education stakeholders present at the event included representatives from the state Ministry of Education, Justice, Budget and Economic Planning and Multilateral Coordination.

Others were representatives from International Federation of Women Lawyers, Adolescent Girls Initiative for Learning and Empowerment (AGILE), Bauchi state Agency for Mass Education, Civil Society Organization, Religious and Traditional institutions, among others.

Advertisement

They all welcomed and promised to support the project so as to ensure its effective implementation and achieve its set objectives in the state.

Continue Reading

News

OPINION: Fubara, Adeleke And The Survival Dance

Published

on

By Israel Adebiyi

You should be aware by now that the dancing governor, Ademola Adeleke has danced his last dance in the colours of the Peoples Democratic Party. His counterpart in Rivers, Siminalayi Fubara has elected to follow some of his persecutors to the All Progressive Congress, after all “if you can’t beat them, you can join them.”
Politics in Nigeria has always been dramatic, but every now and then a pattern emerges that forces us to pause and think again about where our democracy is heading. This week on The Nation’s Pulse, that pattern is what I call the politics of survival. Two events in two different states have brought this into sharp focus. In both cases, sitting governors elected on the platform of the same party have found new homes elsewhere. Their decisions may look sudden, but they reveal deeper issues that have been growing under the surface for years.

In Rivers, Governor Siminalayi Fubara has crossed into the All Progressives Congress. In Osun, Governor Ademola Adeleke has moved to the Accord Party. These are not small shifts. These are moves by people at the top of their political careers, people who ordinarily should be the ones holding their parties together. When those at the highest levels start fleeing, it means the ground beneath them has become too shaky to stand on. It means something has broken.

Advertisement

A Yoruba proverb captures it perfectly: Iku to n pa oju gba eni, owe lo n pa fun ni. The death that visits your neighbour is sending you a message. The crisis that has engulfed the Peoples Democratic Party did not start today. It has been building like an untreated infection. Adeleke saw the signs early. He watched senior figures fight openly. He watched the party fail to resolve its zoning battles. He watched leaders undermine their own candidates. At some point, you begin to ask yourself a simple question: if this house collapses today, what happens to me? In Osun, where the competition between the two major parties has always been fierce, Adeleke was not going to sit back and become another casualty of a party that refused to heal itself. Survival became the most reasonable option.

His case makes sense when you consider the political temperature in Osun. This is a state where the opposition does not sleep. Every misstep is amplified. Every weakness is exploited. Adeleke has spent his time in office under constant scrutiny. Add that to the fact that the national structure of his party is wobbly, divided and uncertain about its future, and the move begins to look less like betrayal and more like self-preservation.

MORE FROM THE AUTHOR:OPINION: Wike’s Verbal Diarrhea And Military Might

Advertisement

Rivers, however, tells a slightly different story. Fubara’s journey has been a long lesson in endurance. From the moment he emerged as governor, it became clear he was stepping into an environment loaded with expectations that had nothing to do with governance. His political godfather was not content with being a supporter. He wanted control. He wanted influence. He wanted obedience. Every decision was interpreted through the lens of loyalty. From the assembly crisis to the endless reconciliation meetings, to the barely hidden power struggles, Fubara spent more time fighting shadows than building the state he was elected to lead.

It soon became clear that he was governing through a maze of minefields. Those who should have been allies began to treat him like an accidental visitor in the Government House. The same legislators who were meant to be partners in governance suddenly became instruments of pressure. Orders came from places outside the official structure. Courtrooms turned into battlegrounds. At some point, even the national leadership of his party seemed unsure how to tame the situation. These storms did not come in seasons, they came in waves. One misunderstanding today. Another in two weeks. Another by the end of the month. Anyone watching closely could see that the governor was in a permanent state of emergency.

So when the winds started shifting again and lawmakers began to realign, those who understood the undercurrents knew exactly what was coming. Fubara knew too. A man can only take so much. After months of attacks, humiliations and attempts to cage his authority, the move to another party was not just political. It was personal. He had given the reconciliation process more chances than most would. He had swallowed more insults than any governor should. He had watched institutions bend and twist under the weight of private interests. In many ways, his defection is a declaration that he has finally chosen to protect himself.

Advertisement

But the bigger question is how we got here. How did two governors in two different parts of the country end up taking the same decision for different but related reasons? The answer goes back to the state of internal democracy in our parties. No party in Nigeria today fully practices the constitution it claims to follow. They have elaborate rules on paper but very loose habits in reality. They talk about fairness, but their primaries are often messy. They preach unity, but their caucuses are usually divided into rival camps. They call themselves democratic institutions, yet dissent is treated as disloyalty.

MORE FROM THE AUTHOR:OPINION: Nigerian Leaders And The Tragedy Of Sudden Riches

Political parties are supposed to be the engine rooms of democracy. They are the homes where ideas are debated, leaders are groomed, and future candidates are shaped. In Nigeria, they increasingly look like fighting arenas where the loudest voices drown out everyone else. When leaders ignore their own constitutions, the structure begins to crack. When factions begin to run parallel meetings, the foundation gets weaker. When decisions are forced down the throats of members, people begin making private plans for their future.

Advertisement

No governor wants to govern in chaos. No politician wants to be the last one standing in a sinking ship. This is why defections are becoming more common. A party that cannot manage itself cannot manage its members. And members who feel exposed will always look for safer ground.

But while these moves make sense for Adeleke and Fubara personally, the people they govern often become the ones left in confusion. Voters choose candidates partly because of party ideology, even if our ideologies are weak. They expect stability. They expect continuity. They expect that the mandate they gave will remain intact. So when a governor shifts political camp without prior consultation, the people feel blindsided. They begin to wonder whether their votes carry weight in a system where elected officials can switch platforms in the blink of an eye.

This is where the politics of survival becomes dangerous for democracy. If leaders keep prioritizing their personal safety over party stability, the system begins to lose coherence. Parties lose their identity. Elections lose their meaning. Governance becomes a game of musical chairs. Today you are here. Tomorrow you are there. Next week you may be somewhere else. The people become bystanders in a democracy that is supposed to revolve around them.

Advertisement

Rivers and Osun should serve as reminders that political parties need urgent restructuring. They need to rebuild trust internally. They need to enforce their constitutions consistently. They need to treat members as stakeholders, not spectators. When members feel protected, they stay. When they feel targeted, they run. This pattern will continue until parties learn the simple truth that power is not built by intimidation, but by inclusion.

MORE FROM THE AUTHOR:The Audacity Of Hope: Super Eagles And Our Faltering Political Class

There is also the question of what these defections mean for governance. When governors are dragged into endless party drama, service delivery suffers. Time that should be spent on roads, schools, hospitals, water projects and job creation ends up being spent in meetings, reconciliations and press briefings. Resources that should strengthen the state end up funding political battles. The public loses twice. First as witnesses to the drama. Then as victims of delayed or abandoned development.

Advertisement

In Rivers, the months of tension slowed down the government. Initiatives were stalled because the governor was busy trying to survive political ambush. In Osun, Adeleke had to juggle governance with internal fights in a crumbling party structure. Imagine what they could have achieved if they were not constantly looking over their shoulders.

Now, as both men settle into new political homes, the final question is whether these new homes will provide stability or merely temporary shelter. Nigeria’s politics teaches one consistent lesson. New alliances often come with new expectations. New platforms often come with new demands. And new godfathers often come with new conditions. Whether Adeleke and Fubara have truly found peace or simply bought time is something only time will tell.

But as citizens, what we must insist on is simple. The politics of survival should not become the politics of abandonment. Our leaders can fight for their political life, but they must not forget that they hold the people’s mandate. The hunger, poverty, insecurity and infrastructural decay that Nigerians face will not be solved by defection. It will be solved by steady leadership and functional governance.

Advertisement

The bigger lesson from Rivers and Osun is clear. If political parties in Nigeria continue on this path of disunity and internal sabotage, they will keep losing their brightest and most strategic figures. And if leaders keep running instead of reforming the system, then we will wake up one day to a democracy where the people are treated as an afterthought.

Governors may survive the storms. Parties may adjust to new alignments. But the people cannot keep paying the price. Nigeria deserves a democracy that works for the many, not the few. That is the real pulse of the nation.

Advertisement
Continue Reading

News

Human Rights Day: Stakeholders Call For More Campaigns Against GBV

Published

on

Panel of discussants at an event to commemorate the International Human Rights Day, 2025 on Wednesday called for more campaigns against Gender-Based Violence, adding that it must start from the family.

The panel of discussants drawn from religious and community leaders, security agents, members of the civil society community, chiefs, etc, made the call in Benin in an event organised by Justice Development & Peace Centre (JDPC), Benin, in collaboration with Women Aid Collective (WACOL) with the theme: Multilevel Dialogue for Men, Women, Youth and Critical Take holders on the Prevention and Response to Gender-Based Violence (GBV).

The stakeholders, who said causes of GBV are enormous, called for more enlightenment and education in the family, community and the religious circle.

Advertisement

Security agents in the panel charged members of the public to report GBV cases to security agents regardless of the sex Involved, adding: “When GBV happens, it should be reported to the appropriate quarters. It doesn’t matter if the woman or the man is the victim. GBV perpetrators should not be covered up, they must be exposed. We are there to carry out the prosecution after carrying out the necessary investigation.”

READ ALSO:World Human Rights Day: CSO Tasks Govt On Protection Of Lives

Earlier in his opening remarks, Executive Director, JDPC, Rev. Fr. Benedicta Onwugbenu, lamented that (GBV) remains the most prevalent in the society yet hidden because of silence from victims.

Advertisement

According to him, GBV knows no age, gender or race, adding that “It affects people of all ages, whether man or woman, boy or girl.”

It affects people from different backgrounds and communities, yet it remains hidden because of silence, stigma, and fear. Victims of GBV are suffering in silence.”

On her part, Programme Director, WACOL, Mrs. Francisca Nweke, who said “women are more affected, and that is why we are emphasising on them,” stressed “we are empowering Christian women and women leaders of culture for prevention and response to Gender-Based Violence in Nigeria through the strengthening of grassroots organisations.”

Advertisement
Continue Reading

Trending