Symantec Internet Security Threat Report on evolution of cyber menaces

Symantec has issued The Internet Security Threat Report, a document which provides an overview and analysis of global threat evolution in 2013.

Security experts are observing a significant increase in the number of targeted cyber-attacks, it has been estimated that the growth is by 91 per cent in 2013 respect previous year, but most concerning is the fact that their duration is increasing too. Each targeted attack lasted three times longer than in 2012, according to an industry report. Symantec has recently released its 2014 Internet Security Threat Report (ISTR), which propose an analysis of the techniques adopted by cybercriminals to conduct sophisticated, as dangerous, cyberattacks.

“In 2013 much attention was focused on cyber-espionage, threats to privacy and the acts of malicious insiders. However the end of 2013 provided a painful reminder that cybercrime remains prevalent and that damaging threats from cybercriminals continue to loom over businesses and consumers. Eight breaches in 2013 each exposed greater than 10 million identities, targeted attacks increased and end-user attitudes towards social media and mobile devices resulted in wild scams and laid a foundation for major problems for endusers and businesses as these devices come to dominate our lives.” states the report in which last year is defined as “The Year of Mega Breach” because the total number of data breaches in passed from 62 per cent to 253.

The industries that most of all are exposed to cyber attacks are the energy (oil and gas) and manufacturing industries, both included in the category named “mining”, Internet Security Threat Report also highlighted that the most targeted attacks last year were against the governments and the services industry.

Very Interesting is the data related Spear phishing attacks, a common practiced adopted by criminals and state-sponsored hackers to steal sensitive information and intellectual properties. Trade secrets were stolen principally from large organizations and SMEs, large enterprises were hit by 39 per cent of attacks compared to 50 per cent in 2012.

Do not be fooled from the previous image, press-ups are based on a disturbing finding, the duration of the spear phishing campaigns has increased, the attacks were characterized by a greater intensity

prolonging the duration over which a campaign may last, rather than intensifying the attacks in one or two days as had been the case previously. Consequently, the number of attacks seen each day has fallen and other characteristics of these attacks suggest this may help to avoid drawing attention to an attack campaign that may be underway.”

I jumped to the section dedicated to web based attacks noting that once again patch management represent a serious problem for website managers, 1 in 8 websites analyzed by Symantec had critical unpatched vulnerabilities that could be easily exploited by attackers. The number of new vulnerabilities increase by 28 percent respect 2012 and SSL and TLS protocol renogotiation vulnerabilities were most commonly exploited. Symantec counted 23 zero-day vulnerabilities, 5 of which affacted Java platforms.

Other ideas are related to the increase in the number of ransomware (+500%) and attacks against devices on the Internet of Things.

“While the benefit to attackers of compromising these devices may not be immediately clear and there is still a lot of hype, the risk is real. Internet of Thing (IoT) devices will become access points for targeted attackers and become bots for cyber-criminals,” states the report referring the attacks which targeted devices including routers, baby monitors and security cameras.”

I suggest you to read the Internet Security Threat Report, it is full of interesting stuff, following its key findings:

  • 91% increase in targeted attacks campaigns in 2013
  • 62% increase in the number of breaches in 2013
  • Over 552M identities were exposed via breaches in 2013
  • 23 zero-day vulnerabilities discovered
  • 38% of mobile users have experienced mobile cybercrime in past 12 months
  • Spam volume dropped to 66% of all email traffic
  • 1 in 392 emails contain a phishing attacks
  • Web-based attacks are up 23%
  • 1 in 8 legitimate websites have a critical vulnerability

Pierluigi Paganini

(Security Affairs –  Internet Security Threat Report, security)
Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

FBI chief says China is preparing to attack US critical infrastructure

China-linked threat actors are preparing cyber attacks against U.S. critical infrastructure warned FBI Director Christopher…

10 hours ago

United Nations Development Programme (UNDP) investigates data breach

The United Nations Development Programme (UNDP) has initiated an investigation into an alleged ransomware attack…

13 hours ago

FIN7 targeted a large U.S. carmaker with phishing attacks

BlackBerry reported that the financially motivated group FIN7 targeted the IT department of a large…

1 day ago

Law enforcement operation dismantled phishing-as-a-service platform LabHost

An international law enforcement operation led to the disruption of the prominent phishing-as-a-service platform LabHost.…

1 day ago

Previously unknown Kapeka backdoor linked to Russian Sandworm APT

Russia-linked APT Sandworm employed a previously undocumented backdoor called Kapeka in attacks against Eastern Europe since…

1 day ago

Cisco warns of a command injection escalation flaw in its IMC. PoC publicly available

Cisco has addressed a high-severity vulnerability in its Integrated Management Controller (IMC) for which publicly…

2 days ago

This website uses cookies.