Symantec Internet Security Threat Report on evolution of cyber menaces

Symantec has issued The Internet Security Threat Report, a document which provides an overview and analysis of global threat evolution in 2013.

Security experts are observing a significant increase in the number of targeted cyber-attacks, it has been estimated that the growth is by 91 per cent in 2013 respect previous year, but most concerning is the fact that their duration is increasing too. Each targeted attack lasted three times longer than in 2012, according to an industry report. Symantec has recently released its 2014 Internet Security Threat Report (ISTR), which propose an analysis of the techniques adopted by cybercriminals to conduct sophisticated, as dangerous, cyberattacks.

“In 2013 much attention was focused on cyber-espionage, threats to privacy and the acts of malicious insiders. However the end of 2013 provided a painful reminder that cybercrime remains prevalent and that damaging threats from cybercriminals continue to loom over businesses and consumers. Eight breaches in 2013 each exposed greater than 10 million identities, targeted attacks increased and end-user attitudes towards social media and mobile devices resulted in wild scams and laid a foundation for major problems for endusers and businesses as these devices come to dominate our lives.” states the report in which last year is defined as “The Year of Mega Breach” because the total number of data breaches in passed from 62 per cent to 253.

The industries that most of all are exposed to cyber attacks are the energy (oil and gas) and manufacturing industries, both included in the category named “mining”, Internet Security Threat Report also highlighted that the most targeted attacks last year were against the governments and the services industry.

Very Interesting is the data related Spear phishing attacks, a common practiced adopted by criminals and state-sponsored hackers to steal sensitive information and intellectual properties. Trade secrets were stolen principally from large organizations and SMEs, large enterprises were hit by 39 per cent of attacks compared to 50 per cent in 2012.

Do not be fooled from the previous image, press-ups are based on a disturbing finding, the duration of the spear phishing campaigns has increased, the attacks were characterized by a greater intensity

prolonging the duration over which a campaign may last, rather than intensifying the attacks in one or two days as had been the case previously. Consequently, the number of attacks seen each day has fallen and other characteristics of these attacks suggest this may help to avoid drawing attention to an attack campaign that may be underway.”

I jumped to the section dedicated to web based attacks noting that once again patch management represent a serious problem for website managers, 1 in 8 websites analyzed by Symantec had critical unpatched vulnerabilities that could be easily exploited by attackers. The number of new vulnerabilities increase by 28 percent respect 2012 and SSL and TLS protocol renogotiation vulnerabilities were most commonly exploited. Symantec counted 23 zero-day vulnerabilities, 5 of which affacted Java platforms.

Other ideas are related to the increase in the number of ransomware (+500%) and attacks against devices on the Internet of Things.

“While the benefit to attackers of compromising these devices may not be immediately clear and there is still a lot of hype, the risk is real. Internet of Thing (IoT) devices will become access points for targeted attackers and become bots for cyber-criminals,” states the report referring the attacks which targeted devices including routers, baby monitors and security cameras.”

I suggest you to read the Internet Security Threat Report, it is full of interesting stuff, following its key findings:

  • 91% increase in targeted attacks campaigns in 2013
  • 62% increase in the number of breaches in 2013
  • Over 552M identities were exposed via breaches in 2013
  • 23 zero-day vulnerabilities discovered
  • 38% of mobile users have experienced mobile cybercrime in past 12 months
  • Spam volume dropped to 66% of all email traffic
  • 1 in 392 emails contain a phishing attacks
  • Web-based attacks are up 23%
  • 1 in 8 legitimate websites have a critical vulnerability

Pierluigi Paganini

(Security Affairs –  Internet Security Threat Report, security)
Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 84

Security Affairs Malware newsletter includes a collection of the best articles and research on malware…

11 minutes ago

Security Affairs newsletter Round 563 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best…

43 minutes ago

Fintech firm Figure disclosed data breach after employee phishing attack

Fintech firm Figure confirmed a data breach after hackers used social engineering to trick an…

21 hours ago

U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and…

22 hours ago

Suspected Russian hackers deploy CANFAIL malware against Ukraine

A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL…

1 day ago

New threat actor UAT-9921 deploys VoidLink against enterprise sectors

A new threat actor, UAT-9921, uses the modular VoidLink framework to target technology and financial…

2 days ago

This website uses cookies.