Connect with us

Technology

IBM Report: Ransomware Persisted Despite Improved Detection in 2022

Published

on

Manufacturing Most Extorted Industry; Email Thread Hijacking Attempts Spike; Time to Ransom Moves from Months to Days

ARMONK, N.Y., Feb. 22, 2023 /PRNewswire/ — IBM (NYSE: IBM) Security today released its annual X-Force Threat Intelligence Index finding that although ransomware’s share of incidents declined only slightly (4 percentage points) from 2021 to 2022, defenders were more successful detecting and preventing ransomware. Despite this, attackers continued to innovate with the report showing the average time to complete a ransomware attack dropped from 2 months down to less than 4 days. 

According to the 2023 report, the deployment of backdoors, which allow remote access to systems, emerged as the top action by attackers last year. About 67% of those backdoor cases related to ransomware attempts, where defenders were able to detect the backdoor before ransomware was deployed. The uptick in backdoor deployments can be partially attributed to their high market value. X-Force observed threat actors selling existing backdoor access for as much as $10,000, compared to stolen credit card data, which can sell for less than $10 today.

“The shift towards detection and response has allowed defenders to disrupt adversaries earlier in the attack chain – tempering ransomware’s progression in the short term,” said Charles Henderson, Head of IBM Security X-Force. “But it’s only a matter of time before today’s backdoor problem becomes tomorrow’s ransomware crisis. Attackers always find new ways to evade detection. Good defense is no longer enough. To break free from the never-ending rat race with attackers, businesses must drive a proactive, threat-driven security strategy.”

The IBM Security X-Force Threat Intelligence Index tracks new and existing trends and attack patterns – pulling from billions of datapoints from network and endpoint devices, incident response engagements and other sources.

Some of the key findings in the 2023 report include:

Extortion: Threat Actors Go-to Method. The most common impact from cyberattacks in 2022 was extortion, which was primarily achieved through ransomware or business email compromise attacks. Europe was the most targeted region for this method, representing 44% of extortion cases observed, as threat actors sought to exploit geopolitical tensions.Cybercriminals Weaponize Email Conversations. Thread hijacking saw a significant rise in 2022, with attackers using compromised email accounts to reply within ongoing conversations posing as the original participant. X-Force observed the rate of monthly attempts increase by 100% compared to 2021 data.Legacy Exploits Still Doing the Job. The proportion of known exploits relative to vulnerabilities declined 10 percentage points from 2018 to 2022, due to the fact that the number of vulnerabilities hit another record high in 2022. The findings indicate that legacy exploits enabled older malware infections such as WannaCry and Conficker to continue to exist and spread.

Extortion Pressure Applied (Unevenly)
Cybercriminals often target the most vulnerable industries, businesses, and regions with extortion schemes, applying high psychological pressure to force victims to pay. Manufacturing was the most extorted industry in 2022, and it was the most attacked industry for the second consecutive year. Manufacturing organizations are an attractive target for extortion, given their extremely low tolerance for down time.

Ransomware is a well-known method of extortion, but threat actors are always exploring new ways to extort victims. One of the latest tactics involves making stolen data more accessible to downstream victims. By bringing customers and business partners into the mix, operators increase pressure on the breached organization. Threat actors will continue experimenting with downstream victim notifications to increase the potential costs and psychological impact of an intrusion – making it critical that businesses have a customized incident response plan that also considers the impact of an attack on downstream victims.

Thread Hijacking on the Rise
Email thread hijacking activity surged last year, with monthly attempts by threat actors doubling compared to 2021 data. Over the year, X-Force found that attackers used this tactic to deliver Emotet, Qakbot, and IcedID, malicious software that often results in ransomware infections.

With phishing being the leading cause of cyberattacks last year, and thread hijacking’s sharp rise, it’s clear that attackers are exploiting the trust placed in email. Businesses should make employees aware of thread hijacking to help reduce the risk of them falling victim.

Mind the Gap: Exploit “R&D” Lagging Vulnerabilities
The ratio of known exploits to vulnerabilities has been declining over the last few years, down 10 percentage points since 2018. Cybercriminals already have access to more than 78,000 known exploits, making it easier to exploit older, unpatched vulnerabilities. Even after 5 years, vulnerabilities leading to WannaCry infections remain a significant threat. X-Force recently reported an 800% increase in WannaCry ransomware traffic within MSS telemetry data since April 2022. The continued use of older exploits highlights the need for organizations to refine and mature vulnerability management programs, including better understanding their attack surface and risk-based prioritization of patches.

Additional findings from the 2023 report include:

Phishers “Give Up” on Credit Card Data. The number of cybercriminals targeting credit card information in phishing kits dropped 52% in one year, indicating that attackers are prioritizing personally identifiable information such as names, emails, and home addresses, which can be sold for a higher price on the dark web or used to conduct further operations.North America Felt Brunt of Energy Attacks. Energy held its spot as the 4th most attacked industry last year, as global forces continue to affect an already tumultuous global energy trade. North American energy organizations accounted for 46% of all energy attacks observed last year, a 25% increase from 2021 levels.Asia Tops the Target List. Accounting for nearly one-third of all attacks that X-Force responded to in 2022, Asia saw more cyberattacks than any other region. Manufacturing accounted for nearly half of all cases observed in Asia last year.

The report features data IBM collected globally in 2022 to deliver insightful information about the global threat landscape and inform the security community about the threats most relevant to their organizations. You can download a copy of the 2023 IBM Security X-Force Threat Intelligence Report here.

Additional sources

Read more about the report’s top findings in this IBM Security Intelligence blog.Sign up for the 2023 IBM Security X-Force Threat Intelligence Index webinar on Thursday, March 2, 2022, at 11:00 a.m. ET here.Schedule a consult with IBM Security X-Force.

About IBM Security
IBM Security helps secure the world’s largest enterprises and governments with an integrated portfolio of security products and services, infused with dynamic AI and automation capabilities. The portfolio, supported by world-renowned IBM Security X-Force® research, enables organizations to predict threats, protect data as it moves, and respond with speed and precision without holding back business innovation. worldwide security experts, IBM is trusted by thousands of organizations as their partner to assess, strategize, implement, and manage security transformations. IBM operates one of the world’s broadest security research, development, and delivery organizations, monitors 150 billion+ security events per day in more than 130 countries, and has been granted more than 10,000 security patents worldwide.

Press Contact:
IBM Security Communications
Michele Brancati
mbrancati@ibm.com

 

View original content to download multimedia:https://www.prnewswire.com/news-releases/ibm-report-ransomware-persisted-despite-improved-detection-in-2022-301752400.html

SOURCE IBM

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

AIE Graduates create visual effects for Academy-nominated film

Published

on

By

NAWI, a feature film whose visual effects were created by graduates from the Academy of Interactive Entertainment (AIE), has been officially nominated by Kenya for entry into the 97th Academy Awards in the category of Best International Feature Film. NAWI is a heartfelt story about a young girl’s journey towards empowerment and aims to shed light on a pressing issue that affects countless young women in the Turkana region of Kenya.

CANBERRA, Australia, Sept. 19, 2024 /PRNewswire-PRWeb/ — NAWI, a feature film whose visual effects were created by graduates from the Academy of Interactive Entertainment (AIE), has been officially nominated by Kenya for entry into the 97th Academy Awards in the category of Best International Feature Film. NAWI is a heartfelt story about a young girl’s journey towards empowerment and aims to shed light on a pressing issue that affects countless young women in the Turkana region of Kenya.

“The film has a very important social message to tell so it was rewarding in many ways to be able to contribute to this project. NAWI was a fantastic opportunity for our graduates to put their skills to the test on a full-length feature film,” said Tom Pugh.

AIE graduates and teachers were given the opportunity to work on the film’s visual effects through AIE’s ongoing partnership with Learning Lions, who produced the film with Film Crew & Baobab Pictures. AIE is proud to support Learning Lions non-profit mission to enable young adults in marginalised rural communities of East Africa to become digital creatives by providing game development training and technology.

The visual effects for NAWI were brought to life by AIE teachers and experienced industry professionals, Thomas Magill and Tom Pugh, who were tasked with supervising the visual effects and liaising with the film’s Directors, Apuu Mourine, Kevin Schmutzler, Tobias Schmutzler and Toby Schmutzler. They assembled a team of recent AIE graduates and worked out how to create the effects required to immerse audiences in Nawi’s world.

“Graduates were able to take the skills they had learnt in class and apply them to cinema-quality footage. There was even a bit of nervous excitement working with professional expectations and deadlines,” said Tom Pugh.

Thomas Magill explained that most of the work involved compositing such as fixing blemishes, removing unwanted folds in clothing, changing pages in a book and removing background actors that were in the wrong place.

“We had a river shot where there was only a sandbank, and we had to create an entire island! There were several shots filmed in a dry riverbed which required us to create floodwater. We had to draw upon various disciplines: not just digital compositing but also visual effects creation and fluid simulations,” said Thomas Magill.

Both teachers enthused that the directors were a pleasure to work with and the collaboration was smooth.

“The film has a very important social message to tell so it was rewarding in many ways to be able to contribute to this project. NAWI was a fantastic opportunity for our graduates to put their skills to the test on a full-length feature film,” said Tom Pugh.

Learning Lions and AIE look forward to seeing NAWI progress through two rounds of voting by members of the Academy of Motion Picture Arts and Sciences to narrow the list of submitted films down to five nominees for the Best International Feature Film.

About Academy of Interactive Entertainment (AIE)

AIE offers practical, career-focused courses delivered by industry-experienced teachers in 3D animation, game development, visual effects and film. Since 2019 AIE has sponsored scholarships to their Certificate and Diploma programs to Learning Lions student. AIE provided laptops and is supporting with opportunities at various gaming companies around the world for paid part-time and full-time work.

https://aie.edu.au/

About Learning Lions

Learning Lions is fighting poverty with digital opportunity. Established in 2015, Learning Lions equips local youth with essential IT and media skills, and empowering them to become entrepreneurs and self-sustaining individuals. By leveraging digital services, these aspiring entrepreneurs not only support themselves but also provide opportunities for others through employment and mentorship.

https://www.learninglions.org/

Media Contact

Neil Boyd, Academy of Interactive Entertainment, 61 434273190, neilb@aie.edu.au, https://aie.edu.au/

Facebook, LinkedIn

View original content to download multimedia:https://www.prweb.com/releases/aie-graduates-create-visual-effects-for-academy-nominated-film-302252825.html

SOURCE Academy of Interactive Entertainment

Continue Reading

Technology

Valhalla MSO Launches Impetus One to Enhance Valhalla Vitality’s Telehealth Platform

Published

on

By

Valhalla MSO launches Impetus One, enabling healthcare providers to expand services, improve patient retention, and boost revenue with no upfront costs

MIAMI, Sept. 19, 2024 /PRNewswire-PRWeb/ — Valhalla MSO is excited to announce the launch of Impetus One (IO), a new software designed to power the Valhalla Vitality Network Provider Program. This initiative aims to expand the reach and capabilities of independent healthcare providers by offering an alternative to the traditional insurance model. With a focus on preventative medicine and wellness therapies, the platform is set to enhance patient care while creating new revenue opportunities for providers.

The Valhalla Vitality Network Provider Program addresses the gap created by insurance companies that often deny coverage for preventative medicine, wellness services, and even weight loss therapies. Insurance typically does not compensate healthcare providers for the time spent improving a patient’s overall health. Impetus One (IO) offers an alternative by providing a cash-pay marketplace where providers are fairly compensated for delivering impactful, life-changing services to their patients.

Key Benefits for Providers

Impetus One Software Integration: The platform integrates seamlessly with Valhalla Vitality, offering an e-commerce marketplace that connects patients with a wide range of health services. Providers can easily adopt the system to deliver therapies and other services, ensuring smooth payment processing and order fulfillment.No Upfront Costs: Providers can join the Network Provider Program without any initial fees. They simply share a unique link with patients, allowing for easy access to services, and payments are processed as orders are placed. Partner pharmacies handle medication shipments directly, creating a hassle-free experience for providers.Boosting Patient Retention: The platform includes a VIP Rewards Program, designed to increase patient retention and loyalty. Patients earn points for discounts and exclusive benefits, which encourages ongoing engagement and care continuity.E-commerce and Wellness Integration: Unlike typical affiliate programs, Valhalla Vitality allows providers to retain full control of their patient relationships. Providers can generate revenue through the integrated e-commerce system without worrying about referral fees or kickbacks, enabling them to focus solely on delivering high-quality patient care.

By joining the Valhalla Vitality Network Provider Program, healthcare providers gain access to a scalable model that helps increase profits, introduce new services, and enhance patient satisfaction. The VIP Rewards Program also strengthens the bond between patients and providers, making healthcare more accessible and rewarding for all.

Healthcare providers looking to grow their practices and increase revenue can join the Valhalla Vitality Network by visiting http://www.providevitality.com. Valhalla MSO’s new platform is a powerful tool for delivering advanced, patient-centric healthcare with a focus on accessibility and quality.

For more information, visit Valhalla Vitality at http://www.valhallavitality.com.

Media Contact

Chris K., Valhalla Vitality, 888-888-8888, ck@s99agency.com, https://valhallavitality.com/

View original content to download multimedia:https://www.prweb.com/releases/valhalla-mso-launches-impetus-one-to-enhance-valhalla-vitalitys-telehealth-platform-302253701.html

SOURCE Valhalla Vitality

Continue Reading

Technology

Ultima Markets Wins Two Prestigious Awards at Global Forex Awards–Retail 2024!

Published

on

By

LIMASSOL, Cyprus, Sept. 19, 2024  /CNW/ — Ultima Markets, a leading global forex and CFDs brokerage, is thrilled to announce its double success at the prestigious Global Forex Awards – Retail 2024. The company won two distinguished awards: “Best Affiliates Brokerage – Global” and “Best Fund Safety – Global.”

The awards were presented during the event in Limassol, Cyprus, where Jean Philippe, Board Advisor, Corporate Governance and Sustainability at Ultima Markets, accepted the honours.

The Global Forex Awards – Retail has celebrated excellence in trading innovation for seven consecutive years. Ultima Markets’ dual wins reflect its commitment to quality, client-centric strategies, and strong partnerships across the financial services sector.

The “Best Affiliates Brokerage—Global” award recognises Ultima Markets’ exemplary affiliate programme, which has successfully driven its global expansion. It is celebrated for its transparency and competitive rewards tailored to affiliate needs.

Receiving the “Best Fund Safety – Global” award highlights Ultima Markets’ efforts to safeguard client assets. Through its partnership with Willis Towers Watson, the company provides up to USD$1,000,000 in insurance per account, while its Financial Commission membership ensures clients access to up to €20,000 in compensation funds.

These recognitions underscore Ultima Markets’ priority to security and transparency, including segregated accounts and robust risk management practices. The broker also assures affiliate partners of exceptional standards.

Commenting on the awards, Jean Philippe said, “These recognitions reflect the exceptional work of our teams to ensure the safety of traders’ funds and our dedication to creating value for our partners and clients. We will continue to evolve and innovate to meet the market’s demands.”

Ultima Markets is renowned for its extensive range of trading products and personalised customer service, designed to meet clients’ diverse needs worldwide. The dual recognition marks a significant milestone in the company’s global growth and reaffirms its reputation for delivering fund safety and robust affiliate opportunities.

“We are delighted to be recognised with these awards, which reflect our mission to create a secure trading environment and build strong, rewarding partnerships,” said Jack Li, Ultima Markets’ Regional Business Director.

About Ultima Markets

Ultima Markets is a fully licensed, fast-growing broker offering access to 250+ financial instruments. With a team of 2,000+ professionals in 15 global offices, we serve clients in 172 countries. Check out more about our awards on Facebook, X, Instagram, LinkedIn and YouTube.

 

 

View original content to download multimedia:https://www.prnewswire.com/news-releases/ultima-markets-wins-two-prestigious-awards-at-global-forex-awardsretail-2024-302253541.html

SOURCE Ultima Markets

Continue Reading

Trending