Connect with us

Technology

Surge in “Hunter-killer” Malware Uncovered by Picus Security

Published

on

The Picus Red Report 2024 reveals 333% increase in malware that targets and disables security controls 

SAN FRANCISCO, Feb. 13, 2024 /PRNewswire/ — Picus Security, the Security Validation company, has released the Picus Red Report 2024. This fourth annual report shares learnings from an in-depth analysis of more than 600,000 real-world malware samples and identifies the most common techniques leveraged by attackers. This year, Picus uncovered a surge of “Hunter-killer” malware from the research findings, demonstrating a drastic shift in adversaries’ ability to identify and neutralize advanced enterprise defenses such as next-gen firewalls, antivirus, and EDR. According to the report, there was a 333% increase in malware that can actively target defensive systems in an attempt to disable them. 

“We are witnessing a surge in ultra-evasive, highly aggressive malware which shares the characteristics of hunter-killer submarines,” said Dr. Suleyman Ozarslan, Picus Security Co-founder and VP of Picus Labs. “Just as these subs move silently through deep waters and launch devastating attacks to defeat their targets’ defenses, new malware is designed to not only evade security tools but actively bring them down. We believe cybercriminals are changing tact in response to the security of average businesses being much-improved, and widely used tools offering far more advanced capabilities to detect threats. A year ago, it was relatively rare for adversaries to disable security controls. Now, this behavior is seen in a quarter of malware samples and is used by virtually every ransomware group and APT group.” 

The Red Report helps security teams better understand and battle cyber attacks by identifying the Top 10 most prevalent MITRE ATT&CK techniques exhibited by the latest malware. Its insights help prioritize defensive actions against commonly used techniques. Additional key findings include: 

Evolving tactics challenge detection and response: 70% of malware analyzed now employ stealth-oriented techniques by attackers, particularly those that facilitate evading security measures and maintaining persistence in networks.Invisibility at the forefront of evasion: There was a 150% increase in the use of T1027 Obfuscated Files or Information. This highlights a trend toward hindering the effectiveness of security solutions and obfuscating malicious activities to complicate the detection of attacks, forensic analysis, and incident response efforts. The ransomware saga continues: There was a 176% increase in the use of T1071 Application Layer Protocol, which are being strategically deployed for data exfiltration as part of sophisticated double extortion schemes. 

To combat Hunter-killer malware and stay ahead of 2024 malware trends, Picus is urging organizations to embrace machine learning, protect user credentials, and consistently validate their defenses against the latest tactics and techniques used by cybercriminals. 

“It can be incredibly difficult to detect if an attack has disabled or reconfigured security tools, because they may still appear to be working as expected,” said Huseyin Can YUCEEL, Security Research Lead at Picus Security. “Preventing attacks that would otherwise operate under the radar requires the use of multiple security controls with a defense-in-depth approach. Security validation must be a starting point for organizations to better understand their readiness and identify gaps. Unless an organization is proactively simulating attacks to assess the response of its EDR, XDR, SIEM, and other defensive systems that may be weakened or eliminated by Hunter-killer malware, they will not know they are down until it is too late.” 

For more information: 

Download the Picus Red Report 2024Read the Red Report 2024 blog 

Methodology

Between January 2023 and December 2023, Picus Labs, the research unit of Picus Security, analyzed 667,401 unique files, with 612,080 (92%) categorized as malicious. Sources of these files include but are not limited to commercial and open-source threat intelligence services, security vendors and researchers, malware sandboxes, malware databases, and forums. From these files, a total of 7,754,801 actions were extracted, an average of 13 malicious actions per malware. These actions were then mapped to 7,015,759 MITRE ATT&CK techniques, an average of 11 techniques per malware. 

To compile the Picus Red Report 2024 Top Ten, Picus Labs researchers determined the number of malicious files that used each technique. They then calculated the percentage of malware in the dataset that utilized that technique. For example, the T1055 Process Injection technique was used in 195,044 (32%) of the 612,080 malicious files analyzed. 

About Picus Security

Picus Security helps security teams consistently and accurately validate their security posture. Our Security Validation Platform simulates real-world threats to evaluate the effectiveness of security controls, identify high-risk attack paths to critical assets, and optimize threat prevention and detection capabilities.

As the pioneer of Breach and Attack Simulation, we specialize in delivering the actionable insights our customers need to be threat-centric and proactive. 

Picus has been named a ‘Cool Vendor’ by Gartner and is recognized by Frost & Sullivan as a leader in the Breach and Attack Simulation (BAS) market.

Infographic – https://mma.prnewswire.com/media/2338835/Picus_Infographic.jpg
Logo – https://mma.prnewswire.com/media/2183222/4540977/Picus_Logo.jpg

 

View original content:https://www.prnewswire.co.uk/news-releases/surge-in-hunter-killer-malware-uncovered-by-picus-security-302059723.html

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Gentoo Media – Mandatory notification of trade

Published

on

By

ST JULIANS, Malta, Nov. 14, 2024 /PRNewswire/ — MJ Foundation Fundacja Rodzinna, a company related to Mateusz Juroszek, Board Member and primary insider of Gentoo Media Inc. (Gentoo) has today acquired 115,604 shares in Gentoo at a price of SEK 24,996 per share. After this transaction, close associates of Mateusz Juroszek hold 24,027,766 shares in Gentoo.

This information is subject to the disclosure requirements pursuant to Section 5-12 of the Norwegian Securities Trading Act.

For further information, contact:
Tore Formo, Group CFO, tore.formo@g2m.com, +47 91668678

About Gentoo Media

Gentoo Media is a market-leading affiliate connecting operators and players in the online gambling and sports betting industry. Gentoo Media offers an array of iGaming affiliate solutions, such as paid marketing expertise and quality traffic through our prominent industry sites including AskGamblers, Time2Play, CasinoTopsOnline, WSN and Casinomeister. In 2024, Gentoo Media (formerly GiG Media) became Gentoo Media Inc. following a legal split separating the Media and Platform and Sportsbook business in Gaming Innovation Group (GiG) into two independently listed companies. Gentoo Media Inc. is dual listed on the Oslo Stock Exchange (ticker “G2MNO”) and Nasdaq Stockholm (ticker “G2M”). www.gentoomedia.com

This information was brought to you by Cision http://news.cision.com

https://news.cision.com/gentoo-media-inc/r/gentoo-media—mandatory-notification-of-trade,c4066199

View original content:https://www.prnewswire.co.uk/news-releases/gentoo-media—mandatory-notification-of-trade-302305030.html

Continue Reading

Technology

Xinhua Silk Road: World IoT expo 2024 opens in E. China’s Wuxi to showcase future of smart connectivity

Published

on

By

BEIJING, Nov. 14, 2024 /PRNewswire/ — The World Internet of Things (IoT) Exposition 2024 kicked off on Monday in Wuxi City of east China’s Jiangsu Province, attracting industry leaders, representatives of enterprises and experts from across the globe to discuss industry trends and demonstrate innovative applications.

At the expo’s opening ceremony, Wuxi unveiled a national pilot project in intelligent connected vehicles, which aims to create a cohesive mode for car owners, vehicles and cities connection, contributing Wuxi’s expertise to smart vehicle initiatives.

Additionally, a new smart sensing chip engineering center was launched, representing an investment of over 1 billion yuan and focusing on high-density large-scale substrates and other advanced chip technologies to strengthen the city’s integrated circuit development.

The event also saw the release of several major IoT research achievements, including the 2024 IoT innovation development Taihu index and the 2024 white paper on advanced sensing technology and applications.

The three-day event features exhibitions, panel discussions, and thematic sessions that showcase the latest development in IoT innovations and applications. This year’s expo is poised to drive Wuxi’s high-quality growth in IoT while promoting global tech collaboration and knowledge sharing in the IoT field.

Wuxi has become a navigator of the IoT industry in China. The latest statistics show that in 2023, the scale of the IoT industrial cluster in Wuxi surpassed 450 billion yuan, taking the lead in Jiangsu Province.

Original link: https://en.imsilkroad.com/p/343117.html

SOURCE Xinhua Silk Road

Continue Reading

Technology

Agoda Highlights Five Urban Hikes for Adventurous Travelers

Published

on

By

SINGAPORE, Nov. 14, 2024 /PRNewswire/ — Digital travel platform Agoda introduces five urban hikes across Asia, offering travelers a chance to experience the perfect blend of city life and nature. These hikes, ranging from family-friendly to more challenging trails, provide an unmatched perspective on some of Asia’s most dynamic cities.

Whether it’s Elephant Hill in Taipei, with its stunning views of the Taipei 101, or Hong Kong’s famous Dragon Back, active travelers are in for a treat when embarking on these city hike adventures.

Andrew Smith, Senior Vice President, Supply at Agoda said: “Asia is special to have so many incredible hike routes right in the heart of these popular cities. The five highlighted hikes are just a sample of the many breathtaking city trails the continent has to offer. Adventurous travelers will want to try them all and thankfully Agoda helps make travel affordable with great value deals on over 4.5 million properties globally.”

These are the five city hikes, ranked from easiest to most challenging:

Kuala Lumpur’s Bukit Nanas Forest Reserve offers a unique experience of trekking through a tropical rainforest right in the city center. The trail is relatively easy, with well-marked paths and informative signboards about the local flora and fauna, making it a great choice for families and nature enthusiasts.

Elephant Hill in Taipei offers a short but rewarding climb. The trail is well-maintained and provides stunning views of Taipei’s skyline, including the famous Taipei 101. It’s an ideal spot for those looking to enjoy a quick escape into nature without straying far from the city.

In Singapore, the Southern Ridges trail offers a moderate hike through a series of interconnected parks and gardens. Spanning 10 kilometers, this trail provides a lush green corridor amidst the urban environment, with highlights including the Henderson Waves bridge and panoramic views of the city.

Namsan in Seoul presents a slightly more challenging hike, leading to the N Seoul Tower. The trail is popular among locals and tourists alike, offering a mix of natural beauty and cultural landmarks, with several routes to choose from depending on the desired difficulty level.

Finally, Hong Kong’s Dragon’s Back is a favorite for its breathtaking views of the coastline and the South China Sea. This moderately challenging hike is known for its undulating ridges and scenic vistas, providing a rewarding experience for those willing to tackle its ups and downs.

In each of these city hike destinations, Agoda offers great value accommodation. In addition to holiday properties, Agoda’s 130,000 flight routes and 300,000 activities ensure the platform is the one-stop travel solution to help booking an entire trip. The latest Agoda deals can be found in the Agoda app or on agoda.com/deals.

— ENDS —

 

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/agoda-highlights-five-urban-hikes-for-adventurous-travelers-302304670.html

SOURCE Agoda

Continue Reading

Trending