Connect with us

Technology

IBM Report: Ransomware Persisted Despite Improved Detection in 2022

Published

on

Manufacturing Most Extorted Industry; Email Thread Hijacking Attempts Spike; Time to Ransom Moves from Months to Days

ARMONK, N.Y., Feb. 22, 2023 /PRNewswire/ — IBM (NYSE: IBM) Security today released its annual X-Force Threat Intelligence Index finding that although ransomware’s share of incidents declined only slightly (4 percentage points) from 2021 to 2022, defenders were more successful detecting and preventing ransomware. Despite this, attackers continued to innovate with the report showing the average time to complete a ransomware attack dropped from 2 months down to less than 4 days. 

According to the 2023 report, the deployment of backdoors, which allow remote access to systems, emerged as the top action by attackers last year. About 67% of those backdoor cases related to ransomware attempts, where defenders were able to detect the backdoor before ransomware was deployed. The uptick in backdoor deployments can be partially attributed to their high market value. X-Force observed threat actors selling existing backdoor access for as much as $10,000, compared to stolen credit card data, which can sell for less than $10 today.

“The shift towards detection and response has allowed defenders to disrupt adversaries earlier in the attack chain – tempering ransomware’s progression in the short term,” said Charles Henderson, Head of IBM Security X-Force. “But it’s only a matter of time before today’s backdoor problem becomes tomorrow’s ransomware crisis. Attackers always find new ways to evade detection. Good defense is no longer enough. To break free from the never-ending rat race with attackers, businesses must drive a proactive, threat-driven security strategy.”

The IBM Security X-Force Threat Intelligence Index tracks new and existing trends and attack patterns – pulling from billions of datapoints from network and endpoint devices, incident response engagements and other sources.

Some of the key findings in the 2023 report include:

Extortion: Threat Actors Go-to Method. The most common impact from cyberattacks in 2022 was extortion, which was primarily achieved through ransomware or business email compromise attacks. Europe was the most targeted region for this method, representing 44% of extortion cases observed, as threat actors sought to exploit geopolitical tensions.Cybercriminals Weaponize Email Conversations. Thread hijacking saw a significant rise in 2022, with attackers using compromised email accounts to reply within ongoing conversations posing as the original participant. X-Force observed the rate of monthly attempts increase by 100% compared to 2021 data.Legacy Exploits Still Doing the Job. The proportion of known exploits relative to vulnerabilities declined 10 percentage points from 2018 to 2022, due to the fact that the number of vulnerabilities hit another record high in 2022. The findings indicate that legacy exploits enabled older malware infections such as WannaCry and Conficker to continue to exist and spread.

Extortion Pressure Applied (Unevenly)
Cybercriminals often target the most vulnerable industries, businesses, and regions with extortion schemes, applying high psychological pressure to force victims to pay. Manufacturing was the most extorted industry in 2022, and it was the most attacked industry for the second consecutive year. Manufacturing organizations are an attractive target for extortion, given their extremely low tolerance for down time.

Ransomware is a well-known method of extortion, but threat actors are always exploring new ways to extort victims. One of the latest tactics involves making stolen data more accessible to downstream victims. By bringing customers and business partners into the mix, operators increase pressure on the breached organization. Threat actors will continue experimenting with downstream victim notifications to increase the potential costs and psychological impact of an intrusion – making it critical that businesses have a customized incident response plan that also considers the impact of an attack on downstream victims.

Thread Hijacking on the Rise
Email thread hijacking activity surged last year, with monthly attempts by threat actors doubling compared to 2021 data. Over the year, X-Force found that attackers used this tactic to deliver Emotet, Qakbot, and IcedID, malicious software that often results in ransomware infections.

With phishing being the leading cause of cyberattacks last year, and thread hijacking’s sharp rise, it’s clear that attackers are exploiting the trust placed in email. Businesses should make employees aware of thread hijacking to help reduce the risk of them falling victim.

Mind the Gap: Exploit “R&D” Lagging Vulnerabilities
The ratio of known exploits to vulnerabilities has been declining over the last few years, down 10 percentage points since 2018. Cybercriminals already have access to more than 78,000 known exploits, making it easier to exploit older, unpatched vulnerabilities. Even after 5 years, vulnerabilities leading to WannaCry infections remain a significant threat. X-Force recently reported an 800% increase in WannaCry ransomware traffic within MSS telemetry data since April 2022. The continued use of older exploits highlights the need for organizations to refine and mature vulnerability management programs, including better understanding their attack surface and risk-based prioritization of patches.

Additional findings from the 2023 report include:

Phishers “Give Up” on Credit Card Data. The number of cybercriminals targeting credit card information in phishing kits dropped 52% in one year, indicating that attackers are prioritizing personally identifiable information such as names, emails, and home addresses, which can be sold for a higher price on the dark web or used to conduct further operations.North America Felt Brunt of Energy Attacks. Energy held its spot as the 4th most attacked industry last year, as global forces continue to affect an already tumultuous global energy trade. North American energy organizations accounted for 46% of all energy attacks observed last year, a 25% increase from 2021 levels.Asia Tops the Target List. Accounting for nearly one-third of all attacks that X-Force responded to in 2022, Asia saw more cyberattacks than any other region. Manufacturing accounted for nearly half of all cases observed in Asia last year.

The report features data IBM collected globally in 2022 to deliver insightful information about the global threat landscape and inform the security community about the threats most relevant to their organizations. You can download a copy of the 2023 IBM Security X-Force Threat Intelligence Report here.

Additional sources

Read more about the report’s top findings in this IBM Security Intelligence blog.Sign up for the 2023 IBM Security X-Force Threat Intelligence Index webinar on Thursday, March 2, 2022, at 11:00 a.m. ET here.Schedule a consult with IBM Security X-Force.

About IBM Security
IBM Security helps secure the world’s largest enterprises and governments with an integrated portfolio of security products and services, infused with dynamic AI and automation capabilities. The portfolio, supported by world-renowned IBM Security X-Force® research, enables organizations to predict threats, protect data as it moves, and respond with speed and precision without holding back business innovation. worldwide security experts, IBM is trusted by thousands of organizations as their partner to assess, strategize, implement, and manage security transformations. IBM operates one of the world’s broadest security research, development, and delivery organizations, monitors 150 billion+ security events per day in more than 130 countries, and has been granted more than 10,000 security patents worldwide.

Press Contact:
IBM Security Communications
Michele Brancati
mbrancati@ibm.com

 

View original content to download multimedia:https://www.prnewswire.com/news-releases/ibm-report-ransomware-persisted-despite-improved-detection-in-2022-301752400.html

SOURCE IBM

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

G42 Collaborates with NVIDIA to Deliver Next-Generation Climate Solutions Using Earth-2

Published

on

By

ABU DHABI, UAE, Sept. 20, 2024 /PRNewswire/ — G42, a leader in AI and cloud computing, today announced that it is partnering with NVIDIA to advance climate technology with a focus on developing AI solutions aimed at dramatically enhancing the accuracy of weather forecasting globally.

The collaboration builds on NVIDIA’s Earth-2, an open platform that accelerates climate and weather predictions with interactive, AI-augmented, high-resolution simulation. G42 and NVIDIA will initially focus on a square-kilometer resolution weather forecasting model that improves the accuracy of meteorological predictions.

Key to this initiative is the establishment of a new operational base and Climate Tech Lab in Abu Dhabi. This state-of-the-art facility will serve as a hub for research and development, driving forward both companies’ commitment to environmental sustainability. This facility will also mobilize the creation of tailored climate and weather solutions that leverage over 100 petabytes of geophysical data assets.

Peng Xiao, Group CEO of G42, said, “This initiative with NVIDIA is a testament to our commitment to applying AI in ways that not only innovate but also solve critical global challenges. Establishing the Earth-2 Climate Tech Lab in Abu Dhabi allows us to leverage our unique capabilities and insights to foster a sustainable future for the world.”

In addition to fostering innovation in climate technology, the initiative will focus on building a robust framework for integrating enhanced weather prediction capabilities with comprehensive data metrics and visualization. This will assist organizations worldwide in achieving their sustainability goals through well-informed, data-driven environmental strategies.

“Our collaboration with G42 marks a pivotal step toward harnessing AI to understand and predict climate phenomena with unprecedented accuracy,” said Jensen Huang, founder and CEO of NVIDIA. “The Earth-2 Climate Tech Lab will propel environmental solutions using the most advanced accelerated computing and AI technology to benefit millions of people around the world.”

By uniting G42’s AI expertise with NVIDIA’s computational acumen, this partnership aims to deliver transformative climate solutions that combine scientific accuracy with real-world applicability, driving impactful change across industries and ecosystems.

About G42

G42 is a technology holding group, a global leader in creating visionary artificial intelligence for a better tomorrow. Born in Abu Dhabi and operating worldwide, G42 champions AI as a powerful force for good across industries. From molecular biology to space exploration and everything in between, G42 realizes exponential possibilities, today.
To know more visit www.g42.ai.

Media contacts
Media and PR Team, G42
media@g42.ai

View original content:https://www.prnewswire.co.uk/news-releases/g42-collaborates-with-nvidia-to-deliver-next-generation-climate-solutions-using-earth-2-302253818.html

Continue Reading

Technology

Kawasaki and CB&I Sign Strategic Collaborative Agreement for Promoting Commercial-Use Liquefied Hydrogen Supply Chain

Published

on

By

HOUSTON, Sept. 19, 2024 /PRNewswire/ — Kawasaki Heavy Industries, Ltd. (Kawasaki) and CB&I, a wholly owned unrestricted subsidiary of McDermott, announced today their signing of a strategic agreement for promoting a commercial-use liquefied hydrogen (LH2) supply chain and realizing a zero-carbon-emission society. The signing ceremony took place at Gastech Exhibition & Conference in Houston on September 18, 2024.

“We are very pleased for this opportunity to build and launch a commercial liquefied hydrogen supply chain in cooperation with CB&I,” said Motohiko Nishimura, President, Energy Solutions & Marine Engineering Company, Kawasaki Heavy Industries, Ltd. “By taking advantage of both companies’ strengths and specialized know-how, we aim to cost down hydrogen, strengthen hydrogen supply chain competitiveness, and accelerate the transition to a zero-carbon society.”

Both companies will use their specialized know-how to provide infrastructure that will enable commercial-scale international LH2 supply chains in order to help achieve carbon-neutrality. By leveraging our combined expertise to deliver large-scale LH2 infrastructure solutions, CB&I and Kawasaki are removing barriers, driving down costs and enhancing scalability across the entire supply chain.

“This strategic partnership represents a significant advancement in liquid hydrogen storage capabilities,” said Mark Butts, Senior Vice President of CB&I. “Our technical expertise and extensive experience in liquid hydrogen storage position us at the forefront of the energy transition, delivering reliable storage solutions and executing projects worldwide with proven success.”

Under this agreement, the companies will provide infrastructure to advance the global realization of a sustainable energy economy and meet decarbonization targets. This collaboration will reduce LH2 infrastructure costs and contribute to more widespread use of this clean and efficient energy source.

About CB&I
CB&I is the world’s leading designer and builder of storage facilities, tanks, and terminals. With more than 60,000 structures completed throughout its 130-year history, CB&I has the global expertise and strategically located operations to provide its customers world-class storage solutions for even the most complex energy infrastructure projects. CB&I is a wholly owned unrestricted subsidiary of McDermott. To learn more, visit www.cbi.com.

About McDermott
McDermott is a premier, fully-integrated provider of engineering and construction solutions to the energy industry. Our customers trust our technology-driven approach engineered to responsibly harness and transform global energy resources into the products the world needs. From concept to commissioning, McDermott’s innovative expertise and capabilities advance the next generation of global energy infrastructure—empowering a brighter, more sustainable future for us all. Operating in over 54 countries, McDermott’s locally-focused and globally-integrated resources include more than 30,000 employees, a diversified fleet of specialty marine construction vessels and fabrication facilities around the world. To learn more, visit www.mcdermott.com.

About Kawasaki Heavy Industries, Ltd.
Kawasaki Heavy Industries, Ltd. is general engineering manufacturer with over 125 years of experience manufacturing products spanning land, sea and air. Kawasaki established the Kawasaki Group’s new vision statement, “Group Vision 2030: Trustworthy Solutions for the Future,” and is focusing on three fields, “A Safe and Secure Remotely-Connected Society,” “Near-Future Mobility,” and “Energy and Environmental Solutions” in order to provide solutions for social issues. For “Energy and Environmental Solutions” in particular, by securing the technology necessary for the entire supply chain (for production, transportation, storage and utilization) ahead of the rest of the world, Kawasaki aims to bring about a society that utilizes hydrogen, the ultimate clean energy that emits no carbon dioxide when used. To learn more, visit https://global.kawasaki.com/en.

Forward-Looking Statements
McDermott cautions that statements in this communication which are forward-looking, and provide other than historical information, involve risks, contingencies and uncertainties. These forward-looking statements include, among other things, statements about the expected benefits from the collaboration agreement discussed in this press release.  Although we believe that the expectations reflected in those forward-looking statements are reasonable, we can give no assurance that those expectations will prove to have been correct. Those statements are made by using various underlying assumptions and are subject to numerous risks, contingencies and uncertainties, including, among others: adverse changes in the markets in which we operate or credit or capital markets; our inability to successfully execute on contracts in backlog; changes in project design or schedules; the availability of qualified personnel; changes in the terms, scope or timing of contracts, contract cancellations, change orders and other modifications and actions by our customers and other business counterparties; changes in industry norms; actions by lenders, other creditors, customers and other business counterparties of McDermott and adverse outcomes in legal or other dispute resolution proceedings. If one or more of these risks materialize, or if underlying assumptions prove incorrect, actual results may vary materially from those expected. You should not place undue reliance on forward-looking statements. This communication reflects the views of McDermott’s management as of the date hereof. Except to the extent required by applicable law, McDermott undertakes no obligation to update or revise any forward-looking statement.

For media inquiries, please use the contact information below:

Reba Reid
Global Media Relations
+1 281 588 5636
RReid@McDermott.com

Kristi Krupala-Grove
CB&I Media Relations
+1 346 313 9636
KKrupala2@mcdermott.com

View original content to download multimedia:https://www.prnewswire.com/news-releases/kawasaki-and-cbi-sign-strategic-collaborative-agreement-for-promoting-commercial-use-liquefied-hydrogen-supply-chain-302253698.html

SOURCE McDermott International, Ltd

Continue Reading

Technology

Halal Route Application – Eat, Travel around Thailand, Safe and Sound Halal Style

Published

on

By

BANGKOK, Thailand, Sept. 20, 2024 /PRNewswire/ — The Halal Science Center, Chulalongkorn University has developed Halal Route, an application that lists restaurants, lodging, mosques, prayer directions, and tourist attractions in Thailand under Islamic tourism principles. It hopes to help Muslim tourists travel in Thailand with peace of mind, and supports tourism industry operators to grow and welcome a growing number of Muslim tourists.

The Tourism Authority of Thailand (TAT) predicts that in 2024 there will be around 168 million Islamic tourists worldwide.  According to the Mastercard-Crescent Rating Global Muslim Travel Index (GMTI 2024), Thailand is the 32nd most popular destination for Muslim tourists.  However, the major problem Muslim tourists encounter in Thailand is finding Halal-accredited restaurants, hotels, accommodations, or tourist attractions with service areas (such as prayer rooms) that are compliant with the Islamic way.

Halal Route” is a travel aggregator app that collects searchable information on Halal restaurants, mosques, prayer locations, times, and directions for prayers (the qibla), tourist attractions, Muslim villages or communities, hotels, accommodations, etc.  This app is linked to Google Maps for navigation with precision. It also supports 3 languages, Thai, English, and Arabic, so that Muslim tourists can live and travel more comfortably and with peace of mind,” said Mr.Erfun Weahama, Science Service Officer, Halal Route App development team.

Dr. Anat Denyingyot, Assistant Director of the Halal Science Center, emphasized that the Halal Route application has the most reliable and comprehensive information on halal tourism in Thailand today. “All restaurants and locations have had on-site visits and are audited according to standards approved by a trusted authority or organization, such as certifications from religious organizations or halal food-related entities, as well as management systems to guarantee and be responsible for halal conditions (the HAL-Q system),” Dr. Anat assured.

Currently, the application has more than 1,100 restaurants in its database, and new locations and services are being updated, covering more than 40 provinces from north to south of Thailand that are popular among tourists.

Halal Route is not only for navigation, but a platform that connects Muslim communities from around the world who have the opportunity to visit Thailand,” Associate Professor Dr.Winai Dahlan, Director of the Halal Science Center concluded.

The Halal Route application is free to download on both iOS and Android systems.

Read the full article at https://www.chula.ac.th/en/highlight/185916/  

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/halal-route-application—eat-travel-around-thailand-safe-and-sound-halal-style-302251312.html

SOURCE Chulalongkorn University

Continue Reading

Trending