The researchers identify two main trends – attacks that aim to steal remote user credentials and weaponized email attacks…
Link:
https://thehackernews.com/2020/03/coronavirus-cybersecurity-ciso.html
Summary:
- Research carried out by Cybersecurity firm Cynet. Full “Corona Effect” report can be requested here.
- The research outlines the effects that the Coronavirus epidemic is having on cybersecurity to date and considerations that CISOs should account for to protect the business.
- The majority of activity can be boiled down to two threat types: remote user credential theft, and phishing with weaponized emails
- Remote User Credential Theft – Cynet detected increased phishing attacks and anomalous login activity in Italy in recent weeks.
- Weaponized Emails: Similarly a huge uptick in weaponized attachments in emails has been noted in Italy, with nearly 45% of phishing emails using malicious documents leveraging MS Office or Macro exploits.
- This surge in activity, coupled with the fact that most security organisations are equally impaired by the global restrictions means that CISOs are under increased pressure.
- Decisions to protect the business should be informed by the trending activities of threat actors who are taking advantage of the situation.
- Given the restrictions on security staff, CISOs should consider talking to third party vendors and service providers for advice and potential short-term mitigation solutions.
- Some vendors and service providers are allowing free use or extended trial periods of security solutions due to universal security challenges.
Share Post: