Trend MicroRoundup Finds New Variations on Proven Attack Methods

A combination of newer and older threat variations defined the cybersecurity landscape in the first quarter of 2015. Malvertising, zero-day vulnerability exploitation, “old-school” macro malware and the decade-old FREAK vulnerability are just a few of the highlights in Trend Micro Incorporated’s (TYO: 4704; TSE: 4704) new report, “Bad Ads and Zero-Days: Reemerging Threats Challenge Trust in Supply Chains and Best Practices.” From an industry perspective, healthcare and retail point-of-sale systems have also seen an uptick in threat activity. The report reinforces how complacency can present major cybersecurity risks in an era where the margin for error has been significantly diminished.

“Bad Ads and Zero-Days: Reemerging Threats Challenge Trust in Supply Chains and Best Practices.”

“Even though we are early in the year, it is clear 2015 is shaping up to be noteworthy in terms of volume, ingenuity and sophistication of attacks,” said Raimund Genes, CTO, Trend Micro. “The rise in attacks against the healthcare industry, combined with the rise in malvertisements, reflects that technology users are being assailed from all angles. It is clear businesses and individuals alike need to be proactive in protecting against threats. As a business, how would your IT-Security policies look like in a Zero Trust Environment? An aggressive and different security posture is critical to keep financial, personal and intellectual property safe.”

Adware also topped the list of mobile threats, with Trend Micro now documenting more than five million Android threats to date — nearing the predicted total of eight million by the close of 2015. In fact, top malicious and high-risk apps blocked by Trend Micro were adware related, reflecting this increase.

Trend Micro researchers also found zero-day exploits targeting Adobe software utilized malvertisements and no longer required victims to visit or interact with malicious sites to become infected.

The healthcare industry experienced a notable rise in cyber-attacks, in addition to iOS™ and point-of-sale (PoS) systems continuing to be targeted. Since exploitations in these areas have been in their infancy for several years, researchers believe this rise is primarily due to a lack of preparedness—a sizable oversight that should be addressed.

“The question we have to ask is, ‘are we doing enough to protect ourselves from security threats?’” added Genes. “While we need to constantly update our systems to protect against new attacks, the first quarter of 2015 clearly showed we need to also watch out for older threats, and how no industry or system should feel exempt.”

Report highlights include:

  • Healthcare Industry Hit by Massive Attacks: Major healthcare service providers, such as Premera Blue Cross and Anthem, suffered data breaches that exposed millions of customers’ financial and medical data.
  • Old Threats Invigorated with New Targeted Attack Tools, Tactics and Procedures: Rocket Kitten and those behindOperation Pawn Storm set their sights on new targets, proving that targeted attacks are evolving.
  • Exploit Kits Grew in Sophistication: Exploit kits constantly add new exploits to their arsenals, adding to their allure to expert and novice attackers.
  • Crypto-Ransomware Volume Soared, Expands to Enterprises: Crypto-ransomware expanded their target base to enterprise users, no longer exclusively pursuing consumers.
  • Macro Malware, Old but Still Effective: The resurgence of macro malware suggest cybercriminals are taking advantage of user security complacency, through reliance on Microsoft Office® defaults.
  • Decade-Old FREAK Security Flaw Brought on Patch Management Challenges: As more vulnerabilities emerge in open source OSs and applications, IT administrators will find it increasingly difficult to mitigate risks.

For the complete report, please visit: http://www.trendmicro.com/vinfo/us/security/roundup/.

Source: businesswire.com

Koristimo kolačiće kako bi poboljšali Vaše korisničko iskustvo i funkcionalnost stranice. Više informacija o kolačićima možete pronaći ovdje.

Ključni su za upotrebu Internet stranice i bez istih stranica nema svoju punu funkcionalnost. Nastavkom surfanja i kupovinom neophodni se kolačići smatraju prihvaćenima. Funkcionalni kolačići mogu uključivati kolačiće koji pružaju uslugu koju je korisnik zatražio.

cookies_permission

Za pohranu prihvaćanja kolačića.

Ističe: 1 godina

Vrsta: HTTP

Prikupljaju se anonimno, ne mogu pratiti aktivnosti korisnika na drugim Internet stranicama i služe za praćenje ponašanja korisnika te u svrhu mjerenja ponašanja publike i sastavljanja izvješća za poboljšanja Internet stranice. Ovi kolačići omogućuju prijenos podataka u treće zemlje, uključujući SAD.

cookies_permission_analiza

Za pohranu prihvaćanja analitičkih kolačića.

Ističe: 1 godina

Vrsta: HTTP

sbjs_current

Za pohranu detalja preglednika.

Ističe: Sesija

Vrsta: HTTP

sbjs_current_add

Dodatni metapodaci o izvoru prometa trenutne sesije korisnika.

Ističe: Sesija

Vrsta: HTTP

sbjs_first

Bilježi izvor prometa prvog posjeta korisnika web stranici (npr. izvorni UTM parametri).

Ističe: 6 mjeseci

Vrsta: HTTP

sbjs_first_add

Pohranjuje dodatne pojedinosti o izvoru prometa za prvi posjet korisnika.

Ističe: 6 mjeseci

Vrsta: HTTP

sbjs_migrations

Prati prijelaze između izvora prometa, primjerice kada korisnik mijenja kampanje ili preporuke.

Ističe: 6 mjeseci

Vrsta: HTTP

sbjs_session

Prati podatke o prometu specifične za sesiju, kao što je izvor preporuke za trenutni posjet.

Ističe: Sesija

Vrsta: HTTP

sbjs_udata

Pohranjuje skupne korisničke podatke, kao što je kombinacija izvora prometa kroz posjete.

Ističe: 6 mjeseci

Vrsta: HTTP

Kolačići su male tekstne datoteke koje internetske stranice koriste kako bi unaprijedile korisničko iskustvo.

Zakon dopušta spremanje kolačića na vaš uređaj ako je to izričito potrebno za rad stranice. Za sve ostale vrste kolačića trebamo vašu suglasnost.

Ove stranice koriste različite vrste kolačića. Neke kolačiće postavljaju usluge trećih strana koje se prikazuju na našim stranicama.

Vašu suglasnost za Izjavu o kolačićima na našim internetskim stranicama možete u bilo kojem trenutku promijeniti ili povući.

Više informacija o tome tko smo mi, kako nas možete kontaktirati i kako obrađujemo vaše osobne podatke možete pronaći u našoj Politici privatnosti.

Molimo vas da pri kontaktiranju vezano za vašu suglasnost navedete svoj ID broj suglasnosti i datum isteka iste.