Sony Pixel Power calrec Sony

IBM Report: Cybercriminals Intensify Attacks on User Identities in the UK, Complicating Recovery Efforts for Enterprises

21/02/2024

LONDON, UK, Feb 21, 2024 IBM today released the 2024 X-Force Threat Intelligence Index highlighting an emerging global crisis as cybercriminals double down on exploiting user identities to compromise enterprises.

According to IBM X-Force, IBM Consulting's security services arm, cybercriminals last year generated more opportunities to log in to corporate networks through valid accounts, instead of hacking into them making this tactic a preferred weapon of choice for threat actors.

The X-Force Threat Intelligence Index is based on insights and observations from monitoring over 150 billion security events per day in more than 130 countries. In addition, data is gathered and analysed from multiple sources within IBM, including IBM X-Force Threat Intelligence, Incident Response, X-Force Red, IBM Managed Security Services, and data provided from Red Hat Insights and Intezer , which contributed to the 2024 report.

An emerging identity crisis

The report data revealed that exploiting valid accounts has become the path of least resistance for cybercriminals, with billions of compromised credentials accessible on the Dark Web.

According to the report, 50% of cyberattacks in the UK involved the exploitation of valid accounts as the initial access vector' and a further 25% of cases involved the exploitation of public-facing applications. Across Europe, X-Force observed a 66% year-on-year rise in attacks caused by the use of valid accounts contributing to Europe's prevalence as the most targeted region of 2023 and the record number of attacks that X-Force has ever reported regionally.

The criminal ecosystem was also quick to adapt to the use of valid accounts by attackers. In 2023, X-Force observed a 266% increase in infostealing malware, which is designed to steal personal and enterprise credentials, personally identifiable information, and banking and crypto wallet information.

This easy entry for attackers is harder to detect, eliciting a costly response from enterprises. According to X-Force, worldwide, major incidents caused by attackers using valid accounts were linked to nearly 200% more complex response measures by security teams than the average incident with defenders needing to distinguish between legitimate and malicious user activity on the network.

In fact, IBM's 2023 Cost of a Data Breach Report found that breaches caused by stolen or compromised credentials required roughly 11 months from detection to recovery the longest response lifecycle among all infection vectors.

Martin Borrett, Technical Director, IBM Security, UK, and Ireland (UKI) commented:

Our findings reveal that identity is increasingly being weaponised against enterprises, exploiting valid accounts and compromising credentials. It also shows us that the biggest security concern for enterprises stems not from novel or cryptic threats, but from well-known and existing ones.

Addressing cybersecurity challenges requires a strategic approach, emphasising the reinforcement of foundational security measures. Streamlining identity management through a unified Identity and Access Management (IAM) provider and strengthening legacy applications with modern security protocols are crucial steps in mitigating risks. Additionally, subjecting your system to rigorous stress tests by skilled offensive security teams proves invaluable in uncovering potential weaknesses. This insight is pivotal for crafting a robust incident response plan that engages all teams, from IT professionals to C-suite executives.

Julian David, CEO of techUK, added:

In an era marked by the growing sophistication of cybercriminals who exploit legitimate accounts to breach business defences, IBM's X-Force Threat Intelligence Index serves as a stark wake-up call.

The report underscores a troubling pattern where half of the cyberattacks in the UK rely on legitimate accounts for initial access, presenting significant challenges to businesses' recovery endeavours. To effectively combat this threat, businesses must adopt a strategic approach, integrating modern security protocols to mitigate risks and strengthen their defences against the ever-evolving landscape of cyber threats.

Further key UK findings include:

Malware made up 30% of security incidents observed in the UK.

Ransomware (30%) and cryptominers (20%) were the top malware types encountered in the country.

The impact of attacks was evenly distributed with extortion, digital currency mining and data leaks each making up 25% of total impacts in the UK.

This marks a shift from 2022, when half the cases X-Force observed in the UK involved extortion (57%) twice the global average followed by data theft (29%).

The professional, business and consumer services industry was the most targeted sector in the UK, representing 39% of cases.

Energy (30%) and finance & insurance (17%) were the second and third most targeted industries in UK, respectively.

Manufacturing was the most targeted industry in Europe, accounting for 28% of cases.

Europe overall experienced the highest percentage of incidents within the energy sector at 43%, as well as finance and insurance at 37%.

Major takeaways from the global report included:

Attacks on critical infrastructure reveal industry faux pas.

Worldwide, an alarming 69.6% of attacks that X-Force responded to were against critical infrastructure organisations, an alarming finding highlighting that cybercriminals are wagering on these high value targets' need for uptime to advance their objectives.

In 84% of attacks on critical sectors globally, compromise could have been mitigated with patching, multi-factor authentication, or least-privilege principals indicating that what the security industry historically described as basic security may be harder to achieve than portrayed.

Exploiting public-facing appl
LINK: https://uk.newsroom.ibm.com/IBM-Report-Cybercriminals-Intensify-Attack...
See more stories from ibm

Most recent headlines

04/08/2024

Dalet Appoints Santiago Solanas as CEO to Lead Next Era of Growth and Innovation

Dalet, a leading technology and service provider for media-rich organizations, is excited to announce Santiago Solanas as its new Chief Executive Officer (CEO)....

03/06/2024

Dalet and Veritone Reach Agreement to Distribute, Transact and Monetize Media Archives

Dalet, a leading technology and service provider for media-rich organizations, a...

15/05/2024

UKTV Ventures partners with The Farewell Guide in 1million airtime-for-equity deal

12th March 2024 - Award-winning broadcaster UKTV has today announced it has inve...

15/05/2024

Give Me the Backstory: Get to Know Jianjie Lin, the Writer-Director Behind Brief History of a Family

By Bailey Pennick One of the most exciting things about the Sundance Film Festi...

15/05/2024

De viktigaste insikterna frn Spotifys rliga Loud & Clear-rapport

Med sin rliga royaltyrapport Loud & Clear kar Spotify transparensen i musikindustrin, s att artister, l tskrivare, fans och hela musikbranschen f r en st rre...

15/05/2024

Chegaram as ltimas estatsticas: Artistas brasileiros geraram mais receita e alcanaram mais fs no Spotify - basta perguntar Anitta

Nos ltimos 10 a 15 anos, a mudan a para o streaming de udio transformou comple...

15/05/2024

The Latest Stats Are In: Brazilian Artists Generated More Revenue and Reached More Fans on Spotify-Just Ask Anitta

Over the last 10-15 years, the move toward streaming audio has completely transf...

15/05/2024

Celebrating 80 years of success in Morganton

On May 15th, we celebrate the 80th anniversary of the SGL Carbon site in Morganton, North Carolina. The entire SGL Morganton family came together to celebrate t...

15/05/2024

SBS Audio marketing campaign tells the stories of new Australians, with multilingual content offerings to assist migrants

SBS Audio marketing campaign tells the stories of new Australians, with multilin...

15/05/2024

ST Engineering iDirect's SKYflow Wins 2024 NAB Show Product of The Year Award

The pioneering satellite OTT solution clinched the Hardware Infrastructure award...

15/05/2024

L3Harris CEO to Present at Bernstein Annual Strategic Decisions Conference

MELBOURNE, Fla., May 15, 2024 - L3Harris Technologies (NYSE:LHX) Chair and CEO Christopher E. Kubasik will present at the Bernstein Annual Strategic Decisions C...

15/05/2024

Netflix to Stream Live Christmas Day NFL Games

In a major example of how large streaming services are successfully battling for lucrative sports rights, Netflix has announced that it has secured global right...

15/05/2024

NAB Show: Creative Lens on Live Sports

LAS VEGAS The premise of the 2024 NAB Shows Creative Lens on Live Sports: Next Gen Video Production and Fan Experiences session was very simple to understand if...

15/05/2024

ATEME Integrates Advanced HDR by Technicolor into TITAN Encoders

SILVER SPRINGS, Md. Encoder specialist ATEME has integrated Advanced HDR by Technicolor into its TITAN video compression solution, Technicolor said today....

15/05/2024

Berklee Artists to Perform at Major US Music Festivals this Summer and Fall

Berklee Artists to Perform at Major US Music Festivals this Summer and Fall The Berklee Popular Music Institute arranged placements at top festivals including...

15/05/2024

ABC Sets The Golden Bachelorette' for Fall Schedule

ABC shared its 2024-2025 fall schedule hours before the Disney upfront presentation Tuesday, May 14. There's The Golden Bachelorette, a new Ryan Murphy show...

15/05/2024

Alicia Keys Kicks Off Amazon Upfront Show, Reese Witherspoon Wraps It Up

Amazon's first-ever upfront presentation, at Pier 36 in Lower Manhattan, got a late start due to its remote location. But the energy spiked when Alicia Keys...

15/05/2024

Disney Upfront Welcomes Back Bob Iger and Jimmy Kimmel

The Walt Disney Co.'s upfront presentation went on with a connections theme, and Bob Iger himself appeared onstage moments after it began. Emma Stone introd...

15/05/2024

Hulu's Under the Bridge' Tops TVision Power Score Rankings

Hulu's Under the Bridge moved up to take the top spot in TVision's Power Score rankings of the top shows on connected TV for the week of May 6....

15/05/2024

The CW Gets Rights to 11 PAC-12 Football Games

BURBANK, Calif. The CW Network has announced it will be the broadcast home for 11 Pac-12 football games featuring Oregon State and Washington State during the u...

15/05/2024

Nielsen: Disney Is Top Media Distributor with 11.5% of TV Usage

NEW YORK Disney has landed on top of Nielsens newly launched Media Distributor Gauge, which offers its first cross-platform view of total TV consumption across ...

15/05/2024

Max Sets a May 21 Streaming Debut for 'Dune: Part Two

Warner Bros. Discoverys Max streaming services has finally set a launch date for Dune: Part Two with the announcement that the film will begin streaming on Thur...

15/05/2024

FCC Establishes Spectrum Steering Team

WASHINGTON, D.C. FCC Chairwoman Jessica Rosenworcel has announced the establishment of the Spectrum Steering Team that will lead the FCC's efforts to develo...

15/05/2024

Gary Heelas joins TSL as principal engineer

TSL said the appointment marks a strategic enhancement in the companys commitment to focusing on UK and US-designed and manufactured solutions By Jenny Priestl...

15/05/2024

Is Sony about to pull out of its bid for Paramount?

Sony and Apollo may decide to acquire Shari Redstone's National Amusements, which is the controlling shareholder of Paramount Global By Jenny Priestley P...

15/05/2024

Presteigne Broadcast Hire enters administration

The company appointed administrators yesterday (May 14th) By Jenny Priestley Published: May 15, 2024 The company appointed administrators yesterday (May 1...

15/05/2024

Matrox Video Demos at InfoComm 2024 Will Showcase New AVo...

Technology innovator Matrox Video today announced that the company will highlight its leading AV-over-IP (AVoIP) technologies including the brand-new, next-g...

15/05/2024

RMi Amplifies Connectivity and Clarity at Major 2024 Musi...

Riedel Communications today announced its pivotal role in bringing unparalleled audio clarity and connectivity to one of the U.S.'s biggest 2024 music and a...

15/05/2024

Chyron Unveils Significant Updates to Chyron LIVE Cloud P...

Chyron today released a series of significant updates to its Chyron LIVE cloud-native live production platform that were demonstrated at the 2024 NAB Show in La...

15/05/2024

VisualOn to Showcase Revolutionary Optimizer Content-Awar...

VisualOn, a leader in video software technology, is set to unveil its groundbreaking Optimizer suite at Broadcast Asia 2024. The unveiling will take place in th...

15/05/2024

StreamVue announce exclusive parnership with DigiBox

StreamVue, one of the global leaders in IPTV and digital signage solutions is excited to announce an exclusive distribution partnership with DigiBox, one of the...

15/05/2024

Vega Project Uses Blackmagic Design Workflow for XR Studio in Hilton Tokyo

Vega Project Uses Blackmagic Design Workflow for XR Studio in Hilton Tokyo Brie Clayton May 14, 2024 0 Comments Blackmagic Design announced today that...

15/05/2024

Chaos Releases V-Ray 6 Benchmark

Chaos Releases V-Ray 6 Benchmark Brie Clayton May 14, 2024 0 Comments Popular Rendering Benchmark Brings Back CPU/GPU Stats in a Minute; New Benchmark...

15/05/2024

Rose City Futsal Sets New Standard for Community Sports Venues with AI-Automated Sports Production & Streaming Solution

Rose City Futsal Sets New Standard for Community Sports Venues with AI-Automated...

15/05/2024

That Station Artist Notes Series Returns This Summer

Artist Notes is back! Join That Station this summer for the conversation and concert series where you get to hear an artist on stage to not only play music, but...

15/05/2024

Assembling Disney's Upfront: It Takes More Than Magic (Video)

A lot goes into making The Walt Disney Co.'s upfront presentation....

15/05/2024

Madhive Names Premion Founder Jim Wilson President

Madhive, which provides technology for local connected TV advertising, said that it named Jim Wilson as president....

15/05/2024

Amazon Prime Video Swings With Nicholas Cage Spider-Man Series

At its first upfront presentation to advertisers, Amazon Prime Video announced new series and renewed some of its hits....

15/05/2024

Nielsen Crowns Disney in New Ranking of Media Distributors

Nielsen released a new ranking of companies in the media distribution business, including broadcast, cable and streaming, and The Walt Disney Co. was at the top...

15/05/2024

Latin Culture Is Key at TelevisaUnivision Upfront

TelevisaUnivision told advertisers at its upfront presentation Tuesday about more ways they can connect with Latin culture, including through music and live eve...

15/05/2024

VEON Publishes Annual Corporate Governance Report for Financial Year 2023

15 May 2024 VEON Publishes Annual Corporate Governance Report for Financial Year 2023 Amsterdam, 15 May 2024 - VEON Ltd. (NASDAQ: VEON, Euronext Amsterdam: VEO...

15/05/2024

VEON and Beeline Kazakhstan Partner with GSMA and Barcelona Supercomputing Centre to Support Use of AI in Local Languages

15 May 2024 VEON and Beeline Kazakhstan Partner with GSMA and Barcelona Superco...

15/05/2024

TRIBECA FESTIVAL AND CHANEL HOST THROUGH HER LENS CONVERSATION, JUNE 7 AT CROSBY HOTEL

May 15th, 2024 Press Materials Available Here TRIBECA FESTIVAL AND CHANEL HOST...

15/05/2024

Thuraya unveils groundbreaking next generation IP NEO terminal developed in collaboration with Cobham Satcom

Abu Dhabi, 15 May, 2024 : IP NEO is a Thuraya 4-ready lightweight portable sate...

15/05/2024

Thuraya unveils groundbreaking next generation IP NEO terminal developed in collaboration ...

Abu Dhabi, 15 May, 2024 : IP NEO is a Thuraya 4-ready lightweight portable sate...

15/05/2024

MAGYAR TELEKOM RESULTS FOR THE FIRST QUARTER OF 2024

MAGYAR TELEKOM RESULTS FOR THE FIRST QUARTER OF 2024 Budapest, May 15, 2024 17:35 Magyar Telekom today reported its consolidated financial results for the...

15/05/2024

Tech Focus: Production Music, Part 1: Changes Come to the Sports Sector

Tech Focus: Production Music, Part 1: Changes Come to the Sports Sector Spurring the changes are increased custom-music demand, RSN turmoil, legal issues, AI B...

15/05/2024

SVG Sit-Down: Diversified's Justo Gutierrez Explores the Evolution of Sound for Sports Venues

SVG Sit-Down: Diversified's Justo Gutierrez Explores the Evolution of Sound ...

15/05/2024

SVG Sit-Down: Audiotonix' CEO James Gordon on Utilizing the Company's Brands for Smart Investment

New deal: Audiotonix' CEO James Gordon on utilising the company's brands...

15/05/2024

Commentary Revolution: DAZN's Technical Production Manager Max Mosgraber Talks Doing More With Less

Commentary revolution: DAZN's technical production manager Max Mosgraber tal...