Sony Pixel Power calrec Sony

IBM Report: Cybercriminals Intensify Attacks on User Identities in the UK, Complicating Recovery Efforts for Enterprises

21/02/2024

LONDON, UK, Feb 21, 2024 IBM today released the 2024 X-Force Threat Intelligence Index highlighting an emerging global crisis as cybercriminals double down on exploiting user identities to compromise enterprises.

According to IBM X-Force, IBM Consulting's security services arm, cybercriminals last year generated more opportunities to log in to corporate networks through valid accounts, instead of hacking into them making this tactic a preferred weapon of choice for threat actors.

The X-Force Threat Intelligence Index is based on insights and observations from monitoring over 150 billion security events per day in more than 130 countries. In addition, data is gathered and analysed from multiple sources within IBM, including IBM X-Force Threat Intelligence, Incident Response, X-Force Red, IBM Managed Security Services, and data provided from Red Hat Insights and Intezer , which contributed to the 2024 report.

An emerging identity crisis

The report data revealed that exploiting valid accounts has become the path of least resistance for cybercriminals, with billions of compromised credentials accessible on the Dark Web.

According to the report, 50% of cyberattacks in the UK involved the exploitation of valid accounts as the initial access vector' and a further 25% of cases involved the exploitation of public-facing applications. Across Europe, X-Force observed a 66% year-on-year rise in attacks caused by the use of valid accounts contributing to Europe's prevalence as the most targeted region of 2023 and the record number of attacks that X-Force has ever reported regionally.

The criminal ecosystem was also quick to adapt to the use of valid accounts by attackers. In 2023, X-Force observed a 266% increase in infostealing malware, which is designed to steal personal and enterprise credentials, personally identifiable information, and banking and crypto wallet information.

This easy entry for attackers is harder to detect, eliciting a costly response from enterprises. According to X-Force, worldwide, major incidents caused by attackers using valid accounts were linked to nearly 200% more complex response measures by security teams than the average incident with defenders needing to distinguish between legitimate and malicious user activity on the network.

In fact, IBM's 2023 Cost of a Data Breach Report found that breaches caused by stolen or compromised credentials required roughly 11 months from detection to recovery the longest response lifecycle among all infection vectors.

Martin Borrett, Technical Director, IBM Security, UK, and Ireland (UKI) commented:

Our findings reveal that identity is increasingly being weaponised against enterprises, exploiting valid accounts and compromising credentials. It also shows us that the biggest security concern for enterprises stems not from novel or cryptic threats, but from well-known and existing ones.

Addressing cybersecurity challenges requires a strategic approach, emphasising the reinforcement of foundational security measures. Streamlining identity management through a unified Identity and Access Management (IAM) provider and strengthening legacy applications with modern security protocols are crucial steps in mitigating risks. Additionally, subjecting your system to rigorous stress tests by skilled offensive security teams proves invaluable in uncovering potential weaknesses. This insight is pivotal for crafting a robust incident response plan that engages all teams, from IT professionals to C-suite executives.

Julian David, CEO of techUK, added:

In an era marked by the growing sophistication of cybercriminals who exploit legitimate accounts to breach business defences, IBM's X-Force Threat Intelligence Index serves as a stark wake-up call.

The report underscores a troubling pattern where half of the cyberattacks in the UK rely on legitimate accounts for initial access, presenting significant challenges to businesses' recovery endeavours. To effectively combat this threat, businesses must adopt a strategic approach, integrating modern security protocols to mitigate risks and strengthen their defences against the ever-evolving landscape of cyber threats.

Further key UK findings include:

Malware made up 30% of security incidents observed in the UK.

Ransomware (30%) and cryptominers (20%) were the top malware types encountered in the country.

The impact of attacks was evenly distributed with extortion, digital currency mining and data leaks each making up 25% of total impacts in the UK.

This marks a shift from 2022, when half the cases X-Force observed in the UK involved extortion (57%) twice the global average followed by data theft (29%).

The professional, business and consumer services industry was the most targeted sector in the UK, representing 39% of cases.

Energy (30%) and finance & insurance (17%) were the second and third most targeted industries in UK, respectively.

Manufacturing was the most targeted industry in Europe, accounting for 28% of cases.

Europe overall experienced the highest percentage of incidents within the energy sector at 43%, as well as finance and insurance at 37%.

Major takeaways from the global report included:

Attacks on critical infrastructure reveal industry faux pas.

Worldwide, an alarming 69.6% of attacks that X-Force responded to were against critical infrastructure organisations, an alarming finding highlighting that cybercriminals are wagering on these high value targets' need for uptime to advance their objectives.

In 84% of attacks on critical sectors globally, compromise could have been mitigated with patching, multi-factor authentication, or least-privilege principals indicating that what the security industry historically described as basic security may be harder to achieve than portrayed.

Exploiting public-facing appl
LINK: https://uk.newsroom.ibm.com/IBM-Report-Cybercriminals-Intensify-Attack...
See more stories from ibm

Europe Stories

04/08/2024

Dalet Appoints Santiago Solanas as CEO to Lead Next Era of Growth and Innovation

Dalet, a leading technology and service provider for media-rich organizations, is excited to announce Santiago Solanas as its new Chief Executive Officer (CEO)....

26/07/2024

Check Out Our Updated Songs of Summer Predictions (Complete With Five New Wild Card Picks)

Last month, Spotify's annual Songs of Summer predictions made their return, ...

26/07/2024

Go for the Gold This Summer With These Sports-Themed Audiobooks and Podcasts

Summer is peak season for some of our favorite sports and events. Whether you're rooting for the home team at the ballpark or cheering for your country as i...

26/07/2024

Congratulations to newly trained specialists at SGL Carbon

Nine talented young professionals completed their vocational training at SGL Carbon in Meitingen from the beginning of June to mid-July, achieving an overall gr...

26/07/2024

Anton/Bauer powers up cinematic production with VCLX LI 1600

It provides multi-voltage output (14.4V, 28V, and 48V) through two XLR4 outputs and one XLR3, offering power to cameras, monitors, and lighting equipment By Je...

26/07/2024

Paramount, Skydance deal faces court challenge

The lawsuit submitted by investor Scott Baker claims the deal would cost Paramount shareholders $1.65 billion By Jenny Priestley Published: July 26, 2024 ...

26/07/2024

True-crime documentary, The Body Next Door to launch on Sky Documentaries and NOW on Sunday, 11 August

True-crime documentary, The Body Next Door to launch on Sky Documentaries and NO...

25/07/2024

Bringing More Audiobooks From Independent Authors to Spotify With Ingram Content Group

At Spotify, we aim to bring great audiobooks to as many listeners as possible, i...

25/07/2024

Optocore and CMI to co-host two-part Fibre Masterclass

events Youre reading: Optocore and CMI to co-host two-part Fibre Masterclass Optocore and their Australian distribution partner CMI Music & Audio are jo...

25/07/2024

College of DuPage Updates Event Communications with Clear-Com Systems

eds3_5_jq(document).ready(function($) { $(#eds_sliderM519).chameleonSlider_2_1({ content_source:......

25/07/2024

OBS, AI and Paris 2024

TVBEurope's sits down with Sotiris Salamouris, chief technology officer at OBS and Intel's EMEA chief technology officer, Jean-Laurent Philippe, to hear...

25/07/2024

Bringing the wow' factor to the sound of Paris 2024

John Schur, president, solutions group at Telos Alliance, explains why sound is just as important as video when covering a major sporting event By Contributor ...

25/07/2024

How will we watch the Olympics in 2032?

From VR headsets to volumetric video, the Video Labs team at InterDigital give us some insight into how we might watch (and produce) the Games of the future By...

25/07/2024

A new era of broadcasting at the Olympic Games

Writing exclusively for TVBEurope, Digital TV Group CTO Alex Buchan details a 5G Broadcast demo by TDF in the run-up to the Games By Contributor Published: J...

25/07/2024

Localisation is our superpower': How WBD Sports is delivering the Olympics to Europe

TVBEurope catches up with WBD Sports Scott Young to hear how the broadcaster is ...

25/07/2024

Opinion: Could this year's Summer of Sport' be the greenest yet?

Matthew Williams-Neale, VP of marketing, Appear, explains how broadcasters efforts are ensuring the excitement of live sports can be enjoyed sustainably, settin...

25/07/2024

Case study: Breathing new life into old masters

How ITV Content Services brought classic films, including Carry on Henry and That Riviera Touch, back to the screen in glorious HD By Contributor Published: ...

25/07/2024

Sky launches The Attention Index', a new report, tracking how people watch and connect in the UK

Sky launches The Attention Index', a new report, tracking how people watch ...

25/07/2024

VEON to release 2Q 2024 trading update on 8 August 2024

25 Jul 2024 VEON to release 2Q 2024 trading update on 8 August 2024 Amsterdam, 25 July 2024 - VEON Ltd. (NASDAQ: VEON, Euronext Amsterdam: VEON), a global digi...

25/07/2024

Transforming Education: Technicolor India and Meghshala Trust Partner to Empower Schools in Bengaluru

As part of our Corporate Social Responsibility (CSR), Technicolor India, in coll...

25/07/2024

2024-06-18

Today Apple announced it will train all Apple Developer Academy students and mentors on technologies and tools that take advantage of artificial intelligence (A...

25/07/2024

2024-07-25

Leagues Cup, the first in-season club tournament in North America across all men's professional sports, begins tomorrow, July 26, and MLS Season Pass will b...

25/07/2024

RT Statement: RT coverage of Olympic Games 2024, Paris

RT has rights to broadcast the 2024 Olympic Games in the Republic of Ireland only. RT is not permitted to broadcast the 2024 Olympic Games in Northern Ireland...

24/07/2024

W commissions brand-new docu-reality series The Young Midwives of Essex

UKTV has commissioned The Young Midwives of Essex (8x60) from Firecracker Films (Stacey Dooley Sleeps Over, Emma Willis: Delivering Babies). This brand-new docu...

24/07/2024

Artists Can Now Start Countdown Pages To Promote Their Upcoming Albums

Building anticipation ahead of a new album release is one of the most important ways for artists to ensure its success. But in today's music landscape, gain...

24/07/2024

IBC 2024: 7 Reasons to Join Calrec at IBC 2024

Join Calrec at IBC 2024 | September 13 -16 | Hall 8 Stand C47 | RAI Amsterdam We're looking forward to meeting up with customers and partners at this year&#...

24/07/2024

Best of Show at IBC2024 nominations open

All award entrants will get a placard at the show for display, with winners receiving a further placard to display their success By TVBEurope Staff Published...

24/07/2024

Technicolor Group: Setting the Stage for 110 Years of Innovation & Creativity

July 24, 2024 Paris, France - Technicolor Group, a pioneer in the cinematic world, proudly celebrates over a century of transforming the film industry through ...

24/07/2024

Inside Scoop | 10 For 10 With Prasanta Maiti, Supervisor Rotoscope

In this edition of Inside Scoop, we are excited to shine a light on Prasanta Maiti, a dedicated member of the Technicolor family for over a decade. Join us as w...

24/07/2024

Nominees announced for the Sky Arts Awards

Nominees announced for the Sky Arts AwardsThe Sky Arts Awards will take place at The Roundhouse on 17 September, broadcast live on Sky Arts and on Freeview in t...

24/07/2024

Comscore To Announce Second Quarter 2024 Financial Results

Comscore To Announce Second Quarter 2024 Financial ResultsRESTON, VA, July 24, 2024 Comscore, Inc. (Nasdaq: SCOR), a trusted partner for planning, transacting...

24/07/2024

Our Narrative Technicolor Group: Setting the Stage for 110 Years of Innovation & Creativity

Technicolor Group, a pioneer in the cinematic world, proudly celebrates over a c...

24/07/2024

AiRAY Hits it Out of the Park at Taipei Dome

This post is also available in: Deutsch (German) Located in the heart of the Taiwanese capital, the new Taipei Dome is an indoor arena designed to accommodat...

24/07/2024

RT welcomes today's announcement by Government of multi-annual public funding for RT

Commenting, Director-General of RT , Kevin Bakhurst said: RT welcomes today&...

23/07/2024

Pete Wicks to front brand new DOG-umentary for U and U&W

UKTV has commissioned brand-new Pete Wicks: For Dogs' Sake (4x60') for free-to-air entertainment channel U&W, and recently rebranded free streaming serv...

23/07/2024

Finding a Balance as AI Advances

Brussels was the location of our third Thomson Talks with Madhav Chinnappa held on 25 June 2024, focused on the specific subject of AI/News & Regulation. Four k...

23/07/2024

Spotify Reports Second Quarter 2024 Earnings

Today, we announced our second quarter 2024 earnings. Led by healthy subscriber gains, improved monetization, and record profitability, Spotify reported Month...

23/07/2024

Spotify rapporterar intkter fr andra kvartalet 2024

Idag publicerar Spotify sina finansiella resultat f r andra kvartalet 2024. Med stark kning av antalet premiumanv ndare, f rb ttrad int ktsgenerering och rekor...

23/07/2024

Clear-Coms Intercom Solutions Transform RAIs Broadcasting Capabilities

Home chevron_right News & Events chevron_right News chevron_right Clear-Coms Intercom Solutions Transform RAIs Broadcasting Capabilities Clear-Coms Inter...

23/07/2024

The grade should flow not steal the show': Colourist Jax Harney reveals her hopes for the FilmLight 2024 Awards

Ahead of this years FilmLight Colour Awards, jury member Jax Harney, founder and...

23/07/2024

BBC: AI will be a growing disrupter in the media sector over the next few years

The BBC said it is running a number of Gen AI innovation pilots that will identify where there is real audience and operational value to be gained By Jenny Pri...

23/07/2024

Dalet Unveils New Flexible Pricing and Deployment Options to Deliver the Best Value for Media Processing with Dalet AmberFin

Dalet, a leading technology and service provider for media-rich organizations, t...

23/07/2024

MPC'S 2024 SHOWREELS A MASTERCLASS IN VISUAL EFFECTS

Our accomplished team at MPC have released a quartet of showstopping showreels highlighting their extraordinary VFX work across the globe. MPC Showreel 2024 Sh...

23/07/2024

Sky News Podcast Electoral Dysfunction announces UK tour

Sky News Podcast Electoral Dysfunction announces UK tourTuesday 23 July 2024 Sky News podcast Electoral Dysfunction has announced it will be going on tour this...

23/07/2024

Paragould Municipal Utilities Leaps Ahead to XGS-PON with Harmonic

SAN JOSE, Calif. - July 23, 2024 - Harmonic (NASDAQ: HLIT) today announced that Paragould Municipal Utilities in Arkansas, has selected Harmonic's industry-...

23/07/2024

Eutelsat validates MAINDATA's SFN Boost for DVB-SIS Single Illumination Satellite compliance

News - 23 July 2024 09:25 Eutelsat validates MAINDATA's SFN Boost for DVB...

23/07/2024

OVER ONE MILLION WATCH ON RT2 AS CLARE OVERCOME CORK IN EPIC ALL-IRELAND HURLING FINAL

AVERAGE AUDIENCE UP OVER 200,000 ON LAST YEAR'S FINAL Clare's thrilling...

23/07/2024

Thales reports its 2024 half-year results

Facebook Twitter LinkedIn Order intake: 10.8 billion, up 26% ( 23% on an organic basis1) Order book: 47 billion, a new record high Sales: 9.5 billion...

22/07/2024

Wheelie Good Portraits mark the new series of World's Most Dangerous Roads

Portraits of Joe Swash, Chris Kamara and Angela Barnes created using scrap car parts Portraits of Joe Swash, Chris Kamara and Angela Barnes made entirely of sc...

22/07/2024

W commissions brand-new docu-reality series The Real Midwives of Essex

UKTV has commissioned The Real Midwives of Essex (8x60) from Firecracker Films (Stacey Dooley Sleeps Over, Emma Willis: Delivering Babies). This brand-new docu-...