Sony Pixel Power calrec Sony

IBM Report: Cybercriminals Intensify Attacks on User Identities in the UK, Complicating Recovery Efforts for Enterprises

21/02/2024

LONDON, UK, Feb 21, 2024 IBM today released the 2024 X-Force Threat Intelligence Index highlighting an emerging global crisis as cybercriminals double down on exploiting user identities to compromise enterprises.

According to IBM X-Force, IBM Consulting's security services arm, cybercriminals last year generated more opportunities to log in to corporate networks through valid accounts, instead of hacking into them making this tactic a preferred weapon of choice for threat actors.

The X-Force Threat Intelligence Index is based on insights and observations from monitoring over 150 billion security events per day in more than 130 countries. In addition, data is gathered and analysed from multiple sources within IBM, including IBM X-Force Threat Intelligence, Incident Response, X-Force Red, IBM Managed Security Services, and data provided from Red Hat Insights and Intezer , which contributed to the 2024 report.

An emerging identity crisis

The report data revealed that exploiting valid accounts has become the path of least resistance for cybercriminals, with billions of compromised credentials accessible on the Dark Web.

According to the report, 50% of cyberattacks in the UK involved the exploitation of valid accounts as the initial access vector' and a further 25% of cases involved the exploitation of public-facing applications. Across Europe, X-Force observed a 66% year-on-year rise in attacks caused by the use of valid accounts contributing to Europe's prevalence as the most targeted region of 2023 and the record number of attacks that X-Force has ever reported regionally.

The criminal ecosystem was also quick to adapt to the use of valid accounts by attackers. In 2023, X-Force observed a 266% increase in infostealing malware, which is designed to steal personal and enterprise credentials, personally identifiable information, and banking and crypto wallet information.

This easy entry for attackers is harder to detect, eliciting a costly response from enterprises. According to X-Force, worldwide, major incidents caused by attackers using valid accounts were linked to nearly 200% more complex response measures by security teams than the average incident with defenders needing to distinguish between legitimate and malicious user activity on the network.

In fact, IBM's 2023 Cost of a Data Breach Report found that breaches caused by stolen or compromised credentials required roughly 11 months from detection to recovery the longest response lifecycle among all infection vectors.

Martin Borrett, Technical Director, IBM Security, UK, and Ireland (UKI) commented:

Our findings reveal that identity is increasingly being weaponised against enterprises, exploiting valid accounts and compromising credentials. It also shows us that the biggest security concern for enterprises stems not from novel or cryptic threats, but from well-known and existing ones.

Addressing cybersecurity challenges requires a strategic approach, emphasising the reinforcement of foundational security measures. Streamlining identity management through a unified Identity and Access Management (IAM) provider and strengthening legacy applications with modern security protocols are crucial steps in mitigating risks. Additionally, subjecting your system to rigorous stress tests by skilled offensive security teams proves invaluable in uncovering potential weaknesses. This insight is pivotal for crafting a robust incident response plan that engages all teams, from IT professionals to C-suite executives.

Julian David, CEO of techUK, added:

In an era marked by the growing sophistication of cybercriminals who exploit legitimate accounts to breach business defences, IBM's X-Force Threat Intelligence Index serves as a stark wake-up call.

The report underscores a troubling pattern where half of the cyberattacks in the UK rely on legitimate accounts for initial access, presenting significant challenges to businesses' recovery endeavours. To effectively combat this threat, businesses must adopt a strategic approach, integrating modern security protocols to mitigate risks and strengthen their defences against the ever-evolving landscape of cyber threats.

Further key UK findings include:

Malware made up 30% of security incidents observed in the UK.

Ransomware (30%) and cryptominers (20%) were the top malware types encountered in the country.

The impact of attacks was evenly distributed with extortion, digital currency mining and data leaks each making up 25% of total impacts in the UK.

This marks a shift from 2022, when half the cases X-Force observed in the UK involved extortion (57%) twice the global average followed by data theft (29%).

The professional, business and consumer services industry was the most targeted sector in the UK, representing 39% of cases.

Energy (30%) and finance & insurance (17%) were the second and third most targeted industries in UK, respectively.

Manufacturing was the most targeted industry in Europe, accounting for 28% of cases.

Europe overall experienced the highest percentage of incidents within the energy sector at 43%, as well as finance and insurance at 37%.

Major takeaways from the global report included:

Attacks on critical infrastructure reveal industry faux pas.

Worldwide, an alarming 69.6% of attacks that X-Force responded to were against critical infrastructure organisations, an alarming finding highlighting that cybercriminals are wagering on these high value targets' need for uptime to advance their objectives.

In 84% of attacks on critical sectors globally, compromise could have been mitigated with patching, multi-factor authentication, or least-privilege principals indicating that what the security industry historically described as basic security may be harder to achieve than portrayed.

Exploiting public-facing appl
LINK: https://uk.newsroom.ibm.com/IBM-Report-Cybercriminals-Intensify-Attack...
See more stories from ibm

Most recent headlines

04/08/2024

Dalet Appoints Santiago Solanas as CEO to Lead Next Era of Growth and Innovation

Dalet, a leading technology and service provider for media-rich organizations, is excited to announce Santiago Solanas as its new Chief Executive Officer (CEO)....

03/06/2024

Dalet and Veritone Reach Agreement to Distribute, Transact and Monetize Media Archives

Dalet, a leading technology and service provider for media-rich organizations, a...

12/05/2024

Berklee Honors Ledisi, Q-Tip, and Gilberto Santa Rosa at Commencement

Berklee Honors Ledisi, Q-Tip, and Gilberto Santa Rosa at Commencement This years honorary doctorate recipients were recognized for their profound influence as...

11/05/2024

Survey: Fubo Boasts High Levels of Audience Attention

NEW YORK FuboTV has released a new study from TVision, which studies TV and CTV viewer engagement, that found ads on Fubo get higher viewer attention levels tha...

11/05/2024

The Weekly TV Tech Product News Roundup

Missed any of our product news this week? Here is our new weekly wrap-up with all the product news we published in our newsletter between May 6 and May 10. The ...

11/05/2024

Enghouse Completes Acquisition of SeaChange

MARKHAM, Ontario Enghouse Systems Limited has announced it has successfully completed its acquisition of substantially all of the assets of SeaChange Internatio...

11/05/2024

Unreal for video Rendering for After Effects

Unreal for video Rendering for After Effects Graham Quince May 10, 2024 0 Comments Welcome to my series on learning Unreal Engine for video producti...

11/05/2024

CEO David Zaslav On How Warner Bros. Discovery Is Using AI

Warner Bros. Discovery is using artificial intelligence to improve ad targeting and help viewers find content, but not to create programming, CEO David Zaslav s...

11/05/2024

Allen Media Group Reaches Expanded Carriage Deal With Hawaiian Telcom

Byron Allen's Allen Media Group said it reached an expanded carriage agreement with Hawaiian Telcom....

11/05/2024

Good Morning Football' To Air on Fox Television Stations

Good Morning Football, an NFL-focused panel talk show that has aired on NFL Network since 2016, is coming to broadcast syndication with the Fox Television Stati...

11/05/2024

Andrea Robinson Joins WCMH Columbus as Weekend Anchor

Andrea Robinson starts on the weekend newscasts at WCMH Columbus, Ohio, Saturday, May 11, anchoring alongside Matthew Herchik and meteorologist Bryan Still. NBC...

11/05/2024

Streaming? No Thanks, Says Nexstar CEO Perry Sook

Perry Sook, founder and CEO of broadcast giant Nexstar Media Group, isn't a fan of streaming....

11/05/2024

Law & Order: Organized Crime' Moves to Peacock

Law & Order: Organized Crime is moving from NBC to Peacock for season five. The Dick Wolf drama follows the detectives of the Organized Crime Control Bureau as ...

11/05/2024

Harry Pappas, Station Group Founder, Has Died

Harry Pappas, Pappas Telecasting Companies founder/president/CEO, died April 24 at age 78. He was surrounded by his family when he passed. He had battled illnes...

11/05/2024

KXAS Dallas-Fort Worth, WTVF Nashville Pick Up Peabody Awards

KXAS Dallas-Fort Worth and WTVF Nashville have won 2024 Peabody Awards. Given out by the University of Georgia's Grady College of Journalism and Mass Commun...

11/05/2024

AMC Networks Earnings Drop To $48.5 Million in Q1

AMC Networks reported that its first-quarter earnings fell by half, with advertising revenue dropping 13%....

10/05/2024

The Greatest Night in Pop Proves That We're Most Powerful as a Collective

Lionel Richie (Photo by George Pimentel/Shutterstock for Sundance)...

10/05/2024

Give Me the Backstory: Get to Know Arun Bhattarai and Dorottya Zurb, the Filmmakers Behind Agent of Happiness

By Lucy Spicer One of the most exciting things about the Sundance Film Festival...

10/05/2024

SBS announces Voyager lead singer Danny Estrin as Australia's spokesperson for the 2024 Eurovision Song Contest jury

SBS announces Voyager lead singer Danny Estrin as Australia's spokesperson f...

10/05/2024

UK Ministry of Defence Selects L3Harris T4 Robots to Assist with Explosive Ordnance Disposal Missions

The T4's best-in-class manipulator arm reach and lift strength, patented sta...

10/05/2024

A True Industry Partner for the Western Australian Police Force

L3Harris, together with partner Radlink Communications, is delivering communications terminals for the Western Australian Police Force (WA Police Force) leverag...

10/05/2024

Survey: TV Declines as Preferred Source of Local News

A major new survey and study of local news reveals a number of unsettling trends for broadcasters. Key findings from the Pew Research Center survey include a de...

10/05/2024

LOBO Launches Standalone Live-Action Division With Impressive Roster of Directors

LOBO Launches Standalone Live-Action Division With Impressive Roster of Director...

10/05/2024

Limecraft Announces New Platform Update and Preview of MI at MPTS 2024

Limecraft Announces New Platform Update and Preview of MI at MPTS 2024 Brie Clayton May 10, 2024 0 Comments Accompanying image shows the Limecraft Act...

10/05/2024

Berklee Announces 2024 Songs for Social Change Contest Winners

Berklee Announces 2024 Songs for Social Change Contest Winners Student songwriters shine in the annual contest that recognizes music with a socially conscious...

10/05/2024

Meet Graduates from Berklees Class of 2024

Meet Graduates from Berklees Class of 2024 Members of this years graduating class reflect on their proudest moments at Berklee and look ahead to whats next. ...

10/05/2024

Zille Media aims to enhance media accessibility with Audio Description Editor

The company has worked with Motion Picture Solutions (MPS) on the development of the solution, which sits in the cloud-native Zille Platform By Jenny Priestley...

10/05/2024

Meet the head of entertainment

From The Tube and Top of the Pops to head of entertainment at 1185 Films, Chris Cowey tells TVBEurope about his journey through the ranks during a time of chang...

10/05/2024

Dimension bolsters senior team with four new appointments

Dimension said its new hires signal its investment in creative new production techniques for feature films, episodic series, music videos and more By Matthew C...

10/05/2024

Allen Media Group, Hawaiian Telcom Sign Multi-Year Distribution Deal

LOS ANGELES Byron Allen's Allen Media Group (AMG) has announced a multi-year comprehensive portfolio agreement with Hawaiian Telcom for continued carriage o...

10/05/2024

LG Ad Solutions to Adopt Unified ID 2.0

MOUNTAIN VIEW, Calif. LG Ad Solutions has announced that it has started to integrate the Unified ID 2.0 solution (UID2) into its platform....

10/05/2024

CBS Sports Expands Streaming Coverage of National Women's Soccer League

CBS Sports has expanded its partnership with the National Women's Soccer League by adding multiplatform coverage of 22 additional regular season matches. Th...

10/05/2024

Sinclair Prebooks $77M in Political Ads

Sinclair's Q1 2024 financial report once again highlighted the growing importance of political advertising for broadcasters at a time when core TV advertisi...

10/05/2024

Nexstar Reports Record Q1 Revenue

IRVING, TEXAS Nexstar reported record first quarter net revenue of $1.28 billion, up 2.1%, thanks to higher distribution revenue. But advertising revenue at the...

10/05/2024

Tegna Names David Loving President & GM of KHOU and KTBU in Houston

TYSONS, Va. Tegna Inc. has named David Loving president and general manager at KHOU, the CBS affiliate, and KTBU, Tegna's stations serving Houston, Texas, e...

10/05/2024

New FILM LOOK CREATOR in DaVinci Resolve 19 will put LUT creators out of business!

New FILM LOOK CREATOR in DaVinci Resolve 19 will put LUT creators out of busines...

10/05/2024

Spotted at CBC

Capitol Broadcasting employees frequently walk past photo shoots in progress when leaving work in the evenings. The WRAL Gardens and the striking architecture o...

10/05/2024

Berklee and Audio Engineering Society to Host Symposium on AI in Music

Berklee and Audio Engineering Society to Host Symposium on AI in Music The inaugural AES International Symposium on AI and the Musician will highlight excitin...

10/05/2024

LG Ad Solutions Integrating Trade Desk's Unified ID 2.0

LG Ad Solutions, the advertising arm of smart-TV maker LG Electronics, said it has begun to integrate the Unified ID 2.0 identity system developed by The Trade ...

10/05/2024

NBC Affiliates To Get Cut-Ins During Olympic Coverage To Promote Local News

NBC and its affiliates have worked out an arrangement that will give affiliates 90-second cut-ins during daytime network coverage of the Paris Olympic games....

10/05/2024

NBC Sends Leslie Jones to Paris for Offbeat Olympics Coverage

Comedian Leslie Jones is joining NBCUniversal's Olympics coverage this summer as what NBCU calls chief super fan commentator. She had a similar role at NB...

10/05/2024

Brooke Shields Stars in Netflix Film Mother of the Bride'

Brooke Shields stars in the rom-com Mother of the Bride, which premieres on Netflix May 9. Mark Waters directs the film, about a destination wedding in Thailand...

10/05/2024

Owen Sejake portrays General Moeti in Showmax's Empini'

Owen Sejake portrays General Moeti in Showmax's Empini'Veteran actor Owen Sejake portrays General Moeti in Showmax's upcoming series, Empini' ...

10/05/2024

Nomzamo Mbatha discusses working with Bruce Willis in Assassin'

Nomzamo Mbatha discusses working with Bruce Willis in Assassin'Actress Nomzamo Mbatha opens up about her role as Alexa in sci-fi thriller Assassin' al...

10/05/2024

Tonight on Scandal: Dintle stumbles upon a dangerous gift

Tonight on Scandal: Dintle stumbles upon a dangerous giftDon't miss Friday, 10 May's riveting episode of South African soapie Scandal! on e.tv on DStv c...

10/05/2024

Tonight on Skeem Saam: Mr Kgomo considers rehiring a former employer despite their rocky history

Tonight on Skeem Saam: Mr. Kgomo considers rehiring a former employer despite th...

10/05/2024

Skeem Saam: Friday's episode, 10 May 2024 [video]

Skeem Saam: Friday's episode, 10 May 2024 [video]Missed an episode of Skeem Saam? No problem! Watch the latest episode of your favourite South African soapi...

10/05/2024

Thuraya network coverage restored in the Indo-China region as recovery measures underway

Abu Dhabi, 10 May 2024: Further to our previous communications about the unexpec...

10/05/2024

Thuraya network coverage restored in the Indo-China region as recovery measures underway

Abu Dhabi, 10 May, 2024 : Abu Dhabi, 10 May 2024: Further to our previous commu...

10/05/2024

Tonight on House of Zwide: Mampho is hurt after catching Ona and Soka chilling in his car together

Tonight on House of Zwide: Mampho is hurt after catching Ona and Soka chilling i...