Sony Pixel Power calrec Sony

IBM Study: Number of Cyber Attacks on Retailers Drops by Half; Criminals Still Stole Over 6 Million Customer Records in 04

05/01/2015

ARMONK, N.Y. - 05 Jan 2015: According to findings released today by IBM (NYSE: IBM), despite an 50 percent decline in the number of cyber attacks against U.S. retailers, the number of records stolen from them remains at near record highs. IBM Security researchers report that in 2014, cyber attackers still managed to steal more than 61 million records from retailers despite the decline in attacks, demonstrating cyber criminal's increasing sophistication and efficiency.

Contrary to what most would expect, the majority of cyber attackers scaled back their hacking efforts around Black Friday and Cyber Monday in 2014 rather than capitalize from the massive spike in retail spending. The 2014 Retail Research and Intelligence Report and the Holiday Trends: Black Friday/Cyber Monday Research and Intelligence Report were created by IBM's Managed Security Services team of analysts, who monitor more than 20 billion security incidents every day.

According to the research, cyber attackers are becoming increasingly more sophisticated, using new techniques to obtain massive amounts of confidential records with increased efficiency. Since 2012, the number of breaches reported by retailers dropped by 50 percent. Despite this decline, the perpetrators were able to impact a far greater number of victims with each incident.

The threat from organized cyber crime rings remains the largest security challenge for retailers, said Kris Lovejoy, General Manager, IBM Security Services. It is imperative that security leaders and CISOs in particular, use their growing influence to ensure they have the right people, processes and technology in place to take on these growing threats.

Black Friday and Cyber Monday

Identified as the two biggest shopping days of the year by IBM's Digital Analytics Benchmark, cyber attackers reduced their activity across all industries on Black Friday and Cyber Monday, rather than taking action. When looking at the two week period (Nov 24 - Dec 5) around these days, the data shows the following activity across all industries:

The number of daily cyber attacks was 3,043, nearly one third less than the 4,200 average over this period in 2013.

From 2013 and 2014, the number of breaches dropped by more than 50 percent for Black Friday and Cyber Monday.

In 2013, there were more than 20 breaches disclosed including several large breaches that caused the number of records compromised to rise drastically, reaching close to 4 million.

Over the same period in 2014, 10 breaches were disclosed which resulted in just over 72,000 records getting compromised

Despite this cyber threat slow down, the retail and wholesale industries emerged as the top industry target for attackers in 2014, a potential result of the wave of high profile incidents impacting name brand retailers. In the two years prior, manufacturing ranked first amongst the top five attacked industries while the retail and wholesale industry ranked last. This past year, the primary mode of attack was unauthorized access via Secure Shell Brute Force attacks, which surpassed malicious code, the top choice in 2012 and 2013.

Top Breaches Overshadow Growing Trend

Attackers secured more than 61 million records in 2014, down from almost 73 million in 2013. However, when the data was narrowed down to only incidents involving less than 10 million records (which excludes the top two attacks over this timeframe, Target Corporation and The Home Depot), the data shows a different story--the number of retail records compromised in 2014 increased by more than 43 percent over 2013.

Sophisticated Methods of Attack

While there has been a rise in the number of Point of Sale (POS) malware attacks, the vast majority of incidents targeting the retail sector involved Command Injection or SQL injection. The complexity of SQL deployments and the lack of data validation performed by security administrators made retail databases a primary target. Over 2014, this Command Injection method was used in nearly 6,000 attacks against retailers. Additional methods include Shellshock as well as POS malware such as BlackPOS, Dexter, vSkimmer, Alina and Citadel.

The data for the number of records compromised and breaches disclosed was analyzed by IBM security experts and was made publically available by Privacy Rights Clearinghouse. The remaining data came from IBM's Managed Security services team.

About IBM Security

IBM's security platform provides the security intelligence to help organizations holistically protect their people, data, applications and infrastructure. IBM offers solutions for identity and access management, security information and event management, database security, application development, risk management, endpoint management, next-generation intrusion protection and more. IBM operates one of the world's broadest security research and development, and delivery organizations.

For more information, please visit www.ibm.com/security, follow @IBMSecurity on Twitter or visit the IBM Security Intelligence blog.
LINK: http://www-03.ibm.com/press/uk/en/pressrelease/45992.wss...
See more stories from ibm

Most recent headlines

04/12/2025

ToolsOnAir Blackmagic Design HyperDeck Event Presets for just:in mac pro 2025 & just:in linux

ToolsOnAir Blackmagic Design HyperDeck Event Presets for just:in mac pro 2025 & ...

04/12/2025

ToolsOnAir AJA Ki Pro Event Presets for just:in mac pro 2025 & just:in linux

ToolsOnAir AJA Ki Pro Event Presets for just:in mac pro 2025 & just:in linux More Details:Starting with version 5.5, both just:in mac pro and just:in linux sol...

04/12/2025

Young Journalist finalists looking to the future

Wangu Kanuri from Kenya and Godwin Asediba from Ghana are two of this years finalists for Thomsons Young Journalist of the Year Award. The pair are runners-up i...

04/12/2025

SVG Sit-Down: ProximaVision's Claudio Lisman on Why Tethered Drones Could Be a Game-Changer for Live Sports Production

SVG Sit-Down: ProximaVision's Claudio Lisman on Why Tethered Drones Could Be...

04/12/2025

SVG Campus Shot Callers: Imry Halevi, Senior Associate Director of Athletics, Content & Strategic Communications, Harvard University

SVG Campus Shot Callers: Imry Halevi, Senior Associate Director of Athletics, Co...

04/12/2025

Platinum White Paper: LiveU Lightweight Sports Production: A Step Change in Sports Storytelling

Platinum White Paper: LiveU Lightweight Sports Production: A Step Change in Spor...

04/12/2025

London to Riyadh: DAZN Brings the Boxing Glamour to New Production Levels for Benavidez v Yarde in Saudi Arabia

London to Riyadh: DAZN brings the boxing glamour to new production levels for Be...

04/12/2025

Analysis: Paramount Bets on the Battering Ram' with Champions League Play

Analysis: Paramount bets on the battering ram' with Champions League play By Callum McCarthy, Editor-at-Large Tuesday, December 2, 2025 - 10:12 Print ...

04/12/2025

Space City Home Network Launches SCHN+ DTC App for Astros and Rockets

Space City Home Network Launches SCHN DTC App for Astros and RocketsThe Rockets and Astros were previously the lone NBA and MLB teams without a DTC appBy Jason...

04/12/2025

SVG Summit 2025 Preview: Content Workflows Workshop Spotlights Evolution of Sports Media Supply Chain

SVG Summit 2025 Preview: Content Workflows Workshop Spotlights Evolution of Spor...

04/12/2025

New Sponsor Spotlight: Geotech's Patrick Wambold On the Unreal Engine Revolution Taking Place in Sports Broadcasting

New Sponsor Spotlight: Geotech's Patrick Wambold On the Unreal Engine Revolu...

04/12/2025

Curt Gowdy Jr. - Master Storyteller, Nationally and Regionally

Curt Gowdy Jr. - Master Storyteller, Nationally and RegionallyBy Jason Dachman, Editorial Director, U.S. Thursday, December 4, 2025 - 1:52 pm Print This Sto...

04/12/2025

Cutting Through Rocks ( ) Shows the Difference That One Person Can Make for Change

(L-R) Rebecca Lichtenfeld, Mohammadreza Eyni, Sara Khaki, and Judith Helfand att...

04/12/2025

SBS launches Future Frames initiative to support emerging First Nations video editing talent

SBS launches Future Frames initiative to support emerging First Nations video ed...

04/12/2025

L3Harris Supports NOAA's Million Mile Journey to Safeguard Earth from Solar Storms

Coronal mass ejections caused by eruptions on the surface of the sun can have fa...

04/12/2025

Gracenote launches new CTV ad platform making program-level targeting a reality

Gracenote Content Connect enables media ecosystem to precisely align ad campaigns and programming based on rich content signals NEW YORK - December 4, 2025 - N...

04/12/2025

Lightware in 2025 - Celebrating a successful year of inno...

Lightware, a global specialist in AV connectivity, is looking back on a year defined by new advancements, strong collaboration and continued growth. Across the ...

04/12/2025

Riedel and Haivision Join Forces to Advance Wireless Vide...

Riedel Communications today announced a new partnership with Haivision, a leading global provider of mission-critical, real-time video networking and visual col...

04/12/2025

Harmonic and Normann Engineering Achieve Major Milestone...

Harmonic (NASDAQ: HLIT) and Normann Engineering today announced a major milestone in their strategic collaboration, celebrating 20 successful broadband deployme...

04/12/2025

Foundry introduces Multi-Paint support for Mari 7-5 devel...

Creative software developer Foundry today announced Mari 7.5, the latest iteration of its artist-friendly paint toolset that can handle large, detailed assets w...

04/12/2025

Professional Wireless Systems PWS Manages Over 1000 Wirel...

Professional Wireless Systems (PWS), a leading provider of wireless audio solutions and RF management, was on site at Dreamforce 2025 in San Francisco providing...

04/12/2025

Lionsgate and Debmar-Mercury partner with LTN to power di...

LTN's purpose-built IP video network brings all-movie diginet to over 100 stations and streaming platforms in just three months while eliminating satellite ...

04/12/2025

Bitmovin and ThinkAnalytics Partner to Deliver Intelligen...

Bitmovin, the leading provider of video streaming solutions, today announced a strategic partnership with ThinkAnalytics, the global leader in AI-powered data a...

04/12/2025

The HELM and Keslow Camera join forces to launch Keslow L...

The HELM, a global expert in cinematic live broadcast and high-end production workflows, has signed a partnership agreement with Keslow Camera, one of North Ame...

04/12/2025

LiveU Pushes Creative Boundaries at ISE 2026 Powering Ric...

At ISE 2026, LiveU will showcase its expanded IP-video EcoSystem, enabling broadcasters, sports, production companies and pro-AV professionals to share their st...

04/12/2025

Broadcasters See More Potential in Programmatic Advertising

Since the beginning of commercial television, advertising has been a key part of broadcasting. Over the years, the technology for inserting ads into programs ha...

04/12/2025

HBO Max Plans Significant Expansion of European Footprint

MUNICH and MILAN Warner Bros. Discovery said HBO Max is expanding into Germany, Italy, Austria, Switzerland, Luxembourg and Liechtenstein on Jan. 13, 2026, and ...

04/12/2025

AudioShake Launches Features for Removing Copyrighted Music

SAN FRANCISCO AudioShake has launched its first streaming-capable software development kits (SDKs) designed specifically for real-time music detection and copyr...

04/12/2025

TNDV Wraps REMI Production of a Fishing Tournament in Mexico

NASHVILLE The mobile and REMI production company TNDV has announced that it headed south into Mexico to live-produce the three-day 2025 Zane Grey Championship P...

04/12/2025

HPA Executive Director Phil Kubel Steps Down

BURBANK, Calif. Hollywood Professionals Association Executive Director Phil Kubel has stepped down from the organization to pursue new opportunities, the group ...

04/12/2025

FCC Closes More Than 2,000 Inactive Proceedings

WASHINGTON The Federal Communications Commission said it has closed 2,048 inactive proceedings, the largest number of dormant dockets ever terminated in a singl...

04/12/2025

AV1 Open Video Codec Now Powers 30% of Netflix Streaming

A new tech blog from Netflix highlights the importance of the AV1 open video codec, which now powers about 30% of the platform's streaming and discusses a v...

04/12/2025

Sky set to co-produce the story behind the worlds most famous whale

Thursday 4 December 2025 Sky set to co-produce the story behind the world's most famous whale Image Credit - Free Willy Keiko Foundation Sky will co-pro...

04/12/2025

Sky Original documentary Murder at the Post Office to air on Sky and streaming service NOW

Thursday 4 December 2025 Sky Original documentary Murder at the Post Office to ...

04/12/2025

Step Inside the World of 'Troll 2': VFX Breakdown Featuring Director Roar Uthaug

Back to All News Step Inside the World of Troll 2: VFX Breakdown Featuring Dire...

04/12/2025

85% of Media Companies Plan Archiving Overhaul as Legacy Systems Struggle

OBJECT MATRIX OverviewObject Matrix OM Cloud Quattro SWARMOverviewSwarmSingle Node Swarm Ngenea Pixstor Swarm Support Object Matrix Support Pixstor & N...

04/12/2025

FOX Advertising Announces Plans for 2026 Upfront Presentation

FOX Advertising Announces Plans for 2026 Upfront Presentation Annual Presentation for Advertisers to Take Place Monday, May 11 at New Location, the Historic N...

04/12/2025

Robots' Holiday Wishes Come True: NVIDIA Jetson Platform Offers High-Performance Edge AI at Festive Prices

Developers, researchers, hobbyists and students can take a byte out of holiday s...

04/12/2025

Hyundai renew its sponsorship of Dancing with the Stars

The ninth series of Dancing with the Stars returns to screens in early 2026 and will be proudly sponsored by Hyundai Filling our Sunday evenings with glitz an...

04/12/2025

Game the Halls: GeForce NOW Brings Holiday Cheer With 30 New Games in the Cloud

GeForce NOW is decking the digital halls with 30 new games to keep spirits high all month long. Join the fun with Hogwarts Legacy, the LEGO Harry Potter Collec...

04/12/2025

December 03, 2025

Scientists find cancer weak spot in backup DNA repair system New findings from Scripps Research reveal how certain tumors survive DNA damage and point to a stra...

03/12/2025

ToolsOnAir Composition Builder 2025 Boilerplate

ToolsOnAir Composition Builder 2025 Boilerplate More Details: The Composition Builder 2025 application for macOS enables TV stations and Live Event broadcast...

03/12/2025

ToolsOnAr just:live pro 2025 Boilerplate

ToolsOnAr just:live pro 2025 Boilerplate More Details: just:live pro 2025 is a Single Channel Live Production Playout solution for video and static or real-t...

03/12/2025

ToolsOnAr just:play pro 2025 Boilerplate

ToolsOnAr just:play pro 2025 Boilerplate More Details: just:play pro 2025 is a Single Channel automated 24/7 Master Control playout solution with SD, HD and ...

03/12/2025

ToolsOnAr live:cut 2025 Boilerplate

ToolsOnAr live:cut 2025 Boilerplate More Details: live:cut is an option to just:in mac pro 2025 and enables multicamera production workflows for up to 16 cam...

03/12/2025

ToolsOnAir Just In Mac Lite NDI 2025 Boilerplate

ToolsOnAir Just In Mac Lite NDI 2025 Boilerplate More Details: The Just In Mac Lite NDI application is a streamlined media capture solution designed specific...

03/12/2025

ToolsOnAir Just In Mac Lite 2025 Boilerplate

ToolsOnAir Just In Mac Lite 2025 Boilerplate More Details: The Just In Mac Lite application is a streamlined media capture solution designed specifically for...

03/12/2025

ToolsOnAir just:in mac pro 2025 Boilerplate

ToolsOnAir just:in mac pro 2025 Boilerplate More Details: just:in mac pro is a macOS-based client-server multichannel capture solution to record SDI, HDMI, N...