The Global Corporate Digital Security Landscape

The 2023 Digital Universe Report produced by Obrela examines the security landscape for the entire corporate ecosystem, covering industry specific attacks as well as threat specific attacks. 

The report delivers sectoral, regional analysis and detailed descriptions of the most common forms of attack, followed by a list of the most common APT groups and their methods.  

Suspicious internal activity (35%), malware (18%) and security risks/policy violation cases were the most prevalent forms of attack in 2023, while banking, finance, the services sector and education faced the majority of attacks.

The most noticeable trends in 2023 are “Suspicious Internal Activity”, “Malware,” and security risks/ violation policies” while geopolitical tensions are manifesting in cyberspace, with Obrela reporting an uptick in state-sponsored cyber activities.

State-sponsored Advanced Persistent Threat (APT) groups are conducting espionage, data theft and disruptive attacks more frequently, often targeting government entities, critical infrastructure and sectors deemed strategic to national interests.  

Supply chain vulnerabilities are also more of a focal point for attackers seeking to compromise multiple targets through a single-entry point. Usually this is when attackers can gain access to the networks of numerous organisations at once. The ripple effect from these attacks emphasises the interconnectedness of cybersecurity risks across industries.
 
Obrela notes that cyber criminals are increasingly targeting less-protected third-party partners with privileged access to their primary target. Attackers persistently seek to infiltrate organisations by abusing the trust inherent in vendor-client connections.
 
As more and more organisations migrate to cloud services, the latest Obrela report notes attackers are shifting their focus. Misconfigurations, weak credentials, and insufficient access controls in cloud environments are being exploited to gain unauthorised access and exfiltrate sensitive data.

Ensuring visibility and security in complex, multi-cloud environments remain a challenge for many organisations.  

Another rising trend is the use of Artificial Intelligence (AI) and Machine Learning (ML) technologies in cyber-attacks. AI-driven phishing attacks, deepfakes, and automated vulnerability discovery are examples of where this technology is bolstering cyberattacks.   

The expanding footprint of the Internet of Things (IoT) and operational technology (OT) devices in industrial and consumer contexts also presents new attack surfaces.

These devices require robust security features, to avoid vulnerability by attacks that can lead to data breaches, espionage and even physical damage, which in some industries like energy and manufacturing this is crucial.  

Despite advances in security technology, human factors remain a critical vulnerability.  

Phishing and social engineering attacks, for example, continue to evolve, exploiting psychological manipulation and sophisticated impersonation techniques to trick individuals into divulging sensitive information or accidentally installing malware.  

Despite the ever-evolving advancements in cyber security defences, basic attack methods such as phishing, malware and brute force attacks continue to be highly effective. These methods exploit human errors and vulnerabilities in systems that persist over time, making them reliable tools for attackers.  

Advanced cyber-attacks often require significant resources, including time, expertise, and money. Attackers conducting simpler attacks can achieve similar goals with a much lower investment, making these techniques more appealing, especially for targeting small to medium-sized organisations with less sophisticated defences.

The VP MSS at Obrela Dr. George Papamargaritis commented: “To combat these evolving threats, we are seeing organisations increasingly adopting a multi-layered approach to cyber security, including advanced threat detection and response tools, cyber security awareness training, robust data backup and recovery plans, and a zero-trust architecture. Collaboration and information sharing between industries and governmental bodies are also crucial for staying ahead of emerging threats.”

Dr. Papamagaritis also revealed that in its threat detection and response work throughout 2023, Obrela collected some 14.5 PBs of logs, through monitoring over 500K devices/ endpoints.  Of 1.6M triaged alerts, 31.5Kcyberattack incidents were detected and foiled.

George added: “These figures underline what we are up against. As we move further into 2024, staying informed of the latest threats and continuously adapting cybersecurity strategies is evermore essential for protecting against this increasingly dynamic and sophisticated attack landscape.”

Obrela’s proprietary data reveals that the banking and finance sectors faced the most 'reconnaissance' attacks (a 37% increase compared to the same time last year) followed by education (13%). The financial sector also suffered one of the highest levels of malware attacks (a 26% year-on-year increase), while email attacks - such as fraud and phishing - affecting banking and finance most, are increasing by 43% compared to last year.

To download the full Obrela Digital Universe Report, click here: Digital Universe Report 2023 - Obrela

Image: Unpslash

You Might Also Read: 

Combatting Foreign Interference:

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« The US Has A New Global Cyber Security Strategy
The Ransomware Threat Landscape Is Diversifying »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Information Risk Management (IRM)

Information Risk Management (IRM)

IRM is an international consultancy dedicated to helping organisations solve key business issues. We provide strategic cyber security advice across a wide range of sectors.

SecureWorks

SecureWorks

SecureWorks provides intelligence-driven security solutions for organizations to prevent, detect, rapidly respond and predict cyberattacks.

Cyber Security For Critical Manufacturing (ManuSec)

Cyber Security For Critical Manufacturing (ManuSec)

Cyber Security For Critical Manufacturing (Manusec) is a global series of summits focusing on Cyber Security for Critical Manufacturing Sectors.

Redstor

Redstor

Redstor's complete data management helps you discover, manage and control your data from a single control centre, unifying backup and recovery, disaster recovery, archiving and search and insight.

Bellvista Capital

Bellvista Capital

Bellvista Capital connects entrepreneurs with capital and unmatched business expertise in the technology areas of Cloud Computing, Cyber Security and Data Analytics.

iZOOlogic

iZOOlogic

iZOOlogic protects hundreds of the world’s leading brands, across banking, finance and government from cybercrime. We provide strong cyber defence solutions to protect client digital assets.

DisruptOps

DisruptOps

Built for today’s cloud-scale enterprises, DisruptOps’ Cloud Detection and Response platform automates assessment and remediation procedures of critical cloud security issues.

NorthRow

NorthRow

NorthRow provides digital transformation compliance solutions to help businesses manage regulatory and financial crime risks.

Airiam

Airiam

Airiam provides cybersecurity, managed IT, consulting, incident response, and digital transformation services so you can focus on what matters most.

Technivorus Technology

Technivorus Technology

Technivorus is a deep-tech firm delivering customized Cybersecurity, Digital Marketing, Web & App Development, and multifarious IT services for businesses across the globe.

ID R&D

ID R&D

ID R&D is an award-winning provider of AI-based facial liveness, document liveness, and voice biometrics.

Moonlock

Moonlock

Cybersecurity tech for humans. At Moonlock, we make software that seamlessly protects you and has your back as you live your life.

ARC Risk and Compliance

ARC Risk and Compliance

ARC Risk and Compliance is a consulting company comprised of a team of AML Specialists completely focused on anti-money laundering compliance and the technologies used to support compliance programs.

Rebellion Defense

Rebellion Defense

Rebellion Defense is a technology company developing advanced software to ensure mission-critical organizations stay ahead of emerging threats.

Complete Cyber

Complete Cyber

Complete Cyber provide professional cybersecurity services and products to help secure your infrastructure, systems and data.

Palindrome Technologies

Palindrome Technologies

Palindrome Technologies help clients defend against cyberattacks across all attack surfaces, including hardware, software, network-to-cloud, people, and emerging technologies.