The 18th installment of the DBIR surveyed 22,052 total cyber attacks logged by Verizon's internal threat research team, over half of which (12,195) involved confirmed data breaches. Credential abuse continues in the lead at 22%. Exploitation of vulnerabilities is now up to 20%, followed by phishing at 16%.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The world of cybersecurity — which includes both tactics by hackers and how we combat increasingly complex data breaches and attacks — is constantly evolving. Learn more about top security and risk management trends in 2024, including cyberwarfare, the zero trust model and more.
Business communication tools are indispensable in today’s distributed working environments, both for internal communication between team members and for external communication with customers. But their use has attracted the attention of attackers who successfully exploit their security weaknesses and tailor their attacks to specific communication platforms.
A seemingly very serious cyber attack has temporarily put major money transfer service MoneyGram out of business for at least several days. Details of the attack remain thin, but the company's services remained unavailable nearly a week after first going offline on September 20.
UK has launched a vulnerability scanning program that will monitor all of the country's internet devices for potential unpatched issues, in a bid to both bolster national security and help individual organizations protect themselves.
A credential stuffing attack on biotechnology firm 23andMe has resulted in a data theft incident exposing millions of genetic profiles and personal data records.
A new survey reveals deepening frustration with legacy IT vendors such as Microsoft, as supply chain attacks and ransomware attacks fed by vulnerabilities in their software become the "new normal.”
Microsoft warned that hackers are exploiting the Zerologon vulnerability to wage cyber attacks. CISA ordered federal agencies to patch or disconnect their systems from the federal network.
Traditional VDI solutions can be complex and expensive, sacrificing application user experience and performance. By replacing your existing VDI solution with Browser Isolation, you can ensure fast and secure application access for all your users on any device.
A cyber attack on one of the oldest newspapers in the United States has damaged editorial services and advertising to such a degree that it is "unclear" when normal operations will be restored.










