<br />
<b>Deprecated</b>:  Function create_function() is deprecated in <b>/home/hidefide/public_html/blog/wp-content/plugins/wr-pagebuilder/core/core.php</b> on line <b>127</b><br />
{"id":726,"date":"2014-01-26T17:09:57","date_gmt":"2014-01-26T17:09:57","guid":{"rendered":"https:\/\/icaruspressblog.wordpress.com\/?p=726"},"modified":"2019-04-17T10:58:30","modified_gmt":"2019-04-17T10:58:30","slug":"cisco-2014-report-new-malware-schemes-and-trust-are-key-themes","status":"publish","type":"post","link":"https:\/\/hidefideas.com\/blog\/2014\/01\/26\/cisco-2014-report-new-malware-schemes-and-trust-are-key-themes\/","title":{"rendered":"Cisco Report: New Malware Schemes and Trust are Key Themes"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-728 alignright\" src=\"http:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/17091.jpg\" alt=\"1709\" width=\"288\" height=\"329\" srcset=\"https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/17091.jpg 414w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/17091-262x300.jpg 262w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/17091-131x150.jpg 131w\" sizes=\"auto, (max-width: 288px) 100vw, 288px\" \/>What\u2019s your plan of attack for 2014? Have you entered the year fully armed to deal with the threats that invade the periphery of your network each day? Do you have contingency plans in place to react to the attacks that evade your defenses, usually due to malware or malicious links that surf past your DMZ like it wasn\u2019t even there? Are your users properly trained and confident in their ability to recognize what a threat looks like?<\/p>\n<p>A new year is largely a symbolic thing, but it should be a reminder and a wake-up call for all of us, to think about security, threats, and response. As the year begins anew, reports and studies <!--more-->start to appear, and they\u2019re invaluable tools in the threat assessment arena, if for no other reason than to remind us to keep our guard up. The venerable folks at Cisco Systems are well-known for their annual security report, and for many of us, getting a look at the report is like Christmas all over again.<\/p>\n<p>Last week, Cisco released its <a href=\"http:\/\/www.cisco.com\/web\/offers\/lp\/2014-annual-security-report\/index.html\">2014 Annual Security Report<\/a>, and if you haven\u2019t gotten it yet, please go out and do so. It reads like an ancient tome presaging the future, with an unsettling look at what happened in 2013 and a helpful look into what we might expect in the coming year.<\/p>\n<p>There are a several key themes in Cisco\u2019s report, mainly new malware schemes, the exploitation of trust, and campaigns that target specific organizations and exploit their vulnerabilities. \u201cMalicious actors &nbsp;continue to innovate ways to exploit public trust to effect harmful consequences,\u201d the report warns, and from those words we can take away the most important theme for 2014: do not let your guard down.<\/p>\n<h1>Key Findings<\/h1>\n<p>Cisco reports three main findings resulting from their research:<\/p>\n<h2>Attacks against infrastructure are targeting significant resources across the Internet<\/h2>\n<ul>\n<li><strong>Malicious exploits <\/strong>are gaining access to web hosting servers, nameservers, and data centers. This suggests the forming of \u00fcberbots that seek high-reputation and resource-rich assets<\/li>\n<li><strong>Buffer errors<\/strong> are a leading threat<\/li>\n<li><strong>Malware<\/strong> encounters are shifting toward electronics manufacturing, agriculture, and mining industries<\/li>\n<\/ul>\n<h2>Malicious actors are using trusted applications to exploit gaps in perimeter security<\/h2>\n<ul>\n<li><strong>Spam<\/strong> continues its downward trend, although the proportion of <strong>maliciously intended spam<\/strong> remains constant<\/li>\n<li><strong>Java<\/strong> comprises 91 percent of web exploits<\/li>\n<li><strong>\u201cWatering hole\u201d<\/strong> attacks are targeting specific industry-related websites to deliver malware<\/li>\n<\/ul>\n<h2>Investigations of multinational companies show evidence of internal compromise.<\/h2>\n<ul>\n<li><strong>Indicators of compromise<\/strong> suggest network penetrations may be <strong>undetected over long periods<\/strong><\/li>\n<li><strong>Threat alerts<\/strong> grew 14 percent year over year; new alerts (not updated alerts) <strong>are on the rise<\/strong><\/li>\n<li><strong>Ninety-nine percent of all mobile malware<\/strong> in 2013 targeted <strong>Android devices<\/strong><\/li>\n<\/ul>\n<p>The report also highlights cloud computing, recognizing that businesses need to adopt the cloud if they\u2019re to remain competitive; but security gaps in the existing technology are quickly being exploited by cybercriminals, who are \u201cworking faster to exploit the gaps that nonintegrated point solutions simply cannot address. And they are succeeding because they have the resources to be more nimble.\u201d<\/p>\n<h2>Trust no-one<\/h2>\n<p>At the heart of the threat posed by modern cybercriminals is trust, and while it\u2019s by no means a new theme, Cisco warns that we need to be perpetually vigilant. \u201cThere should be an assumption by all users, perhaps, that nothing in the cyber world can or should be trusted. And security professionals may do their organizations a service by not trusting any network traffic.\u201d<\/p>\n<p>The report points out that trust, generally, suffered a setback in 2013, due in large part to Edward Snowden\u2019s whistleblowing. The revelations released by Snowden have helped to uncover \u201cpotential risks of both unintentional vulnerabilities and intentional \u201cbackdoors\u201d in technology products\u2014and whether vendors are doing enough to prevent these weaknesses and protect end users.\u201d<\/p>\n<h2>Spam is not going away<\/h2>\n<p>We\u2019ve all seen the reports: spam is on a <a href=\"http:\/\/www.allspammedup.com\/2013\/11\/spam-email-down-phishing-way-way-up-kaspersky\/\">decline<\/a>, due in large part to the increased attack vector adopted by cybercriminals. Rather than blast email campaigns in a shotgun approach, the crooks are using a <a href=\"http:\/\/www.allspammedup.com\/2013\/10\/spampaigning-not-your-fathers-spam\/\">campaign-type approach<\/a>, utilizing social media and SMS spam in addition to email spam. They\u2019re also being more specific in their attacks, opting to identify the target and tailor their campaigns. Sometimes, email spam is used as a <a href=\"http:\/\/www.allspammedup.com\/2013\/07\/dress-warmly-spam-blizzards-are-in-the-forecast\/\">tool to obfuscate an attack<\/a> in progress.<\/p>\n<p>And malware is becoming far more dangerous. Cisco points out the Boston Marathon bombing in April as an example of how spammers take advantage of global events and users ripe for the picking. \u201cSpammers prey on people\u2019s desire for more information in the wake of a major event. When spammers give online users what they want, it\u2019s much easier to trick them into a desired action, such as clicking an infected link.\u201d<\/p>\n<p>There\u2019s much more in the Cisco report, and it\u2019s highly recommended reading. If nothing else, it helps us to understand a little of what\u2019s going on in the minds of the cybercriminals, and maybe that will help us get a leg-up on them in the coming year.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>What\u2019s your plan of attack for 2014? Have you entered the year fully armed to deal with the threats that invade the periphery of your&hellip; <\/p>\n","protected":false},"author":3,"featured_media":728,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13,14],"tags":[11,9,10,8,7],"class_list":["post-726","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","category-spam","tag-allspammedup","tag-bot","tag-botnet","tag-malware","tag-spam","jsn-master"],"_links":{"self":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/726","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/comments?post=726"}],"version-history":[{"count":2,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/726\/revisions"}],"predecessor-version":[{"id":1710,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/726\/revisions\/1710"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media\/728"}],"wp:attachment":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media?parent=726"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/categories?post=726"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/tags?post=726"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}