DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Kaspersky’s projections for 2024’s Advanced Threats Landscape

DigitalCIO Bureau by DigitalCIO Bureau
November 20, 2023
in Tech News
0
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Kaspersky Global Research and Analyses Team (GReAT) experts offer insights and projections for 2024 in the Kaspersky Security Bulletin, with a focus on the evolution of Advanced Persistent Threats (APT).

Kaspersky researchers predict APT actors will introduce new exploits on mobile, wearables, and smart devices and use them to form botnets, refine supply chain attack methods, and utilize AI for more effective spear-phishing. These advancements are anticipated to intensify politically motivated attacks and cybercrime.

AI-powered impersonation, the rise of creative exploits for mobile, and new botnets

Emerging AI tools will streamline spear-phishing message production, even enabling the mimicry of specific individuals. Attackers may devise creative automation methods by gathering online data and feeding it to LLMs to craft letters in the style of a person connected to the victim.

“Operation Triangulation” marks a groundbreaking year for mobile exploits, potentially inspiring more research into APTs attacking mobile, wearables, and smart devices. We will likely witness threat actors broadening their surveillance efforts, targeting various consumer devices through vulnerabilities and “silent” exploit delivery methods, including zero-click attacks through messengers, one-click attacks via SMS or messaging apps, and network traffic interception. Protection of personal and corporate devices has become increasingly vital.

The exploitation of vulnerabilities in commonly used software and appliances is yet another point where we should be vigilant. The discovery of high and critical severity vulnerabilities sometimes receives limited research and delayed fixes, potentially paving the way for new, large-scale, and stealthy botnets capable of targeted attacks.

Growth in cyberattacks by state-sponsored actors and hacktivism as a new normal

State-sponsored cyberattack numbers also have the potential to surge in the year ahead, amid increasing geopolitical tensions. These attacks will likely threaten data theft or encryption, IT infrastructure destruction, long-term espionage, and cyber-sabotage.

Another notable trend is hacktivism, which has become more common as part of geopolitical conflicts. Geopolitical tensions indicate a likely increase in hacktivist activity, both destructive and aimed at spreading false information, leading to unnecessary investigations and subsequent alert fatigue of SOC analysts and cybersecurity researchers.

Other advanced threat predictions for 2024 include:

  • Supply chain attacks as a service: operators’ bulk-buying access

Supply chain attacks targeting smaller firms to breach major ones: the Okta breaches in 2022–2023 highlight the threat’s scale. Motives of such attacks may range from financial gain to espionage. 2024 might witness new developments in dark web access market activities related to supply chains, enabling more efficient and large-scale attacks.

  • Emergence of more groups offering hack-for-hire services

Hack-for-hire groups are on the rise, providing data theft services to clients ranging from private investigators to business rivals. This trend is expected to grow in the coming year.

  • Kernel rootkits are hot again

Despite modern security measures like Kernel Mode Code Signing, PatchGuard, HVCI (Hypervisor-Protected Code Integrity), kernel-level code execution barriers are being bypassed by APTs and cybercrime groups. Windows kernel attacks are on the rise, enabled by WHCP abuses, and the underground market for EV certificates and stolen code signing certificates is growing. Threat actors are increasingly leveraging BYOVD (Bring Your Own Vulnerable Driver) in their tactics.

  • Managed File Transfer (MFT) systems used for advanced attacks

Managed File Transfer (MFT) systems face escalating cyber threats, exemplified by 2023 breaches of MOVEit and GoAnywhere. This trend is poised to escalate, with cyber adversaries eyeing financial gains and operational disruptions. The intricate MFT architecture, integrated into broader networks, harbors security weaknesses. Organizations should implement robust cybersecurity measures, including Data Loss Prevention and encryption, and foster cybersecurity awareness to fortify MFT systems against evolving threats.

“In 2023, the notable surge in the availability of AI tools didn’t elude the attention of advanced malicious actors engaged in extensive and highly sophisticated campaigns. However, we anticipate that upcoming trends go beyond AI implications, including new methods for conducting supply chain attacks, the emergence of hack-for-hire services, novel exploits for consumer devices, and more. Our goal is to provide defenders with advanced threat intelligence that stays ahead of the latest threat developments, enhancing their capacity to fend off cyberattacks more effectively”, says to Igor Kuznetsov, Director, Global Research and Analysis Team (GReAT) at Kaspersky.

The APT predictions have been developed thanks to Kaspersky’s threat intelligence services used around the world.

Tags: Kaspersky
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

TCS Unveils New Business Unit to Support Enterprises in Building AI-Native Global Capability Centers

by DigitalCIO Bureau
June 10, 2026
0
TCS Unveils New Business Unit to Support Enterprises in Building AI-Native Global Capability Centers

Tata Consultancy Services (TCS) has announced the launch of its Global Value & Innovation Centres (GVIC) business unit, aimed at helping enterprises build AI-native Global Capability Centres (GCCs)...

Read moreDetails

Meta Collaborates with Reliance to Build an AI-Powered Data Center in India

by DigitalCIO Bureau
June 10, 2026
0
Meta Collaborates with Reliance to Build an AI-Powered Data Center in India

Meta and Reliance Industries have announced a major expansion of their strategic partnership through an agreement to develop an AI-enabled data center in India. The facility will be...

Read moreDetails

CSAI Foundation Unveils RiskRubric V2 as a Major Step Forward in Securing the Agentic Control Plane

by DigitalCIO Bureau
June 9, 2026
0
CSAI Foundation Unveils RiskRubric V2 as a Major Step Forward in Securing the Agentic Control Plane

Deloitte Italy, PointGuardAI, and Tumeryk partner with CSA to evolve the reference framework for assessing the security of AI systems Cloud Security Alliance (CSA) announced the upcoming launch...

Read moreDetails

Honeywell Introduces Upgraded Industrial Software Offering Real-Time Worksite Safety Visibility

by DigitalCIO Bureau
June 8, 2026
0
Honeywell Introduces Upgraded Industrial Software Offering Real-Time Worksite Safety Visibility

Honeywell has introduced new enhancements to its Safety Suite 2.0 software platform, delivering broader visibility into fleets of portable gas detection devices used by safety leader across refineries,...

Read moreDetails

IBM and Google Cloud Forge Strategic Alliance to Expand AI Through Human Expertise and AI Driven Delivery

by DigitalCIO Bureau
June 8, 2026
0
IBM and Google Cloud Forge Strategic Alliance to Expand AI Through Human Expertise and AI Driven Delivery

IBM and Google Cloud have introduced a new Google Cloud Practice aimed at helping organizations accelerate AI adoption in production and modernize core systems. This initiative brings together...

Read moreDetails
Next Post
Palo Alto Announces Free Unit 42 Incident Response Retainer To Support Qualified Customers’ Cybersecurity

Palo Alto Announces Free Unit 42 Incident Response Retainer To Support Qualified Customers’ Cybersecurity

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

OurCrowd AI Fund to Collaborate with NVIDIA Inception

NTT: Clear AI strategy leads to better financial results

December 12, 2025
Tata Communications Launches AI Driven Voice AI Platform To Transform Customer Experience

Tata Communications Launches AI Driven Voice AI Platform To Transform Customer Experience

October 9, 2025

Samsung Unveils Next-Generation RF Chipsets

February 22, 2019

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Accenture Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation E-books Fortinet Gartner Generative AI Google Cloud IBM India Infographics Infosys Internet of Things (IoT) Kaspersky Microsoft NTT DATA NVIDIA Palo Alto Networks Panel Discussion Salesforce Sophos Strategic Partnership Tata Consultancy Services TCS Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?