DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Trend Micro Blocks 160 billion Incidents in 2023

DigitalCIO Bureau by DigitalCIO Bureau
March 14, 2024
in Tech News
0
Sophos Named A Leader In 2023 Gartner Report
75
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Trend Micro has revealed a 10% annual increase in total threats blocked in 2023 and warned that attackers are using more advanced methods to target fewer victims with the potential for higher financial gains.

Jon Clay, VP of threat intelligence at Trend: “We’re blocking more threats than ever before for our customers. But understand that adversaries showed a variety and sophistication of TTPs in their attacks, especially in defense evasion. As our report demonstrates, network defenders must continue to proactively manage risk across the entire attack surface today. Understanding the strategies favored by our adversaries is the foundation of effective defense.”

Trend Micro blocked 161 billion threats overall in 2023, compared to 82 billion threats five years ago. In 2023, threats blocked by email and web reputation dropped annually by 47% and 2%, respectively. Threats blocked by Trend’s Mobile Application Reputation Service (-2%), Smart Home Network (-12%), and Internet of Things Reputation Service (-64%) also declined. However, there was a 35% annual increase in threats blocked under Trend’s File Reputation Service (FRS).

This could indicate that threat actors are choosing their targets more carefully. Instead of launching attacks on a wider range of users and relying on victims clicking on malicious links in websites and emails, they’re targeting a smaller number of higher-profile victims with more sophisticated attacks. This might enable them to bypass early detection layers like network and email filters—which could explain the surge in malicious file detections at endpoints.

Some other trends observed in the report include:

  • APT actors showed a variety and sophistication of their attacks against victims, especially around defense evasion tactics.
  • Email malware detection surged by 349% year-on-year (YoY), while malicious and phishing URL detections declined by 27% YoY – again highlighting the trend for more using malicious attachments in their attacks.
  • Business email compromise (BEC) detections increased 16% YoY.
  • Ransomware detections dropped 14% YoY. However, once again, the increase in FRS detections may indicate that threat actors are getting better at evading primary detection via techniques such as Living-Off-The-Land Binaries and Scripts (LOLBINs/LOLBAs), Bring Your Own Vulnerable Driver (BYOVD), zero-day exploits, and AV termination.
  • Linux and MacOS ransomware attacks were 8% of the overall ransomware detections.
  • There was an increase in remote encryption, intermittent encryption, EDR bypass using unmonitored virtual machines (VMs), and multi-ransomware attacks where victims were hit more than once. Adversaries have recognized EDR as a formidable defense but are now utilizing bypass tactics to get around this technology.
  • Thailand and the US were the top two ransomware victim countries, with banking as the most affected sector.
  • The top MITRE ATT&CK detections were defense evasion, command & control, initial access, persistence, and impact
  • Risky cloud app access was the top risk event detected by Trend’s attack surface risk management (ASRM), recorded almost 83 billion times.
  • Trend’s Zero Day Initiative discovered and responsibly disclosed 1914 zero-days, up 12% YoY. These included 111 Adobe Acrobat and Reader bugs. Adobe was the number one vendor for vulnerability reporting, and PDFs were the number one spam attachment type.
  • Windows applications were the top 3 vulnerabilities exploited through detections from our virtual patches.
  • Mimikatz (used in data harvesting) and Cobalt Strike (used in Command & Control) continued to be the preferred legitimate tools to abuse to aid criminal activity.

 

In light of these findings, Trend advises network defenders to:

  • Work with trusted security vendors with a cybersecurity platform approach to ensure resources are not only secured but also continuously monitored for new vulnerabilities.
  • Prioritize SOC efficiency by monitoring cloud applications carefully as they become more closely integrated into day-to-day operations.
  • Ensure all the latest patches/upgrades are applied to operating systems and applications.
  • Utilize comprehensive security protocols to safeguard against vulnerabilities, tighten configuration settings, control application access, and enhance account and device security. Look to detect ransomware attacks earlier in the attack lifecycle by shifting left in defenses during initial access, lateral movement, or data exfiltration stages.
Tags: Trend Micro
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

DGCX partners with TCS to advance and upgrade derivatives market infrastructure

by DigitalCIO Bureau
September 15, 2026
0
DGCX partners with TCS to advance and upgrade derivatives market infrastructure

This partnership will enable the Dubai Gold & Commodities Exchange (DGCX) to build a scalable foundation to accelerate growth, drive product innovation, and expand into newer asset classes...

Read moreDetails

MotoGP and Accenture Join Forces to Reinvent the Direct-to-Fan Sports Streaming Experience

by DigitalCIO Bureau
September 11, 2026
0
MotoGP and Accenture Join Forces to Reinvent the Direct-to-Fan Sports Streaming Experience

MotoGP Group has selected Accenture to help power the next generation of its direct-to-fan OTT (over-the-top, internet-delivered) offering. Through this collaboration, MotoGP will harness Accenture’s technology capabilities and...

Read moreDetails

Wipro and CrowdStrike Launch CISO Command Center to Transform Enterprise Cybersecurity Operations

by DigitalCIO Bureau
September 11, 2026
0
Wipro and CrowdStrike Launch CISO Command Center to Transform Enterprise Cybersecurity Operations

Wipro Limited announced the launch of its Chief Information Security Officer (CISO) Command Center, in collaboration with CrowdStrike (NASDAQ: CRWD). The Command Center rewires enterprise security for frontier AI-accelerated risks to...

Read moreDetails

LTM Collaborates with IBM and Red Hat on Lightwell to Advance AI-Driven Open-Source Software Remediation

by DigitalCIO Bureau
September 10, 2026
0
LTM Collaborates with IBM and Red Hat on Lightwell to Advance AI-Driven Open-Source Software Remediation

LTM announced that it has collaborated with IBM and Red Hat on Lightwell to help enterprises safeguard the open-source software supply chain through AI-driven vulnerability remediation. As AI accelerates the discovery of...

Read moreDetails

HCLTech launches Advanced Semiconductor Lab with Rs. 185 crore investment

by DigitalCIO Bureau
September 10, 2026
0
HCLTech launches Advanced Semiconductor Lab with Rs. 185 crore investment

Bengaluru facility strengthens India’s position in the global chip ecosystem, set to drive semiconductor innovation HCLTech announced the launch of its state-of-the-art Advanced Semiconductor Lab in Bengaluru. Set up...

Read moreDetails
Next Post
LRN Appoints New Leadership For Asia-Pacific Region

Schneider Electric Appoints Arvind Kakru To Lead Industrial Automation Business for Greater India Zone

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Google acquires enterprise software firm CloudSimple

November 19, 2019
Microsoft Collaborates with NVIDIA

Noventiq And AWS sign strategic collaboration agreement

July 3, 2024

IceWarp Announces Partnership with Kalaam Telecom

October 4, 2019

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Accenture Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Collaboration CrowdStrike Cybersecurity Digital Transformation E-books Enterprises Fortinet Gartner Generative AI Google Cloud HCLTech IBM India Infographics Infosys Internet of Things (IoT) Kaspersky Microsoft NTT DATA NVIDIA Palo Alto Networks Panel Discussion Partnership ServiceNow Sophos Strategic Partnership Tata Consultancy Services TCS Tenable Veeam Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?