Security News > 2023 > March > Inadequate patches and advisories increase cyber risk

Inadequate patches and advisories increase cyber risk
2023-03-09 04:30

Trend Micro's overall threat detections increased by 55%, and the number of blocked malicious files surged by 242% due to indiscriminate targeting by threat actors who went after both consumers and organizations in all sectors.

The top three MITRE ATT&CK techniques show us that threat actors are gaining initial access through remote services, then expanding their footprint within the environment through credential dumping to utilize valid accounts.

An 86% increase in backdoor malware detections reveals threat actors trying to maintain their presence inside networks for a future attack.

These backdoors primarily targeted web server platform vulnerabilities.

A record number of Zero Day Initiative advisories for the third year in a row is the result of a rapidly expanding corporate attack surface and researcher investment in automated analysis tools, which are finding more bugs.

The ZDI observed an increase in failed patches and confusing advisories, adding extra time and money to corporate remediation efforts and exposing organizations to unnecessary cyber risk.


News URL

https://www.helpnetsecurity.com/2023/03/09/inadequate-patches-advisories-cyber-risk/