Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
No Result
View All Result

Kaspersky Releases 2023 Predictions | TechRepublic

Altszn.com by Altszn.com
January 23, 2023
in Dark Web
0
Kaspersky Releases 2023 Predictions | TechRepublic
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter


A new report from Kaspersky details what their digital forensics and incident response teams predict as the main 2023 threats to corporations and government agencies. Learn more about it.

Warning alert system concept, system hacked on computer network, cybercrime and virus, Malicious software, compromised information, illegal connection, data breach cybersecurity vulnerability
Image: Supatman/Adobe Stock

A new report from Kaspersky details what will be the most challenging threats for corporations and government agencies in 2023.

SEE: Mobile device security policy (TechRepublic Premium)

Jump to:

Data leaks increase

Data leaks affecting both personal and professional data grew in 2022 and will continue into 2023. Huge data leaks impacting millions of users occurred in 2022, such as the WhatsApp leak and more recent Twitter leak exposing more than 200 million users’ information.

Those data leaks are often sold privately in cybercriminals’ underground marketplaces, with price depending on several parameters such as the number of users, the types of users targeted, and whether the passwords are encrypted or clear text.

For example, a database containing 105 million Indonesian citizens’ records was sold in September 2022 for $5,000 on the dark web. The database seemingly came from the General Elections Commission of Indonesia and contained full names, places and dates of birth, and national identification numbers.

Corporate emails impacted

Corporate email addresses should never be used on any non-professional service, yet people tend to use it to register for third party web services. This greatly increases the attack surface for the corporate entity, as an attacker may collect that information. Should the employee use the same password on the service as his corporate email account, attackers may obtain a foothold inside the entity’s infrastructure. In addition, there is the single-sign on risk of compromising access across several entities.

Must-read security coverage

“With many applications using SSO for authentication, it is crucial to supervise rights given to applications and websites to avoid any malicious ones having full rights on email accounts,” Marc Nebout, cyberthreat analyst at Sekoia.io, told TechRepublic. “It’s also important to educate users on good practices such as having a different password for all their accounts.”

Nebout continued by noting that companies shouldn’t just educate their employees.

“Companies should also enforce 2FA on all applications where the option is available,” he said. “Supervision of cloud applications should be done, and if any suspicious behavior is detected, such as a connection from a different country or at an unusual time, passwords should be reset.”

Using corporate email addresses on multiple third parties services also increases the risk of phishing and success of social engineering schemes.

The ransomware threat

Kaspersky observed that threat actors insist on the publication of their stolen data from companies. In each of the first ten months of 2021, they saw between 200 to 300 posts per month (Figure A) from ransomware actors showing their successful compromises. By the end of 2021 and the first half of 2022, that number grew to more than 500 per month.

Figure A

Image: TechRepublic. The LockBit ransomware threat actor exposing hundreds of supposed compromises.

However, in previous PR attempts, the LockBit group has published supposedly successful corporate compromises which were later found to be fake.

“There are cases of ransomware actors making misleading attack claims,” explained Livia Tibirna and Pierre Antoine Duchange, threat analysts at Sekoia.io. “We observe this on a regular basis, although it is not necessarily common to all ransomware groups.”

There are several possible reasons for these misleading claims:

  • Improper analyses of the stolen data by the threat actors, whether intended or not.
  • Attempting to monetize an intrusion, even if there was no encryption.
  • Attempting to damage the reputation of an organization.
  • Fabricating a higher level of intrusion activity by the ransomware organization.
  • Seeking attention for their ransomware organization.

More cloud, more attacks

Cloud and virtualization technologies will be increasingly hit by attackers. While businesses often transfer parts of their data and operations to the cloud, they also often use partner services which may not be well configured or contain vulnerabilities.

Companies may not be aware of cloud infrastructure intrusions, as some cloud providers do not log important system events. This makes it interesting for attackers and makes proper investigation and incident response more difficult, according to Kaspersky researchers.

Malware-as-a-service model keeps growing

Malware-as-a-service models have gained popularity through the last years amongst cybercriminals and will keep increasing.

“Cybercriminals try to optimize their work efforts by scaling their operations and outsourcing certain activities, just as a legitimate business would,” Kaspersky said.

This model also lowers the barrier of entry for wannabe cybercriminals, as they can just rent efficient services to operate without needing too much cybersecurity knowledge themselves.

The increased use of this model may lead to less unique attacks due to different attackers using the same tools. These tools may subsequently increase in complexity to avoid being correctly analyzed by automated security systems.

Disclosure: I work for Trend Micro, but the views expressed in this article are mine.



Read More: news.google.com

Tags: dark webDarknetKasperskypredictionsReleasesTechRepublic
ADVERTISEMENT

Recent

Danger signs for Bitcoin as retail abandons it to institutions: Sky Wee

Danger signs for Bitcoin as retail abandons it to institutions: Sky Wee

May 14, 2025
Crypto VC deals drop in Q1, but funding more than doubles: PitchBook

Crypto VC deals drop in Q1, but funding more than doubles: PitchBook

May 14, 2025
Ether Nears $2.7K, Dogecoin Zooms 9% to Keep Cheery Mood Ongoing

Ether Nears $2.7K, Dogecoin Zooms 9% to Keep Cheery Mood Ongoing

May 14, 2025

Categories

  • Bitcoin (4,880)
  • Blockchain (11,447)
  • Crypto (9,390)
  • Dark Web (551)
  • DeFi (8,414)
  • Ethereum (4,926)
  • Metaverse (7,576)
  • Monero (290)
  • NFT (1,504)
  • Solana (5,054)
  • Web3 (20,763)
  • Zcash (509)

Category

Select Category

    Advertise

    Advertise your site, company or product to millions of web3, NFT and cryptocurrency enthusiasts. Learn more

    Useful Links

    Advertise
    DMCA
    Contact Us
    Privacy Policy
    Shipping & Returns
    Terms of Use

    Resources

    Exchanges
    Changelly
    Web3 Jobs

    Recent News

    Danger signs for Bitcoin as retail abandons it to institutions: Sky Wee

    Danger signs for Bitcoin as retail abandons it to institutions: Sky Wee

    May 14, 2025
    Crypto VC deals drop in Q1, but funding more than doubles: PitchBook

    Crypto VC deals drop in Q1, but funding more than doubles: PitchBook

    May 14, 2025

    © 2022 Altszn.com. All Rights Reserved.

    No Result
    View All Result
    • Home
      • Home – Layout 1
      • Home – Layout 2
      • Home – Layout 3

    © Altszn.com. All Rights Reserved.

    • bitcoinBitcoin (BTC) $ 103,482.00
    • ethereumEthereum (ETH) $ 2,592.70
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.56
    • bnbBNB (BNB) $ 652.89
    • solanaSolana (SOL) $ 177.26
    • usd-coinUSDC (USDC) $ 0.999973
    • dogecoinDogecoin (DOGE) $ 0.233000
    • cardanoCardano (ADA) $ 0.807182
    • tronTRON (TRX) $ 0.275444
    • staked-etherLido Staked Ether (STETH) $ 2,589.25
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,350.00
    • suiSui (SUI) $ 3.90
    • chainlinkChainlink (LINK) $ 16.97
    • wrapped-stethWrapped stETH (WSTETH) $ 3,117.38
    • avalanche-2Avalanche (AVAX) $ 25.41
    • stellarStellar (XLM) $ 0.306259
    • shiba-inuShiba Inu (SHIB) $ 0.000016
    • hedera-hashgraphHedera (HBAR) $ 0.207012
    • hyperliquidHyperliquid (HYPE) $ 25.63
    • the-open-networkToncoin (TON) $ 3.27
    • leo-tokenLEO Token (LEO) $ 8.81
    • bitcoin-cashBitcoin Cash (BCH) $ 405.01
    • pi-networkPi Network (PI) $ 1.08
    • polkadotPolkadot (DOT) $ 5.03
    • litecoinLitecoin (LTC) $ 100.05
    • wethWETH (WETH) $ 2,594.01
    • usdsUSDS (USDS) $ 0.999845
    • moneroMonero (XMR) $ 347.80
    • wrapped-eethWrapped eETH (WEETH) $ 2,769.11
    • pepePepe (PEPE) $ 0.000014
    • bitget-tokenBitget Token (BGB) $ 4.73
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,471.00
    • whitebitWhiteBIT Coin (WBT) $ 30.28
    • uniswapUniswap (UNI) $ 6.65
    • bittensorBittensor (TAO) $ 452.02
    • nearNEAR Protocol (NEAR) $ 3.09
    • aptosAptos (APT) $ 5.82
    • daiDai (DAI) $ 0.999841
    • aaveAave (AAVE) $ 228.10
    • ondo-financeOndo (ONDO) $ 1.05
    • okbOKB (OKB) $ 54.12
    • kaspaKaspa (KAS) $ 0.121965
    • jito-staked-solJito Staked SOL (JITOSOL) $ 212.71
    • internet-computerInternet Computer (ICP) $ 5.72
    • ethereum-classicEthereum Classic (ETC) $ 19.90
    • crypto-com-chainCronos (CRO) $ 0.102092
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • bitcoinBitcoin (BTC) $ 103,482.00
    • ethereumEthereum (ETH) $ 2,592.70
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.56
    • bnbBNB (BNB) $ 652.89
    • solanaSolana (SOL) $ 177.26
    • usd-coinUSDC (USDC) $ 0.999973
    • dogecoinDogecoin (DOGE) $ 0.233000
    • cardanoCardano (ADA) $ 0.807182
    • tronTRON (TRX) $ 0.275444
    • staked-etherLido Staked Ether (STETH) $ 2,589.25
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,350.00
    • suiSui (SUI) $ 3.90
    • chainlinkChainlink (LINK) $ 16.97
    • wrapped-stethWrapped stETH (WSTETH) $ 3,117.38
    • avalanche-2Avalanche (AVAX) $ 25.41
    • stellarStellar (XLM) $ 0.306259
    • shiba-inuShiba Inu (SHIB) $ 0.000016
    • hedera-hashgraphHedera (HBAR) $ 0.207012
    • hyperliquidHyperliquid (HYPE) $ 25.63
    • the-open-networkToncoin (TON) $ 3.27
    • leo-tokenLEO Token (LEO) $ 8.81
    • bitcoin-cashBitcoin Cash (BCH) $ 405.01
    • pi-networkPi Network (PI) $ 1.08
    • polkadotPolkadot (DOT) $ 5.03
    • litecoinLitecoin (LTC) $ 100.05
    • wethWETH (WETH) $ 2,594.01
    • usdsUSDS (USDS) $ 0.999845
    • moneroMonero (XMR) $ 347.80
    • wrapped-eethWrapped eETH (WEETH) $ 2,769.11
    • pepePepe (PEPE) $ 0.000014
    • bitget-tokenBitget Token (BGB) $ 4.73
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,471.00
    • whitebitWhiteBIT Coin (WBT) $ 30.28
    • uniswapUniswap (UNI) $ 6.65
    • bittensorBittensor (TAO) $ 452.02
    • nearNEAR Protocol (NEAR) $ 3.09
    • aptosAptos (APT) $ 5.82
    • daiDai (DAI) $ 0.999841
    • aaveAave (AAVE) $ 228.10
    • ondo-financeOndo (ONDO) $ 1.05
    • okbOKB (OKB) $ 54.12
    • kaspaKaspa (KAS) $ 0.121965
    • jito-staked-solJito Staked SOL (JITOSOL) $ 212.71
    • internet-computerInternet Computer (ICP) $ 5.72
    • ethereum-classicEthereum Classic (ETC) $ 19.90
    • crypto-com-chainCronos (CRO) $ 0.102092
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00