Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Operational Security

// // //
8/9/2018
09:35 AM
Scott Ferguson
Scott Ferguson
News Analysis-Security Now

146 Billion Records in Danger of Being Stolen, Report Finds

Between 2018 and 2023, 146 billion records are in danger of being stolen, according to new analysis by Juniper Research.

By the end of this year, approximately 12 billion records will be stolen or compromised through data breaches and other types of cybercrime. That number is then expected to jump to 33 billion records per year by 2023, according to the results of a survey conducted by Juniper Research.

Overall, a total of 146 billion records worldwide are in danger of being stolen or compromised during the next five years, according to the research company.

The survey, "Cybercrime & the Internet of Threats 2018," finds that many of the usual suspects are expected to drive the anticipated levels of data theft, including ransomware, such as WannaCry, as well as cryptojacking and malvertising, which is becoming increasingly disruptive. (See Sophisticated Malvertising Campaign Involves 10,000 WordPress Sites.)

The Juniper numbers reflect other recent reports that find the number of breaches, especially in specific US markets, are on the rise. (See More Data Breaches in Store for US Retail Industry.)

(Source: Pixabay)\r\n\r\n
(Source: Pixabay)\r\n\r\n

Additionally, Juniper researchers find that much of the theft is being driven by EternalBlue exploits, where threat actors don't have to actually install malicious programs, but instead co-opt industry-standard software such as Microsoft PowerShell, Windows Management Instrumentation (WMI), Windows Credentials Editor (WCE) and Group Policy Objects (GPO).

For IT and security, Juniper recommends limiting the use of these Microsoft tools:

These can be remedied to an extent by limiting or disabling WMI and PowerShell services when they are not in use, as well as the use of traditional attack vectors like macros, which are now evolving fileless variants. Network behavior analysis is another tool that will catch these attacks where traditional measures will not, as it looks for activity patterns rather than specific files.

In terms of geography, the US will remain the largest target during the next five years, with about half of all data theft occurring there. One reason for that is the different standards and regulations that each US state uses to safeguard data and personal records: Cybercriminals can exploit this patchwork of laws. (See California's CCPA Law: Why CISOs Need to Take Heed.)


Zero in on the most attractive 5G NR deployment strategies, and take a look ahead to later technology developments and service innovations. Join us for the Deployment Strategies for 5G NR breakfast workshop in LA at MWCA on September 12. Register now to learn from and network with industry experts – communications service providers get in free!

The report also finds that, despite new compliance laws, such as the General Data Protection Regulation (GDPR) within the European Union, business spending on cybersecurity remains relatively flat. (See Cisco: GDPR Is About More Than Compliance.)

Finally, the report shows that small businesses, while making up nearly 99% of all companies worldwide, will only generate about 13% of all cybersecurity spending. Juniper also notes that most small firms buy consumer-grade security tools, but that most of the dangerous malware requires enterprise-ready protection.

Related posts:

— Scott Ferguson is the managing editor of Light Reading and the editor of Security Now. Follow him on Twitter @sferguson_LR.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Everything You Need to Know About DNS Attacks
It's important to understand DNS, potential attacks against it, and the tools and techniques required to defend DNS infrastructure. This report answers all the questions you were afraid to ask. Domain Name Service (DNS) is a critical part of any organization's digital infrastructure, but it's also one of the least understood. DNS is designed to be invisible to business professionals, IT stakeholders, and many security professionals, but DNS's threat surface is large and widely targeted. Attackers are causing a great deal of damage with an array of attacks such as denial of service, DNS cache poisoning, DNS hijackin, DNS tunneling, and DNS dangling. They are using DNS infrastructure to take control of inbound and outbound communications and preventing users from accessing the applications they are looking for. To stop attacks on DNS, security teams need to shore up the organization's security hygiene around DNS infrastructure, implement controls such as DNSSEC, and monitor DNS traffic
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2023-33196
PUBLISHED: 2023-05-26
Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.
CVE-2023-33185
PUBLISHED: 2023-05-26
Django-SES is a drop-in mail backend for Django. The django_ses library implements a mail backend for Django using AWS Simple Email Service. The library exports the `SESEventWebhookView class` intended to receive signed requests from AWS to handle email bounces, subscriptions, etc. These requests ar...
CVE-2023-33187
PUBLISHED: 2023-05-26
Highlight is an open source, full-stack monitoring platform. Highlight may record passwords on customer deployments when a password html input is switched to `type="text"` via a javascript "Show Password" button. This differs from the expected behavior which always obfuscates `ty...
CVE-2023-33194
PUBLISHED: 2023-05-26
Craft is a CMS for creating custom digital experiences on the web.The platform does not filter input and encode output in Quick Post validation error message, which can deliver an XSS payload. Old CVE fixed the XSS in label HTML but didn’t fix it when clicking save. This issue was...
CVE-2023-2879
PUBLISHED: 2023-05-26
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file