
Recent reports highlight a significant rise in cyberattacks, primarily due to cloud misconfigurations, sophisticated ransomware, and vendor exploitation. The Verizon Data Breach Investigations Report (DBIR) indicates that basic security lapses underpin a large number of breaches, with vulnerability exploits tripling as an initial access point for data breaches last year. Zero-day vulnerabilities are increasingly becoming a major source of cyberattacks. The report also notes that the exploitation of vulnerabilities has nearly tripled as a source of data breaches, emphasizing the growing challenge in cybersecurity. Notably, 'Cuttlefish' Zero-Click malware is a new threat stealing private cloud data, and common attack vectors include credential stuffing, phishing, and web app vulnerability exploitation.
This figure 1 from the Verizon DBIR really jumps out at me. In other words, breached reused credentials roughly equal to phishing + vulnerability exploitation. https://t.co/1bl1ikdXcy (ProTip: click "view only") https://t.co/m6EvaLNBDI
Shadow APIs: An Overlooked Cyber-Risk for Orgs: https://t.co/pNFd4xjLdx by darkreading #infosec #cybersecurity #technology #news
2024 @VZDBIR DBIR is out. How are the attackers getting in? - Credential Stuffing - Phishing - Web App vuln exploitation This tells us: - MFA is not used enough - There are not enough good anti-phishing controls - Developers create vulns in web apps that aren't found and fixed https://t.co/av803iLGED










