4

Endpoint ransomware surges: WatchGuard

 1 year ago
source link: https://itwire.com/business-it-news/security/endpoint-ransomware-surges-watchguard.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Thursday, 30 March 2023 12:52

Endpoint ransomware surges: WatchGuard

By Stephen Withers
WatchGuard chief security officer Corey Nachreiner

WatchGuard chief security officer Corey Nachreiner

Security vendor WatchGuard Technologies' latest Internet Security Report finds a declines in network-detected malware, a massive increase in endpoint ransomware, and ongoing issues with malware associated with phishing campaigns.

According to WatchGuard Threat Lab researchers, Fireboxes that decrypt HTTPS traffic found a higher incidence of malware. This suggests malware is increasingly using encrypted traffic.

Around one-fifth of Fireboxes providing data for this report have decryption enabled, indicating that a lot of malware traffic – and by implication, a lot of malware infections – is going undetected.

"A continuing and concerning trend in our data and research shows that encryption – or, more accurately, the lack of decryption at the network perimeter – is hiding the full picture of malware attack trends," said WatchGuard chief security officer Corey Nachreiner.

"It is critical for security professionals to enable HTTPS inspection to ensure these threats are identified and addressed before they can do damage."

Other findings in the report include:

• Endpoint ransomware detections rose 627 percent.

• 93 percent of malware hides behind encryption, up from 82 percent in the previous report.

• Network-based malware detections dropped approximately 9.2% percent quarter-on-quarter continuing a general decline in malware detections, though failure to decrypt network traffic for inspection may be muddying the water.

• Endpoint malware detections increased 22 percent, supporting the hypothesis that malware is increasingly using encrypted channels because traffic is automatically decrypted at the endpoint.

• Zero day or evasive malware has dropped to 43% in unencrypted traffic, compared with 70 percent in encrypted traffic.

• Phishing campaigns have increased, and three of the malware variants listed in the report's top ten assist in various phishing campaigns.

• ProxyLogin exploits continue to grow even though the Exchange issue concerned should have been patched long ago.

• Network attack volume is flat quarter-on-quarter.

• LockBit variants remain prevalent, and account for the largest share of public extortion victims.

The complete Q4 2022 Internet Security Report is available here with an overview here.

Read 812 times

Please join our community here and become a VIP.

Subscribe to ITWIRE UPDATE Newsletter here
JOIN our iTWireTV our YouTube Community here
BACK TO LATEST NEWS here


Lead-Machine_pink_600x260.jpg

ENABLE HYBRID CLOUD & REDUCE NETWORK LATENCY WHITEPAPER

Hybrid cloud promises to bring together the best of both worlds enabling businesses to combine the scalability and cost-effectiveness of the cloud with the performance and control that you can get from your on-premise infrastructure.

Reducing WAN latency is one of the biggest issues with hybrid cloud performance. Taking advantage of compression and data deduplication can reduce your network latency.

Research firm, Markets and Markets, predicted that the hybrid cloud market size is expected to grow from US$38.27 billion in 2017 to US$97.64 billion by 2023.

Colocation facilities provide many of the benefits of having your servers in the cloud while still maintaining physical control of your systems.

Cloud adjacency provided by colocation facilities can enable you to leverage their low latency high bandwidth connections to the cloud as well as providing a solid connection back to your on-premises corporate network.


Download this white paper to find out what you need to know about enabling the hybrid cloud in your organisation.

DOWNLOAD NOW!

PROMOTE YOUR WEBINAR ON ITWIRE

It's all about Webinars.

Marketing budgets are now focused on Webinars combined with Lead Generation.

If you wish to promote a Webinar we recommend at least a 3 to 4 week campaign prior to your event.

The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://itwire.com/itwire-update.html and Promotional News & Editorial. Plus a video interview of the key speaker on iTWire TV https://www.youtube.com/c/iTWireTV/videos which will be used in Promotional Posts on the iTWire Home Page.

Now we are coming out of Lockdown iTWire will be focussed to assisting with your webinars and campaigns and assistance via part payments and extended terms, a Webinar Business Booster Pack and other supportive programs. We can also create your adverts and written content plus coordinate your video interview.

We look forward to discussing your campaign goals with you. Please click the button below.

MORE INFO HERE!


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK