3

Rapid7 threat report: Japanese companies exposed to increased ransomware risk th...

 1 year ago
source link: https://itwire.com/guest-articles/guest-research/rapid7-threat-report-japanese-companies-exposed-to-increased-ransomware-risk-through-global-business-footprint.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Wednesday, 28 June 2023 11:41

Rapid7 threat report: Japanese companies exposed to increased ransomware risk through global business footprint

By Rapid7

COMPANY NEWS: Rapid7, a leader in cloud risk and threat detection, today released a new cyber threat landscape report focused on Japan and its global business footprint.

The Rapid7 Japan Cyber Threat Landscape Report highlights Japanese businesses’ unique threat profile, which has led to an increase in instances of sensitive data loss and business disruption via ransomware. Rapid7 researchers observed for example that, as of late 2022 and early 2023, LockBit 3.0 ransomware operators were specifically targeting Japanese organisations — particularly Japanese manufacturers. The prevalence of manufacturing within Japan makes it the leading target for ransomware groups and nation states, whereas healthcare is the most common target in other parts of the world.

“Manufacturing organisations have a low tolerance for downtime or any other type of operational disruption, and ransomware operators know that makes them vulnerable to extortion,” said Paul Prudhomme Rapid7 principal security analyst and Japan Cyber Threat Landscape Report author.

“When a Japanese manufacturer’s operations are disrupted like this it can have supply chain implications worldwide, as many other manufacturers depend on supplies of Japanese components.”

Risk of overseas entities
As the world’s third largest economy, Japan is home to global corporations with complex networks of overseas operations in countries like Australia, that include subsidiaries, third-party suppliers, and other affiliates. In addition to its findings on ransomware, the report notes that many of the most recent compromises of Japanese companies began with unauthorised access to a subsidiary, at which point the attacker was able to move laterally into the parent company’s network.

“As the Japanese parent company brings new subsidiaries and affiliates into its fold, there are likely to be visibility issues that can inhibit proper risk management and mitigation,” said Prudhomme.

According to Rapid7 vice president APJ Rob Dooley, it is common for cyber adversaries to pursue access to a company through a roundabout route.

“Island hopping is growing in popularity with perpetrators ‘hopping’ through a series of intermediary steps to achieve their end objectives. This includes indirectly targeting the intended victim organisation via the more vulnerable locations to undermine the parent company’s cyber defences and gain access to their network,” said Dooley.

“Rapid7 recommends that Japanese businesses with extensive foreign operations, subsidiaries, or other holdings follow the specific steps outlined in the report’s recommendations to reduce their risk to ransomware and other advanced cyber threats.”

To access the complete Rapid7 Japan Cyber Threat Landscape Report and related resources, click here.

About Rapid7
Rapid7 is on a mission to create a safer digital world by making cybersecurity simpler and more accessible. We empower security professionals to manage a modern attack surface through our best-in-class technology, leading-edge research, and broad, strategic expertise. Rapid7’s comprehensive security solutions help more than 10,000 global customers unite cloud risk management and threat detection to reduce attack surfaces and eliminate threats with speed and precision. For more information, visit our website, check out our blog, or follow us on LinkedIn or Twitter.

Read 251 times

Please join our community here and become a VIP.

Subscribe to ITWIRE UPDATE Newsletter here
JOIN our iTWireTV our YouTube Community here
BACK TO LATEST NEWS here


Lead-Machine_pink_600x260.jpg

GARTNER MARKET GUIDE FOR NDR 2022

You probably know that we are big believers in Network Detection and Response (NDR).

Did you realise that Gartner also recommends that security teams prioritise NDR solutions to enhance their detection and response?

Picking the right NDR for your team and process can sometimes be the biggest challenge.

If you want to try out a Network Detection and Response tool, why not start with the best?

Vectra Network Detection and Response is the industry's most advanced AI-driven attack defence for identifying and stopping malicious tactics in your network without noise or the need for decryption.


Download the 2022 Gartner Market Guide for Network Detection and Response (NDR) for recommendations on how Network Detection and Response solutions can expand deeper into existing on-premises networks, and new cloud environments.

DOWNLOAD NOW!

PROMOTE YOUR WEBINAR ON ITWIRE

It's all about Webinars.

Marketing budgets are now focused on Webinars combined with Lead Generation.

If you wish to promote a Webinar we recommend at least a 3 to 4 week campaign prior to your event.

The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://itwire.com/itwire-update.html and Promotional News & Editorial. Plus a video interview of the key speaker on iTWire TV https://www.youtube.com/c/iTWireTV/videos which will be used in Promotional Posts on the iTWire Home Page.

Now we are coming out of Lockdown iTWire will be focussed to assisting with your webinars and campaigns and assistance via part payments and extended terms, a Webinar Business Booster Pack and other supportive programs. We can also create your adverts and written content plus coordinate your video interview.

We look forward to discussing your campaign goals with you. Please click the button below.

MORE INFO HERE!


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK