{"id":35371,"date":"2019-04-11T10:02:16","date_gmt":"2019-04-11T09:02:16","guid":{"rendered":"http:\/\/www.intelligentcio.com\/me\/?p=35371"},"modified":"2019-04-11T10:03:20","modified_gmt":"2019-04-11T09:03:20","slug":"sophos-report-reveals-cyberattacks-on-cloud-honeypots","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2019\/04\/11\/sophos-report-reveals-cyberattacks-on-cloud-honeypots\/","title":{"rendered":"Sophos report reveals cyberattacks on Cloud Honeypots"},"content":{"rendered":"<p><em><strong>Sophos study of 10 Cloud Server Honeypots placed worldwide reveals the need for visibility and security to protect what businesses put into hybrid and all-cloud platforms. \u00a0<\/strong><\/em><\/p>\n<p><a href=\"https:\/\/www.sophos.com\/\">Sophos<\/a>, a global leader in network and endpoint security, has announced the findings of its report, <a href=\"https:\/\/www.sophos.com\/CloudHoneypotsReport\">Exposed: Cyberattacks on Cloud Honeypots<\/a>, which reveals that cybercriminals attacked one of the cloud server honeypots in the study within 52 seconds of the honeypot going live in Sao Paulo, Brazil.<\/p>\n<p>On average, the cloud servers were hit by 13 attempted attacks per minute, per honeypot. The honeypots were set up in 10 of the most popular Amazon Web Services (AWS) data centres in the world, including California, Frankfurt, Ireland, London, Mumbai, Ohio, Paris, Sao Paulo, Singapore, and Sydney over a 30-day period.<\/p>\n<p>A honeypot is a system intended to mimic likely targets of cyberattackers, so that security researchers can monitor cybercriminal behaviours.<\/p>\n<p>In the study, more than 5 million attacks were attempted on the global network of honeypots in the 30-day period, demonstrating how cybercriminals are automatically scanning for weak open cloud buckets.<\/p>\n<p>If attackers are successful at gaining entry, organisations could be vulnerable to data breaches. Cybercriminals also use breached cloud servers as pivot points to gain access onto other servers or networks.<\/p>\n<p>\u201cThe Sophos report, <a href=\"https:\/\/www.sophos.com\/CloudHoneypotsReport\">Exposed: Cyberattacks on Cloud Honeypots<\/a>, identifies the threats organisations migrating to hybrid and all-cloud platforms face. The aggressive speed and scale of attacks on the honeypots shows how relentlessly persistent cybercriminals are and indicates they are using botnets to target an organisation\u2019s cloud platforms. In some instances, it may be a human attacker, but regardless, companies need a security strategy to protect what they are putting into the cloud,\u201d said Matthew Boddy, security specialist, Sophos. \u201cThe issue of visibility and security in cloud platforms is a big business challenge, and with increased migration to the cloud, we see this continuing.\u201d<\/p>\n<p><strong>Visibility into weaknesses<\/strong><\/p>\n<p>Continuous visibility of public cloud infrastructure is vital for businesses to ensure compliance and to know what to protect. However, multiple development teams within an organisation and an ever-changing, auto-scaling environment make this difficult for IT security.<\/p>\n<p>Sophos is addressing security weaknesses in public clouds with the launch of <a href=\"https:\/\/www.sophos.com\/cloud-optix\">Sophos Cloud Optix<\/a>, which leverages Artificial Intelligence (AI) to highlight and mitigate threat exposure in cloud infrastructures. Sophos Cloud Optix is an agentless solution that provides intelligent cloud visibility, automatic compliance regulation detection and threat response across multiple cloud environments.<\/p>\n<p>\u201cInstead of inundating security teams with a massive number of undifferentiated alerts, Sophos Cloud Optix significantly minimises alert fatigue by identifying what is truly meaningful and actionable,\u201d said Ross McKerchar, CISO, Sophos. \u201cIn addition, with visibility into cloud assets and workloads, IT security can have a far more accurate picture of their security posture that allows them to prioritise and proactively remediate the issues flagged in Sophos Cloud Optix.\u201d<\/p>\n<p><strong>Key features in Sophos Cloud Optix include: <\/strong><\/p>\n<ul>\n<li><strong>Smart visibility <\/strong><strong>\u2013<\/strong> Provides automatic discovery of an organisation\u2019s assets across AWS, Microsoft Azure and Google Cloud Platform (GCP) environments, via a single console, allowing security teams complete visibility into everything they have in the cloud and to respond and remediate security risks in minutes.<\/li>\n<li><strong>Continuous cloud compliance \u2013<\/strong> Keeps up with continually changing compliance regulations and best practices policies by automatically detecting changes to cloud environments in near-time.<\/li>\n<li><strong>AI-based monitoring and analytics <\/strong><strong>\u2013 <\/strong>Shrinks incident response and resolution times from days or weeks to just minutes. The powerful Artificial Intelligence detects risky resource configurations and suspicious network behaviour with smart alerts and optional automatic risk remediation.<\/li>\n<\/ul>\n<p>Sophos Cloud Optix leverages AI-powered technology from <a href=\"https:\/\/www.sophos.com\/en-us\/press-office\/press-releases\/2019\/01\/sophos-acquires-avid-secure-to-expand-protection-for-public-cloud-environments.aspx\">Avid Secure<\/a>, which Sophos acquired in January 2019. Founded in 2017 by a team of highly distinguished leaders in IT security, Avid Secure revolutionised the security of public cloud environments by providing effective end-to-end protection in cloud services, such as AWS, Azure and Google.<\/p>\n<p>For more information on Sophos\u2019 findings, read the full <a href=\"https:\/\/www.sophos.com\/CloudHoneypotsReport\">Exposed: Cyberattacks on Cloud Honeypots<\/a> report and the accompanying Naked Security article, <a href=\"https:\/\/nakedsecurity.sophos.com\/cloudhoneypots\">Knock and Don&#8217;t Run: The Tale of the Relentless Hackerbots<\/a>.<\/p>\n<p>Additional information on Sophos Cloud Optix is available on <a href=\"https:\/\/www.sophos.com\/en-us\/cloud-optix.aspx\">Sophos.com<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sophos study of 10 Cloud Server Honeypots placed worldwide reveals the need for visibility and security to protect what businesses put into hybrid and all-cloud platforms. \u00a0 Sophos, a global leader in network and endpoint security, has announced the findings of its report, Exposed: Cyberattacks on Cloud Honeypots, which reveals that cybercriminals attacked one of [&hellip;]<\/p>\n","protected":false},"author":18,"featured_media":35372,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,809,16,54],"tags":[22,8631,3106,41,7027,8632,288,186],"class_list":["post-35371","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-more-news","category-regional-news","category-research","tag-cloud","tag-cloud-honeypots","tag-cybercriminals","tag-data-centres-2","tag-endpoint-security","tag-matthew-boddy","tag-network","tag-sophos"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/35371","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/18"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=35371"}],"version-history":[{"count":2,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/35371\/revisions"}],"predecessor-version":[{"id":35374,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/35371\/revisions\/35374"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/35372"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=35371"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=35371"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=35371"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}