{"id":43928,"date":"2019-12-04T10:52:57","date_gmt":"2019-12-04T10:52:57","guid":{"rendered":"https:\/\/www.intelligentcio.com\/me\/?p=43928"},"modified":"2023-10-02T09:49:07","modified_gmt":"2023-10-02T08:49:07","slug":"mimecast-threat-intelligence-report-analyses-99-billion-rejected-emails","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2019\/12\/04\/mimecast-threat-intelligence-report-analyses-99-billion-rejected-emails\/","title":{"rendered":"Mimecast Threat Intelligence Report analyses 99 billion rejected emails"},"content":{"rendered":"\n<p><strong><em>Transportation, legal and banking sectors hit hardest by cyberattacks, according to new Mimecast report. <\/em><\/strong><\/p>\n\n\n\n<p>Mimecast Limited, a leading email and data security company, has announced the availability of its quarterly <em>Threat Intelligence Report: Risk and Resilience Insights<\/em>. <\/p>\n\n\n\n<p>The\nreport provides technical analysis from the Mimecast Threat Centre from July to\nSeptember 2019 on the nature of attack campaigns in addition to observations\nand analysis of evolving threats. Outlining the trends emerging from these\nidentified attacks and assessing the current behaviour of threat actors can\nhelp organisations better understand the impact these factors will have on the cybersecurity\nlandscape in 2020. <\/p>\n\n\n\n<p>The <em>Mimecast\nThreat Intelligence Report<\/em> includes analysis of 207 billion emails\nprocessed by Mimecast, 99 billion of which were rejected. The report keeps organisations\ninformed on the threats that are targeting their industries, so they can better\nprepare for and protect themselves against threats inside, at and beyond the\nperimeter. <\/p>\n\n\n\n<p>This\nresearch looks through the lens of the four main categories of attack types\ndiscovered in the quarter: spam, impersonation, opportunistic and targeted. This\nquarter\u2019s report found that impersonation attacks are on the rise, accounting\nfor 26% of total detections \u2013 and now includes voice phishing or \u2018vishing\u2019, an\nadvanced attack observed in this quarter, where threat actors use social\nengineering to gain access to personal and financial information via the\nvictim\u2019s telephone system. <\/p>\n\n\n\n<p>While\nthe report uncovered a mixture of simple, low effort and low-cost attacks\ntargeting Mimecast customers, the data high\u00adlights complex, targeted campaigns\nleveraging a variety of vectors and lasting several days. <\/p>\n\n\n\n<p>These\nsophisticated attacks are likely carried out by organised and determined threat\nactors, employing obfuscation, layering, exploits, and encryption to evade\ndetection. Additionally, throughout the research, it was clear three industries\nwere targeted the most by cyberattacks. Banking and legal, industries that are\nrich with sensitive information that yield results for threat actors and\ntransportation, where state-sponsored threat actors seek to disrupt the\nlogistical and supply capability of rivals. <\/p>\n\n\n\n<p>\u201cThreat actors seek\nnumerous ways into an organisation &#8211; from using sophisticated tactics, like\nvoice phishing and domain spoofing, to simple attacks like spam,\u201d said Josh\nDouglas, Vice President of Threat Intelligence at Mimecast. <\/p>\n\n\n\n<p>\u201cThis quarter\u2019s research found that the\nmajority of threats were simple, sheer volume attacks. Easy to execute, but not\nas easy to protect against as it shines a very bright light on the role human\nerror could play in an organisation\u2019s vulnerability. Organisations need to take\na pervasive approach to email security &#8211; one that integrates the right security\ntools allowing for greater visibility at, in and beyond the perimeter. This\napproach also requires educating the last line of <a>defence\n<\/a>\u2013 employees. Coupling technology with a force of\nwell-trained human eyes will help organisations strengthen their security\npostures to defend against both simple and sophisticated threats.\u201d<\/p>\n\n\n\n<p>Of the\n207 billion emails processed, there were 25 significant malware campaigns\nidentified this quarter which incorporated Azorult, Hawkeye, Nanocore,\nNetwired, Lokibot, Locky and Remcos. The campaigns observed range from simple\nphishing campaigns to multi-vector campaigns alternating file types and attack\nvector, types of malware and vulnerabilities. All the analysis discovered in\nthe report is fed back into Mimecast engineering to enhance cloud-based\nsecurity services, improving customer\u2019s cyber-resilience and helping them avoid\ndisruptions to their business<\/p>\n\n\n\n<p>Additional\nkey findings outlined in the report \u2013 <\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The majority of attacks are\nless sophisticated, high volume attacks \u2013 due to the ease of access for any\nindividual to launch an attack and employees still clicking on malicious links.\n<\/li>\n\n\n\n<li>ZIP files accounted for 34% of\nfile compression format attacks \u2013 consistently the most detected format due to\nreliance on human error. <\/li>\n\n\n\n<li>Researchers detected a complex\nrange of malware, some of which has been around for many years, in addition to\nnew threats. Malware threats are increasingly automated. <\/li>\n\n\n\n<li>Top sectors targeted this\nquarter: transportation, storage and delivery, banking and legal. <\/li>\n<\/ul>\n\n\n\n<p>For the full Threat Intelligence\nReport, visit&nbsp;<strong><a href=\"https:\/\/www.mimecast.com\/threat-intelligence-report\/?utm_source=pr&amp;utm_medium=pr&amp;utm_campaign=7013l000000TeZrAAK\">here.<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Transportation, legal and banking sectors hit hardest by cyberattacks, according to new Mimecast report. Mimecast Limited, a leading email and data security company, has announced the availability of its quarterly Threat Intelligence Report: Risk and Resilience Insights. The report provides technical analysis from the Mimecast Threat Centre from July to September 2019 on the nature [&hellip;]<\/p>\n","protected":false},"author":18,"featured_media":43929,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,15963,809],"tags":[],"class_list":["post-43928","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-kuwait","category-more-news"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/43928","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/18"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=43928"}],"version-history":[{"count":6,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/43928\/revisions"}],"predecessor-version":[{"id":87447,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/43928\/revisions\/87447"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/43929"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=43928"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=43928"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=43928"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}