Cyber SecurityMalwareThreat Detection

The 2022 BrightCloud Threat Report

The 2022 BrightCloud Threat Report

The 2022 BrightCloud Threat Report

The threat from cybercriminals is constantly in the news. Rightly so, as the threat they pose is continuously increasing as the attack surface expands when new services and devices get deployed. Anecdotally this means we are aware that cyberattacks are still on the rise and that cybersecurity protections are essential. While this qualitative awareness that the threats are there and increasing is welcome, it's good to have quantitative data showing the threats and where they are concentrated.

The 2022 BrightCloud Threat Report

Providing quantitative data is precisely what the BrightCloud Threat Report from Webroot delivers. The 2022 report is now available, and it outlines the most prevalent threats and other important data. You can download the report from https://www.brightcloud.com/land/2022-brightcloud-threat-report.

You should download the full report and read it. However, here are some headline results.

Malware - this continues to be a threat. The data shows that 86% of malware attacks targeted PCs. On the consumer front, 53% of all PCs were infected with malware more than once during the year. Windows 7 is still in use in many businesses, and this is more susceptible to malware than later Windows versions. Upgrading from Windows 7 is highly recommended. In small companies, the infection rate from malware averaged 34%, with the manufacturing, public administration, and information sectors experiencing higher-than-average infection rates.

Ransomware - this is by far the most significant malware threat. As outlined in the report, ransomware hit 44% of all businesses with under 100 employees. SMBs get targeted as they often have less robust cybersecurity defences in place and are more likely to pay any ransom demand in the hope of quickly getting back to normal operations. Speaking of paying the ransom demands, the average payment in 2021 data was €305,261 ($322,168). This is a potentially fatal cost for many small businesses. Even if it is paid and can be absorbed as a cost or paid for from cybersecurity insurance, in many instances of ransomware, a decryption tool doesn't get sent by the criminals. Even when one is, the encryption process is often long and results in systems being out of operation for a long time. If you are a small business, we'd highly recommend engaging with a managed service security provider (MSSP) to get them to assess and improve your cybersecurity defences. Especially one who uses the BrightCloud Threat Intelligence platform (see below). Doing so will reduce your threat level and will likely soon be one of the steps required by cyber insurance companies before they provide cover.

High-Risk URLs - Webroot discovered four million new high-risk URLs in 2021. These are fake URLs that mimic existing brand names used in Phishing attacks and other social engineering type attacks to trick people into clicking on dangerous links. The frequency of attacks using High-Risk URLs also changed through the year. With peaks around events like tax return filing deadlines or the start of sales prompting many phishing attacks mimicking tax authorities and retailers.

BrightCloud Threat Intelligence Platform

The BrightCloud Threat Intelligence platform is a threat scanning and detection solution available to MSSPs. They can use it to build services for their clients and protect them from malicious activity by integrating accurate and near real-time threat intelligence. Because today's cyber threat landscape shifts rapidly, instantaneous updating solutions like the BrightCloud platform must replace static and list-based solutions.

The BrightCloud Threat Intelligence platform is cloud-based, powered by sixth-generation machine learning, and provides unmatched reliability, accuracy, depth, and timeliness. Trusted by over 140 security leaders and innovators, its predictive threat intelligence keeps technology vendors and their customers a step ahead of today's threats.

Renaissance partners with Webroot to make the BrightCloud Threat Intelligence platform available to service providers in Ireland. Contact us today to find out more and start a conversation around protecting your current customers and attracting new clients. See below for opportunities to find out more from Webroot experts.

Renaissance and Webroot Webinar

Renaissance and Webroot will deliver a joint one-hour webinar on the 19th of May with the title: Discover how to mitigate threats, build cyber resilience, and grow your business profitably. Focused on MSPs and MSSPs, the webinar will cover:

Despite efforts by organisations to layer up their cyber defences, attackers are innovating and automating in new and unpredictable ways, forcing business leaders to shift focus from prevention to response and recovery. For MSPs to keep businesses and customers safe, it's essential to understand how to build and maintain cyber resiliency and put practices and policies in place that help prevent attacks and enable quick recovery when they happen. Webroot works closely with MSPs and businesses to offer solutions that will allow higher efficiency, better ease of use, reduced management burden, lower operational costs, and greater profitability for our partners.

Sign up for the webinar on this page.

CEXI On-Demand Session Recording

Webroot presented at the recent Cyber Expo & Conference Ireland 2022. You can watch a recording of their session here.