Server-side exploits dominated cyber threat landscape in 2017

IANS
Thursday, February 8, 2018

During 2017, 76 per cent of the total exploits affected server-side applications, which is up 17 points when compared to 2016, a report by global cybersecurity firm Skybox Security said on Wednesday.

The "Vulnerability and Threat Trends Report" said that cyber criminals leveraged existing attack tools rather than developing new ones. Using the same attack, the criminals targeted as many victims dubbed as 'low-hanging fruits' as possible.

According to Ron Davidson, Skybox Security Chief Technology Officer, dealing with server-side vulnerabilities is always more difficult because the higher-value assets require more consideration.

"Organisations need to have the means to understand these server-side vulnerabilities in context of the asset criticality, the surrounding topology and security controls, and the exploit activity in the wild. Only then can they accurately decide the optimal patching priority and schedule," he said.

The increase in server-side exploits corresponds with the continued decline in the use of exploits kits relying on client-side vulnerabilities, which accounted for only a quarter of exploits in the wild last year, the report said.

"This does not mean that exploit kits are gone," added Marina Kidron, Senior Security Analyst and Group Leader of the Skybox Research Lab.

"We know that cybercriminals are constantly changing tactics so the next 'exploit kit giant' is very likely in development as we speak. We also suspect that some kits have 'gone private,' and are used exclusively by their developers in hopes of prolonging their viability," Kidron noted.

Instances of newly-published sample exploit code have also increased, with the monthly average jumping 60 per cent in 2017.

With minimal adjustments -- or none at all -- attackers can turn these samples into fully functioning exploits for their own use.

This scenario was the case with the "NSA Eternal Blue" exploit leaked by hacker group "The Shadow Brokers" and was used in the "WannaCrypt" and "Not Petya" cyber attacks, among others.

"Such leaks are putting advanced attack tools in the hands of lower-skilled cyber attackers, enhancing the capabilities of an already well-outfitted threat landscape," the report pointed out.

The report also said that in 2017, there was a 120 per cent increase in new vulnerabilities specific to operational technology (OT) compared to the previous year.

OT includes monitoring and control devices common in critical infrastructure organisations such as energy producers, utilities and manufacturers, among others.


Express your comment on this article

Submit your comments...
     
Disclaimer: The views expressed here are strictly personal and IndiansinKuwait.com does not hold any responsibility on them. We shall endeavour to upload/publish as many of the comments that are submitted as possible within a reasonable span of time, but we do not guarantee that all comments that are submitted will be uploaded/published. Messages that harass, abuse or threaten other members; have obscene, unlawful, defamatory, libellous, hateful, or otherwise objectionable content; or have spam, commercial or advertising content or links are liable to be removed by the editors. We also reserve the right to edit the comments that do get published. Please do not post any private information unless you want it to be available publicly.
Image

Teamwork Makes The Dream Work! – Nomaan Sidiq Budroo, Captain of Kuwait U-19 Cricket Team

Kuwait Cricket’s National U 19 team returned home after their best ever performance in the ICC U 19

Image

A Walk in the Garden…

Our garden in Salmiya is an exciting learning-place… Every walk in it, teaches something every time

Image

Take Thoughts Outside Box

"Where are the songs of spring? Ay, where are they?’’ I sighed, when others were busy with Keats, S

Image

‘Be what you are, Do what you can’, a self-confident go getter, N.K. Ramachandran Menon

He believes, ‘No one can influence anyone’. He believes, ‘I can only be me and it is true for ever

Image

How to carry out a winning scientific project?

I have been involved in judging scientific projects in schools and colleges for the past three deca

Image

Extraordinary artist of ribbon work – Mrs Poornima

Hand Embroidery is one of the most beautiful artworks. There are variety of Embroideries which uses

Image

Work hard, but enjoy your job – Ravi Varrier spending 40 years in a company!

Spending long working years with a company may not be a big deal if you are a sincere employee. But

Image

Smart Investing - Diversification is the Mantra: Don’t keep all the eggs in one basket

Investment is an activity which everyone should be involved once they start earning. But where to i

Image

They are disconnecting…

“Why do I need to learn about India? After all, I am going to live here—in Kuwait—all my life… I wa

Image

I Learn Anew Every Day - Kevin Mathew

Kevin Mathew was the youngest (and only Indian) TEDx speaker at TEDxAlShuwaikh, Kuwait, on Septembe

Image

New Menu at Zafran Puts Contemporary Spin on the Traditional

Fans of Zafran can rejoice as the popular Indian bistro launches a new menu this week. The front

Image

A nostalgic and delicious train journey in Kuwait at Kerala Express Restaurant

A train journey during our annual vacation in India is definitely a nostalgic experience for many o

Image

Mughal Mahal Exotica - An aromatic and exotic twist to Indian food

When it comes to Indian food in Kuwait, no doubt ‘Mughal Mahal’ set an example among the residents

Image

Experience Indian Corner Tandoori Nights at Al Manshar Rotana Hotel

Al Manshar Rotana Hotel at Fahaheel, Kuwait launched an authentic Tandoori Night with an Indian cor

Image

Maharashtra Mandal Kuwait Cricket Premier League and Photography Contest Kicked-Off

Maharashtra Mandal Kuwait is organizing “MMK Cricket Premier League 2018 Season- 3”. The event wi

Image

United Goans Centre Interschool Under-15 Football Tournament 2018

The United Goans Centre (UGC) held its Inter-school under-15 football tournament on 3rd February 2

Image

BOUBYAN bank Crowned Champions in the Cup Finals KFH Grabs the Plate Trophy

On the weekend of 27th January, Kuwait Cricket held the grand finals upon the completion of all the

Image

Saina Nehwal, P.V. Sindhu and the men's doubles pair

Saina Nehwal, P.V. Sindhu and the men's doubles pair of Satwiksairaj Rankireddy and Chirag Shetty a

Image

Prannoy, Saurabh guide Ahmedabad to PBL-3 semis

H.S. Prannoy powered Ahmedabad Smash Masters to a brilliant 4-1 victory over Mumbai Rockets, to adv