Media Alert: Sophos Annual Threat Report Details Top Cyberattacks

Nov. 5, 2019

OXFORD, United Kingdom, Nov. 05, 2019 (GLOBE NEWSWIRE) -- Sophos (LSE: SOPH), a global leader in cloud-enabled next-generation cybersecurity, today launched its 2020 Threat Report providing insights into the rapidly evolving cyberthreat landscape. The report, produced by SophosLabs researchers, explores changes in the threat landscape over the past 12 months, uncovering trends likely to impact cybersecurity in 2020. 

“The threat landscape continues to evolve – and the speed and extent of that evolution is both accelerating and unpredictable. The only certainty we have is what is happening right now, so in our 2020 Threat Report we look at how current trends might impact the world over the coming year.  We highlight how adversaries are becoming ever stealthier, better at exploiting mistakes, hiding their activities and evading detection technologies, and more, in the cloud, through mobile apps and inside networks. The 2020 Threat Report is not so much a map as a series of signposts to help defenders better understand what they could face in the months ahead, and how to prepare,” said John Shier, senior security advisor, Sophos.

The SophosLabs 2020 Threat Report, which is also summarized in a SophosLabs Uncut article, focuses on six areas where researchers noted particular developments during this past year. Among those expected to have significant impact on the cyberthreat landscape into 2020 and beyond are the following: 

Ransomware attackers continue to raise the stakes with automated active attacks that turn organizations’ trusted management tools against them, evade security controls and disable back ups in order to cause maximum impact in the shortest possible time.

Unwanted apps are edging closer to malware. In a year that brought the subscription-abusing Android Fleeceware apps, and ever more stealthy and aggressive adware, the Threat Report highlights how these and other potentially unwanted apps (PUA), like browser plug-ins, are becoming brokers for delivering and executing malware and fileless attacks. 

The greatest vulnerability for cloud computing is misconfiguration by operators. As cloud systems become more complex and more flexible, operator error is a growing risk. Combined with a general lack of visibility, this makes cloud computing environments a ready made target for cyberattackers.

Machine learning designed to defeat malware finds itself under attack. 2019 was the year when the potential of attacks against machine learning security systems were highlighted. Research showed how machine learning detection models could possibly be tricked, and how machine learning could be applied to offensive activity to generate highly convincing fake content for social engineering. At the same time, defenders are applying machine learning to language as a way to detect malicious emails and URLs. This advanced game of cat and mouse is expected to become more prevalent in the future.

Other areas covered in the 2020 Threat Report include the danger of failing to spot cybercriminal reconnaissance hidden in the wider noise of internet scanning, the continuing attack surface of the Remote Desktop Protocol (RDP), and the further advancement of automated active attacks (AAA).

For additional and detailed information on threat landscape trends and changing cybercriminal behaviours, please reference the entire SophosLabs 2020 Threat Report at https://www.sophos.com/threatreport2020.

A companion report, outlining how the 11 most prominent and persistent ransomware families attack, will be published shortly. Sophos Naked Security will also reference the 2020 Threat Report in upcoming coverage.

Read the latest security news and views on our award-winning Naked Security News and read more about Sophos on our News blog.

Protect every Mac and PC in your home with the next generation of centrally managed free internet security software, Sophos Home.

Connect with Sophos where you are TwitterLinkedInFacebookSpiceworksYouTube

About Sophos

As a worldwide leader in next-generation cybersecurity, Sophos protects more than 400,000 organizations of all sizes in more than 150 countries from today’s most advanced cyberthreats.  Powered by SophosLabs – a global threat intelligence and data science team – Sophos’ cloud-native and AI-powered solutions secure endpoints (laptops, servers and mobile devices) and networks against evolving cyberattack techniques, including ransomware, malware, exploits, data exfiltration, active-adversary breaches, phishing, and more. Sophos Central, a cloud-native management platform, integrates Sophos’ entire portfolio of next-generation products, including the Intercept X endpoint solution and the XG next-generation firewall, into a single “synchronized security” system accessible through a set of APIs. Sophos has been driving a transition to next-generation cybersecurity, leveraging advanced capabilities in cloud, machine learning, APIs, automation, managed threat response, and more, to deliver enterprise-grade protection to any size organization. Sophos sells its products and services exclusively through a global channel of more than 47,000 partners and managed service providers (MSPs). Sophos also makes its innovative commercial technologies available to consumers via Sophos Home. The company is headquartered in Oxford, U.K., and is publicly traded on the London Stock Exchange under the symbol “SOPH”. More information is available at www.sophos.com.

Related

Image by Gerd Altmann from Pixabay
Internet 1862312 1920
Technology

NeuShield Predicts The Top Cybersecurity Threats For 2020 And Beyond

Oct. 24, 2019
FREMONT, Calif., Oct. 24, 2019 (GLOBE NEWSWIRE) -- NeuShield, which developed the world’s first mirror shielding technology to instantly recover data and files when other malware...
iStock
I Stock 913469324 1
Technology

Ransomware 101: Scareware For The Convenience Services Industry

April 22, 2019
Ransomware is often referred to as scareware as it forces a system user to pay a fee (or ransom) to regain access to their system. By capturing infected system components or encrypted...
Computer Programming Coding Unsplash
Technology

McAfee Researcher Urges Consumers To Be Aware Of Security Of IOT Gadgets

Feb. 28, 2019
A security researcher on McAfee’s Advanced Threat Research team investigated the security of a Mr. Coffee Coffee Maker with Wemo and was able to find a vulnerability it has to...
Cybersecurity Pixabay
Technology

Cloud And Mobile Deployments Are The Weakest Links In Enterprise Networks, Shows Check Point’s 2019 Security Report

Feb. 25, 2019
VIENNA, Austria, Feb. 20, 2019 (GLOBE NEWSWIRE) -- CPX – Check Point® Software Technologies Ltd. (NASDAQ: CHKP), a leading provider of cyber security solutions globally, has published...