Tuesday, 29 April 2025
24.8 C
Singapore
30.7 C
Thailand
21.1 C
Indonesia
29.2 C
Philippines

Ransomware and email attacks increasingly target businesses

Ransomware and BEC attacks are rising, targeting tech firms due to their critical infrastructure and willingness to pay ransoms.

A new report by Cisco Talos Incident Response (Talos IR) reveals that ransomware and business email compromise (BEC) attacks are hitting businesses harder than ever.

According to the report, ransomware and BEC attacks accounted for nearly two-thirds (60%) of all engagements. Although there were fewer BEC incidents this quarter than last, they remain a significant threat for the second consecutive quarter.

At the same time, ransomware attacks made up almost a third (30%) of engagements this quarter, showing a notable increase of 22% compared to three months ago.

Tech firms targeted

The report also highlighted the emergence of new ransomware families, such as Mallox and Underground Team, indicating a growing number of threat actors in the industry. Additionally, well-known ransomware groups like Black Basta and BlackSuit continue to cause significant disruptions for organisations.

Technology firms are particularly vulnerable to these attacks due to their extensive digital assets and critical infrastructure. These companies cannot afford prolonged downtime and are often more willing to pay ransom demands to resume operations quickly. Moreover, tech firms are frequently viewed as entry points to other industries.

In the past three months, 24% of all engagements involved tech firms, closely followed by the healthcare, pharmaceutical, and retail sectors. Attacks on tech firms have risen by 30% quarter-on-quarter.

Vulnerabilities and security weaknesses

The Talos report states that a significant majority (80%) of ransomware victims fell prey due to inadequate multi-factor authentication (MFA) implementations on critical systems, including virtual private networks (VPNs). The remaining victims suffered from either vulnerable or misconfigured systems. Talos IR observed a 46% increase in these security weaknesses from the previous quarter.

Conclusion

The growing sophistication and frequency of ransomware and BEC attacks underscore the need for businesses to bolster their cybersecurity measures. Proper implementation of MFA and regular system updates are crucial in protecting against these pervasive threats.

Hot this week

Proofpoint launches unified cybersecurity platform to cut costs and tackle multichannel threats

Proofpoint launches Prime Threat Protection, a unified cybersecurity platform tackling human risk and multichannel threats while reducing costs.

Ziff Davis takes OpenAI to court over alleged copyright infringement

Ziff Davis sues OpenAI over copyright claims, accusing the AI firm of copying and using its content without permission.

POCO launches entry-level C71 smartphone in Singapore with premium features

POCO launches the budget-friendly C71 smartphone in Singapore, offering premium design, enhanced cameras, and smooth performance at S$109.

Tenable uncovers critical privilege escalation flaw in Google Cloud Composer

Tenable exposes a GCP vulnerability in Cloud Composer that allows privilege escalation through interdependent cloud services.

SquareX secures US$20 million to transform browser security

SquareX raises US$20 million to strengthen browser security, offering enterprises an easy way to protect users without disrupting their workflows.

Grouphug brings AI to WhatsApp groups to turn private chats into memes

Grouphug wants to turn your WhatsApp group chats into memes using AI—and that’s only the beginning of this clever new app.

OpenAI brings smarter shopping to ChatGPT with new search features

ChatGPT now offers smarter shopping with visual product picks, reviews, and direct links—no ads, just easier online buying.

Huawei introduces new AI chip to rival Nvidia’s top model

Huawei is developing the Ascend 910D chip to rival Nvidia’s H100 amid growing demand and U.S. export restrictions on AI chips to China.

ASUS teams up with Bethesda to launch ROG Astral GeForce RTX 5080 DOOM Edition

ASUS celebrates 30 years of graphics cards with a limited ROG RTX 5080 DOOM Edition, launched in partnership with Bethesda and id Software.

Related Articles

Popular Categories