Story image

Blueliv makes plea for cybercrime intelligence sharing across industries

08 Mar 2018

​Now is more important than ever for businesses and governments to be sharing intelligence on cybersecurity and collaborating cross-industry.

That’s according to Blueliv, provider of enterprise-class cyberthreat intelligence solutions. The company has just released its Annual Cyberthreat Report that combines actionable intelligence from Threat Compass with expert insight from its own analyst team.

The report found that malware variants previously focused on the financial sector are now successfully attacking non-banking targets too, concluding that a higher level of collaboration and intelligence-sharing between industries is ever-more crucial in the fight against cybercrime.

Specifically, the report found that:

  • Almost 2 billion exposed credentials were detected
  • There was a 140 percent increase in TOR domains used as crimerservers from 2016-2017
  • 2 million stolen credit card details were found, 40 percent of which were from four major American banks
  • Malware has become significantly more complex with new obfuscation and lateral movement techniques
  • Variants of the most commonly used webinject, Trickbot, were detected

Blueliv CTO Ramon Vicens says as the ‘public profile’ of cybercrime continues to soar, enterprises are encouraged to look at how they keep their business and customers safe by sharing intelligence, best practice and defence measures.

“When cyberattacks in one industry make headlines, organisations in other industries start to take notice. And when other organisations take notice and start taking proactive steps to strengthen their security posture, that is good news for all of us: The fight against cybercrime is a collaborative effort,” says Vicens.

The annual report from Blueliv reflects on notable cybersecurity incidents in 2017 (of which there were many) to make informed predictions about the current state of play and identify areas that require immediate attention in the coming months. Trends identified in the report include:

  • Attacks are discriminating much less by sector than in previous years. Any company holding PII is a target.
  • Corporate intrusion in one industry will have a positive effect on other industries in terms of strengthening security posture.
  • GDPR will mark a fundamental shift for organisations, but also for the bad guys. Even the threat of a reported data breach will become increasingly lucrative.
  • AI-powered attacks are increasing in scope and complexity, reflecting advances in AI-powered cyberdefense.
  • Self-spreading ransomware which grabbed the headlines in 2017 will be overtaken by cryptojacking attacks.

The full report includes further analysis and insights, but overall, Blueliv asserts that unless the ‘good guys’ start to share intelligence and collaborate (regardless of industry) then there could be severe implications not only for businesses but also the world at large.

Privacy: The real cost of “free” mobile apps
Sales of location targeted advertising, based on location data provided by apps, is set to reach $30 billion by 2020.
Myth-busting assumptions about identity governance - SailPoint
The identity governance space has evolved and matured over the past 10 years, changing with the world around it.
Forrester names Crowdstrike leader in incident response
The report provides an in-depth evaluation of the top 15 IR service providers across 11 criteria.
Slack doubles down on enterprise key management
EKM adds an extra layer of protection so customers can share conversations, files, and data while still meeting their own risk mitigation requirements.
Security professionals want to return fire – Venafi
Seventy-two percent of professionals surveyed believe nation-states have the right to ‘hack back’ cybercriminals.
Alcatraz AI to replace corporate badges with AI security
The Palo Alto-based startup supposedly leverages facial recognition, 3D sensing, and machine learning to enable secure access control.
Ensign and IronNet partner to create cyber analytics capabilities
The Singapore-based joint venture will form a Cyber Analytics Center for Excellence focused on securing regional enterprises from sophisticated cyber threats.
Unencrypted Gearbest database leaves over 1.5mil shoppers’ records exposed
Depending on the countries and information requirements, the data could give hackers access to online government portals, banking apps, and health insurance records.