sb-as logo
Story image

How cybercriminals are most likely to be caught

07 Mar 2019

Sophos announced the findings of its global survey, 7 Uncomfortable Truths of Endpoint Security, which reveals IT managers are more likely to catch cybercriminals on their organisation’s servers and networks than anywhere else. 

The survey polled more than 3,100 IT decision makers from mid-sized businesses in 12 countries including Australia, the US, Canada, Mexico, Colombia, Brazil, UK, France, Germany, Japan, India, and South Africa.

Of the 200 Australian IT managers surveyed, it was revealed that one third discovered the most significant cyber attack on their organisation’s servers and 43 per cent were caught on the networks. Only 17 per cent were discovered on endpoints and eight per cent were found on mobile devices. 

These statistics are in line with the global averages for servers (37 per cent), networks (37 per cent), endpoints (17 per cent), and mobile devices (10 per cent).

Fifteen per cent of IT managers at Australian companies who were victim to one or more cyber attacks last year can’t pinpoint how the attackers gained entry—slightly better than the global average—or how long the threat was in the environment before it was detected. 

To improve this lack of visibility, IT managers need endpoint detection and response (EDR) technology that exposes threat starting points and the digital footprints of attackers moving laterally through a network.

On average, Australian organisations that investigate one or more potential security incidents each month spend 48 days a year (four days a month) investigating them, according to the survey. 

It comes as no surprise that local IT managers ranked identification of suspicious events (28 per cent), alert management (17 per cent) and prioritisation of suspicious events (15 per cent) as the top three features they need from EDR solutions to reduce the time taken to identify and respond to security alerts.

Less than half (43 per cent) of Australia-based survey respondents have EDR capabilities, with 56 per cent stating they were planning to implement an EDR solution within the next 12 months. 

Having EDR also helps address a skills gap. Three in four IT managers in Australia wish they had a stronger team in place, according to the survey.

Story image
80% of cyber threat landscape uses COVID-19 as leverage - report
A report released recently by Proofpoint reveals the extent to which cyber attackers are capitalising on fear and paranoia surrounding the pandemic, with instances of coronavirus-themed attacks increasing every day.More
Story image
COVID-19: Surfshark joins growing list of companies offering free services
The VPN service has recently announced its intention to offer free six-month subscriptions for small businesses, as more countries tighten quarantine measures and finances become strained.More
Story image
You're virtually invited: How the smartest organisations manage Office 365 and Microsoft Teams
If you’re starting your digital transformation journey or want to find out more about how you can boost your Office 365 productivity, this is your chance to take advantage of expert advice - free.More
Story image
Evasive malware reaches record levels - WatchGuard report
Evasive malware accounted for two thirds of all detections – a massive jump from the 2019 average of 35%.More
Story image
Remote workers need to improve security measures amidst COVID-19
Technological support and security measures are amongst ways organisations and their employees can protect their business as they move to remote working during the COVID-19 pandemic. More
Story image
Email attacks up 667% following rise of COVID-19 worldwide
Of the COVID-19 related attacks detected by Barracuda Sentinel through March 23, 54% were scams, 34% were brand impersonation attacks, 11% were blackmail, and 1% are business email compromise.More