Business Wire

CA-ARMIS

22.1.2024 14:01:31 CET | Business Wire | Press release

Share
Cybersecurity Attack Attempts More Than Doubled, Increasing 104% in 2023

Armis, the asset intelligence cybersecurity company, today announced The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape. The 2023 analysis of Armis’ proprietary data offers critical insight into the multifaceted challenges global organizations face when it comes to protecting the entire attack surface. Report findings serve as a blueprint to help security teams worldwide prioritize efforts to reduce cyber risk exposure in 2024.

The report found that global attack attempts more than doubled in 2023, increasing 104%. Utilities (over 200% increase) and Manufacturing (165% increase) were the most at risk industries. Attack attempts peaked in July, with communications devices, imaging devices and manufacturing devices experiencing intensified targeting during this period.

“Armis found that not only are attack attempts increasing, but cybersecurity blind spots and critical vulnerabilities are worsening, painting prime targets for malicious actors,” said Nadir Izrael, CTO and Co-Founder, Armis. “It’s critical that security teams leverage similar intelligence defensively so that they know where to prioritize efforts and fill these gaps to mitigate risk. We hope that by sharing these insights, global businesses and governments will leverage them to immediately pinpoint what they should be focusing on to improve their cybersecurity posture this year to keep critical infrastructure, economies and society safe and secure.”

Key findings of The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape include:

Geopolitical tensions exacerbate the cybersecurity landscape

  • Cyberwarfare grew more widespread in 2023. Top industries exposed to attack from Chinese and Russian actors were those within Manufacturing, Educational Services and Public Administration.
    • In manufacturing, .cn and .ru domains contributed to an average of 30% of monthly attack attempts, while attacks from these domains on Educational Services have risen to about 10% of total attacks.

Legacy technology steepens incline of cybersecurity pros’ existing up-hill battle

  • Older Windows server OS versions (2012 and earlier) are 77% more likely to experience attack attempts compared to newer Windows Server versions.
    • This vulnerability is particularly evident in the server environment, with nearly a quarter of server versions facing end-of-support (EoS) scenarios. The Educational Services industry has a significantly higher percentage of servers (41%) with unpatched weaponized Common Vulnerabilities and Exposures (CVEs), compared to the general average of 10%.
  • Industries still using end-of-life (EoL) or EoS OSs that are no longer actively supported or patched for vulnerabilities and security issues by the manufacturer: Educational Services (18%), Retail (14%), Healthcare (12%), Manufacturing (11%) and Public Administration (10%).

Businesses struggle with effective vulnerability prioritization and remediation

  • There were over 65,000 unique CVEs discovered in 2023.
  • Wearable devices have the highest percentage (93%) of unpatched CVEs.
  • A third of all devices are still not patched for Log4Shell.
  • Patch rates for critical CVEs are not prioritized:
    • Low CVEs: 11% patch rate
    • Medium CVEs: 58% patch rate
    • High CVEs: 64% patch rate
    • Critical CVEs: 55% patch rate
  • Irrespective of the weaponization status of a CVE, organizations consistently grapple with patch rates at 62% for non-weaponized and 61% for weaponized vulnerabilities.

“Blueprints like this report are invaluable as they help teams focus limited resources on efforts with the greatest impact and with the insights to tell data-driven stories in justification of cross-team priorities,” said Curtis Simpson, CISO, Armis. “Using hindsight and analyzed data could allow CISOs to focus 2024 efforts on segmenting legacy technology, prioritizing exposures of greatest significance, and utilizing AI-driven technologies that can assist security teams with defending and managing the attack surface in real-time.”

Proprietary data leveraged for this report was mined from Armis’ Asset Intelligence Engine. The Armis Asset Intelligence Engine is a collective AI-powered knowledge base, monitoring billions of assets worldwide, in order to identify cyber risk patterns and behaviors. It feeds the Armis Centrix™ platform with unique, actionable cyber intelligence to detect and address real-time threats across the entire attack surface.

To read the full report, The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape, please visit: https://www.armis.com/anatomy-of-cybersecurity

Learn more about The Armis Asset Intelligence Engine here: https://www.armis.com/platform/armis-asset-intelligence-engine/

About Armis

Armis, the asset intelligence cybersecurity company, protects the entire attack surface and manages the organization's cyber risk exposure in real time. In a rapidly evolving, perimeter-less world Armis ensures that organizations continuously see, protect and manage all critical assets. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7. Armis is a privately held company headquartered in California.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240122998889/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

euNetworks launches new quantum-safe private connectivity service powered by Adtran’s encrypted optical transport technology27.5.2026 10:00:00 CEST | Press release

News summary: Developed by euNetworks to deliver the highest levels of protection for sensitive data moving between European data centers Built on Adtran’s solution, euNetworks’ new Quantum Shield service enables quantum-safe encryption across private high-capacity connectivity, with continuous optical and fiber plant monitoring The new offering supports regulated industries with strong assurance against current and emerging cybersecurity threats Adtran and euNetworks today announced their collaboration on the launch of a new quantum-safe private connectivity service, Quantum Shield. euNetworks has developed Quantum Shield using Adtran’s optical transport technology to augment its broader architecture, which is designed to deliver secure, scalable data center connectivity across euNetworks’ pan-European network. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260526610601/en/ Adtran’s encrypted optical transport technology is

National Bank of Greece in Cyprus Goes Live With Smartstream’s Air to Consolidate Reconciliations27.5.2026 09:55:00 CEST | Press release

Key Facts National Bank of Greece in Cyprus has consolidated four previously separate reconciliations systems – Instant, Cash, SEPA, and Nostro reconciliations – into a single platform using Smartstream’s Air Cash modules. Smartstream Air’s AI-enabled capabilities significantly reduce daily manual effort, eliminate the need to work with multiple data formats, and proactively identify data quality issues from both internal sources and bank statements. Successfully deployed in three months with no existing technology to replace; Smartstream developed a custom automated encrypted file transfer solution to meet the bank’s strict data security requirements. Smartstream, the trusted data solutions provider for leading global financial institutions and enterprises, today announces that the National Bank of Greece (NBG) in Cyprus has successfully gone live with Air, the company’s AI-enabled reconciliation solution. The go-live marks a significant step forward in the bank’s operational efficien

Duco Launches the First Agentic Operations Platform for Financial Services27.5.2026 09:20:00 CEST | Press release

Duco, today launched the first agentic Operations platform for financial services. Built on the engine that already processes 20 billion transactions every month for more than 200 clients, including seven of the top 20 banks and ten of the top 20 asset managers, the platform brings together everything firms need to run post-trade Operations alongside autonomous agents, safely and at scale. The launch establishes a breakthrough the industry has been waiting for. A tool surface, purpose-built for agents. Duco has unbundled its platform into a new alternative agent layer that reconfigures its platform into hundreds of discrete capabilities servicing post trade. Model Context Protocol (MCP) gives capabilities covering reconciliation, data preparation, data access, audit trails, exception management, document creation and more. For the first time, agents have a verified, deterministic toolset built specifically for post-trade. Agents do not replace matching, rules or audit; they use them. P

Brenus Pharma Announces FDA Acceptance of IND Application for STC-1010 (BreAK-CRC001) in MSS Metastatic Colorectal Cancer (mCRC)27.5.2026 08:49:00 CEST | Press release

STC-1010 is a first-in-class allogeneic in vivo immunotherapy for which the FDA has authorized clinical evaluation in the U.S. under the BreAK-CRC001 study. This strategic milestone enables the company to execute a global clinical strategy following European regulatory approvals (ANSM, AFMPS), first patients dosed with preliminary results and good tolerability observed in early Phase Ia. First data are expected to be presented during ESMO annual congress 2026. Brenus Pharma, a clinical stage biotechnology company developing novel in vivo immunotherapies for solid tumors, announced that the U.S. Food and Drug Administration (FDA) has accept the company's Investigational New Drug (IND) application for its first drug candidate, STC-1010, in microsatellite stable (MSS) metastatic colorectal cancer (mCRC). STC-1010 is designed to address a critical unmet need worldwide. Approximately 95% of mCRC patients have MSS tumors, which demonstrate minimal response to standard immunotherapies. The FD

Tide Crosses 2 Million Members Worldwide - Big Step Forward in Mission to Support and Grow Small Businesses27.5.2026 08:00:00 CEST | Press release

Continuing to grow in the UK and internationally, with India seeing especially strong member growth in the last 12 months In the UK, Tide has 15% market share and has helped small businesses access over £1.75bn in credit Rapid roll out of products; from admin, accounting and tax tools; subscription options; payment solutions; government registrations; bill payments and credit Tide, the UK’s leading business management platform, today announces it has crossed 2 million members globally, with India in particular seeing strong growth. More than 1.1 million small businesses joined Tide in India since the company launched there in December 2022. This makes India Tide’s fastest-growing market by member acquisition. The UK is Tide’s home market, with 900,000 SMEs, 15% market share, and the majority of the company’s revenue. Tide’s steadily expanding its presence in Europe, with Germany and France, where the platform is gaining strong traction, thanks to millions of small businesses turning to

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye