Business Wire

CA-ARMIS

Share
Cybersecurity Attack Attempts More Than Doubled, Increasing 104% in 2023

Armis, the asset intelligence cybersecurity company, today announced The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape. The 2023 analysis of Armis’ proprietary data offers critical insight into the multifaceted challenges global organizations face when it comes to protecting the entire attack surface. Report findings serve as a blueprint to help security teams worldwide prioritize efforts to reduce cyber risk exposure in 2024.

The report found that global attack attempts more than doubled in 2023, increasing 104%. Utilities (over 200% increase) and Manufacturing (165% increase) were the most at risk industries. Attack attempts peaked in July, with communications devices, imaging devices and manufacturing devices experiencing intensified targeting during this period.

“Armis found that not only are attack attempts increasing, but cybersecurity blind spots and critical vulnerabilities are worsening, painting prime targets for malicious actors,” said Nadir Izrael, CTO and Co-Founder, Armis. “It’s critical that security teams leverage similar intelligence defensively so that they know where to prioritize efforts and fill these gaps to mitigate risk. We hope that by sharing these insights, global businesses and governments will leverage them to immediately pinpoint what they should be focusing on to improve their cybersecurity posture this year to keep critical infrastructure, economies and society safe and secure.”

Key findings of The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape include:

Geopolitical tensions exacerbate the cybersecurity landscape

  • Cyberwarfare grew more widespread in 2023. Top industries exposed to attack from Chinese and Russian actors were those within Manufacturing, Educational Services and Public Administration.
    • In manufacturing, .cn and .ru domains contributed to an average of 30% of monthly attack attempts, while attacks from these domains on Educational Services have risen to about 10% of total attacks.

Legacy technology steepens incline of cybersecurity pros’ existing up-hill battle

  • Older Windows server OS versions (2012 and earlier) are 77% more likely to experience attack attempts compared to newer Windows Server versions.
    • This vulnerability is particularly evident in the server environment, with nearly a quarter of server versions facing end-of-support (EoS) scenarios. The Educational Services industry has a significantly higher percentage of servers (41%) with unpatched weaponized Common Vulnerabilities and Exposures (CVEs), compared to the general average of 10%.
  • Industries still using end-of-life (EoL) or EoS OSs that are no longer actively supported or patched for vulnerabilities and security issues by the manufacturer: Educational Services (18%), Retail (14%), Healthcare (12%), Manufacturing (11%) and Public Administration (10%).

Businesses struggle with effective vulnerability prioritization and remediation

  • There were over 65,000 unique CVEs discovered in 2023.
  • Wearable devices have the highest percentage (93%) of unpatched CVEs.
  • A third of all devices are still not patched for Log4Shell.
  • Patch rates for critical CVEs are not prioritized:
    • Low CVEs: 11% patch rate
    • Medium CVEs: 58% patch rate
    • High CVEs: 64% patch rate
    • Critical CVEs: 55% patch rate
  • Irrespective of the weaponization status of a CVE, organizations consistently grapple with patch rates at 62% for non-weaponized and 61% for weaponized vulnerabilities.

“Blueprints like this report are invaluable as they help teams focus limited resources on efforts with the greatest impact and with the insights to tell data-driven stories in justification of cross-team priorities,” said Curtis Simpson, CISO, Armis. “Using hindsight and analyzed data could allow CISOs to focus 2024 efforts on segmenting legacy technology, prioritizing exposures of greatest significance, and utilizing AI-driven technologies that can assist security teams with defending and managing the attack surface in real-time.”

Proprietary data leveraged for this report was mined from Armis’ Asset Intelligence Engine. The Armis Asset Intelligence Engine is a collective AI-powered knowledge base, monitoring billions of assets worldwide, in order to identify cyber risk patterns and behaviors. It feeds the Armis Centrix™ platform with unique, actionable cyber intelligence to detect and address real-time threats across the entire attack surface.

To read the full report, The Anatomy of Cybersecurity: A Dissection of 2023's Attack Landscape, please visit: https://www.armis.com/anatomy-of-cybersecurity

Learn more about The Armis Asset Intelligence Engine here: https://www.armis.com/platform/armis-asset-intelligence-engine/

About Armis

Armis, the asset intelligence cybersecurity company, protects the entire attack surface and manages the organization's cyber risk exposure in real time. In a rapidly evolving, perimeter-less world Armis ensures that organizations continuously see, protect and manage all critical assets. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7. Armis is a privately held company headquartered in California.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240122998889/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

C5 Capital Partners with Ukraine’s Brave1 Accelerator to Advance Ukraine’s Defense Innovation4.10.2024 17:46:00 CEST | Press release

C5 Capital, a specialist venture capital firm based in Washington DC and London announces a strategic partnership with Brave1, Ukraine’s premier defense technology accelerator. This collaboration will support Ukraine’s innovative tech startups, accelerating the development and application of critical technologies for the defense of Ukraine against Russian aggression. Brave1 leads Ukraine’s defense innovation ecosystem. Since its launch, the accelerator has evaluated more than 2,600 cutting-edge defense-focused innovations. This remarkable achievement has established Ukraine as emerging global leader in defense technology and innovation. C5 Capital’s partnership will provide investment capital and strategic expertise needed to help Ukrainian founders grow and scale their defense startups, whose innovations are already being tested and deployed in battlefield conditions. “C5 Capital’s strategic partnership with Brave1 is focused on empowering Ukraine’s courageous founders, who are buildi

TXOne Networks Expands Edge Series of OT-Native Network Security Appliances4.10.2024 10:49:00 CEST | Press release

The product family is supercharged with new models and a powerful firmware upgrade. TXOne Networks, a leader in Cyber-Physical Systems (CPS) security, today announced Version 2.1 of its Edge series of networking security appliances. designed to protect industrial processes and infrastructure without disrupting operations. This update enhances network resilience and adaptability across a wider range of industrial verticals. “Our Edge series is specifically engineered for the complexities of OT networks, where traditional IT cybersecurity solutions fall short,” said Dr. Terence Liu, CEO of TXOne Networks. “With version 2.1, we’ve elevated the Edge product line to address the unique challenges faced by OT environments—where disruption isn’t an option. This release underscores our commitment to delivering robust, adaptable security that not only meets current demands but anticipates the evolving needs of industrial operations.” TXOne Networks collaborates with manufacturers and critical in

WELOCK and ApartX Ink Key China-Kazakhstan Digital Trade Agreement at Global Digital Trade Expo4.10.2024 03:54:00 CEST | Press release

Signing Ceremony of China-Kazakhstan Digital Trade Key Project by WELOCK and ApartX in Global Digital Trade Expo On September 25th, the 3rd Global Digital Trade Expo “Digital Trade Night” was held in Hangzhou. The event highlighted important digital trade projects between China and Kazakhstan, injecting constant momentum into economic and trade cooperation between the two sides. During the event, the much-anticipated signing ceremony for the “China-Kazakhstan Digital Trade Key Project” was officially launched. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20241003595967/en/ (Photo: Business Wire) Important witnesses of the signing ceremony included: Zhaslan Madiyev (Minister) Ministry of Digital Development, Innovations and Aerospace Industry of the Republic of Kazakhstan Yao Gaoyuan Mayor of Hangzhou Avazhan Mukanova (Director of the Department of International Cooperation) Ministry of Digital Development, Innovations and Ae

Wrth: The Royal Institute of Traditional Arts Captivates Greece with the Intricate 'Al-Qatt Al-Asiri’ Art3.10.2024 18:01:00 CEST | Press release

Saudi traditional arts are set to reach new global audiences as the Royal Institute of Traditional Arts (Wrth) participates in the Saudi Cultural Week in Greece from September 27 to October 1. The event, titled “The Heritage of Two Cultures," explores Saudi heritage through the lens of "Al-Qatt Al-Asiri" art. Wrth offers a series of interactive workshops, including a highlight on the creation of natural dyes and gypsum carving arts with workshops and hands-on community artworks. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20241003645976/en/ Wrth: The Royal Institute of Traditional Arts Captivates Greece with the Intricate 'Al-Qatt Al-Asiri’ Art (Photo: AETOSWire) As part of Culture Week, five talented Saudi artists lead interactive workshops showcasing the art of gypsum carving with traditional ‘Asiri’ patterns. This unique art form gained international recognition after being inscribed on UNESCO's Intangible Cultural Herit

Experience the Future of Smarter AI for All at Lenovo’s Tenth Annual Global Tech World Event3.10.2024 15:40:00 CEST | Press release

The flagship event showcases Lenovo’s comprehensive portfolio of AI solutions, services, and devices with featured sessions from global leaders at Lenovo, AMD, Intel, Microsoft, NVIDIA, and more On October 15, 2024, Lenovo will host its annual global innovation event, Tech World, in Bellevue, Washington. This marks the 10th consecutive year of the event and reflects a decade of innovation and transformation from the company. This year’s event will explore how Lenovo is delivering on the promise of artificial intelligence (AI) with end-to-end solutions fueling its mission of Smarter AI for All. Technology featured will include ground-breaking AI for Good projects, hybrid AI to empower both individuals and enterprises, and proven ways to fast-track and deploy generative AI. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20241003339216/en/ What's next for AI? Join us October 15, 2024 at #LenovoTechWorld to hear top industry leade

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
HiddenA line styled icon from Orion Icon Library.Eye