Latest News

  • Sri Lanka Ports Authority implements clearance of all imported goods through electronic methods
  • Sampath Bank Continues to Partner with Central Bank on Promoting QR Payments
  • SLT-MOBITEL Gives ‘Power to Your Dreams’ with Special Connectivity Offers
  • Sunshine Holdings selects IFS for subsidiary companies
  • Sri Lanka wins ‘Marketing Innovation Award 2020” at Global CHINT Awards Ceremony
  • New Huawei MatePad T10s brings theatre by your side covering wide entertainment options
  • IIHS provides global education granting students a passport to the world
  • ‘ProRide Safety Riding Academy- a new educational initiative launched by Stafford Motors & ProRide.

    • Don't miss new videos
      Sign in to see updates from your favourite channels


Ceylon Business Reporter Ceylon Business Reporter Ceylon Business Reporter
Ceylon Business Reporter Ceylon Business Reporter Ceylon Business Reporter
  • Home
  • Economics
    • Automobile
    • Shipping
    • Market
    • Garments
    • Energy
    • Other
  • Education
    • Education
    • Other
  • Markets and financial
    • Banking
    • Commodities
    • Currencies
    • Insurance
    • Investing
    • Other
  • Health
    • Hospitals
    • Medicine
    • Other
  • Lifestyle
    • Clothing
    • Fashion
    • Food and drink
    • Jewelry
    • Other
  • Entertainment
    • Art
    • Books
    • Cinema
    • Music
    • Photography
    • Television
    • Theatre
    • Other
  • Sports
    • Cricket
    • Football
    • Swimming
    • Rugby
    • Other
  • Technology
    • Mobile phones
    • Software
    • Telecommunication
    • Other
  • Travel and tourism
    • Travel
    • adventure
    • Food
    • Hotels
    • Restaurants
    • Other
  • CSR
Home Technology Information Technology Sophos Threat Report Flags Ransomware and Other Significant Cyberattack Trends Expected to Shape IT Security In 2021

Sophos Threat Report Flags Ransomware and Other Significant Cyberattack Trends Expected to Shape IT Security In 2021

publisher
November 22, 2020 November 22, 2020
Sophos Threat Report Flags Ransomware and Other Significant Cyberattack Trends Expected to Shape IT Security In 2021
Sophos Threat Report Flags Ransomware and Other Significant Cyberattack Trends Expected to Shape IT Security In 2021

Comprehensive Report Provides 3D View of Cyberattack Trends from SophosLabs Researchers, as well as from Sophos’ Threat Hunters, Rapid Responders, and Cloud Security and AI Experts

 

OXFORD, U.K. – Sophos, a global leader in next-generation cybersecurity, today published the Sophos 2021 Threat Report, which flags how ransomware and fast-changing attacker behaviors, from advanced to entry level, will shape the threat landscape and IT security in 2021. The report, written by SophosLabs security researchers, as well as Sophos’ threat hunters, rapid responders, and cloud security and AI experts, provides a three-dimensional perspective on security threats and trends, from their inception to real-world impact.

 

Three key trends analyzed in the Sophos 2021 Threat Report include:

 

  1. The gap between ransomware operators at different ends of the skills and resource spectrum will increase. At the high end, the big-game hunting ransomware families will continue to refine and change their tactics, techniques and procedures (TTPs) to become more evasive and nation-state-like in sophistication, targeting larger organizations with multimillion-dollar ransom demands. In 2020, such families included Ryuk and RagnarLocker. At the other end of the spectrum, Sophos anticipates an increase in the number of entry level, apprentice-type attackers looking for menu-driven, ransomware-for-rent, such as Dharma, that allows them to target high volumes of smaller prey.

 

Another ransomware trend is “secondary extortion,” where alongside the data encryption the attackers steal and threaten to publish sensitive or confidential information, if their demands are not met. In 2020, Sophos reported on Maze, RagnerLocker, Netwalker, REvil, and others using this approach.

 

“The ransomware business model is dynamic and complex. During 2020, Sophos saw a clear trend towards adversaries differentiating themselves in terms of their skills and targets. However, we’ve also seen ransomware families sharing best-of-breed tools and forming self-styled collaborative ‘cartels,’” said Chester Wisniewski, principal research scientist, Sophos. “Some, like Maze, appeared to pack their bags and head for a life of leisure, except that some of their tools and techniques have resurfaced under the guise of a newcomer, Egregor. The cyberthreat landscape abhors a vacuum. If one threat disappears another one will quickly take its place. In many ways, it is almost impossible to predict where ransomware will go next, but the attack trends discussed in Sophos’ threat report this year are likely to continue into 2021.”

 

  1. Everyday threats such as commodity malware, including loaders and botnets, or human-operated Initial Access Brokers, will demand serious security attention. Such threats can seem like low level malware noise, but they are designed to secure a foothold in a target, gather essential data and share data back to a command-and-control network that will provide further instructions. If human operators are behind these types of threats, they’ll review every compromised machine for its geolocation and other signs of high value, and then sell access to the most lucrative targets to the highest bidder, such as a major ransomware operation. For instance, in 2020, Ryuk used Buer Loader to deliver its ransomware.

 

“Commodity malware can seem like a sandstorm of low-level noise clogging up the security alert system. From what Sophos analyzed, it is clear that defenders need to take these attacks seriously, because of where they might lead. Any infection can lead to every infection. Many security teams will feel that once malware has been blocked or removed and the compromised machine cleaned, the incident has been prevented,” said Wisniewski. “They may not realize that the attack was likely against more than one machine and that seemingly common malware like Emotet and Buer Loader can lead to Ryuk, Netwalker and other advanced attacks, which IT may not notice until the ransomware deploys, possibly in the middle of the night or on the weekend. Underestimating ‘minor’ infections could prove very costly.”

 

  1. All ranks of adversaries will increasingly abuse legitimate tools, well known utilities and common network destinations to evade detection and security measures and thwart analysis and attribution. The abuse of legitimate tools enables adversaries to stay under the radar while they move around the network until they are ready to launch the main part of the attack, such as ransomware. For nation-state-sponsored attackers, there is the additional benefit that using common tools makes attribution harder. In 2020, Sophos reported on the wide range of standard attack tools now being used by adversaries.

 

“The abuse of everyday tools and techniques to disguise an active attack featured prominently in Sophos’ review of the threat landscape during 2020. This technique challenges traditional security approaches because the appearance of known tools doesn’t automatically trigger a red flag. This is where the rapidly growing field of human-led threat hunting and managed threat response really comes into its own,” said Wisniewski. “Human experts know the subtle anomalies and traces to look for, such as a legitimate tool being used at the wrong time or in the wrong place. To trained threat hunters or IT managers using endpoint detection and response (EDR) features, these signs are valuable tripwires that can alert security teams to a potential intruder and an attack underway.”

Previous Post
HUTCH-Self-Care-App

Experience HUTCH at your finger Tips, with the new advanced HUTCH Self Care App

Next Post
Image-2

Delivering essential personal protective equipment to micro and small enterprises – keeping workplaces safe and healthy.

Related News

2-x-2-Sticker-02

SLT-MOBITEL Gives ‘Power to Your Dreams’ with Special Connectivity Offers

publisher
January 24, 2021 January 24, 2021
IFS-LOGO

Sunshine Holdings selects IFS for subsidiary companies

publisher
January 24, 2021 January 24, 2021
HUAWEI-MatePad-T-10s

New Huawei MatePad T10s brings theatre by your side covering wide entertainment options

publisher
January 24, 2021 January 24, 2021
Give-your-productivity-a-massive-boost-in-2021-with-powerful-smart-multi-device-with-EMUI-11

Give your productivity a massive boost in 2021 with smart multi-devices powered by EMUI 11

publisher
January 21, 2021 January 21, 2021

MOST VIEWED

SriLankan Airlines staff at the closing ceremony of TrailSL
1

TrailSL draws to an endwith the support of SriLankan Airlines team members

admin
1K
Management-from-The-Wild-–-101-Lessons-Learnt-authored-by-Wilfred-Sarath-Eranga-Perera2

Globally acclaimed ‘World’s first wildlife travel-based management lessons book’ by Wilfred Sarath Eranga Perera to be launched in Sri Lanka.

publisher
646
Classic-Destinations-Logo3

Classic Destinations, one of the First DMC to receive ‘Safe & Secure Certification’ from SLTDA

publisher
514
Image.4

Emirates expands its operations in the Americas in line with increased passenger demand

publisher
467
Presenting-the-token-of-appreciation-to-the-medical-heroes5

HEALTHCARE HEROES AT IDH RECOGNIZED

publisher
458

Archives

  • January 2021 (162)
  • December 2020 (210)
  • November 2020 (188)
  • October 2020 (222)
  • September 2020 (238)
  • August 2020 (194)
  • July 2020 (212)
  • June 2020 (182)
  • May 2020 (141)
  • April 2020 (131)
  • March 2020 (180)
  • February 2020 (210)
  • January 2020 (186)
  • December 2019 (180)
  • November 2019 (185)
  • October 2019 (232)
  • September 2019 (173)
  • August 2019 (197)
  • July 2019 (169)
  • June 2019 (96)
  • May 2019 (186)
  • April 2019 (94)
  • March 2019 (178)
  • February 2019 (163)
  • January 2019 (169)
  • December 2018 (180)
  • November 2018 (190)
  • October 2018 (179)
  • September 2018 (179)
  • August 2018 (217)
  • July 2018 (229)
  • June 2018 (135)
  • May 2018 (187)
  • April 2018 (150)
  • March 2018 (210)
  • February 2018 (195)
  • January 2018 (195)
  • December 2017 (191)
  • November 2017 (253)
  • October 2017 (265)
  • September 2017 (219)
  • August 2017 (293)
  • July 2017 (133)
  • June 2017 (192)
  • May 2017 (225)
  • April 2017 (147)
  • March 2017 (277)
  • February 2017 (97)
  • January 2017 (103)
  • December 2016 (114)
  • November 2016 (214)
  • October 2016 (241)
  • September 2016 (152)
  • August 2016 (133)
  • July 2016 (207)
  • June 2016 (201)
  • May 2016 (210)
  • April 2016 (184)
  • March 2016 (143)
  • February 2016 (130)
  • January 2016 (188)
  • December 2015 (193)
  • November 2015 (226)
  • October 2015 (257)
  • September 2015 (238)
  • August 2015 (187)
  • July 2015 (196)
  • June 2015 (175)
  • May 2015 (186)
  • April 2015 (135)
  • March 2015 (181)
  • February 2015 (158)
  • January 2015 (104)

Ceylon Business Reporter is the premier business reporting website in Sri Lanka. To publish your article, please contact us on ceylonbusinessreporter@gmail.com

Contact:
0772 500 600
0713 500 600

—————————————–
Our Sinhala Version
www.lbr.lk
(Lanka Business Reporter)

Categories

  • Home
  • Economics
    • Automobile
    • Shipping
    • Market
    • Garments
    • Energy
    • Other
  • Education
    • Education
    • Other
  • Markets and financial
    • Banking
    • Commodities
    • Currencies
    • Insurance
    • Investing
    • Other
  • Health
    • Hospitals
    • Medicine
    • Other
  • Lifestyle
    • Clothing
    • Fashion
    • Food and drink
    • Jewelry
    • Other
  • Entertainment
    • Art
    • Books
    • Cinema
    • Music
    • Photography
    • Television
    • Theatre
    • Other
  • Sports
    • Cricket
    • Football
    • Swimming
    • Rugby
    • Other
  • Technology
    • Mobile phones
    • Software
    • Telecommunication
    • Other
  • Travel and tourism
    • Travel
    • adventure
    • Food
    • Hotels
    • Restaurants
    • Other
  • CSR

Recently Published

Pic-2

Sri Lanka Ports Authority implements clearance of all imported goods through electronic methods

publisher
January 24, 2021 January 24, 2021

Sampath Bank Continues to Partner with Central Bank on Promoting QR Payments

publisher
January 24, 2021 January 24, 2021
2-x-2-Sticker-02

SLT-MOBITEL Gives ‘Power to Your Dreams’ with Special Connectivity Offers

publisher
January 24, 2021 January 24, 2021
Copyright © Ceylon Business Reporter Web Solution By: Thik Solutions

    • Don't miss new videos
      Sign in to see updates from your favourite channels


  • Home
  • Economics
    • Automobile
    • Shipping
    • Market
    • Garments
    • Energy
    • Other
  • Education
    • Education
    • Other
  • Markets and financial
    • Banking
    • Commodities
    • Currencies
    • Insurance
    • Investing
    • Other
  • Health
    • Hospitals
    • Medicine
    • Other
  • Lifestyle
    • Clothing
    • Fashion
    • Food and drink
    • Jewelry
    • Other
  • Entertainment
    • Art
    • Books
    • Cinema
    • Music
    • Photography
    • Television
    • Theatre
    • Other
  • Sports
    • Cricket
    • Football
    • Swimming
    • Rugby
    • Other
  • Technology
    • Mobile phones
    • Software
    • Telecommunication
    • Other
  • Travel and tourism
    • Travel
    • adventure
    • Food
    • Hotels
    • Restaurants
    • Other
  • CSR