Intelligent CISO Issue 47 | Page 19

cyber trends
interested in implementing and leveraging Artificial Intelligence .
• Prediction : The ethics surrounding personal information and data will play a major role in the viability of organisations in 2022 . Those who make protecting this information a priority will be viewed favourably , while those who choose to do the opposite will remain at risk to damaging cyberattacks , as well as consumers choosing to take their business elsewhere .
5 . Sophisticated and targeted mobile malware attacks will become more common significant implications for sectors where IoT devices have been widely deployed , such as healthcare and the electrical grid . Cyber actors are well aware of the vulnerabilities and until protecting this industry is prioritised , it will continue to be targeted .
3 . Third-party cyber-risk will be the biggest problem organisations face
• Background : At the end of 2020 , US federal agencies and highprofile companies were hit with a major advanced persistent threat cyberattack . The breach occurred via a compromised and weaponised version of a software update from a connected third party . This type of prolific and widespread attack created a roadmap for other cyber actors to replicate in future malicious campaigns .
• Prediction : The increased reliance of organisations outsourcing to vendors as a result of a remote workforce has extrapolated an already prevalent threat in third-party cyber-risk . With more access points for cyber actors to exploit and organisations unsure how to manage and protect their entire digital ecosystem , cyber actors will continue to use connected parties as access to their main target .
4 . Data ethics will play a prominent role in organisational strategy
• Background : As consumers request to further understand how their personal information is used , stored and shared , organisations are making efforts to adequately respond , especially around biometrics , such as facial recognition technology . This is especially true for organisations
• Background : Pegasus spyware made major headlines in 2021 , as it was used to collect information on individuals without their knowledge or consent . The revelation that high-profile individuals , journalists and human rights activists were specifically targeted by nation-state actors using sophisticated mobile malware was eye-opening and cause for alarm .
• Prediction : These types of cyberattacks will become more prevalent and widespread as similar perpetrators continue to refine and evolve their capabilities to evade detection . Knowing that surveillance can be conducted without interaction from the target will lead to nationstate actors further relying on these types of tools to gather valuable intelligence and influence strategic objectives in their favour .
6 . Nation states will access a digital passport or tracing app database
• Background : Depending on the country , everyday tasks , like entering a grocery store , may require displaying proof of receiving the COVID-19 vaccine through an approved app . Other jurisdictions mandate opting into location tracking on mobile devices so that tracing infected individuals is made possible . Both scenarios present situations where sensitive information is captured and stored . www . intelligentciso . com
19