Intelligent CISO Issue 48 | Page 44

Businesses should recognise that vulnerabilities are holding them in a deadlock – as ransomware actors use that to their advantage .
industry unlocked

IBM REPORT : MANUFACTURING FELT BRUNT OF CYBERATTACKS IN 2021 AS SUPPLY CHAIN WOES GREW

IBM Security research reveals that the manufacturing industry was the most targeted by ransomware and vulnerability exploitations in 2021 , in its annual X-Force Threat Intelligence Report .
BM Security has

I released its annual X-Force Threat Intelligence Index unveiling how ransomware and vulnerability exploitations together were able to ‘ imprison ’ businesses in 2021 , further burdening global supply chains , with manufacturing emerging as the most targeted industry . While phishing was the most common cause of cyberattacks in general in the past year , IBM Security X-Force observed a 33 % increase in attacks caused by vulnerability exploitation of unpatched software , a point of entry that ransomware actors relied on more than any other to carry out their attacks in 2021 , representing the cause of 44 % of ransomware attacks .

The 2022 report details how in 2021 ransomware actors attempted to ‘ fracture ’ the backbone of global supply chains with attacks on manufacturing , which became 2021 ’ s most attacked industry ( 23 %), dethroning financial services and insurance after a long reign . Experiencing more ransomware attacks than any other industry , attackers wagered on the ripple effect that disruption to manufacturing organisations would cause their downstream supply chains to pressure them into paying the ransom . An alarming 47 % of attacks on manufacturing were caused due to vulnerabilities that victim organisations had not yet or could not patch , highlighting the need for organisations to prioritise vulnerability management .
The IBM Security X-Force Threat Intelligence Index 2022 maps new trends and attack patterns IBM Security observed and analysed from its data – drawing from billions of datapoints ranging from network and endpoint detection devices , incident response engagements , phishing kit tracking and more – including data provided by Intezer .
Some of the top highlights in this year ’ s report include :
• Ransomware gangs defy takedowns . Ransomware persisted as the top attack method observed in 2021 , with ransomware groups showing no sign of stopping , despite the uptick in ransomware takedowns . According to the 2022 report , the average lifespan of a ransomware group before shutting down or rebranding is 17 months .
• Vulnerabilities expose businesses ’ biggest ‘ vice ’. X-Force reveals that for businesses in Europe , Asia and MEA , unpatched vulnerabilities caused approximately 50 % of attacks in 2021 , exposing businesses ’ biggest struggle – patching vulnerabilities .

Businesses should recognise that vulnerabilities are holding them in a deadlock – as ransomware actors use that to their advantage .

44 www . intelligentciso . com