Separator

Microsoft releases its second edition of Cyber Signals tracking ransomware's new business model

Separator

Microsoft today released its second edition of Cyber Signals, a regular cyberthreat intelligence brief, spotlighting security trends and insights gathered from Microsoft's global security signals and experts. The specialization and consolidation of the cybercrime economy have fueled ransomware-as-a-service (RaaS), becoming a dominant business model, enabling a wider range of criminals, regardless of their technical expertise, to deploy ransomware. This edition of Cyber Signals provides insights on the evolving factors shaping the extortion segment of the cybercrime economy, and the influential rise of RaaS powering ransomware attacks.

The RaaS economy allows cybercriminals to purchase access to ransomware payloads and data leakage as well as payment infrastructure. Ransomware "gangs" are in reality RaaS programs like Conti or REvil, used by many different actors who switch between RaaS programs and payloads. This industrialization of cybercrime has created specialized roles, like access brokers who sell access to networks. A single compromise often involves multiple cybercriminals in different stages of the intrusion.

Key findings shared within the report include:

  • Over 80% of ransomware attacks can be traced to common configuration errors in software and devices
  • Microsoft's Digital Crimes Unit directed the removal of more than 531,000 unique phishing URLs and 5,400 phish kits between July 2021 and June 2022, leading to the identification and closure of over 1,400 malicious email accounts used to collect stolen customer credentials
  • Median time for an attacker to access a person's private data if they fall victim to a phishing email is one hour, 12 minutes
  • For endpoint threats, the median time for an attacker to begin moving laterally within a corporate network if a device is compromised is one hour, 42 minutes
  • Guidance on how businesses can better pre-empt and disrupt extortion threats, by building their credential hygiene, auditing credential exposure, reducing the attack surface, securing their cloud resources and identities, better preventing initial access, and closing security blind spots.
  • Vasu Jakkal, Corporate Vice President, Security, Compliance, Identity, and Management at Microsoft, said: "It takes new levels of collaboration to meet the ransomware challenge. The best defenses begin with clarity and prioritization, that means more sharing of information across and between the public and private sectors and a collective resolve to help each other make the world safer for all. At Microsoft, we take that responsibility to heart because we believe security is a team sport."

Microsoft's threat intelligence provides visibility into threat actors' actions. With a broad view of the threat landscape – informed by 43 trillion threat signals analyzed daily, combined with the human intelligence of more than 8,500 Microsoft experts – threat hunters, forensics investigators, malware engineers, and researchers – Microsoft is able to see first-hand what organizations are facing, and is committed to helping businesses put that information into action to pre-empt and disrupt extortion threats.

Current Issue

Most Viewed

6 Successful Business Ventures of Cristiano Ronaldo Marcus Low : A Journey Of Passion & Perseverance In The Coffee Industry | CEOInsightsAsia Vendor Is It Possible to Get Minecraft for Free on iOS? Elon Musk and Transformational Leadership Meituan's Drones are soaring in Revolutionizing the Delivery Service in China's Bustling Metropolis 5 Richest Women in Asia in 2024 Jose Luis U Yulo Jr : A Multifaceted Visionary in International Business Leadership | CEOInsightsAsia Vendor Shyam Lal Uttam: A Growth Innovator & Strategic Leader | CEOInsightsAsia Vendor Niyati Kanakia: A New-Age Edupreneur Travelingahead Of Time | CEOInsightsAsia Vendor Mohd. Burhanudin: Transforming The Malaysian Footwear Industry Via Visionary Leadership | CEOInsightsAsia Vendor Top 10 Leaders From South Korea - 2023 Mohammad Puri: Spearheading Innovative Approaches In Oil & Gas Investment And Trading | CEOInsightsAsia Vendor Marta Diaz: A Visionary Leader, Taking Business To The Next Level | CEOInsightsAsia Vendor Jose Mari Banzon: On A Mission To Make Home Ownership Available To Every Filipino | CEOInsightsAsia Vendor CES 1991: Nintendo's Treason Made Sony Rule With PlayStation's Success Jaspal Sidhu: A Passionate Educationist Striving To Make Education More Affordable & Accessible In Southeast Asia Kian Kee Kok: Driving Retail Excellence Through Innovation & Operational Integration | CEOInsightsAsia Vendor Beninder Singh Johl: Pioneering Legal Excellence & Operational Triumphs In A Global Context | CEOInsightsAsia Vendor Timothy John: Architect Of Sustainable Paradigm In Global Transportation | CEOInsightsAsia Vendor Chin Keat Chyuan: Charting Healthcare Frontiers Through Visionary Leadership | CEOInsightsAsia Vendor Josef Victor Chiongbian: A Passionate Hospitality Leader | CEOInsightsAsia Vendor Intel Chip Architect Su Fei Returns to China After 20 Years Catapulting Renewable Energy Sector by Flexing Innovative Muscles Prof. Ts. Shamsul Kamar Abu Samah: Navigating The Skies & Guiding The Future Of Aerospace Excellence | CEOInsightsAsia Vendor Jee Von: Harnessing Growth Potentials For The Brand To Make Every Step Count | CEOInsightsAsia Vendor Datuk Raghu Bathamenadan: Effectively Leading People While Fostering A Positive Work Culture | CEOInsightsAsia Vendor Felix Dan Lopez: Revolutionizing HR Strategies & Nurturing A Culture Of Excellence At Cebu Pacific Air | CEOInsightsAsia Vendor Jimmy Tan: Empowering Change While Catalyzing Growth At Fiamma Holdings Berhadd | CEOInsightsAsia Vendor Sam Loh Chin Hau: Navigating Legal Horizons In Real Estate & Corporate Law | CEOInsightsAsia Vendor Chinese Scientists Build a Mach 4 ‘ACE’ Turbojet Engine



🍪 Do you like Cookies?

We use cookies to ensure you get the best experience on our website. Read more...