Intelligent CIO North America Issue 42 | Page 24

TRENDING security approach that provides layers of defense , which can be administered effectively by managed service providers .”
Among the key findings , the latest Internet Security
Report featuring data from Q3 2023 showed :
• Threat actors increasingly use remote management tools and software to evade anti-malware detection – which both the FBI and CISA have acknowledged . For instance , in researching the top phishing domains , the Threat Lab observed a tech support scam that would result in a victim downloading a pre-configured , unauthorized
It ’ s important for organizations to provide social engineering education as well as adopt a unified security approach that provides layers of defense . version of TeamViewer , which would allow an attacker full remote access to their computer .
• Medusa ransomware variant surges in Q3 , driving endpoint ransomware attacks to increase 89 %. On the surface , endpoint ransomware detections appeared down in Q3 . Yet the Medusa ransomware variant , which emerged in the Top 10 malware threats for the first time , was detected with a generic signature from the Threat Lab ’ s automated signature engine . When factoring in the Medusa detections , ransomware attacks rose 89 % quarter over quarter .
• Threat actors pivot from using script-based attacks and increasingly employ other livingoff-the-land techniques . Malicious scripts declined as an attack vector by 11 % in Q3 after Dropping by 41 % in Q2 . Still , script-based attacks remain the largest attack vector , accounting for 56 % of total attacks , and scripting languages like PowerShell are often used in living-off-the-land attacks . Alternatively , Windows living-off-the-land binaries increased 32 %. These findings indicate to Threat Lab researchers that threat actors continue
24 INTELLIGENTCIO NORTH AMERICA www . intelligentcio . com