Report highlights key trends in ecrime and nation state activity

Company debuts brand-new eCrime Index showing intensity of cyber-criminal market over time; reveals adversaries exploit supply chains, double down on COVID-19 and ransomware.

  • 3 years ago Posted in

CrowdStrike has released the 2021 CrowdStrike Global Threat Report, detailing unique insights to the global threat landscape and offering best practices for organisations looking to amplify their cybersecurity maturity in 2021. The findings suggest supply chain attacks, ransomware, data extortion and nation-state threats prove to be more prolific than ever. On the heels of unprecedented growth in eCrime, CrowdStrike has introduced a new eCrime index (ECX) in this year’s report. The ECX displays the strength, volume and sophistication of the cybercriminal market, and is updated weekly in real-time based on 18 unique indicators of criminal activity.

 

The 2021 Global Threat Report highlights that eCrime attacks made up 79% of all intrusions (via hands-on-keyboard activity) uncovered by CrowdStrike Falcon OverWatch, the organisation’s expert team of threat hunters. Among a popular vector for cyber criminals is the supply chain as it allows malicious actors to propagate multiple downstream targets from a single intrusion. Additionally, the report spotlights how nation-state adversaries infiltrated networks to steal valuable data seeking COVID-19 vaccine research, whereby threat actors have improved strategies to evade detection and camouflage in networks, many times deceiving their targets.

 

“There is a human being behind every attack, and cyber actors are getting bolder and more astute day-to-day. As such, it’s critical to employ comprehensive cloud-native technology for increased visibility and prevention capabilities including threat intelligence and expert threat hunting to stay one step ahead of modern day attacks. Additionally, today’s rapidly changing remote work environment highlights that identity protection is central to the defence of any enterprise’s infrastructure. Organisations must take decisive action to control access and protect data in order to outmanoeuvre adversaries,” said Adam Meyers, senior vice president of intelligence at CrowdStrike.

 

Other key findings from the 2021 Global Threat Report include:

 

  • The healthcare industry will continue to face significant threats from criminal groups as CrowdStrike Intelligence confirmed 18 Big Game Hunting enterprise ransomware families infected 104 healthcare organisations in 2020.
  • Adversaries from the Democratic People’s Republic of Korea (DPRK) will be motivated to enhance cyber operations in 2021 due to COVID-19 and a resulting food shortage.
  • Data extortion techniques will continue to accelerate through the introduction of Dedicated Leak Sites (DLS).
  • China will focus on supply chain compromises and the targeting of key western verticals in support of the 14th Five Year Plan and the COVID-19 vaccine including academic, healthcare, technology, manufacturing and aerospace. 

Research shows ‘game needs to be changed,’ with security innovation years behind that of the...
Node4 has released its Mid-Market IT Priorities Report 2021. The independent report reveals that...
Atos has launched Atos OneCloud Sovereign Shield, a set of solutions, methodologies, and...
New distribution agreement set to bolster Westcon-Comstor’s Zero Trust offering in more markets...
Research from Avast has found that employees in almost a third (31%) of Small and Medium...
This year, over half of MSPs or their end customers have been attacked by ransomware but only 53%...
Trend Micro has published new research revealing that 90% of IT decision makers claim their...
Cyber consultants call on businesses to act now, or risk budgets shrinking further in ‘real...