When, not if

1 May 2014 Information Security

South African businesses face unprecedented levels of cyber-attacks, as global security vulnerabilities and threats against systems, applications and personal networks have reached their highest-ever recorded level, Cisco has announced in the Cisco 2014 Annual Security Report.

In the rapidly evolving world of security threats, total global threat alerts increased 14% year-on-year from 2012 to 2013. Around the world, a sample of 30 of the world’s largest Fortune 500 companies generated visitor traffic to websites that host malware, with global energy, oil and gas sector seeing a sharp rise in malware attacks.

“Organisations across the Middle East and Africa must realise that it is no longer if they will be targeted by cyber attacks, but rather when,” says Greg Griessel, consulting systems engineer Security Solutions, Cisco South Africa. “Chief information security officers face growing pressure to protect terabytes of data on an increasingly porous network, manage information safely especially on the cloud and evaluate the risks of working with third-party vendors for specialised solutions – all in the wake of shrinking budgets and leaner IT teams.”

The Middle East and Africa region is posting strong adoption of smart devices, set to grow from 133 million in 2013 to 598 million in 2018, and cloud computing, set to post the world’s strongest cloud traffic growth rate from 17 exabytes in 2012 to 157 exabytes in 2017, according to Cisco.

However, while increasing mobility is rapidly enhancing daily lives and businesses, it is also driving more complex security threats and solutions. As a result, cybercriminals are increasingly attacking Internet infrastructure rather than individual computers or devices, with password and credential theft, hidden-in-plain-sight infiltrations, and breaching and stealing data.

Additional survey findings

The Cisco 2014 Annual Security Report also flagged up a host of troublesome trends, including Android mobile devices bearing the brunt of 99% of all mobile malware, Java being the most frequently exploited programming language, and multipurpose Trojans counting as the most frequently encountered Web-delivered malware.

Specific business sectors besides energy, such as pharmaceutical, chemical, electronics manufacturing, agriculture and mining are showing a sharp rise in malware attacks.

Furthermore, the report indicates a shortage of more than 1 million security professionals across the globe in 2014, as most organisations do not have the people or systems to continuously monitor extended networks or detect infiltrations, and then apply protections in a timely and effective manner.

New advanced malware protection

Anticipating the high demand for state-of-the-art security solutions, Cisco and its company Sourcefire have fully integrated the Advanced Malware Protection solution into Cisco’s Content Security Portfolio of products, including Web, Email Security Appliances, and Cloud Web Security Service, to protect the more than 60 million enterprise and commercial users who use Content Security solutions.

Advanced Malware Protection’s effectiveness draws from integrating Cisco and Sourcefire cloud security intelligence networks in order to detect and protect against cyber-attacks. The solution also evolves to provide continuous monitoring and analysis across the extended network before, during, and after an attack, along with retrospective remediation of advanced threats.

By combining Sourcefire’s knowledge of advanced threats and analytics expertise with Cisco’s Email and Web Security solutions, customers benefit from visibility and control, combined with a cost-effective, seamless approach to addressing advanced malware problems.

“In order to restore trust in people, institutions, and technologies, our Advanced Malware Protection solution empowers defenders with real-time knowledge about expanding attack surfaces, and provides our customers with the best advanced malware protection – from the cloud to network to endpoint,” concluded Griessel.

Download the report at www.cisco.com/web/offers/lp/2014-annual-security-report/index.html





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

What are MFA fatigue attacks, and how can they be prevented?
Information Security
Multifactor authentication is a security measure that requires users to provide a second form of verification before they can log into a corporate network. It has long been considered essential for keeping fraudsters out. However, cybercriminals have been discovering clever ways to bypass it.

Read more...
SA's cybersecurity risks to watch
Information Security
The persistent myth is that cybercrime only targets the biggest companies and economies, but cybercriminals are not bound by geography, and rapidly digitising economies lure them in large numbers.

Read more...
Cyber insurance a key component in cyber defence strategies
Information Security
[Sponsored] Cyber insurance has become a key part of South African organisations’ risk reduction strategies, driven by the need for additional financial protection and contingency plans in the event of a cyber incident.

Read more...
Deception technology crucial to unmasking data theft
Information Security Security Services & Risk Management
The ‘silent theft’ of data is an increasingly prevalent cyber threat to businesses, driving the ongoing leakage of personal information in the public domain through undetected attacks that cannot even be policed by data privacy legislation.

Read more...
Data security and privacy in global mobility
Security Services & Risk Management Information Security
Data security and privacy in today’s interconnected world is of paramount importance. In the realm of global mobility, where individuals and organisations traverse borders for various reasons, safeguarding sensitive information becomes an even more critical imperative.

Read more...
Sophos celebrates partners and cybersecurity innovation at annual conference
News & Events Information Security
[Sponsored] Sun City hosted Sophos' annual partner event this year, which took place from 12 to 14 March. Sophos’ South African cybersecurity distributors and resellers gathered for an engaging two-day conference.

Read more...
The CIPC hack has potentially serious consequences
Editor's Choice Information Security
A cyber breach at the South African Companies and Intellectual Property Commission (CIPC) has put millions of companies at risk. The organisation holds a vast database of registration details, including sensitive data like ID numbers, addresses, and contact information.

Read more...
Navigating South Africa's cybersecurity regulations
Sophos Information Security Infrastructure
[Sponsored] Data privacy and compliance are not just buzzwords; they are essential components of a robust cybersecurity strategy that cannot be ignored. Understanding and adhering to local data protection laws and regulations becomes paramount.

Read more...
AI augmentation in security software and the resistance to IT
Security Services & Risk Management Information Security
The integration of AI technology into security software has been met with resistance. In this, the first in a series of two articles, Paul Meyer explores the challenges and obstacles that must be overcome to empower AI-enabled, human-centric decision-making.

Read more...
Milestone Systems joins CVE programme
Milestone Systems News & Events Information Security
Milestone Systems has partnered with the Common Vulnerability and Exposures (CVE) Programme as a CVE Numbering Authority (CNA), to assist the programme to find, describe, and catalogue known cybersecurity issues.

Read more...