01.03.2022 Views

Cyber Defense eMagazine March Edition for 2022

The view from the Publisher’s desk is very encouraging, based on celebrating 10 years of growth and success at Cyber Defense Magazine! When our tiny team began our journey at Cyber Defense Media Group (CDMG) together in January 2012, we were happy to help smaller, lesser-known innovators of infosec, get their message out there and Rise Above the noise. Now, after 10 years, we’re even helping multi-billion-dollar companies and governments around the globe with our offices in DC, London, FL, NY and other locations in play, as we continue to scale, thanks to you – our readers, listeners, viewers and media partners. Beyond the magazine, in response to the demands of our markets, the scope of CDMG’s activities has grown into many media endeavors. They now include Cyber Defense Awards; Cyber Defense Conferences; Cyber Defense Professionals (job postings site being revamped); Cyber Defense TV, Radio, and Webinars; and Cyber Defense Ventures (partnering with investors). Please check them out and see how much more CDMG has to offer! Very respectfully and with much appreciation, Gary Miliefsky, Publisher

The view from the Publisher’s desk is very encouraging, based on celebrating 10 years of growth and success at Cyber Defense Magazine! When our tiny team began our journey at Cyber Defense Media Group (CDMG) together in January 2012, we were happy to help smaller, lesser-known innovators of infosec, get their message out there and Rise Above the noise. Now, after 10 years, we’re even helping multi-billion-dollar companies and governments around the globe with our offices in DC, London, FL, NY and other locations in play, as we continue to scale, thanks to you – our readers, listeners, viewers and media partners. Beyond the magazine, in response to the demands of our markets, the scope of CDMG’s activities has grown into many media endeavors. They now include Cyber Defense Awards; Cyber Defense Conferences; Cyber Defense Professionals (job postings site being revamped); Cyber Defense TV, Radio, and Webinars; and Cyber Defense Ventures (partnering with investors).
Please check them out and see how much more CDMG has to offer!

Very respectfully and with much appreciation,
Gary Miliefsky, Publisher

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

servers, databases, websites, and systems updated with the latest patches to limit vulnerabilities<br />

<strong>for</strong> attackers to exploit.<br />

• Ransomware, Ransomware, Ransomware – After a steep decline in 2020, ransomware attacks<br />

reached 105% of 2020 volume by the end of September (as WatchGuard predicted at the end of<br />

the prior quarter) and are on pace to reach 150% once the full year of 2021 data is analyzed.<br />

Ransomware-as-a-service operations such as REvil and GandCrap continue to lower the bar <strong>for</strong><br />

criminals with little or no coding skills, providing the infrastructure and the malware payloads to<br />

carry out attacks globally in return <strong>for</strong> a percentage of the ransom.<br />

• The quarter’s top security incident, Kaseya, was another demonstration of the ongoing<br />

threat of digital supply chain attacks – Just be<strong>for</strong>e the start of the long 4 th of July holiday<br />

weekend in the US, dozens of organizations began reporting ransomware attacks against their<br />

endpoints. WatchGuard’s incident analysis described how attackers working with the REvil<br />

ransomware-as-a-service (RaaS) operation had exploited three zero-day vulnerabilities (including<br />

CVE-2021-30116 and CVE-2021-30118) in Kaseya VSA Remote Monitoring and Management<br />

(RMM) software to deliver ransomware to some 1,500 organizations and potentially millions of<br />

endpoints. While the FBI eventually compromised REvil’s servers and obtained the decryption<br />

key a few months later, the attack provided yet another stark reminder of the need <strong>for</strong><br />

organizations to proactively take steps like adopting zero-trust, employing the principle of least<br />

privilege <strong>for</strong> vendor access and ensuring systems are patched and up to date to minimize the<br />

impact of supply chain attacks.<br />

In Q3, malware per device skyrocketed and was up <strong>for</strong> the first time since the pandemic began. Looking<br />

at 2021, it’s clear cybersecurity continues to challenge users. Its critical organizations think about the<br />

long-term ups and downs as well as focus on persistent, concerning trends factoring into their security<br />

posture. A strong cybersecurity strategy includes endpoint protection, multi-factor authentication and<br />

secure Wi-Fi – all important components in a layered approach to security. When implemented properly,<br />

users can drastically mitigate outsider threats.<br />

About the Author<br />

Corey Nachreiner is the CSO of WatchGuard Technologies. A front-line<br />

cybersecurity expert <strong>for</strong> nearly two decades, Corey regularly contributes<br />

to security publications and speaks internationally at leading industry<br />

trade shows like RSA. He has written thousands of security alerts and<br />

educational articles and is the primary contributor to the Secplicity<br />

Community, which provides daily videos and content on the latest security<br />

threats, news and best practices. A Certified In<strong>for</strong>mation Systems<br />

Security Professional (CISSP), Corey enjoys "modding" any technical<br />

gizmo he can get his hands on and considers himself a hacker in the old<br />

sense of the word. Corey can be reached at @SecAdept on Twitter or via<br />

https://www.watchguard.com.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>March</strong> <strong>2022</strong> <strong>Edition</strong> 38<br />

Copyright © <strong>2022</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!