Even with the shifting risk panorama, organizations view malware, phishing, and knowledge breaches as their greatest threats.
Nearly a 3rd of respondents in Fastly’s Battle Fireplace with Fireplace survey take into account knowledge breaches and knowledge loss as the most important cybersecurity risk to their group over the subsequent 12 months. Malware (29%) and phishing (26%) spherical out the highest three. What’s notable is the change in focus from 2021, when 31% of respondents named malware as their greatest risk, adopted by distributed denial of service assaults (26%) and assaults focusing on identified vulnerabilities (25%).
Whereas assaults exploiting vulnerabilities or misconfigured providers have been perceived as the most important threats in 2021, malware, phishing, and ransomware gave the impression to be larger points in 2022. Fastly famous the truth that the 2022 Menace Panorama report from ENISA additionally recognized ransomware as the highest risk companies have been involved about, whereas malware was the second mostly recognized risk.
Fastly’s knowledge confirmed that simply 14% have been involved about DDoS assaults in 2022 — which is a surprisingly steep decline, particularly contemplating the stratospheric improve in DDoS assaults in 2022. There have been 60% extra DDoS assaults within the first six months of 2022 than within the entirety of 2021, based on the report. One purpose for the disconnect could also be as a result of content material supply networks (CDNs) are capable of take in the overwhelming majority of DDoS assaults, releasing up IT to deal with different areas, Sean Leach, Fastly’s chief product architect, mentioned within the report.
Whereas assaults towards distant employees didn’t present up on the record of threats organizations are anxious about, Fastly’s knowledge means that organizations are nonetheless very involved about their skill to guard distant employees. Almost half, or 46%, predicted that assaults on distant employees will drive cybersecurity threats over the subsequent 12 months.
“Distant employees create no further vulnerability on their very own,” Leach mentioned, noting that issues about securing distant employees have extra to do with adoption of latest applied sciences and studying methods to use safety controls successfully.
To bolster their defenses, 51% of worldwide companies are actively investing in distant worker safety, with an extra 38% planning on investing in it inside the subsequent two years, Fastly mentioned in its report.
Total, IT leaders are growing their cybersecurity investments to herald extra instruments and applied sciences to defend towards threats — 73% mentioned they have been growing cybersecurity funding. Sadly, extra instruments do not essentially imply higher safety, as a few of these instruments might not simply combine with the present safety stack or with one another, Leach mentioned.
“As a substitute of shopping for any variety of pointless instruments, companies with profitable safety methods typically work with fewer applied sciences which work carefully collectively and are deeply built-in with each other,” Leach mentioned.