Carbon Black: Defense Capabilities Match Increased Attack Sophistication

Carbon Black: Defense Capabilities Match Increased Attack Sophistication

While businesses are seeing an increase in attack sophistication, and the overall attack volume in the past 12 months has increased, defense is getting better.



According to research by Carbon Black of 250 British CTOs and CISOs, 84% of UK businesses reported an increase in overall attack volume while 90% cited more sophistication.



Speaking to Infosecurity, Rick McElroy, head of security strategy at Carbon Black, said that these statistics were due to what he called the “trickle down cyber-economy for adversaries” where nation state actors, cyber-militias and contractors working for them develop multi-million dollar tools which get into the wild – such as the exploits which enabled WannaCry and NotPetya to spread.



“As new capabilities and ammunition are developed, you’ll see that move into things like ransomware,” he explained. “Secondary, [offense] is not a highly specialized skill anymore, a lot of people are trained in it, and you can buy a lot of capabilities on the dark web. So the rise is down to more people being involved, and the sophistication is down to the cyber-economy, but defenders do have better tools.”



On that point, McElroy said that because there is better tooling in prevention and detection, the adversary has to improve and become more “stealthy.”



Asked if the state of cybersecurity was improving for defenders, McElroy said he believed it was getting better as “people are starting to sleep a bit more” and getting some of things that they need thanks to budget approval. “It comes back to how to make the army bigger, and recruit successfully as people look at ‘non-traditional areas’” he said.



Th ..

Support the originator by clicking the read the rest link below.