Ransomware incidents down 17%—but threat of cyberattacks continues to grow

Cyberattacks continue to grow as a threat to companies, but ransomware incidents declined 17 percent, according to ISACA’s State of Cybersecurity 2018 survey.

The survey, including the responses from 2,366 security leaders, outlined the types and volume of cyberattacks. It also provided recommendations for improved cybersecurity.

Findings included:

  • 50 percent of security leaders have seen an increase in cyberattacks in the last year.
  • 80 percent reported an attack in the next year was “likely” or “very likely.”
  • Incidents of ransomware declined from 62 percent to 45 percent this year, most likely because organizations improved security following the international WannaCry and NotPetya attacks. 
  • 82 percent reported a ransomware strategy in place, and 78 percent had a formal process.
  • Ransomware attacks could have been displaced by cryptocurrency mining.
  • The most common cyberattack vectors were phishing, malware and social engineering.
  • 39 percent of respondents were not familiar or only slightly familiar with active defense strategies, and only half were actively using them.

“This is a missed opportunity for security leaders and their organizations,” said Frank Downs, director of cybersecurity at ISACA. “ISACA’s research indicates that active defense strategies are one of the most effective countermeasures to cyberattacks. A full 87 percent of those who use them indicate that they were successful.”

Recommendations included:

  • Invest in talent – Organizations should invest in finding, retaining and training skilled cybersecurity professionals.
  • Explore automation benefits – Organizations should consider automation-driven strategies to detect and support recovery and response efforts.
  • Ensure investment in security controls – Investing in security controls against phishing, malware and social engineering would prevent these most common forms of attack.
""
Cara Livernois, News Writer

Cara joined TriMed Media in 2016 and is currently a Senior Writer for Clinical Innovation & Technology. Originating from Detroit, Michigan, she holds a Bachelors in Health Communications from Grand Valley State University.

Around the web

The tirzepatide shortage that first began in 2022 has been resolved. Drug companies distributing compounded versions of the popular drug now have two to three more months to distribute their remaining supply.

The 24 members of the House Task Force on AI—12 reps from each party—have posted a 253-page report detailing their bipartisan vision for encouraging innovation while minimizing risks. 

Merck sent Hansoh Pharma, a Chinese biopharmaceutical company, an upfront payment of $112 million to license a new investigational GLP-1 receptor agonist. There could be many more payments to come if certain milestones are met.