Connect with us

Tech News

Positive Technologies: companies only have six days to install updates before cybercriminals strike

Published

on

For five years running, vulnerability exploitation has ranked among the top three most popular attack methods on organizations, according to the study done by Positive Technologies. In 2022–2023, attackers stole confidential data from over 2,700 companies worldwide, exploiting just one vulnerability. This study presents the results of analyzing dark web discussions and statistics on vulnerabilities, along with issues and solutions in organizational vulnerability management.

“Over the past three years, vulnerability exploitation has increasingly attracted cybercriminals, accounting for about one-third of all successful cyberattacks: it accounted for 18% in 2019, and 32% in 2023. On average, an experimental PoC exploit appears within six days of a critical vulnerability disclosure. This PoC, often a code fragment, command list, or program, can be used to attack a vulnerable system. In as few as five days, discussions surrounding this PoC begin on dark web forums, and with them the likelihood of ready-to-use exploits being developed to be used in mass attacks increases,” notes Fedor Chunizhekov, Head of Security Analytics at Positive Technologies.

Positive Technologies has analyzed over 51 million messages across 217 dark web platforms.The most commonly mentioned vulnerabilities are those in WinRAR (CVE-2023-38831), Fortinet products (CVE-2022-40684), and the Java-based Spring Framework (CVE-2022-22965). The vulnerabilities in Linux (CVE-2022-0847) and the Microsoft Support Diagnostic Tool (CVE-2022-30190) have also been objects of hackers’ attention. Messages about remotely exploited vulnerabilities constitute 70% of discussions among cybercriminals on the dark web.

Delaying vulnerability fixes can lead to serious issues for organizations. In May 2023, a mass defacement of websites in the .ru and .рф domains occurred due to the exploitation of the CVE-2022-27228 vulnerability in the 1C-Bitrix web development and content management system. By exploiting the CVE-2023-4966 vulnerability, criminals stole data on 36 million customer accounts from the telecommunications company Xfinity, including password hashes, passwords, and answers to security questions. Ransomware groups have used a flaw in the Microsoft Windows Support Diagnostic Tool (CVE-2022-30190, also known as Follina) to conduct mass ransomware attacks. APT groups have also exploited this vulnerability in their cyberespionage campaigns. Due to the exploitation of a critical vulnerability in Progress MOVEit Transfer (CVE-2023-34362), confidential data from over 2,700 organizations worldwide was compromised.

To prevent the exploitation of vulnerabilities and the occurrence of non-tolerable events, proactive measures must be taken to protect individual services and the entire IT infrastructure. Experts recommend that organizations regularly inventory and classify their assets; prioritize assets based on their importance, as well as the severity and frequency of vulnerabilities; conduct regular security analyses of systems and applications; and monitor the dark web to identify the latest threats. Setting realistic timelines for vulnerability remediation and closely monitoring the patching process are also crucial.

For this, we recommend using modern vulnerability management systems, such as MaxPatrol VM. Using specialized tools allows you to promptly detect and eliminate dangerous vulnerabilities both on the network perimeter and within the infrastructure, with information about current vulnerabilities being delivered to MaxPatrol VM within just 12 hours. Monitoring the status of the target systems and intermediary target systems on a regular basis helps to prevent non-tolerable events associated with the exploitation of vulnerabilities in important assets.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Tech News

Datadobi Adds Data Access Governance to StorageMAP, Enabling Enterprises to Answer the Critical Question: “Who Has Access to What?”

Published

on


Datadobi, a leader in the Data Storage Management Services space, today announced the general availability of Data Access Governance (DAG) within StorageMAP. The new capability gives organizations visibility into who has access to their unstructured data and whether that access aligns with corporate policy. It extends Datadobi’s ability to help enterprises discover, align, and operationalize data across fragmented environments as their intelligence and orchestration layer.

As AI initiatives, cyber threats, and rising data complexity expose the limits of traditional approaches, DAG addresses a critical gap: organizations cannot govern, protect, or extract value from data they cannot see or control. As AI initiatives, cyber threats, and rising data complexity expose the limits of traditional approaches, DAG addresses a critical gap: organizations cannot govern, protect, or extract value from data they cannot see or control.

StorageMAP’s DAG capability gives administrators comprehensive visibility into access permissions across fragmented unstructured data environments. By surfacing who has access to what data, and whether that access aligns with business and security policy. Organizations can detect misaligned permissions, reduce cyber exposure, and enforce governance at scale. This visibility is the essential first stage of the broader DSMS discipline — visibility, understanding, decision, execution — that determines whether organizations can act on their data with confidence.

The introduction of DAG extends StorageMAP’s existing capabilities across data discovery, classification, risk assessment, lifecycle management and AI Data Readiness. Together, these capabilities help organizations to discover what data they have, align it with business value and risk requirements, and operationalize policy-driven action across their environments. The result is unstructured data that supports AI initiatives, strengthens cyber resilience, reduces cost, and drives long-term business value rather than holding it back.

DAG, which was trialed by a number of beta customers, supports a range of enterprise use cases, from protecting sensitive data and reducing breach impact, to maintaining records compliance and managing risk through mergers, acquisitions, and divestitures. Early access customers identified a gap in their understanding of which critical datasets were exposed and who could access them, often relying on manual investigation to respond to audits and security incidents.

With Datadobi’s DAG capabilities, these organizations quickly identify overexposed data and validate access controls to proactively strengthen their security posture. For organizations investing in AI, it provides the governance foundation that trusted, well-governed data requires.  And for those subject to data protection regulations (such as GDPR, HIPAA, or PCI DSS), it delivers the visibility needed to demonstrate that access controls are in place, operating as intended, and aligned with business policy.

“Unstructured data is at the center of every major enterprise challenge right now including AI readiness, cyber resilience, cost management, and regulatory compliance,” said Michael Jack, Co-founder and Chief Revenue Officer for Datadobi. “But organizations cannot address any of those challenges with data they cannot see or control. Data Access Governance gives teams the visibility to understand who has access to what, identify where risk exists, and take action to bring their unstructured data under control. It is a foundational step in turning unstructured data from a source of risk and complexity into a driver of business value.”

Continue Reading

Tech News

Cloudera and Muroon Announce Strategic MoU

Published

on

In a strategic move to advance enterprise digital enablement and support the technological ambitions of Saudi Vision 2030, Cloudera, the only true hybrid platform for data, analytics, and AI, has agreed to a Memorandum of Understanding (MoU) with MuroonI the technology and digital enablement subsidiary of Tawuniya.

The proposed collaboration aims to evaluate opportunities to help organizations across the region modernize their technology capabilities, accelerate digital transformation, and unlock long-term business value. By leveraging Cloudera’s products and services, the engagement will explore how Cloudera’s hybrid data platforms and AI-driven analytics can help to boost Muroon’s expanding IT and digital enablement objectives.

Under the proposed partnership, Muroon and Cloudera will aim to collaborate on delivering secure data exchange and modern cloud architecture. Integrating Cloudera Anywhere Cloud™ principles, the proposed collaboration will explore ways to deliver a consistent cloud experience, enabling organizations to deploy AI and analytics workloads across private data centers and cloud environments with unified governance and security.

The proposed alliance creates complementary roles for both organizations. Muroon will leverage its delivery capabilities, consulting expertise, implementation services, across the Tawuniya ecosystem and the wider region. Cloudera will look to provide technology leadership, platform expertise, solution architecture, and technical enablement.

Ahmad Shakora, General Vice President of META, Cloudera, said:
“Our proposed collaboration with Muroon represents an important milestone in empowering regional organizations with modern hybrid data and AI architectures. Through Cloudera’s ability to bring AI and analytics to data anywhere it resides, combined with Muroon’s deep digital enablement and implementation capabilities, we aim to accelerate innovation, ensure secure data management, and actively contribute to the digital economy goals of Saudi Vision 2030.”

Faisal Bakhsh, Vice President of Business Development and Services Delivery at Muroon, added:
“As the technology arm of Tawuniya Group, Muroon is dedicated to delivering cutting-edge digital solutions that drive operational efficiency and business growth. Exploring this partnership with Cloudera allows us to harness world-class hybrid data and AI platforms to expand our service capabilities, facilitate secure data exchange, and deliver transformative value to our ecosystem and clients across Saudi Arabia.”

Continue Reading

Tech News

Cloudera and Muroon Announce Strategic MoU

Published

on


In a strategic move to advance enterprise digital enablement and support the technological ambitions of Saudi Vision 2030, Cloudera, the only true hybrid platform for data, analytics, and AI, has agreed to a Memorandum of Understanding (MoU) with MuroonI the technology and digital enablement subsidiary of Tawuniya.

The proposed collaboration aims to evaluate opportunities to help organizations across the region modernize their technology capabilities, accelerate digital transformation, and unlock long-term business value. By leveraging Cloudera’s products and services, the engagement will explore how Cloudera’s hybrid data platforms and AI-driven analytics can help to boost Muroon’s expanding IT and digital enablement objectives.

Under the proposed partnership, Muroon and Cloudera will aim to collaborate on delivering secure data exchange and modern cloud architecture. Integrating Cloudera Anywhere Cloud™ principles, the proposed collaboration will explore ways to deliver a consistent cloud experience, enabling organizations to deploy AI and analytics workloads across private data centers and cloud environments with unified governance and security.

The proposed alliance creates complementary roles for both organizations. Muroon will leverage its delivery capabilities, consulting expertise, implementation services, across the Tawuniya ecosystem and the wider region. Cloudera will look to provide technology leadership, platform expertise, solution architecture, and technical enablement.

Ahmad Shakora, General Vice President of META, Cloudera, said:
“Our proposed collaboration with Muroon represents an important milestone in empowering regional organizations with modern hybrid data and AI architectures. Through Cloudera’s ability to bring AI and analytics to data anywhere it resides, combined with Muroon’s deep digital enablement and implementation capabilities, we aim to accelerate innovation, ensure secure data management, and actively contribute to the digital economy goals of Saudi Vision 2030.”

Faisal Bakhsh, Vice President of Business Development and Services Delivery at Muroon, added:
“As the technology arm of Tawuniya Group, Muroon is dedicated to delivering cutting-edge digital solutions that drive operational efficiency and business growth. Exploring this partnership with Cloudera allows us to harness world-class hybrid data and AI platforms to expand our service capabilities, facilitate secure data exchange, and deliver transformative value to our ecosystem and clients across Saudi Arabia.”

Continue Reading

Trending

Copyright © 2023 | The Integrator