当前位置:首页 >英文主页 >中英对照 > 报告详情

2020年网络威胁报告:发现网络安全的盲点 - Sophos(英文版)(29页).pdf

上传人: Me****y 编号:19599 2020-09-24 29页 3.77MB

1、Sophos 2020 Threat Report Were covering your blind spots. Challenges the world faces for the coming year, securing data, devices, and people in an increasingly complex environment. By the SophosLabs research team 2December 2019 Sophos 2020 Threat Report Contents The complexity of simplicity 3 Ransom

2、ware attackers raise the stakes 4 Using our management tools against us 4 Attacker code appears trusted while attackers elevate privileges 5 Living off the land, thriving off the security industrys best tools 5 Efficiency and prioritization give ransomware attackers an edge 7 Mobile malware trends:

3、Dirty tricks are lucrative 8 Ad money feeds non-malicious scammers 8 Fleeceware charges consumers hundreds 9 Bank-credential stealers evade Play Store controls 10 Hidden Adware 13 The growing risks of ignoring internet background radiation 14 Remote Desktop Protocol in the crosshairs 14 Public-facin

4、g services targeted by increasingly sophisticated automation 16 Why Wannacry may never totally disappear, and why you should care 16 Cloud security: Little missteps lead to big breaches 18 The biggest problem in the cloud is the cloud itself 18 Misconfiguration drives the majority of incidents 19 La

5、ck of visibility further obfuscates situational awareness 20 A hypothetical cloud security breach incident 21 Automation-enhanced Active Attacks 23 Patience and stealth: watchwords for attacker success 23 Attacking the backups is now routine 23 Legitimate software as malware misdirection with benign

6、 malware 24 PUAs edge closer to malware, trafficking in exploits 24 Machine learning to defeat malware finds itself under attack 25 Attacks against machine learning malware detectors 25 Machine learning on the offensive 26 Generative models blur the line between human and machine 27 Ten years out, m

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据Sophos 2020年威胁报告,主要内容如下: 1. 勒索软件攻击者不断提高攻击手段,通过加密大量文档来确保受害者支付赎金。 2. 攻击者利用远程监控和管理工具(如Kaseya、ScreenConnect、Bomgar)的漏洞或被盗凭证,远程部署勒索软件。 3. 攻击者通过数字签名或利用软件漏洞(如CVE-2018-8453)来提升权限,使恶意代码看起来“可信”。 4. 攻击者利用系统工具(如PsExec、Windows Management Instrumentation、Windows PowerShell)在网络中自动传播勒索软件。 5. 移动恶意软件种类和手段日益增多,包括SIM劫持攻击和广告欺诈。 6. 一些应用通过欺骗手段最大化广告收入,对用户造成数据消耗和费用增加。 7. 一些应用利用Android应用商店的试用购买模式,在试用期结束后向用户收取高额费用。 8. 一些银行木马利用Android的权限机制,如无障碍权限,来窃取用户凭证。 以上内容概括了报告中的主要威胁和攻击手段,突出了网络安全面临的挑战和风险。
勒索软件攻击者如何提高攻击效率? 哪些“脏技巧”最赚钱? 银行凭证窃贼如何逃避Play Store的控制?
客服
商务合作
小程序
服务号
折叠