当前位置:首页 >英文主页 >中英对照 > 报告详情

2020年最新攻击和威胁报告:疫情影响下的数字化构建及风险预警 - SANS(英文版)(19页).pdf

上传人: Me****y 编号:19615 2020-09-24 19页 2.29MB

1、SANS Institute Information Security Reading Room SANS Top New Attacks and Threat Report _ John Pescatore Copyright SANS Institute 2020. Author Retains Full Rights. This paper is from the SANS Institute Reading Room site. Reposting is not permitted without express written permission. Introduction The

2、 impact of the COVID-19 outbreak has reinforced the fact that physical-world incidents can be far more damaging than cyber world attacks. However, the coronavirus has also highlighted two other key points: A secure and resilient digital infrastructure is necessary to survive medical and environmenta

3、l catastrophes. The time to address the top threats and risks is before they begin having an impact. There are many places to find backward-looking statistics of how many attacks were launched in cyberspace. Forward-looking guidance areas that security managers should focus on are harder to find. In

4、 times of economic uncertainty, it is even more critical for security teams to prioritize resources to increase effectiveness and efficiency in dealing with known threats while also minimizing the risk from emerging attacks. For the past 14 years, the SANS “Five Most Dangerous Attacks” expert panel

5、at the annual RSA Conference1 has filled that gap. This SANS whitepaper begins with a baseline of statistics from three of the most reliable sources of breach and malware data; then it summarizes the expert advice from the SANS instructors on the RSA panel, detailing the emerging threats security te

6、ams should look out for in 2020 and beyond and what to do about them. 2020 SANS Institute A SANS Whitepaper Sponsored by: Anomali Cisco Systems Cyberinc DomainTools InfoBlox Mandiant Security Validation RSA Unisys Written by John Pescatore April 2020 1 SANS Top New Attacks and Threat Report 2020 Bre

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
本文主要内容概括如下: 1. 文章首先分析了2019年美国数据泄露事件和恶意软件攻击的趋势,指出医疗保健行业数据泄露事件数量和规模均有大幅增长。 2. 文章接着引用了SANS研究所2020年RSA会议上的专家小组讨论内容,总结了五个主要的安全威胁: - 命令控制工具和框架的扩散 - “利用现有资源”的攻击方式 - 非常深的持久性 - 移动设备的风险 - 安全产品中的漏洞 3. 文章最后提出了改进防御措施的建议,包括加强供应链安全、提高用户安全意识、加强终端和网络控制等。 4. 文章还提到了一些具体的数据,如2019年美国数据泄露事件数量增长17%,医疗保健行业数据泄露事件数量增长153%,以及一些关键的恶意软件变种等。
2020年网络安全威胁有哪些? 如何防范高级持续性威胁? 移动设备安全有哪些新挑战?
客服
商务合作
小程序
服务号
折叠