当前位置:首页 >英文主页 >中英对照 > 中译版报告详情

趋势科技(Trend Micro):2025年网络风险趋势报告(中译版)(63页).pdf

上传人: 1****1 编号:764520 2025-08-18 63页 4.78MB

下载:

1、TREND 2025 CYBER RISKREPORTOutpacing the adversaryThe Trend 2025 Cyber Risk Report sustains our shift towards proactive security.Protecting enterprises is no longer about stopping breaches but is now about staying ahead,making cybersecurity a business enabler.This report looks at our telemetry from

2、2024:by looking at last years risk landscape,we recognize exposures and understand attacker behavior to be able to implement countermeasures for the year ahead.This way,we transform security from a challenge to a catalyst for innovation and business growth.This report harnesses data from the Cyber R

3、isk Exposure Management1(CREM)solution of our flagship cybersecurity platform Trend Vision One2.Telemetry from this solution identifies exposures across attack surfaces to help prioritize and address risk areas.Combined with data from our native eXtended Detection and Response3(XDR)tools and threat

4、intelligence,this report primes enterprises with information on adversaries along with risk insights to reduce their Cyber Risk Index and stay ahead of the curve.The Cyber Risk Index4 Trend 2025 Cyber Risk ReportTo achieve a proactive approach to cybersecurity,we capitalize on data from our Cyber Ri

5、sk Exposure Management solution,which is designed to protect organizations digital assets from attacks by evaluating risks across the attack surface,prioritizing them,and implementing appropriate countermeasures.CREM calculates an enterprises Cyber Risk Index(CRI),a metric that quantifies the overal

6、l security risk of an organization based on a consolidation of individual assets and risk factor scores.Our research4 has found that organizations with a CRI above the average have a greater likelihood to suffer from attacks than those with a lower CRI.Like how preventive health check-ups reveal the

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据文章内容,以下是关键点的概括: 1. **网络安全风险指数**:2024年网络安全风险指数(CRI)平均值为38.4,属于中等风险水平。教育、农业和建筑业是CRI最高的行业。 2. **风险事件和检测**:最常见的风险事件包括不安全的云应用访问、过时的微软Entra ID账户和沙箱检测到的电子邮件威胁。XDR模型检测到的威胁包括可能的操作系统凭据转储和加密数据。 3. **漏洞、补丁和响应**:2024年最常见的未打补丁漏洞包括CVE-2024-21357和CVE-2024-30086。欧洲的平均补丁时间最短,为23.5天。 4. **外部威胁数据**:勒索软件攻击最多的地区是美国,其次是巴西和土耳其。恶意软件检测最多的地区是日本,其次是美国和印度。 5. **APT活动**:2024年值得注意的APT活动包括针对东南亚政府的Earth Kurma和针对开发者的Famous Chollima。 6. **恶意软件家族**:最常见的恶意软件家族是WebShell、AdDloader和Prometei。 7. **零日漏洞利用**:自2020年以来,勒索软件组织已利用59个零日漏洞。 8. **网络安全建议**:企业应优化安全设置,定期打补丁,启用多因素认证,并采用基于风险的网络安全方法。
2024年网络安全风险报告有哪些关键发现? 如何利用Trend Vision One降低网络安全风险? 2024年哪些行业面临最高的网络安全风险?
客服
商务合作
小程序
服务号
折叠