{"id":55586,"date":"2020-01-23T00:00:00","date_gmt":"2020-01-22T21:00:00","guid":{"rendered":"https:\/\/prohoster.info\/blog\/blog_prohoster\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020"},"modified":"2020-02-18T14:03:43","modified_gmt":"2020-02-18T11:03:43","slug":"slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/news\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020","title":{"rendered":"Complex, vulnerable, misconfigured: Cyber threats of 2020.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><img decoding=\"async\" alt=\"Complex, vulnerable, misconfigured: Cyber threats of 2020.\" src=\"\/wp-content\/uploads\/2020\/01\/40434a6c40f7a0f829d5a63c7fc39f0a.jpg\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\n<i>Technologies are evolving and becoming more complex year after year, and along with them, attack methodologies are also improving. Modern realities demand online applications, cloud services, and virtualization platforms, so it's no longer possible to hide behind a corporate firewall and avoid the 'dangerous internet'. All of this, along with the spread of IoT\/IIoT, the development of fintech, and the growing popularity of remote work, has dramatically changed the landscape of threats. Let's talk about the cyber dangers that await us in 2020.<\/i><br \/>\n<noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><\/p>\n<h3>Exploitation of 0day vulnerabilities will outpace the release of patches. <\/h3>\n<p>\nThe complexity of software systems is increasing, and as a result, they inevitably contain bugs. Developers release fixes, but first, the problem must be identified, which takes time from adjacent teams, including testers who are forced to conduct tests. But many teams are catastrophically short on time. The result is an unacceptably long patch release, or even the appearance of a patch that only works partially. <\/p>\n<p>Released in 2018, <noindex><a rel=\"nofollow\" href=\"https:\/\/blog.0patch.com\/2018\/10\/patching-re-patching-and-meta-patching.html\">the patch for the 0day vulnerability in the Microsoft Jet engine turned out to be incomplete,<\/a><\/noindex>that is, it did not resolve the issue completely. <br \/>\nIn 2019, Cisco released <noindex><a rel=\"nofollow\" href=\"https:\/\/www.securityweek.com\/cisco-improperly-patched-exploited-router-vulnerabilities\">patches for vulnerabilities CVE-2019-1652 and CVE-2019-1653 in router firmware that did not fix the errors.<\/a><\/noindex>. <br \/>\nIn September 2019, researchers <noindex><a rel=\"nofollow\" href=\"https:\/\/decoder.cloud\/2019\/12\/18\/from-dropboxupdater-to-nt-authoritysystem\/\">discovered a 0day vulnerability in Dropbox for Windows and informed the developers about it,<\/a><\/noindex>however, they did not fix the error within 90 days. <\/p>\n<p>Blackhat and Whitehat hackers are diligently searching for vulnerabilities, so the likelihood that they will discover a problem first is significantly higher. Some of them aim to receive rewards through Bug Bounty programs, while others pursue specific malicious goals. <\/p>\n<h3>More attacks using deepfakes.<\/h3>\n<p>\nNeural networks and artificial intelligence are advancing, creating new opportunities for fraud. Following the fake porn videos featuring celebrities, concrete attacks causing serious financial damage have emerged. <\/p>\n<p><i>In March 2019, perpetrators stole $243,000 from an energy company with a single phone call.<noindex><a rel=\"nofollow\" href=\"https:\/\/www.wsj.com\/articles\/fraudsters-use-ai-to-mimic-ceos-voice-in-unusual-cybercrime-case-11567157402\">Criminals stole $243,000 from an energy company with a single phone call.<\/a><\/noindex>\"The head of the parent company\" instructed the branch manager to transfer money to a contractor from Hungary. The CEO's voice was forged using artificial intelligence. <\/i><\/p>\n<p>Given the rapid development of deepfake technology, it is expected that cybercriminals will incorporate the creation of fake audio and video clips into BEC attacks and technical support scams to increase user trust. <\/p>\n<p>Top executives will be the main target for deepfakes, as recordings of their conversations and speeches are publicly accessible. <\/p>\n<h3>Attacks on banks through fintech<\/h3>\n<p>\nThe adoption of the European payment services directive PSD2 has enabled new types of attacks on banks and their clients. This includes phishing campaigns against users of fintech applications, DDoS attacks on fintech startups, and data theft from banks through open APIs. <\/p>\n<h3>Complex attacks through service providers<\/h3>\n<p>\nCompanies are increasingly narrowing their specialization, outsourcing non-core activities. Their employees develop trust in outsourcing firms that handle accounting, provide technical support, or ensure security. As a result, compromising just one service provider is sufficient to infiltrate the target infrastructure with malicious code, steal money, or information. <\/p>\n<p><i>In August 2019, hackers penetrated the infrastructure of two IT companies providing data storage and backup services, and through it <noindex><a rel=\"nofollow\" href=\"https:\/\/www.zdnet.com\/article\/ransomware-hits-hundreds-of-dentist-offices-in-the-us\/\">deployed ransomware in several hundred dental offices across the United States. <\/a><\/noindex><br \/>\nAn IT company servicing the New York Police Department temporarily incapacitated the fingerprint database, <noindex><a rel=\"nofollow\" href=\"https:\/\/threatpost.com\/nypd-fingerprint-database-ransomware\/150592\/\">by connecting an infected Intel NUC mini-computer to the police network.<\/a><\/noindex><\/i><\/p>\n<p>As supply chains grow longer, more weak links emerge that can be exploited to attack the largest targets. <br \/>\nAnother factor that will facilitate supply chain attacks is the widespread adoption of remote work. Freelancers working via public Wi-Fi or from home are easy targets, as they can interact with several major companies, making their compromised devices a convenient platform for preparing and executing further stages of cyber attacks. <\/p>\n<h3>Widespread use of IoT\/IIoT for espionage and extortion<\/h3>\n<p>\nThe rapid growth of IoT devices, including smart TVs, smart speakers, and various voice assistants, combined with a large number of vulnerabilities found in them, will create many opportunities for unauthorized use. <br \/>\nCompromising smart devices and using AI for speech recognition allows the identification of the surveillance object, turning such devices into tools for extortion or corporate espionage. <\/p>\n<p>Another area where IoT devices will continue to be used is in creating botnets for various malicious cyber services: spam distribution, anonymization, and conducting <noindex><a rel=\"nofollow\" href=\"https:\/\/www.rbc.ru\/business\/21\/01\/2020\/5e26a8a69a79475cb4f039a5\">DDoS attacks<\/a><\/noindex>. <br \/>\nThe number of attacks on critical infrastructure objects equipped with components <noindex><a rel=\"nofollow\" href=\"https:\/\/www.trendmicro.com\/vinfo\/us\/security\/news\/cybercrime-and-digital-threats\/the-internet-of-things-in-the-cybercrime-underground\">of the industrial Internet of Things<\/a><\/noindex>will increase. Their aim could be, for example, ransom extortion under the threat of stopping the operation of the enterprise. <\/p>\n<h3>The more clouds, the more dangers<\/h3>\n<p>\nThe mass migration of IT infrastructures to the cloud will create new targets for attacks. Deployment and configuration errors in cloud servers are successfully exploited by malicious actors. The number of leaks related to unsafe database configurations in the cloud increases every year. <\/p>\n<p><i>In October 2019, an ElasticSearch server was discovered in the public domain, containing <noindex><a rel=\"nofollow\" href=\"https:\/\/threatpost.com\/data-enriched-profiles-1-2b-leak\/150560\/\">4 billion records of personal data.<\/a><\/noindex><br \/>\nAt the end of November 2019, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.vpnmentor.com\/blog\/report-truedialog-leak\/\">a database from True Dialog was found publicly accessible in Microsoft Azure, containing nearly 1 billion records<\/a><\/noindex>, which included full names of subscribers, email addresses, and phone numbers, as well as the texts of SMS messages. <\/i><\/p>\n<p>Leaks of data hosted in the cloud will not only damage the reputation of companies but also lead to fines and penalties.<\/p>\n<p>Insufficient access restrictions, improper permission management, and negligence in logging are just some of the mistakes companies will make when setting up their cloud networks. As migration to the cloud increases, third-party service providers with varying security expertise will become more involved in this process, creating additional opportunities for attacks. <\/p>\n<h3>Escalation of virtualization issues<\/h3>\n<p>\nContainerization of services simplifies the development, maintenance, and deployment of software; however, it also introduces additional risks. Vulnerabilities in popular container images will continue to be a problem for all who use them. <\/p>\n<p>Companies will also have to face vulnerabilities in various components of the container architecture, from runtime errors to orchestrators and build environments. Malicious actors will seek and exploit any weaknesses to compromise the DevOps process. <\/p>\n<p>Another trend related to virtualization involves serverless computing. According to Gartner's forecast, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.gartner.com\/en\/newsroom\/press-releases\/2018-12-04-gartner-identifies-the-top-10-trends-impacting-infras\">by 2020, more than 20% of companies will use this technology.<\/a><\/noindex>These platforms allow developers to execute code as a service, eliminating the need to pay for entire servers or containers. However, transitioning to serverless computing does not guarantee immunity from security issues. <\/p>\n<p>Entry points for attacks on serverless applications will be outdated and compromised libraries, as well as improperly configured environments. Attackers will use these to collect sensitive information and infiltrate corporate networks. <\/p>\n<h3>How to counter threats in 2020<\/h3>\n<p>\nGiven the increasing complexity of cybercriminal activities, companies will need to expand their collaboration with security experts to mitigate risks across all sectors of their infrastructure. This will enable defenders and developers to gain insights and better control network-connected devices and address vulnerabilities. <\/p>\n<p>The constantly evolving threat landscape will require the implementation of multi-layered protection based on security mechanisms such as: <\/p>\n<ul>\n<li>detecting successful attacks and mitigating their impacts,<\/li>\n<li>managed detection and attack prevention,<\/li>\n<li>behavioral monitoring: proactive blocking of new threats and detection of anomalous behavior, <\/li>\n<li>endpoint protection.<\/li>\n<\/ul>\n<p>\nA lack of skills and low quality of knowledge in cybersecurity will determine the overall level of security within organizations, therefore another strategic task for their leadership should be the systematic training of safe employee behavior combined with raising awareness in information security.<br \/>\n<br \/>Source: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/trendmicro\/blog\/485078\/\">habr.com<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0422\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u044e\u0442\u0441\u044f \u0438 \u0443\u0441\u043b\u043e\u0436\u043d\u044f\u044e\u0442\u0441\u044f \u0433\u043e\u0434 \u0437\u0430 \u0433\u043e\u0434\u043e\u043c, \u0430 \u0432\u043c\u0435\u0441\u0442\u0435 \u0441 \u043d\u0438\u043c\u0438 \u0441\u043e\u0432\u0435\u0440\u0448\u0435\u043d\u0441\u0442\u0432\u0443\u044e\u0442\u0441\u044f \u043c\u0435\u0442\u043e\u0434\u0438\u043a\u0438 \u0430\u0442\u0430\u043a. \u0421\u043e\u0432\u0440\u0435\u043c\u0435\u043d\u043d\u044b\u0435 \u0440\u0435\u0430\u043b\u0438\u0438 \u0442\u0440\u0435\u0431\u0443\u044e\u0442 \u043e\u043d\u043b\u0430\u0439\u043d-\u043f\u0440\u0438\u043b\u043e\u0436\u0435\u043d\u0438\u0439, \u043e\u0431\u043b\u0430\u0447\u043d\u044b\u0445 \u0441\u0435\u0440\u0432\u0438\u0441\u043e\u0432 \u0438 \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c \u0434\u043b\u044f \u0432\u0438\u0440\u0442\u0443\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438, \u043f\u043e\u044d\u0442\u043e\u043c\u0443 \u0443\u0436\u0435 \u043d\u0435 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u0441\u044f \u0441\u043f\u0440\u044f\u0442\u0430\u0442\u044c\u0441\u044f \u0437\u0430 \u043a\u043e\u0440\u043f\u043e\u0440\u0430\u0442\u0438\u0432\u043d\u044b\u043c \u0444\u0430\u0439\u0440\u0432\u043e\u043b\u043e\u043c \u2014 \u0438 \u043d\u0435 \u0432\u044b\u0441\u043e\u0432\u044b\u0432\u0430\u0442\u044c \u043d\u043e\u0441 \u0432 \u00ab\u043e\u043f\u0430\u0441\u043d\u044b\u0439 \u0438\u043d\u0442\u0435\u0440\u043d\u0435\u0442\u00bb. \u0412\u0441\u0451 \u044d\u0442\u043e \u0432\u043c\u0435\u0441\u0442\u0435 \u0441 \u0440\u0430\u0441\u043f\u0440\u043e\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0435\u043c IoT\/IIoT, \u0440\u0430\u0437\u0432\u0438\u0442\u0438\u0435\u043c \u0444\u0438\u043d\u0442\u0435\u0445\u0430 \u0438 \u0440\u0430\u0441\u0442\u0443\u0449\u0435\u0439 \u043f\u043e\u043f\u0443\u043b\u044f\u0440\u043d\u043e\u0441\u0442\u044c\u044e \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0439 \u0440\u0430\u0431\u043e\u0442\u044b \u0434\u043e \u043d\u0435\u0443\u0437\u043d\u0430\u0432\u0430\u0435\u043c\u043e\u0441\u0442\u0438 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":55587,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-55586","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0422\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u044e\u0442\u0441\u044f \u0438 \u0443\u0441\u043b\u043e\u0436\u043d\u044f\u044e\u0442\u0441\u044f.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/news\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0421\u043b\u043e\u0436\u043d\u043e, \u0443\u044f\u0437\u0432\u0438\u043c\u043e, \u043d\u0435\u0434\u043e\u043d\u0430\u0441\u0442\u0440\u043e\u0435\u043d\u043e: \u043a\u0438\u0431\u0435\u0440\u0443\u0433\u0440\u043e\u0437\u044b 2020 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0422\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u044e\u0442\u0441\u044f \u0438 \u0443\u0441\u043b\u043e\u0436\u043d\u044f\u044e\u0442\u0441\u044f.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/news\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-01-22T21:00:00+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-02-18T11:03:43+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Complex, vulnerable, misconfigured: Cyber threats 2020 | ProHoster","description":"Technologies are evolving and becoming more complex.","canonical_url":"https:\/\/prohoster.info\/en\/blog\/news\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0421\u043b\u043e\u0436\u043d\u043e, \u0443\u044f\u0437\u0432\u0438\u043c\u043e, \u043d\u0435\u0434\u043e\u043d\u0430\u0441\u0442\u0440\u043e\u0435\u043d\u043e: \u043a\u0438\u0431\u0435\u0440\u0443\u0433\u0440\u043e\u0437\u044b 2020 | ProHoster","og:description":"\u0422\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u044e\u0442\u0441\u044f \u0438 \u0443\u0441\u043b\u043e\u0436\u043d\u044f\u044e\u0442\u0441\u044f.","og:url":"https:\/\/prohoster.info\/en\/blog\/news\/slozhno-uyazvimo-nedonastroeno-kiberugrozy-2020","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-01-22T21:00:00+00:00","article:modified_time":"2020-02-18T11:03:43+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"55586","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 19:41:37","updated":"2022-10-04 16:14:31","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/55586","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=55586"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/55586\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media\/55587"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=55586"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=55586"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=55586"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}