Euromedia24 on Play Store Euromedia24 on App Sore
BNB

$694.44

BTC

$94829

ADA

$0.935612

ETH

$3308.91

SOL

$195.58

-1 °

Yerevan

3 °

Moscow

21 °

Dubai

2 °

London

-3 °

Beijing

0 °

Brussels

2 °

Rome

8 °

Madrid

BNB

$694.44

BTC

$94829

ADA

$0.935612

ETH

$3308.91

SOL

$195.58

-1 °

Yerevan

3 °

Moscow

21 °

Dubai

2 °

London

-3 °

Beijing

0 °

Brussels

2 °

Rome

8 °

Madrid

What cyber threats are relevant for the CIS countries?


"Kaspersky" presented the report "Landscape of threats for Russia and the CIS" in 2024 and the first quarter of 2023. In the document, the Kaspersky Cyber ​​Threat Intelligence team described current threats, compiled a list of attack tactics, techniques and procedures, as well as cyber risk mitigation measures.
The main conclusions of the report. Over the past year and a half, the threat of hacktivism has continued to gain momentum. Attackers target organizations with weak defenses without being tied to a specific branch, using any tool available on the open network. At the same time, groups that attack for espionage and financial gain, such as code hackers, are not slowing down.
Bad actors prefer not to change their scripts and attack the least prepared organizations from a cybersecurity perspective, for example by exploiting already known and widespread vulnerabilities in products that many organizations use.
Vulnerabilities in corporate network attacks. More than half of the most actively exploited CVEs were reported in the late last decade. The most common in 2023 and the first quarter of 2024 was CVE-2021-44228 (Log4Shell), a critical vulnerability in the Apache Log4j repository that allows remote code execution. In second place is Microsoft Windows and Microsoft Windows Server vulnerability CVE-2019-0708 (BlueKeep). In addition to remote code execution, it also allows you to view confidential information, elevate privileges, and tamper with the user interface. Also among the top three exploits is the OpenSMTPD mail server vulnerability CVE-2020-7247, which allows remote code execution and elevation of privileges. Vulnerabilities in endpoint attacks. For attacks on corporate devices in Russia and the CIS, criminals most often use vulnerabilities in 7-Zip and WinRAR archivers, as well as in the Google Chrome browser. Attackers exploited 7-Zip vulnerabilities (CVE-2023-31102/CVE-2023-40481 and CVE-2022-29072) in attacks against organizations in Russia and the CIS in the first quarter of 2024 and in 2023. Vulnerabilities in WinRAR (CVE-2023-38831) and Google Chrome (CVE-2023-1822/CVE-2023-1812/ CVE-2023-1813 etc.) are also among the most common. Most of the most actively used loopholes (9 out of 10) allow the execution of malicious code. Moreover, almost all of them were registered in 2023. The threat of encryption programs. Malicious actors exploit the vulnerabilities for attacks using encryption programs. In 2024, they continue to be one of the top threats to organizations around the world. the number of such attacks is at a consistently high level, the total size of the ransom is increasing, and companies are facing the complexity of decryption. The top three types of encryption software in the first quarter of 2024 are Dcryptor, Lockbit and Conti trojans. In the same period last year, the trio was as follows. Phobos, Lockbit and Conti: "In preparing the report, our goal was to present a comprehensive study of the current cyber threat landscape, as well as to demonstrate once again that properly structured information security processes and analysis of attacker tactics, techniques and procedures remain a reliable means of countering cyber threats. In particular, to prevent vulnerabilities from being used in attacks on organizations, it is important to build a remediation process or Patch Management. It is also necessary to use complex defense solutions that allow to quickly identify threats and eliminate them. In addition to technical measures, it is worth paying attention to increasing the digital literacy of employees, because in most cases attacks become possible due to the human factor," comments Nikita Nazarov, head of the extended threat research department at Kaspersky.

News

To go to school in the village of Kirants, do you need a NSS permit? Mirzoyan was surprised (video)
The fire continues to spread, a number of families have been evacuated. Aram A contacted Los Angeles
The USA said that the "Oreshnikov" attack highlighted the vulnerability of Great Britain
About 4 tons of poultry were destroyed. Yerevan Municipality
The Secretary of the Supreme National Security Council of Iran arrived in Armenia
There are problems at the Bagratashen customs office. Oskan Sargsyan
Israel has declared a part of Syria a "closed military zone".
Anna Hakobyan published a new photo with Pashinyan
"Status Quo". Whoever will be after Pashinyan will be better. Norayr Norikyan (video)
Privilege passengers can approach district administrations. Hayk Kostanyan
Erdogan called Aliyev
What is the situation on RA highways?
A second validator will be installed on public transport
Pashinyan is sending a delegation to Russia
Eritrea detained three Azerbaijani ships
No one can dispute Armenia's right to have a defensive army. Pashinyan
Aliyev threatens again and much more aggressively. will he attack Armenia? Karen Andreasyan
2 parts of the article have not yet been agreed with Azerbaijan (video)
Artur Melikyan was dismissed from the post of the deputy chairman of the Central Committee
We are committed to further strengthen EU-Armenia relations. EU ambassador to the RA president

More News

...

I don't know where the statue of Jesus will be placed, but it will definitely not be placed in the area of ​​the monument. Andreasyan (video)

At the moment, we are not discussing the unification program of individual universities. Zhanna Andreasyan

We remind you once again that the historical and cultural values ​​of Artsakh are in danger of destruction. Hovik Avanesov

Vache Tovmasyan attended the "Golden Globe" award ceremony (video)

Sirun Minas published warm photos with her husband

Composer Gevorg Hovannisyan died

A new New Year's video from Leo, the representative of Armenia in "Junior Eurovision 2024".

Actor Hrachya Harutyunyan with his granddaughter Zabel visited the theater before the New Year (video)

On January 1 and 2, the History Museum of Armenia will be open for visitors at 12:00-16:00

Armenian Gata was introduced as "Azerbaijani pastry"

Exclusive manuscripts were exhibited in the Matenadaran

I consider unacceptable such behavior towards school staff. Garnik Danielyan

The State Symphony Orchestra of Armenia will make a tour in China

Ohan Petrosyan died

Gold commemorative medal of the National Academy of Medical Sciences on the occasion of Levon Malkhasyan's 80th birthday

Ornament of the Armenian carpet in the Azerbaijani "Victory Park"

A number of historical and cultural objects have received the status of monuments

There have been five powerful flares on the Sun

"If you leave me Chechnya, I will leave you Armenia." The song "Plus rien ne m'étonne" is discussed on the Internet (video)

The maestro is celebrating his 80th anniversary