IBM X-Force finds historic number of records leaked in 2016
IBM Security has announced results from the 2017 IBM X-Force Threat Intelligence Index, which found the number of records compromised grew a historic 566 per cent in 2016 from 600 million to more than 4 billion.
These leaked records include data cybercriminals have traditionally targeted like credit cards, passwords and personal health information, but IBM X-Force also noted a shift in cybercriminal strategies. In 2016, a number of significant breaches related to unstructured data such as email archives, business documents, intellectual property and source code.
The IBM X-Force Threat Intelligence Index is made up of observations from more than 8,000 monitored security clients in 100 countries and data derived from non-customer assets such as spam sensors and honeynets in 2016. IBM X-Force says it runs network traps around the world and monitors more than eight million spam and phishing attacks daily while analyzing more than 37 billion web pages and images.
“Cybercriminals continued to innovate in 2016 as we saw techniques like ransomware move from a nuisance to an epidemic,” said Caleb Barlow, vice-president of Threat Intelligence, IBM Security. “While the volume of records compromised last year reached historic highs, we see this shift to unstructured data as a seminal moment. The value of structured data to cybercriminals is beginning to wane as the supply outstrips the demand. Unstructured data is big-game hunting for hackers and we expect to see them monetize it this year in new ways.”
Spam surges on back of ransomware
In a separate study last year, IBM Security found 70 per cent of businesses impacted by ransomware paid over $10,000 to regain access to business data and systems.
The promise of profits and businesses increasing willingness to pay empowered cybercriminals to double down on ransomware in 2016. The primary delivery method for ransomware is via malicious attachments in spam emails. This fueled a 400 per cent increase in spam year over year with roughly 44 per cent of spam containing malicious attachments. Ransomware made up 85 per cent of those malicious attachments in 2016.
Shift from healthcare back to financial services
In 2015, healthcare was the most attacked industry with financial services falling to third, however, attackers in 2016 refocused back on financial services. While financial services was targeted the most by cyber-attacks last year, data from the X-Force report shows it was only third in compromised records. The lower success rate versus the high volume of attacks in financial services indicates that continued investment in sustained security practices likely helped protect financial institutions.
The healthcare industry continued to be beleaguered by a high number of incidents, although attackers focused on smaller targets resulting in a lower number of leaked records. In 2016, only 12 million records were compromised in healthcare - keeping it out of the top 5 most-breached industries. For perspective, nearly 100 million healthcare records were compromised in 2015 resulting in a 88 per cent drop in 2016.
Information & communication services companies and government experienced the highest number of incidents and records breached in 2016:
• Information and Communications (3.4 billion records leaked and 85 breaches/incidents)
• Government (398 million records leaked and 39 breaches/incidents)
Good news for defensive strategies
The average IBM monitored security client organization experienced more than 54 million security events in 2016—only three per cent more events than 2015. This was marked by a 12 per cent decrease year-over-year in attacks. As security systems are further tuned and new innovations like cognitive systems grow, the number of incidents overall dropped 48 per cent in 2016.
To download a copy of the 2017 IBM X-Force Threat Index, click here.
Most Popular Stories
April 11-13, 2018
IAHSS Annual Conference & Expo
April 15-18, 2018
Focus On Manufacturing Security
April 18, 2018
25th Annual Toronto ASIS Chapter Best Practices
April 19, 2018
Canadian Technical Security Conference
April 24-25, 2018
Security Canada East
April 25, 2018