280 likes | 469 Views
The Threat Landscape. Jan 2013. 2013 Threat Report. 1. Threat Volume. SophosLabs see 250,000 new files each day. 250,000 previously unseen files received each day within SophosLabs. 2. The malicious web. Web servers are under constant attack. A new malicious URL every couple of seconds.
E N D
The Threat Landscape Jan 2013
1. Threat Volume SophosLabs see 250,000 new files each day 250,000 previously unseen files received each day within SophosLabs
2. The malicious web Web servers are under constant attack. A new malicious URL every couple of seconds 20-30k malicious URLs seen each day. This is almost a new malicious URL every 2 secs
3. Professionalism, crimeware ‘Monetization’ : the bulk of today’s threats are automated, coordinated & professional
Controlling user traffic Web threats are all about controlling user web traffic • Inject redirects into legitimate sites 80% of malicious URLs are actually legitimate sites that have been compromised
It’s all about traffic Distribution of today’s web threats (2012 H1)
Drive-by downloads Compromising legitimate websites to drive user traffic to malware
Drive-by downloads Compromising legitimate websites to drive user traffic to malware
Drive-by downloads Compromising legitimate websites to drive user traffic to malware “Monetization”
Drive-by downloads Compromising legitimate websites to drive user traffic to malware URL filtering Content detection
Ransomware Multi-lingual!
Ransomware • Malware that locks/encrypts user data • Pay ransom to access files Recover data?
Blackhole payloads Payload distribution (late 2012)
Mobile OS market (US) What will mobile malware target?
Android Applications Significant growth Apps available Customer downloads
Android malware Huge growth in 2012 (x40, just in September!) 1000 Android samples analyzed each day within SophosLabs
SophosLabs Key differentiators • Integrated threat analysis • Fast response time • Global presence 24/7/365 • Updates issued from any lab location at any time • 100% in-house technology • Pre-configured intelligence
Top Facts 250,000 previously unseen files received each day within SophosLabs 20-30k malicious URLs seen each day. This is almost a new malicious URL every 2 secs 1,000 Android samples analysed each day within SophosLabs 80% of malicious URLs are actually legitimate sites that have been compromised
Mitigating Risks Complete Security Solutions designed to mitigate risks