Organisations in the business and professional services, retail and hospitality, financial, healthcare and high technology were the top targets of cybercriminals in 2020, said a new report on Tuesday.
According to the "FireEye Mandiant M-Trends 2021" report, organisations in the retail and hospitality industry were targeted more heavily in 2020 -- coming in as the second most targeted industry compared to 11th in last year's report.
Healthcare also rose significantly, becoming the third most targeted industry in 2020, compared to eighth in last year's report.
This increased focus by threat actors can most likely be explained by the vital role the healthcare sector played during the global pandemic.
While last year's report noted a drop in internal detections of intrusions compared to the previous year, Mandiant experts observed a return of organisations independently detecting most of their own incidents.
Internal incident detection rose to 59 per cent in 2020 -- a 12-point increase compared to 2019.
This return to organisations detecting the majority of intrusions within their environments is in line with the overall trend observed over the last five years, said the report.
"Multifaceted extortion and ransomware are the most prevalent threats to organisations. In this year's report, direct financial gain was the likely motive for at least 36 per cent of the intrusions we investigated," said Charles Carmakal, Senior Vice President and Chief Technology Officer, Mandiant, a part of cybersecurity company FireEye.
"Data theft and reselling of unauthorised access to victim organisations remain high as multifaceted extortion and ransomware actors have trended away from purely opportunistic campaigns in favour of targeting organisations that are more likely to pay large extortion demands. Given this surge, organisations must take proactive action to mitigate the potential impact."
Over the past decade, there has been a trending reduction in global median dwell time - defined as the duration between the start of a cyber intrusion and when it is identified, according to Mandiant.
This measure went from over one year in 2011 to just 24 days in 2020 - that is more than twice as quickly identified in comparison to last year's report with a median dwell time of 56 days.
Mandiant attributes this reduction to continued development and improvement of organisational detection and response capabilities, along with the surge of multifaceted extortion and ransomware intrusions.
"This year's M-Trends report identified the three most frequently used initial vectors of compromise as exploits (29 per cent), phishing emails (23 per cent) and stolen credentials or brute force (19 per cent)," said Jurgen Kutscher, Executive Vice President, Service Delivery, Mandiant.
--IANS
gb/bg
(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)
You’ve reached your limit of {{free_limit}} free articles this month.
Subscribe now for unlimited access.
Already subscribed? Log in
Subscribe to read the full story →
Smart Quarterly
₹900
3 Months
₹300/Month
Smart Essential
₹2,700
1 Year
₹225/Month
Super Saver
₹3,900
2 Years
₹162/Month
Renews automatically, cancel anytime
Here’s what’s included in our digital subscription plans
Exclusive premium stories online
Over 30 premium stories daily, handpicked by our editors


Complimentary Access to The New York Times
News, Games, Cooking, Audio, Wirecutter & The Athletic
Business Standard Epaper
Digital replica of our daily newspaper — with options to read, save, and share


Curated Newsletters
Insights on markets, finance, politics, tech, and more delivered to your inbox
Market Analysis & Investment Insights
In-depth market analysis & insights with access to The Smart Investor


Archives
Repository of articles and publications dating back to 1997
Ad-free Reading
Uninterrupted reading experience with no advertisements


Seamless Access Across All Devices
Access Business Standard across devices — mobile, tablet, or PC, via web or app
)