India sees 70% spike in ransomware attacks on critical infrastructure

According to the report by cybersecurity company Trellix, over half of adversarial advanced persistent threat actor activity originated from Russian and Chinese backed groups

hacking, cyberfraud, cyber threat, security, privacy, phone tapping, surveillance
Representative image
IANS New Delhi
2 min read Last Updated : Apr 27 2022 | 2:05 PM IST

Cyber-attacks on critical infrastructure by nation-state bad actors have increased significantly and India observed a 70 per cent increase in ransomware activity in the fourth quarter (Q4) of 2021, a new report said on Wednesday.

According to the report by cybersecurity company Trellix, over half of adversarial advanced persistent threat actor activity originated from Russian and Chinese backed groups and Russian-backed groups like APT29 have continued to greatly increase their activity in 2022.

Reports surfaced last week that a Russian malware planted from a server in Nigeria was used for a cyber attack on Oil India's (OIL) system in Assam.

The state-owned company had suffered a major cyber-attack in its field headquarters in eastern Assam's Duliajan, with the hacker demanding $75,00,000.

The report found a significant 73 per cent increase in cyber incidents targeting individuals and positioned people as the top attack sector in Q4 2021.

Individual consumers are the top target of cybercriminals, closely followed by the healthcare vertical.

Additionally, the transportation, shipping, manufacturing and information technology industries showed a sharp increase in threats.

"We are at a critical juncture in cybersecurity and observing increasingly hostile behaviour across an ever-expanding attack surface," said Christiaan Beek, lead scientist and principal engineer, Trellix Threat Labs.

The fourth quarter signalled the shift out of a two-year pandemic which cybercriminals used for profit and "saw the Log4Shell vulnerability impact hundreds of millions of devices, only to continue cyber momentum in the new year where we've seen an escalation of international cyber activity," he added.

Transportation and shipping were the target of 27 per cent of all advanced persistent threat (APT) -- activity by adversarial and stealthy actors -- detections.

Healthcare was the second most targeted sector, bearing 12 per cent of total detections.

From Q3 to Q4 2021, threats to manufacturing increased 100 per cent, and threats to information technology increased 36 per cent, said the report.

APT29, believed to conduct operations for Russian government entities, ranked most active among nation-state groups.

Malware was the technique used most often, accounting for 46 per cent of total cyber incidents.

--IANS

na/shb/

(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

Topics :Cyber Attackransomware attackDigital security

First Published: Apr 27 2022 | 2:05 PM IST

Next Story