Express Computer
Home  »  News  »  Netskope threat labs: Financial sector remains one of the top sectors targeted by ransomware groups

Netskope threat labs: Financial sector remains one of the top sectors targeted by ransomware groups

0 46

Netskope Threat Labs has published its latest research report, revealing that the financial sector remains among the top sectors targeted by ransomware groups. The report examines the increasing cloud app adoption in the financial services industry, and the worrying abuse of these channels to evade regular security controls for malware and ransomware attacks.

Key findings include:
● Microsoft cloud apps dominate the finance sector: Microsoft OneDrive, Microsoft Teams, and Sharepoint are among the most popular apps in the financial services sector, with Microsoft Teams being significantly more popular than in other industries.

● Shifting targets for malware downloads: OneDrive and Sharepoint, and Github are identified as significant channels for potential cloud app abuse – with the three sitting at the top of the list consistently since September 2023.

○ Sharepoint was more prominent in finance than in other sectors which is mainly linked to the popularity of Microsoft Teams which uses Sharepoint for file sharing.

● Key target for ransomware attacks: The financial sector remains one of the most attacked sectors by ransomware groups, with Trojans the primary attack mechanism, tricking users in the finance industry into downloading other malware payloads. In particular, the Clopp ransomware gang was particularly active in the second half of 2023, exploiting the CVE-2023-34362 MOVEit vulnerability.

○ LockBit was also a prominent ransomware family that primarily targeted the finance sector and has recently been targeted and shut down by law enforcement agencies.

Speaking on the finding, Paolo Passeri, Cyber Intelligence Principal at Netskope said; “It is clear that the macro trends for cloud app use and abuse have remained consistent for the finance sector over the past year. What is interesting to see is that the financial sector remains one of the most attacked sectors by ransomware groups with a focus on the exploitation of vulnerabilities at scale. The figures are a reminder that every organisation should take the time to assess and secure their infrastructure and that simple operational mistakes could expose you to significant threats.”

Cloud-delivered malware comprised 50% of malware downloads in the finance sector, on-trend with other sectors, given the ability for attackers to evade regular security controls that rely on tools such as domain block lists and monitoring web traffic but do not apply zero trust principles to routinely inspect cloud traffic.
The report is based on anonymised usage data collected about a financial sector subset of Netskope’s 2,500+ customers, all of whom give prior authorisation for their data to be analysed in this manner.

Get real time updates directly on you device, subscribe now.

Leave A Reply

Your email address will not be published.

LIVE Webinar

Digitize your HR practice with extensions to success factors

Join us for a virtual meeting on how organizations can use these extensions to not just provide a better experience to its’ employees, but also to significantly improve the efficiency of the HR processes
REGISTER NOW 
India's Leading e-Governance Summit is here!!! Attend and Know more.
Register Now!
close-image
Attend Webinar & Enhance Your Organisation's Digital Experience.
Register Now
close-image
Enable A Truly Seamless & Secure Workplace.
Register Now
close-image
Attend Inida's Largest BFSI Technology Conclave!
Register Now
close-image
Know how to protect your company in digital era.
Register Now
close-image
Protect Your Critical Assets From Well-Organized Hackers
Register Now
close-image
Find Solutions to Maintain Productivity
Register Now
close-image
Live Webinar : Improve customer experience with Voice Bots
Register Now
close-image
Live Event: Technology Day- Kerala, E- Governance Champions Awards
Register Now
close-image
Virtual Conference : Learn to Automate complex Business Processes
Register Now
close-image