share_log

Mobile Malware And IoT Attacks Surge, Zscaler Report Reveals

Mobile Malware And IoT Attacks Surge, Zscaler Report Reveals

移动恶意软件和物联网攻击激增,zscaler报告揭示
Business Today ·  11/21 01:05
big

Zscaler, Inc has released its 2024 Mobile, IoT, and OT Threat Report, revealing alarming trends in cyber threats from June 2023 to May 2024. The findings underscore the urgency for organisations to reevaluate and secure their mobile devices, IoT devices, and operational technology (OT) systems.

Zscaler 公司发布了其 2024 年度移动、物联网和运营技术(OT)威胁报告,揭示了从 2023 年 6 月到 2024 年 5 月之间网络威胁的令人震惊的趋势。结果强调了机构有必要重新评估和保护其移动设备、物联网设备和运营技术系统的紧迫性。

The report identifies over 200 malicious apps on the Google Play Store, which collectively have more than 8 million installs globally. Zscaler's cloud platform blocked 45% more IoT malware transactions compared to the previous year, highlighting the continued spread of botnets across IoT devices.

报告发现在 Google Play 商店上有超过 200 个恶意应用程序,全球安装量超过 800万。与前一年相比,Zscaler 的云平台阻止了比以往多 45% 的物联网恶意软件交易,突显了僵尸网络在物联网设备上持续传播的情况。

"Cybercriminals are increasingly targeting legacy exposed assets, often acting as gateways to IoT and OT environments, leading to data breaches and ransomware attacks," said Deepen Desai, Chief Security Officer at Zscaler. "Mobile malware and AI-driven vishing attacks are adding to this threat, making it crucial for organisations to adopt AI-powered zero trust solutions to shut down all potential attack vectors."

“网络犯罪分子越来越多地以传统的暴露资产为目标,通常充当物联网和运营技术环境的入口,导致数据泄露和勒索软件攻击。” Zscaler 首席安全官 Deepen Desai 表示。“移动恶意软件和 AI 驱动的钓鱼攻击也增加了这种威胁,机构采用基于人工智能的零信任解决方案以关闭所有潜在攻击向量变得至关重要。”

The report also highlights the financial motivation behind mobile malware, with cyberattacks becoming more profitable, particularly through extortion and the sale of stolen personal data. Singapore has emerged as the second most targeted country in the APJ region by mobile malware, following India. The rise in spyware in the region has surged by 77% year-on-year. Anatsa, a well-known Android banking malware, has affected over 650 financial institutions, specifically targeting users in countries like Singapore, Germany, Spain, Finland, and South Korea.

报告还强调了移动恶意软件背后的金融动机,随着网络攻击变得越来越有利可图,尤其是通过勒索和出售被盗个人数据。新加坡已成为亚太地区第二大移动恶意软件攻击目标国,紧随印度之后。该地区间谍软件的增长率同比激增了 77%。Anatsa,一种知名的 Android 银行病毒,已经影响了超过 650 家金融机构,特别针对新加坡、德国、西班牙、芬兰和韩国等国家的用户。

Singapore also ranks as the second most impacted country globally by IoT attacks, following the United States. It accounts for 5.3% of all IoT attacks globally. The report outlines the top countries most affected by IoT attacks: the United States (81.3%), Singapore (5.3%), the United Kingdom (2.8%), Germany (2.7%), and Canada (2%).

新加坡也是全球物联网攻击第二受影响最严重的国家,仅次于美国。全球所有物联网攻击中,新加坡占比达 5.3%。报告列出了受物联网攻击影响最大的国家:美国(81.3%)、新加坡(5.3%)、英国(2.8%)、德国(2.7%)和加拿大(2%)。

Industries most vulnerable to these threats include technology, education, and manufacturing. The education sector saw a significant 136% increase in blocked mobile malware transactions. Manufacturing, for the second consecutive year, experienced the highest volume of IoT malware attacks, accounting for 36% of all IoT malware blocks observed.

最容易受到这些威胁的行业包括科技、教育和制造业。教育部门的被阻止移动恶意软件交易数量显著增加了 136%。制造业在连续第二年经历了最多物联网恶意软件攻击,占所有物联网恶意软件拦截的 36%。

The report also draws attention to the growing risks associated with OT systems. Once isolated from the internet, OT and cyber-physical systems have become integrated into enterprise networks, creating a large attack surface for external threats. Zscaler highlights the need for organisations to secure their mobile endpoints, IoT devices, and OT systems to mitigate the risks of cyberattacks.

该报告还引起对Ot系统日益增长风险的关注。曾经与互联网隔离的Ot和网络物理系统已经整合到企业网络中,为外部威胁创造了庞大的攻击面。Zscaler强调组织需要确保其移动终端、Iot设备和Ot系统以减轻网络攻击风险。

In response, Zscaler advocates for the adoption of zero trust architecture, enabling secure access from any device, location, and application. This approach reduces cyber risks while supporting hybrid work environments, remote access, and the use of IoT and OT connectivity.

作为回应,Zscaler主张采用零信任架构,实现从任何设备、地点和应用的安全访问。这种方法降低了网络风险,同时支持混合工作环境、远程访问以及Iot和Ot连接的使用。

The 2024 report underscores the critical need for organisations to enhance their security measures to protect against these evolving and pervasive cyber threats.

该2024年报告强调了组织加强安全措施以防范这些不断演变和普遍的网络威胁的关键性需求。

声明:本内容仅用作提供资讯及教育之目的,不构成对任何特定投资或投资策略的推荐或认可。 更多信息
    抢沙发