top of page

Cyber-Risk Declines But 78% of Organizations Predict Successful Attacks in Coming Year

Trend Micro's Cyber Risk Index finds preparedness is slowly improving



Trend Micro (TYO: 4704; TSE: 4704) recently announced that cyber-risk levels have improved from "elevated" to "moderate" for the first time, but that insiders represent a persistent threat for global organizations.


Jon Clay, VP of threat intelligence at Trend Micro: "For the first time since we've been running these surveys, we saw the global cyber-risk index not only improve but move into positive territory at +0.01. It means that organizations may be taking steps to improve their cyber-preparedness. There is still much to be done, as employees remain a source of risk. The first step to managing this is to gain complete and continuous attack surface visibility and control."


The CRI found that cyber-preparedness improved in Europe and APAC but declined slightly in North and Latin America over the past six months. At the same time, threats declined in every region bar Europe.


Most organizations are still pessimistic about their prospects over the coming year. The CRI found that most respondents said it was "somewhat to very likely" they'd suffer a breach of customer data (70%) or IP (69%) or a successful cyber-attack (78%).


These figures represent declines of just 1%, 2%, and 7%, respectively, from the last report.


The top four threats listed by respondents in the CRI 2H 2022 remained the same from the previous report:

  1. Clickjacking

  2. Business Email Compromise (BEC)

  3. Ransomware

  4. Fileless attacks

"Botnets" replaced "login attacks" in fifth place.


Global respondents also named employees as representing three of their top five infrastructure risks:

  1. Negligent insiders

  2. Cloud computing infrastructure and providers

  3. Mobile/remote employees

  4. Shortage of qualified personnel

  5. Virtual computing environments (servers, endpoints)

Dr. Larry Ponemon, chairman and founder of Ponemon Institute, said: "As the shift to hybrid working gathers momentum, organizations are rightly concerned about the risk posed by negligent employees and the infrastructure used to support remote workers. They will need to focus not only on technology solutions but people and processes to help mitigate these risks."


Based on the global survey results, the greatest areas of concern for businesses related to cyber-preparedness are:


People: "My organization's senior leadership does not view security as a competitive advantage."


Process: "My organization's IT security function doesn't have the ability to unleash countermeasures (such as honeypots) to gain intelligence about the attacker."


Technology: "My organization's IT security function does not have the ability to know the physical location of business-critical data assets and applications."


*The six-monthly Cyber Risk Index was compiled by the Ponemon Institute from interviews with 3729 global organizations. The index is based on a numerical scale of -10 to 10, with -10 representing the highest level of risk. It is calculated by subtracting the score for cyber threats from the score for cyber-preparedness.

Comments


connexion_panel_edited.jpg
CXO_8-in-1.png
subscribe_button.png

 

Disclaimer:

The information contained in this site is for reference only. While we have made every attempt to ensure that the information contained in this site has been obtained from reliable sources, we are not responsible for any errors or omissions, or for the results obtained from the use of this information. All information in this site is provided "as is", with no guarantee of completeness, accuracy, timeliness or of the results obtained from the use of this information, and without warranty of any kind, express or implied, including, but not limited to warranties of performance, merchantability and fitness for a particular purpose. In no event will Ho Hon Asia Limited, its related partnerships or corporations, or the partners, agents or employees thereof be liable to you or anyone else for any decision made or action taken in reliance on the information in this site or for any consequential, special or similar damages, even if advised of the possibility of such damages.
Certain links in this site connect to other websites maintained by third parties over whom we have no control. We make no representations as to the accuracy or any other aspect of information contained in other websites.

2025 @ Inno-Thought and its affiliates. All rights reserved.

bottom of page