《2020年网络威胁报告:发现网络安全的盲点 - Sophos(英文版)(29页).pdf》由会员分享,可在线阅读,更多相关《2020年网络威胁报告:发现网络安全的盲点 - Sophos(英文版)(29页).pdf(29页珍藏版)》请在三个皮匠报告上搜索。
1、Sophos 2020 Threat Report Were covering your blind spots. Challenges the world faces for the coming year, securing data, devices, and people in an increasingly complex environment. By the SophosLabs research team 2December 2019 Sophos 2020 Threat Report Contents The complexity of simplicity 3 Ransom
2、ware attackers raise the stakes 4 Using our management tools against us 4 Attacker code appears trusted while attackers elevate privileges 5 Living off the land, thriving off the security industrys best tools 5 Efficiency and prioritization give ransomware attackers an edge 7 Mobile malware trends:
3、Dirty tricks are lucrative 8 Ad money feeds non-malicious scammers 8 Fleeceware charges consumers hundreds 9 Bank-credential stealers evade Play Store controls 10 Hidden Adware 13 The growing risks of ignoring internet background radiation 14 Remote Desktop Protocol in the crosshairs 14 Public-facin
4、g services targeted by increasingly sophisticated automation 16 Why Wannacry may never totally disappear, and why you should care 16 Cloud security: Little missteps lead to big breaches 18 The biggest problem in the cloud is the cloud itself 18 Misconfiguration drives the majority of incidents 19 La
5、ck of visibility further obfuscates situational awareness 20 A hypothetical cloud security breach incident 21 Automation-enhanced Active Attacks 23 Patience and stealth: watchwords for attacker success 23 Attacking the backups is now routine 23 Legitimate software as malware misdirection with benign
6、 malware 24 PUAs edge closer to malware, trafficking in exploits 24 Machine learning to defeat malware finds itself under attack 25 Attacks against machine learning malware detectors 25 Machine learning on the offensive 26 Generative models blur the line between human and machine 27 Ten years out, m