WatchGuard Technologies has published its quarterly Internet Security Report for Q2 2019 .
The researchers reveal in the report the most common domainsused by attackers to host malware and carry out attacks , as well as subdomains of legitimate sites and content delivery networks (CDNs) such as CloudFlare.net, SharePoint and Amazonaws.com.
“This Internet Security Report shows the methods hackers to install malware or send phishing emails across networks, hiding them in legitimate content hosting domains,” WatchGuard Technologies said.
There are many ways to deal with these attacks, such as authentication, the use of antivirus programs, DNS-level filtering, training staff in threat recognition, etc.
Of course, no single method of protection is sufficient to address all threats. A multi-layered approach is necessary to provide the greatest possible protection.
WatchGuard's report analyzes cyber, while suggesting various practices to help businesses protect their customer data.

The key findings of the WatchGuard Technologies report are:
- Phishing and malware attacks are exploiting legitimate domains. Many of these are subdomains of legitimate CDNs, such as Amazon's CloudFront.net, and legitimate sites like [.] Mixtape [.] Moe. Hackers often use this attack method. WatchGuard was able to show exactly which domains are being used in these attacks.
- Kali Linux enters the list of the most common malware. Two variants of the popular penetration testing tool, Kali Linux, appear on the list of the most common malware, according to WatchGuard. The two variants are Trojan.GenericKD, which creates a backdoor in a command-and-control server, and Backdoor.Small.DT, a web shell script that also creates backdoors in web servers.
- There has been a significant increase in malware attacks compared to previous years. WatchGuard’s malware detection services detected more malware in Q2 2019 compared to the same quarter in 2018.
- Phishing and Office attacks are among the top ten threats, with a significant increase since the last quarter of 2018. Users should update Office regularly and adopt practices that protect against phishing attacks.
- SQL injection is the most common attack technique on networks. In Q2 2019, 34% of attacks used this technique. Compared to Q2 2018, there was a 29,000% increase. Anyone with an SQL database should immediately update their systems and invest in a firewall.
- Hackers are primarily targeting users located in Europe or Asia. In Q2 2019, 37% of malware attacks occurred in the UK, Italy, Germany and Mauritius. 36% of attacks targeted regions in Asia.
In the full report one can find more information about the most dangerous and frequent malware and attacks that have occurred during the 2nd quarter of 2019. In addition, there are many tips on protecting organizations and businesses.
