HomeSecurityESET: What were the most popular attack methods in 2021?

ESET: What were the most popular attack methods in 2021?

According to ESET, brute-force attacks and exploitation of the ProxyLogon vulnerability in Microsoft Exchange Server were the two most popular attack during 2021. According to Q3 Threat Report ESET's (covering September to December 2021), this year was characterized by the continuous discovery of zero-day vulnerabilitiesthat were powerful enough to wreak havoc on corporate networks and systems.

See also: Apple: A 'small portion' of iPhones record interactions with Siri

popular attack methods
ESET: What were the most popular attack methods in 2021?

The discovery of zero-day vulnerabilities in Exchange Server and Microsoft's emergency updates to resolve security issues have been a daily occurrence for IT administrators throughout the past year.

Brute-force attacks to gain access to accounts and systems were the most common attack method, according to ESET data.

Exchange Server ProxyLogon bugs were in second place on the list of most popular attack vectors .

“Microsoft Exchange servers were again under siege in August 2021, with ProxyLogon’s “younger sibling,” ProxyShell, being exploited worldwide by multiple threat groups,” the ESET report states.

See also: Mozilla Firefox: Fixes bug that granted administrator privileges

At the end of 2021, another critical vulnerability in Log4j, causing chaos. This vulnerability became known as CVE-2021-44228 and allowed remote code execution. The vulnerability was rated 10.0 in severity, meaning it was critical and needed an immediate fix.

Eset
ESET: What were the most popular attack methods in 2021?

Cybercriminals began exploiting the vulnerability immediately, and although the issue was only made public in the last three weeks of 2021, ESET has listed the CVE-2021-44228 exploit among the top five attack methods of 2021.

See also: Lazarus: In its new phishing campaign it impersonates Lockheed Martin

Ransomware , as expected, remains a significant threat to businesses. ESET says things were particularly bad over the past year, with numerous attacks on critical infrastructure (including the Colonial Pipeline attack) .

The research also notes a significant increase in Android banking malware, compared to 2020. According to ESET, infection rates related to Android banking Trojans, such as SharkBot, Anatsa, Vultur, and BRATA, have now reached the same levels as adware.

Source: ZDNet

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr/politiki-syntaxis/
Member of the SecNews Editorial Team. Covers software vulnerabilities, data breaches, cyberattacks and technology developments. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS