Organizations lack visibility into malware attacks!
While IT security leaders are concerned about attacks using data exfiltrated by malware, many still lack the necessary tools to investigate the security and organizational implications of these infections and effectively prevent subsequent attacks.
See also: Hayward: City under ransomware attack

Research by cybercrime analytics firm SpyCloud shows that 98% of the 300 mid-market and enterprise IT security professionals surveyed from the US and UK say that better visibility into high-risk applications would significantly improve their security posture.
Human behavior continues to be a problem, with some of the main entry points for malware exploiting employee vulnerabilities . 57 percent of organizations allow employees to sync browser data between personal and corporate devices; 54 percent struggle with shadow IT due to unapproved employee adoption of apps and systems ; and 36 percent allow unmanaged personal or shared devices to access corporate apps and systems .
See also: Deutsche Bank confirms customer data breach
Detecting and quickly addressing exposures is crucial to disrupting malicious actors trying to harm an organization. However, the survey reveals that many struggle with standard responses to malware infections. 27 percent do not regularly review their application logs for signs of compromise, 36 percent do not reset passwords for potentially exposed applications, and 39 percent do not terminate session cookies indicating exposure.

See also: HCA confirms breach after 11 million patient data stolen
“Breaking bad habits takes time and resources that most organizations can’t afford, and they’re also hard to find in the first place. To mitigate the risks posed by unauthorized account access, infected devices, and human error, they need a new approach to malware detection and remediation. For many security teams, addressing infections is a machine-centric process that involves isolating and cleaning malware from the device. However, an identity-centric approach is more thorough, as the ultimate goal is to better address the growing attack surface associated with an individual userthat puts the business at risk,” says Trevor Hilligoss of SpyCloud.
Information source: betanews.com
