Skip to content
Search AI Powered

Latest Stories

newsworthy

Verizon: hackers are targeting C-level executives with social engineering attacks

Cybercrime endangers supply chain information, cloud-based solutions, customer data, report says.

Corporate computer attacks are on the rise as hackers increasingly target the C-level executives who have easy access to sensitive information, according to a report from technology provider Verizon released today.

The trend poses an escalating risk for supply chains as companies increasingly digitalize their operations and conduct e-commerce sales through online payments, placing vast amounts of personal data on computer databases.


C-level executives are now the major focus for social engineering attacks, where hackers pretend to befriend their targets through fraudulent business emails, winning their trust to convince victims to click on links or reveal passwords, according to the Verizon 2019 Data Breach Investigations Report (DBIR).

Also known as "pretexting," these attacks can reap large dividends because of senior executives' often unchallenged approval authority, and their privileged access into critical systems, Verizon said. One reason for the growing trend is that top execs are typically time-starved and under pressure to deliver, so they tend to quickly review and click on emails prior to moving on to the next, or even have assistants manage that email on their behalf.

Statistically, senior executives are now 12 times more likely to be the target of social incidents—and 9 times more likely to be the target of social breaches—than in previous years, the report found. Now in its 12th edition, the Verizon report analyzed 41,686 security incidents, and 2,013 confirmed breaches, from 86 countries.

Cyberattacks in the logistics sector have received growing attention in recent years, following supply chain incidents like a 2013 hack that stole millions of shoppers' credit card data from retailer Target Corp., and the 2017 "Petya" and "Wannacry" ransomware attacks that hobbled container shipper Maersk A/S and food supplier Mondelez International Inc.

The report also highlighted how the growing trend to share and store information within cost-effective cloud based solutions is exposing companies to additional security risks. Analysis found that there was a substantial shift towards compromise of cloud-based email accounts via the use of stolen credentials.

"Enterprises are increasingly using edge-based applications to deliver credible insights and experience. Supply chain data, video, and other critical - often personal - data WILL be assembled and analyzed at eye-blink speed, changing how applications utilize secure network capabilities," George Fischer, president of Verizon Global Enterprise, said in a release. "Security must remain front and center when implementing these new applications and architectures."

Other trends identified in the report showed that:

  • human resources personnel have seen attacks decrease six-fold from last year, as W-2 tax form scams have almost disappeared from the study's dataset,
  • credit card chip and pin payment technology has started delivering security dividends, pushing the number of physical terminal compromises in payment card-related breaches to decrease compared to web application-based compromises,
  • ransomware attacks are still going strong, accounting for nearly 24 percent of incidents where malware was used,
  • crypto-mining attacks were hardly existent, despite receiving much attention in media reports, accounting for roughly 2 percent of incidents,
  • outsider threats remain dominant, with external threat actors remaining as the primary force behind attacks (69 percent of breaches) with insiders accounting for just 34 percent.

To build up defenses against these changing risks, enterprise businesses should see technical IT hygiene and network security as "table stakes" to help employees at every level to understand their risk posture and the threat landscape, Verizon said.

"As businesses embrace new digital ways of working, many are unaware of the new security risks to which they may be exposed," Bryan Sartin, executive director of security professional services at Verizon, said in a release. "They really need access to cyber detection tools to gain access to a daily view of their security posture, supported with statistics on the latest cyber threats. Security needs to be seen as a flexible and smart strategic asset that constantly delivers to the businesses, and impacts the bottom line."

The Latest

More Stories

forklifts working in a warehouse

Averitt tracks three hurdles for international trade in 2025

Businesses engaged in international trade face three major supply chain hurdles as they head into 2025: the disruptions caused by Chinese New Year (CNY), the looming threat of potential tariffs on foreign-made products that could be imposed by the incoming Trump Administration, and the unresolved contract negotiations between the International Longshoremen’s Association (ILA) and the U.S. Maritime Alliance (USMX), according to an analysis from trucking and logistics provider Averitt.

Each of those factors could lead to significant shipping delays, production slowdowns, and increased costs, Averitt said.

Keep ReadingShow less

Featured

legal scales and gavel

FMCSA rule would require greater broker transparency

A move by federal regulators to reinforce requirements for broker transparency in freight transactions is stirring debate among transportation groups, after the Federal Motor Carrier Safety Administration (FMCSA) published a “notice of proposed rulemaking” this week.

According to FMCSA, its draft rule would strive to make broker transparency more common, requiring greater sharing of the material information necessary for transportation industry parties to make informed business decisions and to support the efficient resolution of disputes.

Keep ReadingShow less
chart of trucking conditions

FTR: Trucking sector outlook is bright for a two-year horizon

The trucking freight market is still on course to rebound from a two-year recession despite stumbling in September, according to the latest assessment by transportation industry analysis group FTR.

Bloomington, Indiana-based FTR said its Trucking Conditions Index declined in September to -2.47 from -1.39 in August as weakness in the principal freight dynamics – freight rates, utilization, and volume – offset lower fuel costs and slightly less unfavorable financing costs.

Keep ReadingShow less
chart of robot use in factories by country

Global robot density in factories has doubled in 7 years

Global robot density in factories has doubled in seven years, according to the “World Robotics 2024 report,” presented by the International Federation of Robotics (IFR).

Specifically, the new global average robot density has reached a record 162 units per 10,000 employees in 2023, which is more than double the mark of 74 units measured seven years ago.

Keep ReadingShow less
person using AI at a laptop

Gartner: GenAI set to impact procurement processes

Progress in generative AI (GenAI) is poised to impact business procurement processes through advancements in three areas—agentic reasoning, multimodality, and AI agents—according to Gartner Inc.

Those functions will redefine how procurement operates and significantly impact the agendas of chief procurement officers (CPOs). And 72% of procurement leaders are already prioritizing the integration of GenAI into their strategies, thus highlighting the recognition of its potential to drive significant improvements in efficiency and effectiveness, Gartner found in a survey conducted in July, 2024, with 258 global respondents.

Keep ReadingShow less