Security9.01.2012

Kaspersky Lab Cyberthreat 2012 forecast

Kaspersky Lab have picked out the key trends of the past 12 months and compiled a report that highlights the major new features on the security landscape for 2012.

The most significant stories of 2011 according to Costin Raiu, Director of Kaspersky Lab’s Global Research & Analysis Team, were:

  1. The Rise of ‘Hacktivism’ – one of the major trends of 2011, and no doubt it will continue into 2012.
  2. The HBGary Federal Hack – how weak passwords, old software systems, and use of the cloud created a security nightmare.
  3. The Advanced Persistent Threat – these attacks confirm the emergence of cyber-espionage as common practice among powerful state actors.
  4. The attacks against Comodo and DigiNotar – trust in certificate authorities (CA) is under threat. In the future, CA compromises may become more widespread. Besides, it is likely that more digitally-signed malware will appear.
  5. Duqu and Stuxnet – state-of-the-art cyber warfare.
  6. The Sony PlayStation Network Hack – the new perils hidden in the cloud. Personally Identifiable Information (PII) is conveniently available in one place, accessed over fast Internet links; ready to be stolen in case of any misconfigurations or security issues.
  7. Botnet Takedowns and the battle against Cybercrime – serving notice to the cyber gangs that their scams are no longer risk-free. But every battle shows up the vast limitations of today’s legal systems when it comes to a coordinated and effective approach to cybercrime.
  8. The Rise of Android Malware – several factors make Android vulnerable to cybercrime: rapid growth; freely available documentation about the platform; and weak screening at Google Market, making it easy to upload malicious programs.
  9. The CarrierIQ Incident – do you know exactly what is running on your mobile device? A single incident highlighted how little we know about who is in control of our hardware.
  10. Mac OS Malware – the crossover of PC threats (rogue AV programs are one of the most popular malware categories for PCs) to Macs was another important trend of 2011.

“We selected these stories because they point to the major actors of 2011 who will no doubt continue to play a major role in the cyber-security blockbuster which is just around the corner,” according to Raiu.

“At the moment, the majority of incidents affect companies and state organisations involved in arms manufacturing, financial operations, or hi-tech and scientific research activities. In 2012 companies in the natural resource extraction, energy, transport, food and pharmaceutical industries will be affected, as well as Internet services and information security companies,” warns Alexander Gostev, author of the 2012 Cyberthreat Forecast for 2012.

Kaspersky Lab experts predict that attackers will have to change their methods in response to the growing competition among the IT security companies that investigate and protect against targeted attacks. Increased public attention to security lapses will also force the attackers to search for new instruments.

The conventional method of attacks that involve email attachments with vulnerability exploits will gradually become less effective, while browser attacks will gain in popularity.

The Kaspersky Lab forecast goes on state that hacktivist attacks on state organisations and businesses will continue in 2012 and will have a predominantly political agenda. Gostev believes this will be an important trend when compared to similar attacks in 2011. However, hacktivism could well be used as a diversionary tactic to conceal other types of attacks.

Hi-tech malicious programs such as Stuxnet and Duqu created with state support will remain unique phenomena. Their emergence will be dictated by international tensions between specific countries. In Gostev’s view, the cyber conflicts in 2012 will revolve around traditional confrontations – the US and Israel versus Iran, and the US and Western Europe versus China.

More basic weapons designed to destroy data at a given time, such as kill switches, logic bombs etc. will become more popular as they are easier to manufacture. The creation of these programs can be outsourced to private contractors used by the military or other government agencies. In many cases the contractor may not be aware of the customer’s aims.

In terms of mobile threats in 2012, Kaspersky Lab expects to see Google Android continue to be the target of choice for the mobile malware market as well as an increase in the numbers of attacks that exploit vulnerabilities. The emergence of the first mobile drive-by attacks and mobile botnets are also forecast.

Mobile espionage will become widespread and will most probably include data theft from mobile phones and the tracking of people using their telephones and geolocation services.

Show comments

Latest news

More news

Trending news

Sign up to the MyBroadband newsletter