pwshub.com

Elastic report highlights growing cyber risks from AI-driven phishing and deepfakes

A new report out today from enterprise search technology provider Elastic N.V. details the growing sophistication of cyberthreats, with a particular emphasis on artificial intelligence-augmented phishing and deepfake misinformation.

Based on billions of security events voluntarily shared by Elastic’s customers and enriched with open-source data, the 2024 Elastic Global Threat Report digs into areas such as how cybercriminals are leveraging generative AI to create highly personalized phishing campaigns and how AI-generated deepfakes are beginning to surface in political interference and extortion cases.

On the generative AI side, the report details how the technology is being used by cybercriminals to craft highly personalized and convincing phishing campaigns. AI-driven attacks can produce documents that closely mimic legitimate communications, which make it harder for users to spot fraudulent content and hence, increase the success rate of phishing attempts: If you can’t spot a fake, the chances of success immediately increase.

The use of AI to create deepfakes for misinformation campaigns for purposes such as political interference and extortion also gets a look in, with the potential risk noted as growing. Organizations are being urged to prepare by integrating AI-focused training into their security strategies.

On the malware side, the report shows that Windows is still the most targeted operating system for malware, accounting for two-thirds of all detections. Linux systems, particularly in server environments, were found to be being increasingly targeted and now account for nearly a third of detections, reflecting their critical role in infrastructure.

In terms of types of attacks, trojans —  a type of malicious software that disguises itself as legitimate to deceive users into executing it — dominate the malware landscape, representing 82% of all malware types observed. While trojan infections rose, cryptominer detections, however, sharply declined from 22% to 4%, indicating a shift in financially motivated cyberattacks.

The report also delves into cloud security, finding that credential access attempts now account for 23% of all cloud-related activity.

Credential access techniques, such as brute force and phishing attacks, were found to remain the primary methods used to breach cloud environments, with Microsoft Azure seeing the highest number of signals. The report stresses that enterprises must focus on securing credentials and monitoring identity and access management systems to prevent unauthorized access and reduce the impact of cloud-based attacks.

Source: siliconangle.com

Related stories
1 month ago - Shares in Elastic N.V. plunged nearly 25% in late trading today after the enterprise search software company warned of slower growth and fell short on outlook alongside an otherwise solid quarterly earnings report. For its 2025 fiscal...
1 month ago - Ahead of the annual Black Hat cybersecurity conference in Las Vegas, we warned that defensive tool sprawl is only likely to get worse. Onsite, the talk was about, of course, the impact of AI. So far, so good, but defenders are bracing for...
1 month ago - All eyes were on Nvidia’s earnings report this week as a proxy for the artificial intelligence economy, and even for the graphics chip giant, it was too much to live up to. Nvidia earnings disappointed, but really, how could they not?...
1 month ago - Cloud management platform provider nOps Inc. announced today that it has raised $30 million in new funding to accelerate the development of its FinOps platform, expand integrations with Amazon Web Services Inc. and open-source...
1 week ago - Artificial intelligence infrastructure is taking really big bucks now to build out, as BlackRock and Microsoft joined this week to invest up to $100 billion in AI data centers and power projects. And that’s not all: Microsoft also teamed...
Other stories
1 hour ago - Mark Spitznagel, co-founder of Universa Investments, believes the stock market is in a "Goldilocks phase" following the Federal Reserve's rate cuts and China's stimulus measures. After a crash last month, the market surged to new highs,...
2 hours ago - Nvidia is one of the most valuable companies in the world. Can its dividend payout make you rich?
2 hours ago - The head of the chipmaker and investor favorite said in an interview on CNBC Wednesday that demand for the company's AI chips is "insane."
4 hours ago - Artificial intelligence coding startup Poolside Inc., a rival to GitHub Inc.’s Copilot, said today it has closed on a bumper $500 million Series B raise. Today’s funds came from Bain Capital Ventures, which led the round, and it was...
4 hours ago - Intel Corp. and Google Cloud today announced the general availability of new confidential computing instances based on 4th Gen Intel Xeon processors in multiple service regions. Rapidly becoming popular, confidential computing is a...