Facebook Twitter LinkedIn RSS
    Trending
    • How Nigerian clean-tech startup Telios is bridging renewable energy finance and asset management gaps
    • Maida calls for smarter regulation to power Nigeria’s digital economy at Titans of Tech 2026
    • 21 Almajiri set to build drones and computers in Abuja
    • NITDA moves to address cyberattacks against government digital platforms
    • Moniepoint unveils 10-year impact report, disburses over $700 million in MSME loans
    • Samsung unveils Galaxy Z Fold8 Ultra and Fold8 in Nigeria
    • Bosun Tijani Foundation AI Fellowship portal blocks applications from nearly every state tested, including training host states
    • Empathy storytelling: Where brands relive audience realities for relatability
    Facebook Twitter LinkedIn
    ITPulse.com.ngITPulse.com.ng
    • News
    • Interviews
    • Blogs
    • Analysis
    • Opinion
    • Videos
    • Press Releases
    • Pictures
    • Advertise
    ITPulse.com.ngITPulse.com.ng
    Home»News»Four recommendations to protect your organisation from advanced attacks
    News 3 Mins Read

    Four recommendations to protect your organisation from advanced attacks

    mmBy ITPulseMay 31, 2022
    Facebook Twitter WhatsApp Pinterest LinkedIn Reddit Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    In the present and increasingly complex infrastructure, shortage of skilled professionals and the growing sophistication of attacks, Kaspersky, a cybersecurity and digital privacy company has decided to recommend four key points that can protect organisation from advanced attacks.

    The four key points are:

    • Deploy a solution that combines detection and response capabilities and managed threat hunting to help identify both known and unknown threats without involving additional in-house resources. An alert-driven approach is no longer effective for reacting to modern threats.
    • Provide your SOC team with access to the latest threat intelligence, to ensure in-depth visibility into cyber threats targeting your organisation.
    • Implement expert incident response training to improve the expertise of your in-house digital forensics and incident response team. That will help verify and handle threats quicker and minimise the incident impact.
    • To reduce the likelihood of targeted attacks, provide your staff with essential cybersecurity knowledge. Social engineering is still very popular and applies even in high severity incidents.

    Meanwhile, research based on the analysis of incidents reported to customers of Kaspersky Managed Detection and Response (MDR) has revealed that the share of critical incidents experienced by organisations increased from one in ten (9%) in 2020, to one in seven (14%) in 2021.

    The research revealed that lack of skill and increased attacks can all affect the efficiency of cybersecurity teams and their ability to identify adversarial activity before incidents happen.

    According to the resulting report, organisations across all industries experienced high severity incidents during this period, with most verticals facing multiple types. The most frequent causes of critical incidents remained the same as the previous year, with the biggest share (40.7%) belonging to targeted attacks. Malware with critical impact was identified in 14% of cases, and a little less than 13% of high severity incidents were classified as exploitation of publicly exposed critical vulnerabilities. Social engineering also remained a relevant threat, accounting for almost 5.5% of incidents caused.

    Targeted attacks in 2021 were detected in each vertical represented in the research, except for education and mass media, even though there were reported incidents related to targeted attacks within media organisations. The largest number of human-driven attacks were detected in government, industrial, IT and financial verticals. In particular, targeted attacks accounted for two-thirds (66%) of all critical incidents in the government sector, more than half (55%) in healthcare and 40% in the construction industry.

    High severity incidents are distinguished by wide use of living-off-the-land (LotL) binaries, of a non-malicious nature, that are already available in a targeted system. These tools allow cybercriminals to hide their activity and minimise the chances of being detected during the first stages of an attack. In addition to widely used rundll32.exe, powershell.exe and cmd.exe, tools such as reg.exe, te.exe and certutil.exe are often used in critical incidents.

    To better prepare themselves against targeted attacks, organisations can employ services that conduct ethical offensive exercises. This type of activity simulates complex adversarial attacks to examine a company’s cyber-resilience. According to Kaspersky’s MDR analysts, this was only applied in 16% of organisations.

    “The MDR report once again shows that sophisticated attacks are here to stay, and more and more organisations are facing critical incidents. One of the most pressing issues here is that high severity incidents require more time to investigate and provide recommendations on remediation steps. Last year, Kaspersky analysts managed to significantly reduce this indicator from 52.6 minutes in 2020 to 41.4 minutes. This was achieved by adding more incident card templates, and introducing of new telemetry enrichments that speed up triage,” comments Sergey Soldatov, Head of Security Operations Center, Kaspersky.

    Cyber advanced attacks
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    mm
    ITPulse
    • Website
    • Facebook
    • Twitter
    • LinkedIn

    ITPulse is a wholly information technology communication (ICT) news website, with a special focus on the African continent. The website provides up-to-date biz-tech news, analysis and comprehensive and thorough insight into the continent's ICT terrain

    Related Posts

    How Nigerian clean-tech startup Telios is bridging renewable energy finance and asset management gaps

    July 24, 2026

    21 Almajiri set to build drones and computers in Abuja

    July 23, 2026

    NITDA moves to address cyberattacks against government digital platforms

    July 23, 2026

    Leave A Reply Cancel Reply

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Latest Posts

    How Nigerian clean-tech startup Telios is bridging renewable energy finance and asset management gaps

    July 24, 2026

    Maida calls for smarter regulation to power Nigeria’s digital economy at Titans of Tech 2026

    July 23, 2026

    21 Almajiri set to build drones and computers in Abuja

    July 23, 2026
    About
    About

    Itpulse.com.ng is a wholly information technology communication (ICT) news website, with special focus on the African continent. The website provides up-to-date biz-tech news, analysis and a comprehensive and thorough insight info the continent's ICT terrain.

    Contact us: editorial@itpulse.com.ng

    Facebook Twitter LinkedIn RSS
    Latest Posts

    How Nigerian clean-tech startup Telios is bridging renewable energy finance and asset management gaps

    July 24, 2026

    Maida calls for smarter regulation to power Nigeria’s digital economy at Titans of Tech 2026

    July 23, 2026

    21 Almajiri set to build drones and computers in Abuja

    July 23, 2026
    Popular Posts

    Why Multi-Tenant Mobile Fintech Apps Cannot Rely on Theming: A Case for Tenant-Isolated Data Layers in Flutter

    July 10, 2024

    Bridging digital leadership gap: Why Dr. Ayodeji Idowu’s doctorate matters for Nigeria’s tech ecosystem

    July 21, 2026

    Five ways President Tinubu’s Executive Order on virtual assets will stabilise and propel Nigeria’s economy

    July 20, 2026
    © 2017 - 2026 Itpulse.
    • Terms & Conditions
    • Privacy Policy
    • Advertise
    • Contact Us

    Type above and press Enter to search. Press Esc to cancel.