Saturday, January 28, 2023
manilastandard.net
ADVERTISEMENT
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Others
    • Pets
    • Pop.Life
      • Newsmakers
      • Hangouts
      • A-Pop
      • Post Its
      • Performances
      • Malls & Bazaars
      • Hobbies & Collections
    • Technology
      • Gadgets
      • Computers
      • Business
      • Tech Plus
    • MS ON THE ROAD
      • Sedan
      • SUV
      • Truck
      • Bike
      • Accessories
      • Motoring Plus
      • Commuter’s Corner
    • Home & Design
      • Residential
      • Commercial
      • Construction
      • Interior
    • Spotlight
    • Gallery
      • Photos
      • Videos
    • Events
      • Seminars
      • Exhibits
      • Community
    • Biyahero
      • Travel Features
      • Travel Reels
      • Travel Logs
  • Advertise with Us
No Result
View All Result
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Others
    • Pets
    • Pop.Life
      • Newsmakers
      • Hangouts
      • A-Pop
      • Post Its
      • Performances
      • Malls & Bazaars
      • Hobbies & Collections
    • Technology
      • Gadgets
      • Computers
      • Business
      • Tech Plus
    • MS ON THE ROAD
      • Sedan
      • SUV
      • Truck
      • Bike
      • Accessories
      • Motoring Plus
      • Commuter’s Corner
    • Home & Design
      • Residential
      • Commercial
      • Construction
      • Interior
    • Spotlight
    • Gallery
      • Photos
      • Videos
    • Events
      • Seminars
      • Exhibits
      • Community
    • Biyahero
      • Travel Features
      • Travel Reels
      • Travel Logs
  • Advertise with Us
No Result
View All Result
manilastandard.net
No Result
View All Result
Home Spotlight 6th Tech & Gadgets Anniversary Issue: Sustainable Technology in a Post-Pandemic World

External cybersecurity loopholes in SEA revealed

Manila StandardbyManila Standard
October 9, 2022, 9:40 pm
in 6th Tech & Gadgets Anniversary Issue: Sustainable Technology in a Post-Pandemic World, Spotlight
Reading Time: 5 mins read
A A
Share on FacebookShare on TwitterShare on Email

Cyberattacks can be prevented before an attacker is inside the internal network. Threat monitoring allows organizations to take action and properly neutralize a threat before it can exploit any existing vulnerabilities and affect the target institutions.

Kaspersky today unveils the results of its Digital Footprint Intelligence (DFI) report covering the external threats for a selection of countries from the Asia Pacific (APAC) region in 2021, including the six key countries in Southeast Asia (SEA).

The report’s sole purpose is to create awareness about security threats and demonstrate effective approaches to risk mitigation for widespread attacks with high business impact.

Cybercriminals’ exploitation capabilities

The rapidly growing share of adversaries’ initial access approach is the exploitation of 1-day vulnerabilities. Complicated business processes are forced to leave services on the perimeter, which in turn increases the external attack surface.

ADVERTISEMENT

With the help of public sources and specialized search engines, Kaspersky collected information on 390,497 services available from public networks and analyzed them for key security issues and vulnerabilities.

Analysis revealed that in 2021, almost every fifth of the vulnerable services contained more than one vulnerability, thereby increasing the chances of an attacker performing a successful attack.

All industry sectors, analyzed in the report, in all countries have issues with application of security updates for publicly available services.

Government institutions (major personally identifiable information (PII) processors and providers of critical services for citizens) are potential incident-generators by a huge margin.

Singapore has a low number of vulnerabilities and an outstanding low ratio between the number of services and the sum of vulnerabilities in them, while Vietnam, Indonesia, Thailand and Malaysia have the highest ratio among SEA countries

Figure 1. Distribution of vulnerable services

In terms of the share of vulnerabilities with publicly available exploits, 3 countries out of TOP-5 are located in Southeast Asia (SEA) – these are Malaysia, Vietnam, and Philippines.

From Kaspersky’s practice in incident response handled by Global Emergency Response Team (GERT) and CISA advisory adversaries use a well-known list of vulnerabilities to exploit organization defenses. While researching the security problems of companies from the APAC region, Kaspersky experts observed a number of commonly used vulnerabilities dubbed ProxyShell and ProxyLogon. Exploits for these vulnerabilities are easily available on the Internet, therefore, they can be easily exploited by even a low-skilled attacker.

While ProxyShell is quite common in China and in Vietnam, the countries most affected by ProxyLogon are:

In Government bodies – Thailand

In Financial – China

In Healthcare – Philippines

In Industrial – Indonesia

ProxyShell is a group of vulnerabilities for Microsoft Exchange servers – CVE-2021-31206, CVE-2021-31207 , CVE-2021-34473, and CVE-2021-34523. ProxyLogon group includes CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-27065. The vulnerabilities from the both groups enable an actor to bypass authentication and execute code as a privileged user.

The best defense against these vulnerabilities is to keep public-faced systems updated with the latest patches and product versions. Companies should also avoid direct access to Exchange Server from the Internet. Kaspersky products protect against vulnerabilities from both groups – ProxyShell and Proxy-logon.

Credential brute force attacks

A great share of attackers’ initial accesses leading to cybersecurity incidents are related to services with remote access or management features. One of the best-known examples is RDP (Remote Desktop Protocol). It is Microsoft’s proprietary protocol that enables a user to connect to another computer through a network of computers running Windows.

RDP is widely used by both system administrators and less-technical users to control servers and other PCs remotely but this tool is also what intruders exploit to penetrate the target computer that usually houses important corporate resources.

Last year, Kaspersky monitored 16,003 remote access and management services available for exploit. Indonesia, India, Bangladesh, the Philippines, and Vietnam provide the maximum facilities for an attacker to gain remote access.

Government institutions are serving more than 40% of the attack surface for brute force attacks and credential leaks reuse.

“Clearly, cybercriminals are busy uncovering possible entry points in the region. From hunting for unpatched software, one-day vulnerabilities, and exploitable remote access and management services, malicious actors have a lot of options to infect lucrative industries. In short, a cyberattack is like a ticking bomb. While worrisome, reports such as our Digital Footprint Intelligence can be used as a tool to guide the cybersecurity capacity building of concerned organizations. If you know your weak areas, it’s easier to prioritize,” comments Chris Connell, Managing Director for Asia Pacific at Kaspersky.

To protect your businesses from such threats, Kaspersky experts also recommend that you:

Regulate every major change to the network perimeter hosts, including services or applications launching, exposing new APIs, software installation and updating, network devices configuration and so on. All changes should be reviewed from the perspective of security impact.

Develop and implement reliable procedures for identifying, installing, and verifying patches for products and systems.

Focus your defense strategy on detecting lateral movements and data exfiltration to the internet. Pay special attention to outgoing traffic to detect cybercriminal connections. Backup data regularly. Make sure you can quickly access it in an emergency.

Use solutions like Kaspersky Endpoint Detection and Response and the Kaspersky Managed Detection and Response service, which help to identify and stop the attack in the early stages, before the attackers achieve their goals.

Use a reliable endpoint security solution, such as Kaspersky Endpoint Security for Business (KESB) that is powered by exploit prevention, behavior detection, and a remediation engine that is able to roll back malicious actions. KESB also has self-defense mechanisms that can prevent its removal by cybercriminals.

Tags: Asia Pacific RegioncyberattacksDigital Footprint Intelligenceexternal threatsKaspersky
ADVERTISEMENT
Manila Standard

Manila Standard

Related Posts

Philippine halal-certified food products set to steal the spotlight at Gulfood 2023

byManila Standard
January 28, 2023, 12:31 pm
0
8
Philippine halal-certified food products set to steal the spotlight at Gulfood 2023

A delegation of 18 Philippine companies will showcase premium halal-certified food products through a country exhibit at the Gulf Food...

Read more

New Mitsubishi Xpander Cross
has crossed its way to PH shores

byManila Standard
January 27, 2023, 8:00 pm
0
8
Outdoor Expo North 2023 set this February

Mitsubishi Motors Philippines Corporation (MMPC) officially unveils the much-anticipated 23MY New Mitsubishi Xpander Cross. A modern 7- seater MPV Crossover...

Read more

All-new Honda AirBlade 160 is choice of professionals

byManila Standard
January 27, 2023, 7:55 pm
0
8
Outdoor Expo North 2023 set this February

Active youngsters know exactly what they want, including their preferences for a daily ride. And despite their precise demands, The...

Read more

Ford PH, ARB join forces to spice up next-gen Ford vehicles

byManila Standard
January 27, 2023, 7:50 pm
0
8
Outdoor Expo North 2023 set this February

Ford Philippines has joined forces with global off-road accessories provider ARB to give owners of the next-generation Ford Ranger and...

Read more

Automotive veteran Santos takes helm at Foton Motor PH

byManila Standard
January 27, 2023, 7:45 pm
0
8
Automotive veteran Santos takes helm at Foton Motor PH

It’s a jubilant start of the year at the automotive giant’s headquarters at the Clark Freeport Zone, as FOTON Motor...

Read more

Outdoor Expo North 2023 set this February

byManila Standard
January 27, 2023, 7:40 pm
0
8
Outdoor Expo North 2023 set this February

Head for the hills and bask in the beauty of the outdoors with Outdoor Expo North 2023! The largest gathering...

Read more

Print Edition

View More

Recent Posts

  • Handicraft exporter creates unique products
  • Business reality show host talks of business pitches in a new book
  • Filipinos spent 75,305 hours in using financial apps last year
  • SEARCA supports digitizing access to agricultural supply
  • Crosta Pizzeria co-owner shares her brand of leadership
  • Globe holds assisted SIM registration in 30 Puregold branches across PH
  • InLife Sheroes #InAko campaign wins 3 Canopus Awards in 2022 Vega Digital Awards
  • #PursueYourGIGIL: GIGIL Agency creatives by day, musicians by night launch album

Advertisement

Latest News

Globe holds assisted SIM registration in 30 Puregold branches across PH

byMST Tech
January 28, 2023, 3:50 pm
0
8
Globe holds assisted SIM registration in 30 Puregold branches across PH

To reach more customers across the country, Globe, the leader in Mobile, is opening assisted registration in 30 branches of...

Read more

InLife Sheroes #InAko campaign wins 3 Canopus Awards in 2022 Vega Digital Awards

byMST Tech
January 28, 2023, 3:46 pm
0
8
InLife Sheroes #InAko campaign wins 3 Canopus Awards in 2022 Vega Digital Awards

Insular Life’s (InLife) digital campaign that challenges the Filipino women to be more financially responsible won three Canopus (Platinum) Awards...

Read more

#PursueYourGIGIL: GIGIL Agency creatives by day, musicians by night launch album

byMST Tech
January 28, 2023, 3:43 pm
0
8
#PursueYourGIGIL: GIGIL Agency creatives by day, musicians by night launch album

Mary, the 9 Ideas held its album launch last January 25 at the 70s Bistro Bar in Anonas, Quezon City....

Read more

Shopee, DLSU team up to educate future tech talents on e-commerce industry

byMST Tech
January 28, 2023, 3:38 pm
0
8
Shopee, DLSU team up to educate future tech talents on e-commerce industry

The Philippines e-commerce industry continues to grow rapidly and is poised to reach a Gross Market Value of $22B by...

Read more

Get your special someone an early Valentine’s gift this Infinix Payday Sale on Shopee and Lazada

byMST Tech
January 28, 2023, 3:34 pm
0
8
Get your special someone an early Valentine’s gift this Infinix Payday Sale on Shopee and Lazada

This coming month of hearts, Infinix offers its much-loved smartphones and laptops at more affordable prices!  Get up to 15%...

Read more

Advertisement

ADVERTISEMENT
Facebook Twitter Instagram Youtube

ABOUT US

Manila Standard

Manila Standard website (manilastandard.net), launched in August 2002, extends the newspaper’s reach beyond its traditional readers and makes its brand of Philippine news and opinion available to a much wider and geographically diverse readership here and overseas.

Digital Edition

In tone and content, the online edition mirrors the editorial thrust of the newspaper. While hewing to the traditional precepts of fairness and objectivity, MS believes the news of the day need not be staid, overly long or dry. Stories are succinct, readable and written in a lively style that has become a hallmark of the newspaper.

Download – Today’s Paper

Search

No Result
View All Result

6th Floor Universal Re Bldg., 106 Paseo De Roxas cor. Perea Street, Legaspi Village, 1226 Makati City Philippines

Trunklines: 832-5554, 832-5556, 832-5558

© 2021 Manila Standard - Designed and Developed by Neitiviti Studios.

No Result
View All Result
  • About
  • News
    • Top Stories
    • National
    • World News
    • Pinoy Abroad
    • Features
  • Opinion
    • Editorial
    • Columns
    • Soundbytes
  • LGUs
    • NCR
    • Luzon
    • Visayas
    • Mindanao
  • Business
    • Corporate
    • Economy & Trade
    • Stocks
    • Money
    • Agri & Mining
    • Power & Tech
    • IT & Telecom
  • Sports
    • Basketball
    • Volleyball
    • Fightsports
    • Active
    • Sports Plus
    • One Championship
    • Columns
  • Entertainment
    • TV & Movies
    • Celebrity Profiles
    • Music & Concerts
    • Digital Media
    • Columns
  • Lifestyle
    • Food
    • Culture & Media
    • Fashion
    • Health and Home
    • Leisure
    • Shopping
    • Columns
  • Pop.Life
    • Newsmakers
    • Hangouts
    • A-Pop
    • Post Its
    • Performances
    • Malls & Bazaars
    • Hobbies & Collections
  • Technology
    • Gadgets
    • Computers
    • Business
    • Tech Plus
  • MS ON THE ROAD
    • Sedan
    • SUV
    • Truck
    • Bike
    • Accessories
    • Motoring Plus
    • Commuter’s Corner
  • Home & Design
    • Residential
    • Commercial
    • Construction
    • Interior
  • Spotlight
  • Gallery
    • Photos
    • Videos
  • Events
    • Seminars
    • Exhibits
    • Community
  • Biyahero
    • Travel Features
    • Travel Reels
    • Travel Logs
  • Pets
  • Advertise with Us

© 2021 Manila Standard - Designed and Developed by Neitiviti Studios.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Install Manila Standard Web App

Install App