• Il volume di malware raggiunge i 4 miliardi a livello globale e rimane invariato per tre trimestri
  • I tentativi di malware diminuiscono dell’8% negli Stati Uniti, ma aumentano del 3% nella regione EMEA
  • Nonostante un calo del 31% rispetto al 2021, i tentativi di ransomware nel mondo hanno superato i totali annuali di quattro degli ultimi cinque anni (623,3 milioni)
  • I clienti hanno subito in media 1.044 tentativi di ransomware nei primi tre trimestri di quest’anno
  • Il 91% dei responsabili IT indica come maggiore preoccupazione gli attacchi motivati da interessi economici
  • Capture ATP ottiene il settimo punteggio consecutivo del 100% per il rilevamento delle minacce nei test Advanced Threat Defense (ATD) di ICSA Labs svolti nel 3° trimestre 2022

Roma, 25 ottobre 2022 – SonicWall, autore del rapporto di intelligence sulle minacce ransomware più citato al mondo, ha pubblicato nuovi dati sulle minacce relativi al terzo trimestre del 2022. SonicWall ha registrato oltre 4 miliardi di tentativi di malware a livello globale, mentre i tentativi di ransomware dall’inizio del 2022 hanno già superato il totale annuale di quattro degli ultimi cinque anni. Nel recente sondaggio sullo stato delle cyber minacce nel 2022 realizzato da SonicWall, il 91% delle aziende ha riferito che il loro timore principale sono gli attacchi ransomware, segnalando una maggiore apprensione tra i professionisti della sicurezza.

“Essere un professionista della sicurezza non è mai stato così difficile”, ha dichiarato Bob VanKirk, Presidente e CEO di SonicWall. “Il fronte di battaglia della guerra informatica continua a spostarsi, e rappresenta una grave minaccia per organizzazioni di ogni dimensione. Con l’espandersi delle superfici di attacco, il continuo aumento delle minacce e l’attuale contesto geopolitico, non sorprende che anche i professionisti IT più esperti possano sentirsi sopraffatti. I partner SonicWall, armati degli strumenti di cybersecurity più recenti, possono avere un ruolo essenziale nell’aiutare i clienti a rimanere protetti dalle minacce anche più dinamiche”.

Gli attacchi ransomware si spostano, con tattiche sempre più elaborate e diversificate
Dopo un 2021 da record, gli attacchi ransomware sono diminuiti a livello globale nei primi tre trimestri del 2022, e in particolare negli Stati Uniti (-51%). I paesi colpiti dagli attacchi sono tuttavia cambiati: i tentativi di ransomware sono aumentati nel Regno Unito (20%), nella regione EMEA (38%) e nell’area APJ (56%) rispetto allo stesso periodo dell’anno precedente. Nel 3° trimestre 2022, l’intelligence proprietaria di SonicWall sulle minacce ha inoltre rilevato il più basso volume di ransomware trimestrale dal 3° trimestre 2020. Nonostante questo calo, SonicWall ha registrato 338,4 milioni di tentativi di ransomware dall’inizio dell’anno.

Del resto, non è mai stato così facile eseguire attacchi ransomware. Grazie ai servizi Ransomware-as-a-Service (RaaS), anche i cybercriminali con scarse conoscenze tecniche e un’esperienza minima possono acquistare kit di ransomware nel dark web e colpire un’organizzazione.

Inoltre, gli operatori del ransomware hanno iniziato a diversificare i modelli di business e ad ampliare le loro reti per rispondere alla crescente domanda di servizi, creando un’enorme disponibilità e varietà di strumenti e risorse nei mercati illeciti. Secondo i dati del sondaggio realizzato da SonicWall, le aziende sono preoccupate per la facilità con cui è possibile lanciare attacchi ransomware, e l’89% si è detto preoccupato per le minacce di natura economica.

“Il ransomware si è evoluto a un ritmo allarmante, in particolare negli ultimi cinque anni – non solo in termini di volume ma anche di vettori di attacco” ha dichiarato Immanuel Chavoya, esperto di minacce emergenti di SonicWall. “Gli ultimi dati del 3° trimestre mostrano come i criminali informatici stiano diventando più abili nello sviluppo di ceppi evolutivi e più mirati nei loro attacchi”.

Il volume di cryptojacking e malware IoT continua a crescere
Gli hacker prendono di mira sempre più spesso le aziende finanziarie, come banche e società di trading, con cyber attacchi progettati per sfruttare i loro sistemi informatici nell’estrazione illegale di criptovalute. Gli attacchi di cryptojacking sono aumentati del 35% a livello globale negli ultimi tre trimestri, con un picco del 377% nella regione EMEA e un aumento del 160% nell’area APJ.

Con un numero sempre maggiore di dispositivi intelligenti che ogni giorno accedono allo spazio digitale, cresce l’esigenza di sicurezza dell’Internet delle Cose (IoT). I dispositivi IoT si collegano alla rete in vari modi, offrendo così il fianco a diversi vettori di attacco. Il malware IoT è salito al 92% a livello globale, con picchi dell’82% e del 200% rispettivamente nell’area APJ e in Nord America.

“Con oltre 1,4 milioni di endpoint che raccolgono dati in tutto il mondo, SonicWall dispone di più dati per scoprire i trend delle minacce emergenti e per fornire un quadro accurato di ciò che accade nel panorama delle minacce informatiche”, ha dichiarato Michael Crean, CEO di Solutions Granted (SGI). “Poiché la conoscenza è potere, i dati proprietari di SonicWall aiutano SGI a rimanere informata ed essere in grado di formare la nostra base di clienti. La ricerca di SonicWall aiuta quindi SGI a creare misure concrete per mantenere i nostri clienti più sicuri!”

Il machine learning scopre varianti di malware ‘mai viste prima’
La tecnologia Real-Time Deep Memory InspectionTM (RTDMI) brevettata da SonicWall ha identificato 373.756 varianti di malware finora sconosciute  nei primi tre trimestri del 2022, pari a un aumento del 22% dall’inizio dell’anno.

Una di queste varianti di malware mai viste prima è Spyder Loader, osservata negli attacchi che hanno colpito organizzazioni governative di Hong Kong nell’ottobre 2022. SonicWall RTDMI ha rilevato in modo proattivo questo ceppo di malware, e i ricercatori dei SonicWall Capture Labs sono stati i primi a pubblicare le loro analisi in un SonicAlert in marzo del 2021, dimostrando l’efficacia delle funzionalità di RTDMI basate sul machine learning.

SonicWall Capture ATP premiato per il “rilevamento perfetto delle minacce”
Nell’ottobre 2022, SonicWall Capture Advanced Threat Protection (ATP) con RTDMI ha ottenuto per la settima volta consecutiva un punteggio del 100% per il rilevamento delle minacce nei test Advanced Threat Defense (ATD) di ICSA Labs svolti nel 3° trimestre 2022. Si tratta dell’11ª certificazione consecutiva ricevuta dalla nostra soluzione. ICSA Labs è una terza parte indipendente che ha testato le soluzioni SonicWall utilizzando campioni di malware mai visti prima, alcuni non più vecchi di alcune ore.

Per maggiori informazioni sull’efficacia della sicurezza di SonicWall e sui punteggi perfetti di Capture ATP nel rilevamento delle minacce, visitare SonicWall.com/ICSA.

SonicWall Capture Labs
I ricercatori dei SonicWall Capture Labs raccolgono, analizzano ed esaminano informazioni sulle minacce multivettoriali provenienti dalla rete SonicWall Capture Threat, che comprende dispositivi e risorse globali tra cui oltre 1 milione di sensori di sicurezza in quasi 215 paesi e regioni. SonicWall Capture Labs, pioniere nell’uso dell’intelligenza artificiale per la ricerca sulle minacce e la protezione da oltre dieci anni, esegue test e valutazioni rigorose su questi dati, stabilisce punteggi di reputazione per i mittenti e i contenuti delle e-mail e identifica le nuove minacce in tempo reale.

Su SonicWall
SonicWall è attiva nel settore della lotta al cibercrimine da più di 27 anni a difesa delle PMI, delle imprese e degli enti pubblici in ogni parte del mondo. Grazie alla ricerca dei SonicWall Capture Labs, le nostre premiate soluzioni di rilevamento e prevenzione delle violazioni in tempo reale garantiscono più di un milione di reti, unitamente alle email, alle applicazioni e ai dati relativi, in oltre 215 paesi e territori, consentendo alle aziende di funzionare in modo più efficace e con meno timori per la sicurezza. Per ulteriori informazioni visitare www.sonicwall.com o seguirci su TwitterLinkedInFacebook e Instagram.

Latest Stories

" alt="" />
July 3, 2024

SonicWall Launches EMEA Managed Security Services Backed by a 24×7 European Security Operations Center (SOC)

SonicWall delivers on its promises of more fortification and flexibility for EMEA partners with key Managed Security Services additions – all ahead of strict new EU tech regulations MILPITAS, Calif. — July 3, 2024 — SonicWall announced today that it has rolled out its new Managed Security Services suite for European Managed Service Providers (MSPs), Managed Security Service Providers (MSSPs) and other partners, all backed by a new locally-based 24x7x365 Security Operations Center (SOC) providing local understanding of regional cyber threats, regulations, and business environments, enhancing threat detection and response capabilities. The announcement reinforces SonicWall’s commitment to its valued partners and extends its portfolio to include EMEA-based Managed Detection and Response (MDR), Security Operations Center services (SOCaaS), and other managed security services that are delivered in partnership with MSPs and MSSPs. “Within the past year, SonicWall made a commitment to its global partners that it would take an endpoint agnostic and flexible tailored to their unique journeys – we delivered that in February,” said SonicWall CEO and President Bob VanKirk. “Building on this commitment, we’re now introducing managed security services, an EMEA-based SOC, and a suite of additional tools and resources essential for our partners’ success. Our establishment of an EMEA-based SOC with European data residency further strengthens our promise to empower partners with local expertise and rapid response capabilities, crucial for effective client protection amidst Europe's ever-evolving cybersecurity landscape. Additionally, we've upheld our pledge to partners by recently launching MDR for Capture Client, Sentinel One, and Microsoft Defender. SonicWall’s European-based SOC is now available, ensuring European partners can offer their customers enterprise-grade SOC monitoring while remaining compliant with European regulations. In many cases, MSPs and other organizations don’t have an in-house SOC team monitoring alerts and managing the performance of security solutions around the clock, meaning there can be delays in taking defensive action at critical times. Alert fatigue can also be a problem as it can be difficult to identify true problems in the noise of false positives. Adding a SOC provides 24x7x365 monitoring, so that alerts are prioritized, and no alert is missed, no matter when it comes in. Sustained EMEA Momentum This announcement comes a week after the conclusion of SonicWall’s EMEA Partner Conference Elevate 2024, held in Lisbon, Portugal. Partners from across Europe joined SonicWall’s leadership for a hands-on understanding of SonicWall’s new Managed Security Services solutions, and for a better understanding on how to grow and diversify their business in an increasingly dynamic threat and business environment. “We listened to our community and delivered solutions that will dramatically impact their businesses, and the feedback we received at Elevate 2024 was overwhelmingly positive,” said SonicWall Chief Strategy Officer Matt Neiderman. “Our commitment to empowering our partners with a platform of modern solutions designed to help them grow their business is evident in both EMEA and around the globe, and we will continue to enhance the solutions and tools they need to sustain this current momentum.” EU’s Strict Regulations The addition of these Managed Security Service solutions comes just ahead of the European Union’s strict new DORA regulations which, from January 17, 2025, will place additional compliance burdens on cybersecurity providers and their customers. Compliance with DORA will involve a rethink of current risk management frameworks and operational resilience assessments including penetration testing, incident response and third-party risks. “The EU is leading the way globally on cyber-resilience to protect its economic interests with DORA,” said SonicWall Vice President of EMEA Spencer Starkey. “SonicWall’s new SOC is physical proof we’re onboard ahead of this important new regulatory reality. We know attackers work internationally and not just nine to five, now our partners can offer ultra-fast, local response capabilities with EU data residency starting today.” The new enterprise-grade SOC is an addition to SonicWall’s existing Managed Extended Detection and Response (MXDR) capabilities announced earlier this year to deliver powerful cybersecurity monitoring and response across the entire attack surface, including firewalls, endpoint protection, antivirus and cloud threat detection for MSPs and MSSPs. “Having a European-based SOC is pivotal for ensuring compliance with stringent regulations like GDPR and DORA,” said long-time SonicWall Partner and CTO at Data-Sec GmbH Moritz Freiherr von Schwerin. “It not only strengthens our ability to protect sensitive data and uphold privacy standards but also enables us to provide localized, agile responses to emerging cybersecurity threats specific to our region. This localization is crucial for maintaining trust and delivering effective security solutions that meet the unique needs of our clients across Europe. SonicWall has enhanced its offerings, both organically and through acquisitions, and they’re focused on supporting us better than ever before.” For more information on SonicWall’s Managed Security Services please visit: https://www.sonicwall.com/products/managed-security-services/. About SonicWall SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides seamless protection against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter, LinkedIn, Facebook and Instagram.

Read More
" alt="" />
June 11, 2024

SonicWall Builds off its Partner Strength to Drive New Heights at Elevate 2024

Partners will get exclusive previews of the recently announced SonicPlatform and SonicWall’s newly enhanced solution roadmap from its recent acquisitions MILPITAS, Calif. — June 11, 2024 — SonicWall announced today the return of SonicWall Elevate, its premier partner event where it will detail its recent acquisitions and preview its solution roadmap which is helping organization create defensive measures from cloud to endpoint. This is yet another delivery for SonicWall’s valued partner and customer community – which has generated incredible momentum over the last several quarters. “SonicWall has been actively listening to its partner channel for the last 18 months and Elevate 2024 is another testament to our commitment to provide partners what they need to succeed in 2024 and beyond,” said SonicWall CEO Bob VanKirk. “Our partners are a force multiplier, one of our key differentiators, and we will be sharing an updated roadmap that has been specifically shaped by our partners’ voices. We have added managed security services, cloud-native security and more – all to put our partners in position to take their businesses to new heights.” SonicWall Elevate will involve sharing  key updates on its network security products, threat intelligence, as well as its newly acquired additions which include security service edge (SSE), zero trust network access (ZTNA) and additional managed security services for threat detection and response. With the platform, users get a unified backend for threat visibility and simplified workflows, uniquely positioning SonicWall well with an end-to-end solution. Elevate 2024 is designed to give partners all the tools they need to succeed in the coming year and beyond, including: Exclusive demos of SonicWall’s latest technology, including the new SonicPlatform Information on how to leverage recent acquisitions and how partners can grow and diversify their business to increase revenue Enhance the value of network security solutions and see what’s coming next Everything partners need to know about decreasing alert fatigue and growing opportunities with the 24x7 SOC protection of SonicWall MDR Interactive breakout sessions, complete with workshops and Q&A Opportunities for partners to offer feedback directly to SonicWall executive leadership SonicWall is experiencing consecutive quarters of partner growth, fueled by the explosive expansion in our Service Provider Program, recent program enhancements, and a dedicated focus on channel engagement. Over the last three quarters, SonicWall has seen an increase of transacting partners, including a 4% quarter-over-quarter growth. When and Where Americas June 12-14:Dallas, TX USA Europe, Middle East and Africa June 26-28: Lisbon, Portugal Asia, Pacific and Japan July 10-12: Bali, Indonesia For more information about Elevate 2024 and to register, please visit https://www.sonicwall.com/events/sonicwall-elevate-2024/. About SonicWall SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides seamless protection against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter, LinkedIn, Facebook and Instagram.

Read More
" alt="" />
May 2, 2024

SonicWall Data Reveals the Top Five Most Widespread Network Attacks Used Against Small Businesses

The last two years of firewall telemetry data, paints a clear picture of what attacks are most widespread amongst SMBs – demanding the need for prioritization MILPITAS, Calif. — May 2, 2024 — A review of SonicWall telemetry data suggests that the most widespread network attacks to small businesses (SMBs) are older vulnerabilities with a large amount of publicly available information and affecting major vendors. In light of this data, prioritization is a critically important factor for today’s CISOs who are asked to manage and prioritize risk. “In order to properly prioritize threats, we must first understand what attacks, vulnerabilities, and tactics are being used by our enemies,” said SonicWall Executive Director of Threat Research Doug McKee. “Relying too heavily on one factor (e.g., CVSS scores) can lead to an incomplete view of the risk associated with a vulnerability. Consider all factors together to develop a comprehensive understanding of the risk landscape and prioritize vulnerabilities accordingly.” From January 2022 to March 2024, using SonicWall IPS data, SonicWall determined the most widespread attacks against small businesses. Here are the top five ranked: Log4j (CVE-2021-44228) - 43% of organizations were under attack Fortinet SSL VPN Path Traversal (CVE-2018-13379) - 35% of organizations were under attack Heartbleed (CVE-2014-0160) - 35% of organizations were under attack Atlassian Pre-Auth Arbitrary File Read (CVE-2021-26085) - 32% of organizations were under attack VMware SSRF (CVE-2021-21975) - 28% of organizations were under attack The “newest” vulnerability on this list is almost three years old, and the oldest goes back almost a decade.  This suggests the biggest “win” for small businesses is to ensure they have a solid methodology in place for dealing with well-known vulnerabilities, regardless of the age of the threat. “It is still very relevant to spend time and resources tracking down items like heart bleed and log4j, which is arguably more valuable than worrying about the latest AI threat or zero days in Microsoft with no publicly available exploit,” said McKee. Prioritization is Key Prioritization is a critical factor for today’s CISOs who are asked to manage and prioritize risk.  The largest challenge with supply chain issues like Log4j, is understanding simply – is it used and where?  Product security testing or other forms of deep technical analysis of the product used on your network is vital to ensure a business is protected from threats being used by attackers and therefore should take priority in terms of funding. For more information visit www.sonicwall.com. About SonicWall SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides seamless protection against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter, LinkedIn, Facebook and Instagram.

Read More
" alt="" />
April 25, 2024

Riding a Wave of Momentum, SonicWall Debuts New Cybersecurity Management Platform at RSA Conference 2024

After securing three acquisitions, adding MSP-tailored managed services and cloud security to build out its platform, SonicWall is delivering on partner commitments MILPITAS, Calif. — April 25, 2024 — In recent months, SonicWall reinforced its ongoing commitment to its valued partners and extended its cybersecurity portfolio to include managed security services and cloud edge security solutions that are tailor-made for MSPs (Managed Service Providers) and MSSPs (Managed Security Service Providers). Now, SonicWall and its new solutions, together with its new cybersecurity management platform will be showcased at the RSA Conference 2024 in San Francisco, Calif., May 6-9, at Booth N-5353, North Expo Hall, at the Moscone Center. “An unwavering commitment to SonicWall partners and customers around the globe is, and will continue to be, SonicWall’s priority,” said SonicWall CEO and President Bob VanKirk. “It’s encouraging to experience the remarkable momentum sweeping across our business – It starts with taking an outside in approach and executing on that insight. As a result, SonicWall is proud to demonstrate its updated capabilities and introduce the SonicPlatform, all of which are a direct result of feedback from our partners.” SonicWall returns to RSA Conference in 2024 after introducing its revamped executive leadership team last year. It will provide insightful sessions, new technology demos and one-on-one conversations with SonicWall cybersecurity and MSP experts, and an after-hours networking event. "As a SonicWall partner, it’s invaluable to learn the latest in cybersecurity trends and technologies,” said Logically CEO and SonicWall Partner Joshua Skeens. “This past year we've seen SonicWall transform, becoming even more partner friendly and focused on ensuring we have the security solutions and business tools we need to protect our customers as they do business. With the introduction of the SonicPlatform, SonicWall is ensuring that we are positioned to provide world-class security across multiple solutions in a more cohesive and efficient way." SonicWall Partner Momentum SonicWall’s business momentum is fueled by growth in its partner community – with key new partner wins over the last three quarters as part of a growing trend. SonicWall’s commitment to providing meaningful initiatives to its partners is paying dividends. Within the last 6-months SonicWall has offered: New Customer Deal Registration: Partners can receive additional discounts ranging from 10% for any qualified approved opportunity to up to 50% discount for a qualified new customer. Tier Match +1: For a limited time, SonicWall will beat the loyalty status partners currently hold with a competing firewall manufacturer. Eligible partners can have their SonicWall partner account matched to the closest equivalent tier, plus one for 180 days. Exclusive Partner Support: In addition to flexible subscription pricing, SonicWall offers exclusive technical support in addition to its Service Provider Plan. This offering allows partners priority access to tier two subject matter experts (SMEs) across the SonicWall portfolio – all with an exceptional response time. These and other partner initiatives have led to a 42% increase in partner growth year-over-year, with 63% of new partners transacting within the same quarter they onboarded. Additionally, partners in the Service Provider Program increased 91% year-over-year. SonicPlatform SonicWall is proud to introduce SonicPlatform, an innovative management platform designed to unify SonicWall products into a single integrated interface. SonicPlatform is not only focused on streamlining management tasks; it also delivers deep product integration that enables the sharing of contextual information across all enforcement points. SonicPlatform is built to deliver on a vision of a comprehensive, intuitive, and unified management that greatly simplifies the oversight of both cloud-based and on-premises infrastructures. SonicWall has added numerous security and networking solutions, including endpoint security, wireless access, cloud email security and threat intelligence, along with its recent additions of security service edge (SSE), zero trust network access (ZTNA) and managed security services, such as managed detection and response (MDR). With the platform’s unified backend for threat visibility and simplified workflows, partners will have a highly coherent end-to-end solution. This platform is especially beneficial for MSPs and MSSPs, enabling them to efficiently manage multiple client environments, automate key tasks, reduce operational costs, enhance service delivery, and garner valuable insights—all through a single, user-friendly interface. SonicPlatform serves as a centralized hub for managing all client resources, with key features such as: Unified Console: A single, intuitive interface for managing all clients and their resources. Unified System Health Visibility: Comprehensive insights into the health and performance of clients' products – including maintenance needs. Enhanced Security Management: Advanced capabilities for detecting and mitigating threats. Expanded Inventory Management: Efficient management of clients' resources, including appliances, subscriptions, and licenses, across on-premises and cloud environments. SonicPlatform represents a significant stride towards a more integrated, efficient, and secure management ecosystem for SonicWall's increasingly diverse suite of security solutions. More Information SonicWall leaders and experts will be available during the company’s exhibition hours to demo and answer any questions regarding its recent acquisitions and SonicPlatform. SonicWall | Booth 5353, North Hall | Moscone Center Tues., May 7: 10 a.m. - 6 p.m. PT Wed., May 8: 10 a.m. - 6 p.m. PT Thurs., May 9: 10 a.m. - 2 p.m. PT For more information, or to request a 1-on-1 meeting with a SonicWall cybersecurity expert, please visit SonicWall.com/RSA. About SonicWall SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides seamless protection against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter, LinkedIn, Facebook and Instagram.

Read More