WatchGuard® Technologies’latest Internet Security Reportshows that evasive malware has grown to recordhigh levels, with over two-thirds of malware detected by its Firebox security appliances in Q4 2019evading signature-based antivirus solutions. This is a dramatic increase from the year-long average of 35% for 2019 and points to the fact that obfuscated or evasive malware is becoming the rule, not the exception. Companies of all sizes need to deploy advanced anti-malware solutions that can detect and block these attacks.
In addition, WatchGuard found widespread phishing campaigns exploitinga Microsoft Excel vulnerability from 2017. This ‘dropper’ exploit was number seven on WatchGuard’s top ten malware list and heavily targeted the UK, Germany and New Zealand. It downloads several other types of malware onto victims’ systems, including a keylogger named Agent Tesla that was used in phishing attacks in February 2020 that preyed on early fears of the coronavirus outbreak.
“Our findings from Q4 2019 show that threat actors are always evolving their attack methods,” said Corey Nachreiner, chief technology officer at WatchGuard. “With over two-thirds of malware in the wild obfuscated to sneak past signature-based defenses, and innovations like Mac adware on the rise, businesses of all sizes need to invest inmultiple layers of security.Advanced AI or behavioural-based anti-malware technology and robust phishing protection like DNS filtering will be especially crucial.”
WatchGuard’s Internet Security Reportprepares businesses, service providers and end users with the data, trends, research and best practices they need to defend against today’s security threats. Other key findings from the Q4 2019report include:
The findings included in WatchGuard’sInternet Security Reportare drawn fromanonymised Firebox Feed data from active WatchGuard UTM appliances whose owners have opted into share data to support the Threat Lab’s research efforts. Today, over40,000 appliances worldwide contribute threat intelligence data to the report. In Q4 2019, theyblocked over 34,500,000malware variants in total (859.5 samples per device) and approximately1,879,000 network attacks (47 attacks per device).