The annual Managed Detection and Response (MDR) analysis report provides an in-depth look at the cybersecurity incidents that were detected, and analyzes their nature and impact across different industries and geographies. It also highlights common tactics, techniques, and tools used by cybercriminals over the past year.
Compared to 2023, the number of incidents in the fields of mass media, development industry and telecommunications has increased significantly. However, when analyzing serious incidents, those involving direct intervention by hackers, experts found a clear difference in target distribution. Specifically, in 2024, the MDR team found that the IT sector (23%), the government sector (18%) and industry (18%) were the sectors most affected by these attacks.
The report also found a sharp decline in the number of serious attacks in government agencies and the development industry, in contrast to a sharp increase in the food and industrial sectors. In addition, the number of incidents in the retail, IT and telecommunications sectors also recorded a slight increase.
Notably, despite the explosion in the number of incidents in the mass media sector, serious attacks have been effectively contained, with no signs of increasing. This demonstrates the ability to detect and prevent serious attacks in a timely manner, successfully limiting serious attacks.
“In 2024, we saw a significant change in the cybersecurity landscape, with a growing focus on the food industry for serious attacks, which underscores the importance of security measures in this area. Despite the sharp increase in the overall number of incidents in the telecommunications and media industries, the ability to quickly detect and neutralize threats helped mitigate risks, demonstrating the importance of proactive defense measures,” said Sergey Soldatov, Director of Security Operations Center (SOC) at Kaspersky.
To improve their defenses against increasingly sophisticated cyber attacks, organizations should deploy robust cybersecurity solutions and hire experienced professionals to manage the systems. At the same time, organizations and businesses are recommended to use managed cybersecurity services such as Managed Detection and Response and Incident Response. These services provide comprehensive solutions from threat detection, continuous protection to incident remediation, and monitoring of sophisticated intrusion activities so that they can respond promptly even if the organization does not have a dedicated cybersecurity team.
Comment (0)