Friday, September 22, 2023

Security Boulevard Logo

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Bloggers Network
    • Latest Posts
    • Contributors
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming Webinars
    • Calendar View
    • On-Demand Webinars
  • Events
    • Upcoming Events
    • On-Demand Events
  • Sponsored Content
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
    • Techstrong.tv Podcast
    • TechstrongTV - Twitch
  • Library
  • Related Sites
    • Techstrong Group
    • Cloud Native Now
    • DevOps.com
    • Security Boulevard
    • Techstrong Research
    • Techstrong TV
    • Techstrong.tv Podcast
    • Techstrong.tv - Twitch
    • Devops Chat
    • DevOps Dozen
    • DevOps TV
  • Media Kit
  • About
  • Sponsor

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Hot Topics
  • Cyber Week 2023 & The Israel National Cyber Directorate Presents - Guarding the Cyber Galaxy: Electronic-Cyber Defense in Space
  • Cybersecurity Insights with Contrast CISO David Lindner | 9/22
  • China Accuses US of Years of Cyber-Spying, Malware Campaigns
  • Randall Munroe’s XKCD ‘xkcd Phone Flip’
  • The Battle Against Cyber Shadows: Ensuring PCI-DSS Compliance Amidst Hidden Threats
Application Security Security Bloggers Network 

Home » Cybersecurity » Application Security » Four Key Findings from the 2022 Cyberthreat Defense Report

SBN

Four Key Findings from the 2022 Cyberthreat Defense Report

by Bruce Lynch on June 20, 2022

For the ninth year, Imperva is proud to sponsor CyberEdge Group’s annual Cyberthreat Defense Report. In this report, CyberEdge Group delivers a detailed accounting of how IT security professionals perceive cyberthreats today and reveals actionable insights into how they plan to defend their enterprises against them. To develop these findings, CyberEdge Group surveyed 1,200 IT security decision-makers and practitioners to help the greater IT security community gain a better understanding of how their concerns, and plans for addressing them, benchmark against their counterparts in the industry.

Here are four key findings from the 2022 Cyberthreat Defense Report:

AWS Builder Community Hub

1. In 2022, IT security professionals are most worried about three types of network-based attacks
Overall on a scale of 1 to 5, IT security professionals are most concerned with Account Takeover (ATO) and credential stuffing attacks (rated 3.97), denial of service (DoS) attacks (rated 3.85), and web application attacks such as SQL-injection and XSS attacks (rated 3.83).

2. Four specific web and mobile application attacks represent the greatest concern
46.6 percent of respondents listed Personally Identifiable Information PII harvesting, 45.5 percent said ATO and credential stuffing attacks, and 39.6 percent selected carding and payment fraud attacks. Digital skimming and Magecart attacks were fourth, cited by 33.2% of respondents.

3. API protection and web application firewall (WAF) technology have emerged as essential technologies for application and data security
To take on the aforementioned threat vectors, more than 60% of IT security decision-makers and practitioners have these technologies currently in use. The three most popular technologies that respondents plan to acquire in 2022 include bot management, advanced security analytics, and database activity monitoring (DAM).

4. IT security decision-makers and practitioners have identified five major benefits that unifying application and data security defenses help them gain
Based on their 2022 findings, CyberEdge Group suggests,“ a unified platform for application and data security is one of those areas in cybersecurity where integration and single-vendor sourcing just make sense.” This approach reduces the complexities of working with incompatible management and reporting tools and working with multiple vendors. Respondents cited these five specific benefits: improved cloud security posture (58.5 percent), improved customer support experience (48.4 percent), enhanced security incident investigations (45.8 percent), simplified security rules management (43.6 percent), and fewer third-party integrations to manage (32.9 percent).

Get more information about this CyberEdge Group report

  • Click here to get a free full copy of the 2022 Cyberthreat Defense Report.
  • For an Executive Brief of the full report, click here.
  • Download a handy infographic highlighting major findings here.

Imperva delivers industry-leading unified application and data security solutions

As attack vectors become more sophisticated and the threat landscape grows, depend on Imperva to protect your applications and data, no matter where they reside. Regardless of where your organization is on the application and data protection journey, Imperva can help. Contact a solutions representative to learn more.

The post Four Key Findings from the 2022 Cyberthreat Defense Report appeared first on Blog.

*** This is a Security Bloggers Network syndicated blog from Blog authored by Bruce Lynch. Read the original post at: https://www.imperva.com/blog/four-key-findings-from-the-2022-cyberthreat-defense-report/

June 20, 2022June 20, 2022 Bruce Lynch account takeover, advanced bot protection, Application Security, carding, credential stuffing, database activity monitoring, ddos, Digest, Magecart Attacks, pii, sql injection, XSS
  • ← Hertzbleed: A New Side-Channel Attack
  • RSAC insights: How IABs — initial access brokers — help sustain, accelerate the ransomware plague →

Techstrong TV – Live

Click full-screen to enable volume control
Watch latest episodes and shows

Upcoming Webinars

Mon 25

Cloud Security

September 25 @ 1:00 pm - 2:00 pm
Thu 28

A Guide to Smart Dependency Management

September 28 @ 12:00 pm - 1:00 pm
Oct 03

Way Too Vulnerable: Uncovering the State of the Identity Attack Surface

October 3 @ 11:00 am - 12:00 pm
Oct 11

ASPM: Leveling the AppSec Playing Field

October 11 @ 1:00 pm - 2:00 pm
Oct 16

Shadow Access: Where IAM Meets Cloud Security

October 16 @ 3:00 pm - 4:00 pm
Oct 17

Securing Cloud-Native Applications Across the Software Development Life Cycle

October 17 @ 11:00 am - 12:00 pm
Oct 18

Live Workshop on ‘SCA 2.0’: Using Runtime Analysis to Find High-Risk SCA Vulnerabilities

October 18 @ 12:00 pm - 1:30 pm
Oct 19

Managing Security Posture and Entitlements in the Cloud

October 19 @ 1:00 pm - 2:00 pm
Oct 24

When Seconds Matter: Real-Time Cloud Security With AWS and Sysdig

October 24 @ 11:00 am - 12:00 pm
Oct 24

Reporting From the Pipeline: The State of Software Security in DevOps

October 24 @ 1:00 pm - 2:00 pm

More Webinars

Subscribe to our Newsletters

TSTV Podcast

Most Read on the Boulevard

Group Allegedly Behind MGM, Caesars Attacks is Fairly New to Ransomware
A Wave of Chinese Cyberthreat Campaigns Use Old and New Malware
LockBit Affiliates Use RMM Software in Ransomware Attacks
Getting Started With Two-Factor Authentication (2FA)
Leveraging Wargaming Principles for Cyberdefense Exercises
How to secure payments from checkout to chargeback: Pairing Sift Payment Protection and Dispute Management
How Third-Party Breaches Impact Financial Institutions
Top Cybersecurity Events
Securing AI-Generated Code
Automated Vulnerability Detection: Mitigate Fraud and Strengthen Your Cybersecurity Defense

Download Free eBook

7 Must-Read eBooks for Security Professionals

Industry Spotlight

Google: Chromebooks Will Get 10 Years of Software, Security Updates
Application Security Cybersecurity Data Security Endpoint Featured Industry Spotlight Malware Mobile Security Network Security News Security Boulevard (Original) Spotlight 

Google: Chromebooks Will Get 10 Years of Software, Security Updates

September 19, 2023 Jeffrey Burt | 3 days ago 0
Group Allegedly Behind MGM, Caesars Attacks is Fairly New to Ransomware
Cloud Security Cybersecurity Data Security Featured Identity & Access Industry Spotlight Malware Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social Engineering Spotlight Threats & Breaches 

Group Allegedly Behind MGM, Caesars Attacks is Fairly New to Ransomware

September 18, 2023 Jeffrey Burt | 4 days ago 0
DoD Turns to Stronger Alliances to Combat Cyberthreats
Cybersecurity Data Privacy Featured Industry Spotlight Malware Network Security News Security Awareness Security Boulevard (Original) Spotlight 

DoD Turns to Stronger Alliances to Combat Cyberthreats

September 14, 2023 Jeffrey Burt | Sep 14 0

Top Stories

China Accuses US of Years of Cyber-Spying, Malware Campaigns
Cybersecurity Data Security Featured Identity & Access Malware Network Security News Security Boulevard (Original) Spotlight Threat Intelligence Threats & Breaches 

China Accuses US of Years of Cyber-Spying, Malware Campaigns

September 22, 2023 Jeffrey Burt | 5 hours ago 0
Signal Intros Quantum-Resistant Encryption for App
Application Security Cybersecurity Data Privacy Data Security Featured Identity & Access Mobile Security Network Security News Security Boulevard (Original) Spotlight 

Signal Intros Quantum-Resistant Encryption for App

September 22, 2023 Jeffrey Burt | 8 hours ago 0
GitLab Releases Urgent Security Updates for Critical Flaw
Application Security Cloud Security Cybersecurity Data Security DevOps Featured Identity & Access News Security Boulevard (Original) Spotlight Threat Intelligence Vulnerabilities 

GitLab Releases Urgent Security Updates for Critical Flaw

September 21, 2023 Jeffrey Burt | Yesterday 0

Security Humor

Randall Munroe’s XKCD ‘xkcd Phone Flip’

Randall Munroe’s XKCD ‘xkcd Phone Flip’

Security Boulevard Logo White

DMCA

Join the Community

  • Add your blog to Security Bloggers Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: [email protected]

Useful Links

  • About
  • Media Kit
  • Sponsor Info
  • Copyright
  • TOS
  • DMCA Compliance Statement
  • Privacy Policy

Related Sites

  • Techstrong Group
  • Cloud Native Now
  • DevOps.com
  • Digital CxO
  • Techstrong Research
  • Techstrong TV
  • Techstrong.tv Podcast
  • DevOps Chat
  • DevOps Dozen
  • DevOps TV
Powered by Techstrong Group
Copyright © 2023 Techstrong Group Inc. All rights reserved.