Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - 2022 Cyber Review – Is Your Organisation Ready For 2023
Articles Study & Research Threats and Vulnerabilities

2022 Cyber Review – Is Your Organisation Ready For 2023

Niranjan.JayanandBy Niranjan.JayanandJanuary 24, 2023Updated:August 24, 20244 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Looking back at 2022 is instructive as you prepare your cybersecurity approach for 2023. It helps guide your security approach and helps prepare employees and systems for the year ahead. For example, some state-backed attacks focus on stealing intellectual property from technology companies. Other state-based attacks are focused on stealing funds. Knowing this, technology companies need to better protect their IP, while non-tech companies need to implement stronger security policies around financial transfers.

Cyberattacks hit the headlines throughout the year. In January, an attack on Red Cross Australia led to data exposure of 515,000 vulnerable people. Every month, large and small companies experienced attacks, including Optus, Medibank, and Toyota, exposing data and shutting down factory production. As part of these attacks, we saw a tremendous increase in identity-based attacks, and it emerged as a leading threat vector behind major data breaches.

Chinese hackers also made headlines in 2022, but that only tells a small piece of the cyber-aggression in the region. State-backed advanced persistent threat (APT) groups targeted government entities, nonprofits, religious, and non-governmental organisations across Asia Pacific.

Business email compromise (BEC) attacks proved themselves to be more profitable than ransomware, costing organisations over US$2.4 billion in 2021 and more than US$43 billion since 2013.

We’ve also seen a rise in collaboration between initial access brokers and the use of traditional malware. This collaboration grants access to a network for reconnaissance, followed by the use of specialised tools to disable EDR protections. This makes it particularly challenging for organisations to stay safe from highly organised attacks.

Top Cyber Threats for 2023

We believe identity-based attacks leading to data breaches will continue to be the leading attack vector in Australia. For threat actors, targeting identity and access management gaps through compromised credentials is the fastest path to the target’s resources and critical data. Attackers recognize that the Active Directory is the crown jewel of a business, granting them the ability to exfiltrate sensitive data, install backdoors into the system, and alter security policies.

The shift to hybrid work and cloud storage has made identity the new perimeter. Businesses need to detect and respond effectively to breaches with an effective Identity Threat Detection and Response (ITDR) to protect against threats at every stage.

Despite Russia’s war in Ukraine, or perhaps because of it, we did not see any slowdown in Russian-based ransomware attacks. There’s no reason to believe these types of attacks will slow down in 2023.

Financially motivated groups will continue to conduct opportunistic attacks built on social engineering techniques to gain credentials and access. They also prefer attacks built into the supply chain, such as Microsoft Exchange servers. These types of attacks enable threat actors to compromise thousands of organisations around the globe.

Geopolitics will continue to play a large role in cyberattacks. As the war in Ukraine continues, Russia is expected to continue trying to attack critical infrastructure systems in Asia Pacific, Europe, and the United States.

Meanwhile, Chinese threat actors are also expected to continue with attacks as tensions with the South China Sea continue to prevail. These attacks might be conducted through supply chain operations and BEC attempts, based on previous attacks.   

Protecting Australian Companies from Attack

Companies in the region need to understand that they are a target of an opportunistic or targeted attack. Opportunistic attacks take place when a threat actor gets hold of credentials and launches an attack, usually trying to steal money. These types of attacks involve malware files and can be implemented by anyone who gains access to a system.

Targeted attacks are directed at a specific company with a specific goal in mind. It may be sabotage, an attempt to steal IP, or to shut down an aggressive government agency. These attacks generally take much longer to plan and implement than opportunistic attacks.

The attack vectors for both types of attacks include phishing, BEC, malvertising, and spoofed websites. For many of these scenarios, internal training and adherence to best practices reduce the attack surface. Your IT team should be diligent about upgrading, patching, and maintaining software and systems.

It’s also essential to deploy automated endpoint detection and response (EDR) and extended detection and response (XDR) security systems to identify, contain, and destroy malicious software. Every company in the region should also improve their security posture by implementing identity security policies. Additionally, they should minimise their attack surface and monitor threat intelligence so they know what to expect. Following these guidelines should help keep your company safe in 2023.

Niranjan.Jayanand

WatchTower Threat Hunting Manager at Asia Pacific

    The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

    Share. Facebook Twitter LinkedIn Email Copy Link

    Related Posts

    Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

    May 20, 20265 Mins Read

    Foxconn confirms cyberattack following Nitrogen ransomware claims

    May 14, 20263 Mins Read

    Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

    May 6, 20265 Mins Read
    ISB-Bora-Side-Bar

    No se ha podido establecer conexión. Error 429

     
    ISB-Bora-Side-Bar
    Black ISB Logo

    Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

    X (Twitter) LinkedIn Facebook RSS

    Working With Us

    • About Us
    • Advertise With Us
    • Contact Us

    Write For Us

    • How To Contribute

    The Pages

    • Privacy Policy
    • Cookie Policy
    • AI Policy
    • Terms & Conditions
    • Copyright Notice

    Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

    Type above and press Enter to search. Press Esc to cancel.

    Manage Consent
    To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
    Functional Always active
    The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
    Preferences
    The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
    Statistics
    The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
    Marketing
    The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
    • Manage options
    • Manage services
    • Manage {vendor_count} vendors
    • Read more about these purposes
    View preferences
    • {title}
    • {title}
    • {title}