The HP Wolf Security threat research team has identified a 2700% increase in Emotet infections in the first quarter of 2022, re-emerging in late 2021 after its command and control network was shut down by authorities in Jan. 2021. Once described by the Cybersecurity and Infrastructure Security Agency (CISA) as one of the most destructive and costly types of malware to remediate, Emotet has become the greatest malware threat in 2022 (representing 9% of all malware captured).
Macro-enabled Excel files sent via email campaigns led to nearly a 1000% increase in infections in Japan alone. Email campaigns tricked users into opening Microsoft macro-enabled excel files (filename.xlsm) and spread Emotet malware once again.
Some other notable attack campaigns include:
“A clear signal its operators are regrouping, building back their strength and investing in growing the Emotet botnet… Their reemergence is bad news for businesses and the public sector alike.”
– Alex Holland, Senior Malware Analyst, HP Wolf Security Threat Research Team
Dr. Ian Pratt, Global Head of Security for Personal Systems, HP Inc. says that with the uptake in alternative file types and techniques being used to bypass detection, organizations need to change course and take a layered approach to endpoint security. Applying the Principle of Least Privilege by removing Administrative Rights from end users in your organization, and isolating the most common threat vectors from email, browsers, or downloads makes malware delivered through these vectors nearly harmless. The following minimum cybersecurity recommendations should also be done to help reduce the likelihood of becoming a victim of Emotet malware.
The following recommendations will help you and your business stay secure with the various threats you may face on a day-to-day basis. All of the suggestions listed below can be gained by hiring CyberHoot’s vCISO Program development services.
Each of these recommendations, except cyber-insurance, is built into CyberHoot’s product and virtual Chief Information Security Officer services. With CyberHoot you can govern, train, assess, and test your employees. Visit CyberHoot.com and sign up for our services today. At the very least continue to learn by enrolling in our monthly Cybersecurity newsletters to stay on top of current cybersecurity updates.
Sources:
Additional Readings:
Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.
Stop tricking employees. Start training them. Take Control of Your Security Awareness Training with a Platform...
Read moreA recent discovery by cybersecurity firm Oligo Security has unveiled a series of critical vulnerabilities in...
Read moreGet sharper eyes on human risks, with the positive approach that beats traditional phish testing.