Greenfrog Computing

Call Us: 01246 520000

sales@greenfrogcomputing.co.uk

  • REMOTE SUPPORT
  • Team
  • Support
  • Security
  • Solutions
  • Infrastructure
  • Industry
  • More
    • About Us
    • Referral Program
    • 3CX
    • Web Design and Development
    • OpenText GroupWise
    • OpenText Filr
    • OpenText Open Enterprise Server
    • Cyber Essentials
    • Testimonials
    • Blog
  • Menu Menu

Tech News : Massive Rise In HTTPS Attacks

November 3, 2021/in Technology News/by Greenfrog Computing

The latest “ThreatLabz: The State of Encrypted Attacks,” 2021 report has shown a 300 per cent increase in online attackers using HTTPS to cloak their activities and blend in with other traffic.

HTTPS

HTTPS, the encrypted version of the Hypertext Transfer Protocol (HTTP), enables secure communication over a computer network, using Transport Layer Security (formerly, Secure Sockets Layer). HTTPS is particularly important for protecting the kind of personal data that’s submitted in online activities like shopping, banking, and remote work.

Massive Increase

The ThreatLabz report showed that threats inside encrypted traffic have increased 314 per cent as online attackers choose HTTPS to cloak their activities.

How?

Cybercriminals can use HTTPS to hide threats like malware from web security tools that don’t fully inspect encrypted traffic.

Why?

The rise of this type of attack has been driven by factors such as:

– Google making it known that the presence of HTTPS is an important consideration for search-results rankings, and Chrome and Firefox showing warnings about sites without HHTPS, thereby fuelling a general belief that HTTPS is totally safe.

– Attackers (as well as legitimate businesses) can now enable and auto-renew HTTPS for their sites, regardless of whether the content is suspect.

– New types of malware are now being shared behind a lock symbol.

Types of Attack

The types of attack that criminals are using HTTPS to hide include:

– Malware (including ransomware). This type of attack has grown by 212 percent and nine out of ten attacks via HTTP(S) involved malware. Spyware has also shown a 435 per cent increase. 

– Phishing has grown by 90 per cent on last year and is being driven by attacks launched through legitimate services. For example, Microsoft 365 was the most common attack vector for phishers.

– Web applications like credential stuffing. For example, the ThreatLabz report shows that attackers interacted with almost 70 per cent of HTTPS-based web-facing applications.

Who Was Attacked The Most?

The report showed that technology companies were attacked the most using HTTPS cloaking (a 2,344 per cent rise) followed by retail and wholesale companies which saw an 841 percent increase in this type of stealth attack. Increased scrutiny by law enforcement on healthcare companies/organisations and government (which have been heavily targeted before) appears to be the reason for a decrease in the numbers of HTTPS-based attacks on these targets.

What To Do?

Ways that businesses can protect themselves against cybercriminals hiding attacks using HTTPs include:

– Not assuming that SSL traffic is automatically secure traffic – the padlock icon of HTTPS does not guarantee security.

– Start from a position of zero trust, where there is no lateral movement, apps are invisible to attackers, and authorised users directly can only access needed resources, not the entire network.

– If possible, use AI-driven quarantine rather than firewall-based passthrough approaches.

– Use a proxy-based architecture and cloud-native performance to decrypt detect and prevent threats from SSL traffic.

– Make sure all company network users have the same high level of security at all times, at all locations (e.g., when working remotely or even when on the go). All traffic on and off-premises needs to be inspected to stop encrypted threats.

What Does This Mean For Your Business?

Even though HTTPS has been designed to provide a valuable layer of encryption, it has also become relatively easy for cybercriminals to create websites with the HTTPS distinction. Also, cybercriminals have been helped by an assumption that HTTPS and a padlock must mean that everything is secure, and by web security tools which don’t fully inspect and check encrypted traffic, on and off-premises. Businesses should not assume the HTTPS is totally secure and one of the key ways that many businesses are now protecting themselves from a wide range of threats, including HTTPS-based attacks, is to adopt a Zero Trust approach to IT Security where the approach is “never trust, always verify.”

Share this entry
  • Share on Facebook
  • Share on X
  • Share on WhatsApp
  • Share on Pinterest
  • Share on LinkedIn
https://www.greenfrogcomputing.co.uk/wp-content/uploads/2021/11/photo-3.jpg 375 500 Greenfrog Computing https://www.greenfrogcomputing.co.uk/wp-content/uploads/2022/08/greenfrog-computing-logo-22-1.png Greenfrog Computing2021-11-03 04:51:172021-11-03 04:51:19Tech News : Massive Rise In HTTPS Attacks

Recent Comments

    © Copyright - Greenfrog | Registered in England 04653352 | VAT No. GB 813 689800 | Legal - T&Cs | Cookies & Privacy Policy
    • Link to LinkedIn
    • Link to Facebook
    Link to: Featured Article : Facebook Re-Branded As ‘Meta’ Link to: Featured Article : Facebook Re-Branded As ‘Meta’ Featured Article : Facebook Re-Branded As ‘Meta’ Link to: Tech News : One Million UK households May Be ‘Brushing’ Scam Victims Link to: Tech News : One Million UK households May Be ‘Brushing’ Scam Victims Tech News : One Million UK households May Be ‘Brushing’ Scam Victims
    Scroll to top Scroll to top Scroll to top

    We are using cookies to give you the best experience on our website.

    You can change your consent by clicking Settings.

    Greenfrog Computing
    Privacy Overview

    This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

    Strictly Necessary Cookies

    Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.

    3rd Party Cookies

    This website uses Google Analytics to collect anonymous information such as the number of visitors to the site, and the most popular pages.

    Keeping this cookie enabled helps us to improve our website.