Site icon Converge Digest

McAfee Labs Finds 93% of Security Ops Managers Overwhelmed by Alerts

Security Operations Managers are finding it difficult to triage cyber threats due increasing volume of activity and growing complexity, according to a primary research study commissioned by Intel Security.  The newly released McAfee Labs Threats Report details key 2016 developments in ransomware, and illustrates how attackers are creating difficult-to-detect malware by infecting legitimate code with Trojans and leveraging that legitimacy to remain hidden as long as possible.

“One of the harder problems in the security industry is identifying the malicious actions of code that was designed to behave like legitimate software, with low false positives,” said Vincent Weafer, vice president of Intel Security’s McAfee Labs. “The more authentic a piece of code appears, the more likely it is to be overlooked. Just as 2016 saw more ransomware become sandbox-aware, the need to conceal malicious activity is driving a trend toward ‘Trojanizing’ legitimate applications. Such developments place an ever greater workload on an organization’s SOC – where success requires an ability to quickly detect, hunt down, and eradicate attacks in progress.”

Some highlights:

In the third quarter of 2016, McAfee Labs’ Global Threat Intelligence network registered notable surges in ransomware, mobile malware and macro malware:

http://www.intelsecurity.com/

Exit mobile version