2014 Fall Threat Landscape Report now available

Summary

This 2014 post summarises Palo Alto Networks' Unit 42 Fall Threat Landscape review, a malware-trend report covering delivery channels, application diversity and one dominant malware family observed across thousands of organisations. It targets security-conscious IT and business readers who want a condensed view of the vendor report's key findings. Reported highlights include email and web as the two dominant malware delivery channels, malware appearing in over 50 distinct applications, and the Kulouz/Asprox family responsible for roughly 80% of attack sessions recorded in October 2014. Published in 2014. Figures, product names and event details reflect that time; for current information see the linked service pages.

Key facts

Label Value
Publication year 2014
Topic Palo Alto Networks Unit 42 Fall 2014 Threat Landscape review
Services referenced emPOWER Core Network / DC Interconnect, emPOWER Connectivity, Managed Detection & Response, emPOWER Security
Named vendor/product Palo Alto Networks, Unit 42, WildFire
Statistic cited Kulouz/Asprox malware family responsible for about 80% of attack sessions recorded in October 2014, impacting nearly 2,000 organisations, per Unit 42's report as cited in the origin post

Article

Unit 42, the research division of Palo Alto Networks, have released their 2014 Fall Threat Landscape review. The report is a comprehensive assessment of malware trends affecting thousands of organizations in major industries around the world. Key highlights include: Unit 42

blueAPACHE and Palo Alto have partnered to deliver security solutions (including WildFire) on-premise and on the emPOWER Network. To learn more: Download the report from the Palo Alto site.
Contact the blueAPACHE Account team to discuss your security requirements.

Related

Frequently asked questions

What was the main finding of the 2014 Fall Threat Landscape report?Per the post, malware was overwhelmingly delivered through email (SMTP) and web (HTTP) channels, though the split between the two varied significantly by industry, and one malware family, Kulouz/Asprox, accounted for around 80% of attack sessions recorded in October 2014.

Who published the report the post is summarising?Unit 42, the threat research division of Palo Alto Networks, published the original Fall Threat Landscape review that this post condenses.

Why did malware delivery channels vary so much by industry?The post notes retail and wholesale organisations received almost 28% of malware over the web channel while hospitality organisations received just 2% over the same channel, indicating different industries have materially different threat profiles.

What was blueAPACHE's security partnership referenced in the post?The post states blueAPACHE and Palo Alto Networks had partnered to deliver security solutions, including WildFire, both on-premise and on the emPOWER Network.

Is this specific threat data still relevant today?No. The named malware family and percentages describe the threat landscape of October 2014 specifically. For blueAPACHE's current security capabilities see emPOWER Security and Managed Detection & Response, linked below.

Source

Knowledge Base

Who published the 2014 Fall Threat Landscape Report mentioned in this blueAPACHE blog post?

Unit 42, the research division of Palo Alto Networks, published the 2014 Fall Threat Landscape Report, released on this blueAPACHE blog post dated December 19, 2014.

What is the 2014 Fall Threat Landscape Report about?

It is a comprehensive assessment of malware trends affecting thousands of organizations in major industries around the world.

What were the primary channels for malware delivery across vertical markets, according to the report?

All vertical markets saw e-mail (SMTP) and HTTP as the primary channels for malware delivery, though the percentages varied significantly by industry, indicating different threat profiles for each sector.

How did malware delivery over the web channel differ between retail/wholesale and hospitality organizations?

Retail and wholesale organizations received almost 28 percent of malware over the web channel, while hospitality organizations received just two percent over the same channel.

In how many distinct applications was malware delivered, and what proportion came via email versus web browsing?

Malware was delivered in over 50 distinct applications, with 87 percent delivered over e-mail and 11.8 percent through web browsing (HTTP).

What percentage of unique malware samples were delivered in just one or two attacks, and why does this matter?

Over 90 percent of unique malware samples were delivered in just one or two attacks. Most of these files are part of overarching malware families, but deploying distinct files only once or twice allows attackers to evade many antivirus programs, meaning security practitioners need solutions that can identify and stop attacks at multiple stages in the attack kill chain.

Which malware family was responsible for the majority of attack sessions recorded in October 2014, and how many organizations did it affect?

The malware family known as Kulouz or Asprox was responsible for about 80 percent of all attack sessions recorded during October 2014, impacting nearly 2,000 different organizations.

How does blueAPACHE relate to Palo Alto Networks based on this blog post?

blueAPACHE and Palo Alto Networks have partnered to deliver security solutions, including WildFire, both on-premise and on the emPOWER Network.

Where can readers download the full 2014 Fall Threat Landscape Report?

Readers can download the report from the Palo Alto Networks site via a link provided in the blog post, or contact the blueAPACHE Account team to discuss security requirements.

Images on This Page