Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
French luxury conglomerate announces massive April 2025 multi-brand da...
Four CVSS 9.8 vulnerabilities in failure simulation tool expose Kubern...
The future of video security: Poll finds surge in large-scale AI deplo...
VIVOTEK Hosts Global Partner Summit, driving AI and Growth
Combating the surge in Asia Pacific credential abuse and ransomware
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      Combating the surge in Asia Pacific credential abuse and ransomware

      Combating the surge in Asia Pacific credential abuse and ransomware

      Wednesday, September 17, 2025, 5:06 PM Asia/Singapore | Features
    • Featured

      The rise of digital wallets: What businesses in APAC need to know

      The rise of digital wallets: What businesses in APAC need to know

      Tuesday, September 2, 2025, 1:59 PM Asia/Singapore | Features
    • Featured

      Resilience the true benchmark for smart infrastructure

      Resilience the true benchmark for smart infrastructure

      Wednesday, August 27, 2025, 8:21 PM Asia/Singapore | Features, IoT Security
  • Opinions
  • Tips
  • Whitepapers
  • Awards 2025
  • Directory
  • E-Learning

Select Page

News

Zooming in on the characteristics of the longest-duration cyberattacks

By CybersecAsia editors | Thursday, May 23, 2024, 5:14 PM Asia/Singapore

Zooming in on the characteristics of the longest-duration cyberattacks

Using its 2023 incident response teams telemetry, one cybersecurity firm has taken a deep dive into what makes them tick

In analyzing its incidence response data for 2023, one cybersecurity firm took a deeper look at what it termed “the longest cyberattacks”: those that had persisted for longer than one calendar month.

The data, gathered from Kaspersky’s customer base seeking incident response assistance or when hosting expert events for their internal incident response teams, showed some key trends.

First, the longest cyberattacks that persisted for more than a month constituted 21.85% of the total, an increase over that of 2022 by 5.55%. A primary vector of such long attacks had been identified in the data as “the exploitation of trusted relationships”. In 2022 data, this vector had also been a factor, but for 2023, its frequency had increased, accounting for 6.78% of the total number of the longest attacks. 

Secondly, it was noted that such long attacks gave threat actors more time to infiltrate multiple victims through a single compromised organization. Difficulties were encountered by investigative teams because initially-targeted organizations did not always recognize the importance of thorough investigations, and could have been reluctant to cooperate. 

Also, attacks initiated through the abuse of trusted relationships often required more time to progress from the initial intrusion to the final incursion phase. Furthermore, detecting them takes a lot longer because the attackers’ actions can be hard to distinguish from those of employees working for a contractor. Similarly, many of the longest attacks exceeding one month were exclusively registered within “insider” and phishing vectors.

According to Konstantin Sapronov, Head, Global Emergency Response Team, Kaspersky: “Cybersecurity threats are constantly evolving, and our latest findings underscore the critical role of trust in cyberattacks. In 2023 and for the first time in recent years, attacks through trusted relationships were among the three most used vectors. Half of these incidents were discovered only after a data leak had been found. By exploiting trusted relationships, threat actors can prolong attacks and infiltrate networks for extended periods, posing significant risks to organizations. It’s imperative for businesses to remain vigilant and prioritize security measures to safeguard against such sophisticated tactics.”

Share:

PreviousMitsui Bussan Secure Directions, Inc. launches Blackpanda IR Retainer, a cyber incident emergency response retainer service
NextWhy strong cybersecurity is an inextricable part of the Net Zero journey

Related Posts

For sale: 500,000 Indian-bank credit card details

For sale: 500,000 Indian-bank credit card details

Tuesday, February 11, 2020

Four cybersecurity trends that enterprises must watch in the Lunar Ox Year

Four cybersecurity trends that enterprises must watch in the Lunar Ox Year

Tuesday, February 23, 2021

Review of first-half 2020 shows doubling of web phishing attacks

Review of first-half 2020 shows doubling of web phishing attacks

Monday, September 21, 2020

What we don’t need right now: another powerful generative cyber risk

What we don’t need right now: another powerful generative cyber risk

Thursday, April 13, 2023

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • 2024 Insider Threat Report: Trends, Challenges, and Solutions

    2024 Insider Threat Report: Trends, Challenges, and Solutions

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    The future of cybersecurity is a perfect storm: AI-driven attacks, cloud expansion, and the convergence …Download Whitepaper
  • Data Management in the Age of Cloud and AI

    Data Management in the Age of Cloud and AI

    In today’s Asia Pacific business environment, organizations are leaning on hybrid multi-cloud infrastructures and advanced …Download Whitepaper
  • Mitigating Ransomware Risks with GRC Automation

    Mitigating Ransomware Risks with GRC Automation

    In today’s landscape, ransomware attacks pose significant threats to organizations of all sizes, with increasing …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • CISOs can navigate emerging risks from autonomous AI with a new security framework

    CISOs can navigate emerging risks from autonomous AI with a new security framework

    See how security leaders can adopt layered strategies addressing intent, governance, and oversight to manage …Read more
  • MoneyMe strengthens fraud prevention and credit decisioning

    MoneyMe strengthens fraud prevention and credit decisioning

    Australian fintech strengthens risk management with SEON to scale lending operations securely and efficiently.Read more
  • PT Kereta Api Indonesia announces nationwide email and communication overhaul

    PT Kereta Api Indonesia announces nationwide email and communication overhaul

    The state railway operator’s upgraded email system improves privacy, operational reliability, and regulatory alignment for …Read more
  • Operationalizing sustainability in cybersecurity: Group-IB’s approach

    Operationalizing sustainability in cybersecurity: Group-IB’s approach

    See how the firm turned malware-group takedowns into measurements of sustainability and resilience gains: by …Read more

Bottom sidebar

  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2025 CybersecAsia All Rights Reserved.