DDoS and SQLi are the Most… Discussed Attack Techniques
The research (also made on other smaller forums) used the forum’s search engine capabilities to analyze conversations by topic using specific keywords. Unfortunately no details have been provided about the methodology used to collect the data, however the results show that SQL Injection and DDoS are the most discussed topic, both of them with the 19% of discussion volume (I am glad to see that the results are coherent with the findings of my Cyber Attack Statistics).
Of course the data must be taken with the needed caution since the analyzed sample could not be entirely consistent. As Imperva admits: “The site we examined is not a hardcore crime site, but it’s not entirely softcore. New hackers come to this site to learn and,on the other hand, more experienced hackers teach to gain “street cred” and recognition […]. Typically, once hackers have gained enough of a reputation, they go to a more hardcore, invitation-only forum.” This probably means that the incidence of the two attack techniques is overrated since one should expect a beginner hacker to approach the easiest and most common attack methods for which there are many tools available.
Anyway the events of the last months show that an attack does not deserve less attention only because it is carried on by a beginner, nor a beginner worries too much if he uses automated tools without full knowledge and awareness. A look to the infosec chronicles of the last period is sufficient to verify that DDoS and SQLi attacks are always in the first pages.
Sadly, Imperva estimates that only the 5% of the security budget is spent on thwarting SQL Injection attacks.
Other interesting findings of the research are: the fact that social networks pose a major interest for hackers since they are becoming a prominent source of information and potential monetary gain (Facebook was the most discussed social media platform, with 39%, immediately followed by Twitter at 37%), and also the fact that E-whoring is becoming one of the most common methods for beginner cyber criminals to gain easy money (more than 13,000 threads observed).
- 637,714 hits since November 2010
08/13/2011 - My Post on Android Malware Mentioned on Engadget.
04/14/2011 - The Article Smart Grid: L'ultima Frontiera del Cybercrime published on ICT Security Magazine May 2011.
03/14/2011 - Security Summit 2011: Paolo Passeri guest at Round Table "Mobile Security: Rischi, Tecnologie, Mercato"
02/14/2011 - The Article Gears of Cyberwar published on ICT Security Magazine January 2011.
About This Blog
In this blog I express my personal opinion, which does not necessarily reflects the opinion of my organization, about events and news or interest, concerning information security, winking to mobile world and, why not, to some curious personal event.
Every information is reported with its source.
Anyone intending to use information contained in my post is free to do so, provided that mention my blog in your article.
Top Posts & Pages
- List Of Hacked Celebrities Who Had (Nude) Photos Leaked
- November 2013 Cyber Attacks Statistics
- 2012 Cyber Attacks Statistics
- 2013 Cyber Attacks Timeline Master Index
- 2013 Cyber Attacks Statistics
- 16-30 November 2013 Cyber Attacks Timeline
- August 2013 Cyber Attacks Statistics
- September 2013 Cyber Attacks Statistics
- 16-31 August 2013 Cyber Attacks Timeline
- 1-15 November 2013 Cyber Attacks Timeline
- November 2013 Cyber Attacks Statistics wp.me/p14J6X-2u5 - 8 hours ago
- RT @tvcutsem: Best explanation I read so far on why Bitcoin has value reddit.com/r/Bitcoin/comm… - 9 hours ago
- Hack on JPMorgan website exposes data for 465,000 card holders ars.to/IKUpsG - 2 days ago
- 16-30 November 2013 Cyber Attacks Timeline wp.me/p14J6X-2tY - 4 days ago
- 1-15 November 2013 Cyber Attacks Timeline wp.me/p14J6X-2tO - 2 weeks ago
- RT @Accumuli_Sec: Accumuli signs partnership with @Lastlineinc and announces availability of integration suite into #SIEM platforms http://… - 2 weeks ago
- October 2013 Cyber Attacks Statistics wp.me/p14J6X-2tw - 3 weeks ago
- Anti-APT startup Lastline heads for London's Tech City - Techworld.com news.techworld.com/security/34895… - 3 weeks ago
- 1-16 October 2013 Cyber Attacks Timeline wp.me/p14J6X-2tp - 3 weeks ago
- It's time to go back to Europe. Thank you @Mandiant @taosecurity for this awesome #MIRcon - 1 month ago