Study: Web Threats Increase 540 Percent In Two Years

Trend Micro Inc. Recently announced findings of a study into corporate end user perceptions of and experiences with security threats compared to a similar study conducted in 2005. The study tracked responses from 1,600 corporate computer end users across the United States, UK, Germany and Japan and compared them to analysis from Trend Micro TrendLabs global threat research network and a similar study conducted in 2005.

Both Trend Micro research and the survey findings recognize an increase in spam between 2005 and 2007, yet fewer corporate end users in the United States acknowledge having received spam. UK respondents generally perceive security threats to be less serious in 2007 compared to 2005. However, German respondents by contrast, consider all threats to be more serious in 2007 compared to 2005.

Interestingly, according to TrendLabs threat research, digital threats increased 163 percent between December 2005 and November 2006.

Specifically, Web threats grew by 540 percent from January 2005 to January 2007. End users may show a lack of concern for the seriousness of threats owing to the silent and invisible nature of many new infection routines.

Worldwide, viruses, spam and spyware continue to be security threats that end users are most aware of. In particular, in Japan the awareness for spyware increased significantly from 76 percent in 2005 to 93 percent in 2007.

Although four in 10 respondents in all countries indicated that they have received more spam over the past three months, when compared to the 2005 study, U.S. respondents reported an overall decline in the percentage of spam received (84 percent in 2005 compared to 72 percent in 2007).

By contrast, TrendLabs spam tracking saw the amount of French- and German- language spam peak last summer (between May and August 2006) in enormous quantities, spam numbers fluctuated between 1 million and 6 million pieces per month. This trend later slowed to between 7,000 and 10,000 per month.

From September 2006 to December 2006, the quantity of Japanese-language spam peaked at almost 1 million, but numbers have now reverted back to an average of 350 thousand per month. English-language spam peaked in August 2006 at around 39 million, and is now down to an average of 2 million per month.

The fluctuation in quantities of spam tracked by TrendLabs is owed both to the growth of image spam and also the introduction of new technologies such as that which can identify and block image spam.

Similar to spam encounters in the survey carried out by Trend Micro, the percentage of respondents who encountered spyware declined in the United States (41 percent in 2005 versus 35 percent in 2007) and Germany (23 percent in 2005 versus 19 percent in 2007) but most notably in the UK (42 percent in 2005 versus 26 percent in 2007). Similar to spam, it is likely that the decrease in spyware may be due to the increased complexity and sophistication of attacks and that end users are less able to identify new, silently installing malicious code.

Other noteworthy findings include:

  • Japanese end users rely most upon their IT department. In the three months prior to the study being carried out, 44 percent contacted their IT department. By contrast, U.S. end users are least reliant on their IT department for advice and support with only 24 percent contacting the department during this same time period.
  • U.S. respondents are generally more confident in the protection provided by corporate computers with about 40 percent indicating that their work computers are better protected than home computers against spam, spyware and phishing. As a result, they are more likely to click on suspicious links or websites using their work computers (17 percent), particularly when compared to respondents in Germany (8 percent).
  • However, U.S. respondents are also more likely to take most security threats seriously -- especially relative to respondents from the UK. As an example, 60 percent of U.S. respondents indicated that they view spyware as a serious threat while only 48 percent of UK end users viewed it as such. Similarly, 48 percent of U.S. end users recognized the danger of spam while only 27 percent of UK end users perceived this to be a serious threat.
  • 48 percent of all respondents who have been victims of spyware or phishing scams believe that their IT department could have prevented the incident.
  • Identity theft, loss of personal information and privacy violations are the biggest concerns related to phishing, pharming and spyware. Loss of computer performance or productivity is the biggest concern related to spam, viruses and trojans. Malicious downloads are also a key concern related to viruses, trojans and Web threats.
  • Use of security software is the main action taken to protect against pharming, spyware, trojans, viruses and Web threats. Close monitoring of e-mail is the leading action taken to protect against spam and phishing.

Featured

  • New Report Reveals Top Trends Transforming Access Controller Technology

    Mercury Security, a provider in access control hardware and open platform solutions, has published its Trends in Access Controllers Report, based on a survey of over 450 security professionals across North America and Europe. The findings highlight the controller’s vital role in a physical access control system (PACS), where the device not only enforces access policies but also connects with readers to verify user credentials—ranging from ID badges to biometrics and mobile identities. With 72% of respondents identifying the controller as a critical or important factor in PACS design, the report underscores how the choice of controller platform has become a strategic decision for today’s security leaders. Read Now

  • Overwhelming Majority of CISOs Anticipate Surge in Cyber Attacks Over the Next Three Years

    An overwhelming 98% of chief information security officers (CISOs) expect a surge in cyber attacks over the next three years as organizations face an increasingly complex and artificial intelligence (AI)-driven digital threat landscape. This is according to new research conducted among 300 CISOs, chief information officers (CIOs), and senior IT professionals by CSC1, the leading provider of enterprise-class domain and domain name system (DNS) security. Read Now

  • ASIS International Introduces New ANSI-Approved Investigations Standard

    • Guard Services
  • Cloud Security Alliance Brings AI-Assisted Auditing to Cloud Computing

    The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today introduced an innovative addition to its suite of Security, Trust, Assurance and Risk (STAR) Registry assessments with the launch of Valid-AI-ted, an AI-powered, automated validation system. The new tool provides an automated quality check of assurance information of STAR Level 1 self-assessments using state-of-the-art LLM technology. Read Now

  • Report: Nearly 1 in 5 Healthcare Leaders Say Cyberattacks Have Impacted Patient Care

    Omega Systems, a provider of managed IT and security services, today released new research that reveals the growing impact of cybersecurity challenges on leading healthcare organizations and patient safety. According to the 2025 Healthcare IT Landscape Report, 19% of healthcare leaders say a cyberattack has already disrupted patient care, and more than half (52%) believe a fatal cyber-related incident is inevitable within the next five years. Read Now

New Products

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities