Coveware, which provides response services to ransomware attacks, has released a report for the fourth quarter of 2020.
The 4 most interesting data from the report
1. The average ransom payment stands at $ 154,108
It is a decrease of 34% from the third quarter.
2. Organisations decline to pay
The significant decrease in the average payment is due to the fact that more and more organizations are deciding not to pay the ransom.
3. 70% of ransomware attacks also include theft of information from the victim and double extortion
It is an increase of 43% from the third quarter.
4. Social Engineering is the main attack type
In the current quarter the main attack channel was social engineering attacks.
ย _________________
( Source: Coverware Ransomeware Report)
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
๐ Free Insider Threat Detection Tools CISOs Canโt Ignore ๐
Not every threat comes from the outside โ some of the most costly breaches start with insiders, whether accidental or malicious. The good news? There are free and open-source tools CISOs can use today to strengthen insider threat visibility.
Here are some to explore:
1๏ธโฃ OSSEC โ Open-source HIDS that monitors log files, rootkits, registry changes, and suspicious activity.
๐ https://www.ossec.net
2๏ธโฃ Wazuh โ SIEM + threat detection platform with powerful log analysis and insider risk visibility.
๐ https://wazuh.com
3๏ธโฃ Graylog (Open) โ Log management for monitoring anomalous patterns that may indicate insider misuse.
๐ https://www.graylog.org
4๏ธโฃ Zeek (formerly Bro) โ Network monitoring framework that can flag unusual internal data flows.
๐ https://zeek.org
5๏ธโฃ TheHive โ Open-source SOC platform for incident response with insider threat detection workflows.
๐ https://thehive-project.org
6๏ธโฃ Prelude OSS โ Hybrid IDS that supports insider activity monitoring and alert correlation.
๐ https://www.prelude-siem.org
7๏ธโฃ Sysmon (Microsoft Sysinternals) โ Tracks detailed process, file, and registry activity for insider behavior detection.
๐ https://learn.microsoft.com/en-us/sysinternals/downloads/sysmon
โก Takeaway: Insider threats are harder to spot than external attacks because they often look like legitimate activity. These free tools give CISOs eyes inside the perimeter without blowing budgets.
At AUMINT.io, we go further โ by simulating social engineering and insider-like attack vectors to see how employees react, then delivering targeted awareness to stop the threat at its source.
๐ Ready to uncover how your employees would respond to insider-style scenarios? Book a free demo
#InsiderThreats #CISO #CyberSecurity #ThreatDetection #AUMINT