The European Union has declared October as Cyber Security Month (EU Cyber Security Month – ECSM), making it an opportunity to see if we are keeping pace with the developed Western world, not only in terms of attacks but also in protection against them. Indeed, anyone can become a victim of a cyber attack, which is why this year’s awareness-raising campaign for the European Cyber Security Month is aimed specifically at the general public.
The National CERT states that they keep statistics on cyber incidents according to types of incidents (in accordance with the National Taxonomy of Computer Security Incidents) and emphasize that particularly vulnerable groups include the elderly, citizens with low digital literacy, and micro, small, and medium enterprises that lack financial resources, knowledge, or human resources to deal with cyber security issues alongside their daily operations.
– They are most often attacked by attackers from outside Croatia, and the profiles, as well as their motives, can vary significantly. There is a basic division of attacker profiles into state-sponsored groups, cybercriminals, hacktivists, terrorist groups, internal threats, and actors for whom attacks represent some kind of challenge. Their motives vary and can be geopolitical, financial, ideological, or for personal satisfaction. Actors are increasingly turning to profit-driven activities as this secures funding for further actions – they explain at CERT.
However, perhaps an even more interesting point they make is that you can be cyber attacked not only by ‘masters’ of computers (as the legendary Nadrealists would say) but also by total beginners. This contrasts with the common belief among people, as many think (including the author of this text), if not everyone, that committing a cyber attack requires extensive knowledge and skill. Therefore, CERT warns about actors referred to as Script kiddies. These are beginners who use ready-made solutions, i.e., other people’s code, sometimes without understanding how they actually work.
Additionally, technical knowledge, they continue at CERT, is not necessary for the success of an attack, for example, for social engineering. This is an attack in which the victim is manipulated to achieve some benefit. Social engineering is precisely the main theme of this year’s campaign for the European Cyber Security Month, and if any readers want to learn more about it, they can find out everything during October on the CERT.hr portal and its social media.
Multiple Attacks from One Center
At the level of the European Union, data on incidents is collected, and significant effort is put into cooperation and information exchange between the CERTs of EU member states. Based on the collected information, recommendations are issued and forecasts are made regarding trends in the field of cyber security. The European Union Agency for Cybersecurity (ENISA) publishes the ‘ENISA Threat Landscape’ every year, which outlines the biggest threats and advice for protection against them. According to the ‘ENISA Threat Landscape 2022’ report, the biggest threats include: ransomware (which locks data on the computer), malware (malicious software that runs without the owner’s consent, causing damage), social engineering, DDoS (attacks that would cause internet unavailability, disinformation, and attacks on the supply chain).
Let’s focus a bit more on DDoS attacks. They target websites and servers by disrupting network services in an attempt to exhaust application resources. Attackers behind these attacks flood the website with random traffic, resulting in poor website functionality or complete network disconnection. These types of attacks are becoming increasingly common. DDoS attacks have a wide scope and target various activities and companies of all sizes around the world. Certain sectors, such as the gaming industry, e-commerce, and telecommunications, are targeted more frequently than others. DDoS attacks are one of the most common computer threats and potentially jeopardize your business, internet security, sales, and reputation.
And how dangerous cybercrime is, is not only indicated by the fact that attackers do not have to be physically close to commit it, but also that attacks and observed campaigns can occur in multiple countries simultaneously. This is best illustrated by the case of the WannaCry ransomware in 2017, which compromised over 200,000 computers in 150 countries.
