Skip to content

At The Identity Organisation, we're here to help!

    Your privacy is important to us, and we want to communicate with you in a way which has your consent and which is in line with UK Law on data protection. As a result of a change in UK law on 25th May 2018, by providing us with your personal details you consent to us processing your data in line with current GDPR requirements.

    Here is where you can review our Privacy & GDPR Statement

    To remove consent at any time, please e-mail info@tidorg.com with the word "unsubscribe" as the subject.

    +44 (0) 1628 308038 info@tidorg.com

    Use of Malware Decreases in Cyber Attacks as Exploit Usage Skyrockets

    New data on cyberattacks from last quarter provides a lens of what kinds of attack techniques to expect to see from cyber attackers this year.

    Cybercriminals are responding to changes in cybersecurity measures. According to cybersecurity vendor Nuspire’s Q4 2022 and Year in Review Threat Report, malware is on its way out, botnets are down and exploits are becoming the hot new focus.

    According to the report, malware usage declined by 35% from Q3 to Q4 – Nuspire attributes this to Microsoft disabling of VBA macros within Office documents, rendering the use of such droppers useless. Nuspire did mention that phishing will continue and, despite the sizable dip in Q4, 2022 overall still saw a nearly 7% increase in malware use over the previous year.

    malware usage declined by 35% from Q3 to Q4 2022

    Source: Nuspire

    In contrast, exploits grew massively in popularity – to the tune of 104.6% growth from Q3 to Q4 of last year, with 2022 as a whole experiencing a 92% growth in exploits over the previous year.

    104.6% exploit growth from Q3 to Q4

    Source: Nuspire

    These shifts in technique show that cybercriminals aren’t stifled at all by improvements in cybersecurity; instead they simply shift to where the greatest opportunity lies to see a successful attack.

    With phishing still very much on the rise – despite the nearly extinct use of VBA macros – attackers need to rely on social engineering to trick victims into downloading malicious exploits and malware – something thwarted by Security Awareness Training designed to educate users on what cyberattacks look and act like, so they don’t become their next victim.


    Free Phishing Security Test

    Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.

    Here’s how it works:

    • Immediately start your test for up to 100 users (no need to talk to anyone)
    • Select from 20+ languages and customize the phishing test template based on your environment
    • Choose the landing page your users see after they click
    • Show users which red flags they missed, or a 404 page
    • Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
    • See how your organization compares to others in your industry

    PS: Don’t like to click on redirected buttons? Cut & Paste this link in your browser: https://info.knowbe4.com/phishing-security-test-partner?partnerid=001a000001lWEoJAAW

    Sign Up to the TIO Intel Alerts!

    Back To Top