Marriott hack: 60 per cent of cyber attacks now involve multiple targets in one organisation warns Carbon Black

Charlee Gothard
clock • 2 min read

"Island hopping" attacks targeting suppliers and acquisitions also growing threat, say experts

Nearly 60 per cent of cyber attacks target multiple components on an organisation's network, reseach from security firm Carbon Black states.

This supports the theory that breaches like today's reported Marriot Hotel Group hack - which involved criminals spending more than four years inside the company's system to steal 500 million customer data records over that time - may not be isolated attacks.

Tom Kellermann, chief cybersecurity cfficer at Carbon Black said:

"It appears there had been unauthorised access to the Starwood network since 2014, demonstrating that attackers will get into an enterprise and attempt to remain undetected.

"A recent Carbon Black threat report found that nearly 60 per cent of attacks now involve lateral movement, which means attackers aren't just going after one component of an organisation - they're getting in, moving around and seeking more targets as they go."

Carbon Black's report also found that more than half of attackers now use their victim primarily for a practice known as "island hopping".

"In these campaigns, attackers first target an organisation's affiliates, often smaller companies with immature security postures and this can often be the case during a merger or acquisition," said Kellermann.

"This means that data at every point in the supply chain may be at risk, from customers, to partners and potential acquisitions."

Forrester analyst Enza Iannopollo has also called the Marriott breach an attack with "the potential to trigger the first hefty GDPR fine".

"The ingredients are all here," said Iannopollo.

"The volume of personal data exfiltrated, more than 500 million customers, the sensitivity of the data, potentially including customers' passport details, name, address, and even encryption keys, and the length of the breach which started in 2014."

To learn more about protecting about cyber threats in an increasingly hostile landscape, read a new report from Computing and experts at Carbon Black, which focuses on introducing the human element of "threat hunters" into an organisation to more proactively tackle the more sophisticated, human-driven activities which are becoming a greater reality of the IT security world.

You may also like
Next's CISO: Learn from attackers to boost cyber defences

Security

Collaboration, knowledge sharing, agility – there’s a lot that cyber criminals do right

clock 02 May 2024 • 4 min read
'Few organisations realise cyber tools' potential' - Dan Burns, CISO at Next

Security

Keynote speaker at the Cybersecurity Festival 2024

clock 04 April 2024 • 2 min read
Checkmarx: 'It's very difficult for CISOs to know how to safely incorporate genAI'

Security Technology

'It’s an unfortunate reality that developers have not traditionally been big fans of security'

clock 26 March 2024 • 5 min read

More on Security

IT Essentials: A cyber staycation

IT Essentials: A cyber staycation

The UK made headlines in security news

Tom Allen
clock 07 May 2024 • 3 min read
Microsoft: last year we tracked 200 major threat actors, now it's 300

Microsoft: last year we tracked 200 major threat actors, now it's 300

Microsoft chief security adviser Sarah Armstrong Jones calls for more collaboration on AI and security

John Leonard
clock 07 May 2024 • 2 min read
Microsoft vows to overhaul security, tie executive pay to performance after string of breaches

Microsoft vows to overhaul security, tie executive pay to performance after string of breaches

'We are making security our top priority at Microsoft'

clock 07 May 2024 • 3 min read