Connect with us

GRBusiness

Sophos Global Survey hints Software exploits as initial cause of 23% IT security incidents

Published

on

Cybersecurity by Sophos

BY: Sandra Ani

  • used in 35 percent of cyberattacks

Sophos, a global leader in network and endpoint security, today announced the findings of its global survey, The Impossible Puzzle of Cybersecurity, which reveals IT managers are inundated with cyberattacks coming from all directions and are struggling to keep up due to a lack of security expertise, budget and up to date technology. The survey polled 3,100 IT decision makers from mid-sized businesses in the US, Canada, Mexico, Colombia, Brazil, UK, France, Germany, Australia, Japan, India, and South Africa.

Cybercriminals Use Multiple Attack Methods and Payloads for Maximum Impact

 The Sophos survey shows how attack techniques are varied and often multi-staged, increasing the difficulty to defend networks. One in five IT managers surveyed didn’t know how they were breached, and the diversity of attack methods means no one defensive strategy is a silver bullet.

“Cybercriminals are evolving their attack methods and often use multiple payloads to maximize profits. Software exploits were the initial point of entry in 23 percent of incidents, but they were also used in some fashion in 35 percent of all attacks, demonstrating how exploits are used at multiple stages of the attack chain,” said Chester Wisniewski, principal research scientist, Sophos. “Organizations that are only patching externally facing high-risk servers are left vulnerable internally and cybercriminals are taking advantage of this and other security lapses.”

The wide range, multiple stages and scale of today’s attacks are proving effective. For example, 53 percent of those who fell victim to a cyberattack were hit by a phishing email, and 30 percent by ransomware. Forty-one percent said they suffered a data breach.

Weak Links in Security Increasingly Lead to Supply Chain Compromises

Based on the responses, it’s not surprising that 75 percent of IT managers consider software exploits, unpatched vulnerabilities and/or zero-day threats as a top security risk. Fifty percent consider phishing a top security risk. Alarmingly, only 16 percent of IT managers consider supply chain a top security risk, exposing an additional weak spot that cybercriminals will likely add to their repertoire of attack vectors.

“Cybercriminals are always looking for a way into an organization, and supply chain attacks are ranking higher now on their list of methods. IT managers should prioritize supply chain as a security risk, but don’t because they consider these attacks perpetrated by nation states on high profile targets. While it is true that nation states may have created the blueprints for these attacks, once these techniques are publicized, other cybercriminals often adopt them for their ingenuity and high success rate,” said Wisniewski. “Supply chain attacks are also an effective way for cybercriminals to carry out automated, active attacks, where they select a victim from a larger pool of prospects and then actively hack into that specific organization using hand-to-keyboard techniques and lateral movements to evade detection and reach their destination.”

Lack of Security Expertise, Budget and Up to Date Technology

According to the Sophos survey, IT managers reported that 26 percent of their team’s time is spent managing security, on average. Yet, 86 percent agree security expertise could be improved and 80 percent want a stronger team in place to detect, investigate and respond to security incidents.  Recruiting talent is also an issue, with 79 percent saying that recruiting people with the cybersecurity skills they need is challenge.

Key Survey Findings:

  • Cybercriminal tactics have evolved into using multiple attack methods and often multiple payloads to maximize profits
    • Software exploits were the initial cause of 23 percent of incidents and used in 35 percent of cyberattacks, demonstrating how exploits are used at multiple stages of the attack chain
    • Phishing emails impacted 53 percent of those hit by a cyberattack
    • Ransomware impacted 30 percent of attack victims
    • 41 percent of attack victims suffered a data breach
  • Only 16 percent consider supply chain a top security risk, exposing an additional weak spot
    • Nation state adversaries have proven how successful supply chain attacks are, which means common cybercriminals are likely to adopt the attack method
    • Supply chain attacks are a launch pad to emerging automated, active-adversary attacks
  • IT teams spend 26 percent of their time managing security, yet still struggle with a lack of expertise, budget and up to date technology
    • 79 percent said recruiting people with the cybersecurity skills they need is challenge
    • 66 percent said their organization’s cybersecurity budget is below what it needs to be
    • 75 percent believe that staying up to date with cybersecurity technology is a challenge

Regarding budget, 66 percent said their organization’s cybersecurity budget (including people and technology) is below what it needs to be. Having current technology in place is another problem, with 75 percent agreeing that staying up to date with cybersecurity technology is a challenge for their organization. This lack of security expertise, budget and up to date technology indicates IT managers are struggling to respond to cyberattacks instead of proactively planning and handling what’s coming next.

“Staying on top of where threats are coming from takes dedicated expertise, but IT managers often have a hard time finding the right talent or don’t have a proper security system in place that allows them to respond quickly and efficiently to attacks,” said Wisniewski. “If organizations can adopt a security system with products that work together to share intelligence and automatically react to threats, then IT security teams can avoid the trap of perpetually catching up after yesterday’s attack and better defend against what’s going to happen tomorrow. Having a security ‘system’ in place helps alleviate the security skills gap IT managers are facing. It’s much more time and cost effective for businesses to grow their security maturity with simple to use tools that coordinate with each other across an entire estate.”

Synchronized Security Solves the Impossible Puzzle of Cybersecurity

With cyberthreats coming from supply chain attacks, phishing emails, software exploits, vulnerabilities, insecure wireless networks, and much more, businesses need a security solution that helps them eliminate gaps and better identify previously unseen threats.

Sophos Synchronized Security, a single integrated system, provides this much needed visibility to threats by integrating Sophos endpoint, network, mobile, Wi-Fi, and encryption products to share information in real-time and automatically respond to incidents. More information about Synchronized Security is available at Sophos.com.

The Impossible Puzzle of Cybersecurity survey was conducted by Vanson Bourne, an independent specialist in market research, in December 2018 and January 2019.

This survey interviewed 3,100 IT decision makers in 12 countries and across six continents in the US, Canada, Mexico, Colombia, Brazil, UK, France, Germany, Australia, Japan, India, and South Africa. All respondents were from organizations with between 100 and 5,000 employees.

GrassRoots.ng is on a critical mission; to objectively and honestly represent the voice of ‘grassrooters’ in International, Federal, State and Local Government fora; heralding the achievements of political and other leaders and investors alike, without discrimination. This daily, digital news publication platform serves as the leading source of up-to-date information on how people and events reflect on the global community. The pragmatic articles reflect on the life of the community people, covering news/current affairs, business, technology, culture and fashion, entertainment, sports, State, National and International issues that directly impact the locals.

Continue Reading

GRBusiness

Beer Sectoral Group Appoints Carlos Coutino as Chairman

Published

on

Carlos Coutino, BSG chairman
Carlos Coutino, BSG chairman

The Beer Sectoral Group (BSG), a sector under the Manufacturers Association of Nigeria (MAN), has announced the appointment of Carlos Coutino as Chairman of the Group, effective 1st February 2025.

Mr. Coutino takes over from Hans Essaadi, Managing Director and Chief Executive Officer of Nigerian Breweries Plc, who has served as BSG Chairman since December 2022.

The BSG is a trade association of beer manufacturers in Nigeria, comprising Nigerian Breweries Plc, Guinness Nigeria Plc, and International Breweries Plc. The Group plays a vital role in advocating for responsible alcohol consumption and advancing the interests of the beer industry within the Nigerian market.

Mr. Coutino, who currently serves as the Managing Director/CEO of International Breweries Plc, has nearly two decades of leadership experience within the AB InBev Group. A graduate of Industrial Engineering with an MBA specializing in Strategy, he joined AB InBev in 2004 and has since held top-level roles across three continents and seven countries in Sales, Marketing, and Trade Marketing. He will serve as BSG Chairman for a two-year tenure. In this capacity, he will collaborate closely with the Board of CEOs to provide strategic direction for the BSG, ensuring the Group continues to support industry growth, stakeholder engagement, and regulatory alignment.

Continue Reading

Finance

Stanbic IBTC Capital leads Presco PLC’s ₦82.9 Billion Bond Issuance to drive West African market growth

Reporter: SANDRA ANI

Published

on

Presco and Stanbic Capital
L-r: Oladele Sotubo, Chief Executive, Stanbic IBTC Capital; Kenneth Ugo, Investor Relations Manager, Presco PLC; Olaronke Arigbede, Group Treasurer, SIAT Group; Reji George, Managing Director/CEO, Presco PLC; Felix Nwabuko, Group CEO, SIAT Group and Bayo Ajayi, Chief Executive Officer, Rand Merchant Bank Nigeria Limited, during the signing ceremony of Presco PLC’s ₦82.9 billion 7-year 23.75% Series I Bond held recently in Lagos.

Presco PLC (Presco or the “Company”), has achieved a significant milestone with the successful issuance of its ₦82,896,000,000 7-year 23.75% senior unsecured fixed rate Series I Bonds under its ₦150 billion bond issuance programme (the “Transaction”) with the Securities and Exchange Commission (“SEC”). Stanbic IBTC Capital Limited (“Stanbic IBTC Capital”) acted as the Lead Issuing House on the Programme.

The proceeds from the Transaction will enable the Company fund its acquisition of a 100% equity stake in Ghana Oil Palm Development Company (GOPDC), further supporting its strategic expansion objectives.

Speaking on the transaction registration, Mr Reji George, Managing Director / CEO, Presco PLC commented:

“The successful completion of our Series 1 Bond issuance solidifies Presco’s foundation for continued growth and expansion. Aligned with our strategic objectives of increasing our planted area of palm oil and, to lead Africa in the fully integrated edible oil and fats business in the nearest future, the proceeds from this issuance will be primarily directed towards the acquisition of a majority equity stake in the Ghana Oil Palm Development Company (GOPDC).

This not only enhances our operational efficiencies, It also solidifies our market presence and competitive advantage in the palm oil sector beyond Nigeria. Most importantly, this will enable us to better serve our valued customers and deliver sustainable value to our shareholders. We extend our sincere gratitude to Stanbic IBTC Capital and all our advisors for their support throughout this process.”

Also speaking on the transaction registration, Oladele Sotubo, Chief Executive, Stanbic IBTC Capital, said:

“Stanbic IBTC Capital is proud to have advised Presco PLC on the successful issuance of its ₦82.9 billion Series 1 bond. As the largest local currency corporate bond issuance in the Nigerian market in recent years, this milestone underscores our deep expertise in capital markets and our commitment to delivering innovative, high-impact financial solutions.

Beyond reinforcing Presco’s strategic growth, this transaction enhances funding diversification within the agricultural sector, driving sustainable industry expansion. We appreciate Presco PLC’s trust in Stanbic IBTC Capital and the consortium of advisors who contributed to the successful execution of this landmark deal.

Continue Reading

Transport

Travelers to Make Money as Ozi Launches to Redefine $460 billion Global Package Delivery Market

Published

on

Ozi Goes Live

Key Takeaways from Ozi launch:

  • With logistics representing a $1.34 billion in Africa, the demand for innovative delivery solutions has never been greater
  • Nigerians face numerous hurdles when it comes to moving packages, ranging from delays and high costs to a lack of secure options 
Ozi Founders
L-r: Co-Founders of Ozionline.com: Ikenna Ani (COO), Azubike Augustine (CTO) and Engr. Christian Chime (CEO)

Ozi (www.ozionline.com), a pioneer community-driven delivery app, launches today, offering users a new way to send packages and earn extra cash.

By connecting people traveling with those needing package delivery, Ozi turns everyday trips into profitable opportunities, aiming to disrupt the global parcel delivery industry, also known as the Courier, Express, and Parcel (CEP) market, currently valued at around $460 billion.

Imagine this scenario – You’re traveling to Abuja from Lagos and have empty space in your car. With Ozi, that unused capacity can earn you extra cash by delivering a package along the way. Or maybe you’re a small business owner who needs to send a package to another state but balk at the high cost of courier services.

With Ozi, you can find a verified traveler heading in the right direction to handle your delivery, Engr. Christian Chime, Ozi’s co-founder and CEO, said during the startup launch held today at Four Point by Sheraton, Victoria Island, Lagos.

“Why travel empty when you can earn?” asks Engr. Chime said. “Ozi allows travelers to make the most of their journeys while helping others get their packages delivered with ease.”

“This simple yet powerful idea leverages the daily movements of millions of Nigerians to create a logistics network that is fast, affordable, and efficient. 

“Ozi’s unique approach leverages the everyday movement of travelers to bridge this gap, creating a system where everyone benefits”.

He said that the choice of Nigeria as the first launch-location for Ozi was due the potential the country holds in the parcel delivery sub-sector.

“Actually, we had the opportunity to launch OZI in other country outside Nigeria but for their believe in the Nigeria dream and its potentials made us to choose the country as the first to witness Ozi’s innovation”, the CEO said. “Travelers can now monetize their journeys by delivering packages along their routes, while senders gain access to an affordable and convenient alternative to traditional courier services”.

Ozi combines convenience, innovation, and community to deliver a win-win solution for Nigerians. From quick intra-city deliveries to long-distance trips, Ozi offers an affordable, efficient solution for all.

Whether you’re a traveler looking to earn on your trips or a sender seeking a reliable delivery option, Ozi offers a solution that works for everyone.

In the words of Azubuike Augustine, the co-founder and Chief Technology Officer of Ozi, “Ozi’s mission goes beyond simplifying package delivery. The app represents a broader effort to create shared value for all stakeholders in the logistics process. By connecting senders and travelers, Ozi creates a win-win scenario where costs are reduced, trust is built, and income opportunities are created”.

“Ozi prioritizes safety and transparency. Every user, whether sender or traveler, undergoes a comprehensive verification process that includes ID checks and phone number authentication. This ensures that all participants in the system are trustworthy and accountable”.

To enhance security further, Azubuike said that Ozi offers real-time tracking for all transactions. Senders can monitor their packages throughout the delivery process, ensuring peace of mind. For high-value items, optional insurance coverage provides an added layer of protection, reinforcing Ozi’s commitment to reliability.

“At Ozi, we understand that trust is critical in logistics,” the CTO added. “That’s why we’ve built a platform where every step is designed to safeguard both the traveler and the sender.”

“Ozi is more than an app; it’s a community where everyone wins,” said Ikenna Ani, co-founder/COO of Ozi.

“From today, travelers across the globe can sign up through www.ozionline.com and start making every trip count”, he said. “We have put measures in place to ensure only genuine and verified travelers or senders use the platform. Security is primary for us”.

He added that the app will be released on Google Play Store and Apple (iOS) on January 1, 2025.  Ozi Live on Instagram | Facebook.

Continue Reading

Trending