NEWSWIRETODAY Press Release& Newswire Distribution | HOME
MOST TRUSTED NEWSWIRE PRESS RELEASE DISTRIBUTION
PRTODAY / NewswireToday press release distribution service network
Agency / Source: Trustwave

Check Ads Availability|e-mail Article

Are you the owner of this article?, Turn it PREMIUM with your LOGO instead - and make it 3rd party Ads-Free! within the next hour!

Trustwave Releases New SpiderLabs Research Focused on Actionable Cybersecurity Intelligence for the Hospitality Industry - Trustwave, a leading cybersecurity and managed security services provider, today released comprehensive research shedding light on the distinctive cybersecurity risks encountered by the hospitality sector - Trustwave.com
Trustwave Releases New SpiderLabs Research Focused on Actionable Cybersecurity Intelligence for the Hospitality Industry

 

NewswireTODAY - /newswire/ - Chicago, IL, United States, 2023/09/07 - Trustwave, a leading cybersecurity and managed security services provider, today released comprehensive research shedding light on the distinctive cybersecurity risks encountered by the hospitality sector - Trustwave.com.

   
 
Your Banner Ad Here instead - Showing along with ALL Articles covering IT Security / Anti-Spam / Cybersecurity Announcements

Replace these Affiliate Programs at ANYTIME! Your banner here within the next hour. Learn How!


 

The report,"2023 Hospitality Sector Threat Landscape: Trustwave Threat Intelligence Briefing and Mitigation Strategies," explores the specific threats and risks that hospitality organizations face, along with practical insights and mitigations to strengthen their defenses.

In its new research, Trustwave SpiderLabs has documented the attack flow utilized by threat groups, exposing their tactics, techniques, and procedures. From brute forcing to exploiting known vulnerabilities to attacking exposed open ports, these persistent threats pose significant risks to the hospitality industry.

Spanning from hotels to restaurants to cruise ships, the hospitality sector has become deeply woven into the everyday routines of millions of people, making its cybersecurity threat landscape especially vast, complex, and critical. Nearly 31% of hospitality organizations have reported a data breach in their company’s history, of which 89% have been affected more than once in a year, according to a report by Cornell University and FreedomPay. While the average cost of a hospitality breach ($3.4M) is lower than the cross-industry average ($4.4M), the impact on reputation can cause significant harm to the bottom line due to the highly competitive nature of the industry.

“With unique considerations, such as the adoption of contactless technology and the steady turnover of customers and employees, the hospitality industry faces a complex security landscape with distinct challenges,” said Trustwave Chief Information Security Officer Kory Daniels. “In an industry where guest satisfaction and reputation are paramount, staying secure while offering cutting-edge technology is a delicate balancing act. Our latest threat briefing is a valuable resource for security leaders within the hospitality sector, providing a comprehensive view of the threats observed by our SpiderLabs team, along with specific mitigation strategies to bolster defenses.”

The Trustwave SpiderLabs report analyzes threat groups and their methods throughout the attack cycle, from initial foothold through to exfiltration. A few key findings from the report include:

• MOVEit RCE (CVE-2023-34362) vulnerability is one of the top exploits threat actors use to target hospitality clients. Analysis of 150+ victims within the hospitality sector shows a significant surge in Clop ransomware attacks due to this MOVEit zero-day vulnerability.
• HTML attachments make up 50% of the file types being used for email-borne malware attachments. HTML file attachments are being used in phishing as a redirector to facilitate credential theft and for delivering malware through HTML Smuggling.
• Obtaining credential access, primarily by using brute force attacks, was behind 26% of all reported incidents. This tactic has threat actors leveraging valid accounts to compromise systems by simply logging in using weak passwords that are vulnerable to password guessing.

Trustwave SpiderLabs’ research serves as a resource for hospitality organizations to understand and combat the multitude of attack groups, malware variants, and techniques deployed against them. The report explores:

Emerging and Prominent Trends in the Hospitality Industry

• Artificial Intelligence and Generative AI: Generative AI is a powerful tool that is being increasingly used by the hospitality sector to improve the guest experience with services like chatbots or language translation, opening the industry up to unique implications and risks.
• Contactless Technology: Newer features like contactless table payments and smartphone-card reader integrations offer a seamless experience to businesses and customers alike but also introduce new vectors of attack.
• Third-party Risk and Exposure: An increasing reliance on third-party vendors for services, such as HVAC, vending machines, and point-of-sale (PoS) systems, creates additional risk as more vendors have access to sensitive data or systems.

Cybersecurity Challenges Unique to the Hospitality Industry

• Seasonal and Less Sophisticated Workforce: The hospitality sector employs a diverse workforce, with seasonal and less sophisticated staff often engaged during peak periods to meet demand. This presents a distinct risk of insider threat, intentional or not, due to the challenge of providing consistent security training to a continually changing group of employees.
• Constant User Turnover: Hospitality establishments encounter a fresh set of users virtually every day. This ongoing cycle demands consistent uptime, addresses bandwidth constraints, and strives to minimize potential exposure to security threats.
• Dirty Networks: Given the substantial volume of network users, whether they’re hotel guests or individuals connecting to coffee shop Wi-Fi, organizations within hospitality must operate under the assumption their networks are highly susceptible to attacks due to the sheer number of users. This leads to hesitancies to deploy patches and configuration changes that might have an adverse impact on day-to-day operations.
• Physical Security Concerns: Unlike conventional office buildings where employee access is typically controlled through access cards, hospitality establishments face cybersecurity risks due to the accessibility of hardware by guests. For instance, the server closet in a hotel could be left unlocked and easily accessible or a thumb drive could easily be inserted into a nearby device.
• Franchise Model: The franchise framework leads to disparities in policy consistency and implementation across the industry, including cybersecurity measures. Different franchisers and franchisees adopt varied business models, resulting in divergent cybersecurity practices.

Prevalent Threat Actors and Threat Tactics Operating Across Hospitality

Threat Actors:

• LockBit
• Medusa
• Vice Society
• BianLian
• BlackBasta
• Qillin, Royal
• Karakurt
• Ragnar

Threat Tactics

• Email-borne Malware (Emotet, Qakbot)
• Phishing (IPFS, Image Based, Brand Impersonation)
• Scams (Fake Order Scams, Extortion Scams)
• BEC (e.g., Payroll Diversion)
• Malware
• Credential Access (Brute Forcing, Auctioned Accounts)
• Vulnerability Exploitation

To access the full Trustwave SpiderLabs threat report,"2023 Hospitality Sector Threat Landscape: Trustwave Threat Intelligence Briefing and Mitigation Strategies," please visit the website.

About Trustwave

As a recognized global cyber defender that stops cyber threats all day, every day we enable our clients to conduct their business securely.

Trustwave detects threats that others can’t see, enabling us to respond quickly and protect our clients from the devastating impact of cyberattacks. We leverage our world-class team of security consultants, threat hunters and researchers, and our market-leading security operations platform to relentlessly identify and isolate threats with the right telemetry at the right time for the right response.

Trustwave (trustwave.com) is a leader in managed detection and response (MDR), managed security services (MSS), consulting and professional services, database security, and email security. Our elite Trustwave SpiderLabs team provides award-winning threat research and intelligence, which is infused into Trustwave services and products to fortify cyber resilience in the age of advanced threats.

 
 
Your Banner Ad Here instead - Showing along with ALL Articles covering IT Security / Anti-Spam / Cybersecurity Announcements

Replace these Affiliate Programs at ANYTIME! Your banner here within the next hour. Learn How!


 

Agency / Source: Trustwave

 
 

Availability: All Regions (Including Int'l)

 

Traffic Booster: [/] Quick NewswireToday Visibility Checker

 

Distribution / Indexing: [+]  / [Company listed above is a registered member of our network. Content made possible by PRZOOM / PRTODAY indexing services]

 
 
# # #
 

 
  Your Banner Ad showing on ALL
IT Security / Anti-Spam / Cybersecurity articles,
CATCH Visitors via Your Competitors Announcements!


Trustwave Releases New SpiderLabs Research Focused on Actionable Cybersecurity Intelligence for the Hospitality Industry

Company website links NOT available to basic submissions
It is OK to republish and/or LINK any newswire for any legitimate media purpose as long as you name NewswireToday and LINK as the source.
 
  For more information, please visit:
Is this your article? Activate ALL web links by Upgrading to Press Release PREMIUM Plan Now!
SpiderLabs Hospitality | Trustwave
Contact: Press Office - Trustwave.com 
312-873-7500 pr[.]trustwave.com
 
PRZOOM / PRTODAY - Newswire Today disclaims any content contained in this article. If you need/wish to contact the company who published the current release, you will need to contact them - NOT us. Issuers of articles are solely responsible for the accuracy of their content. Our complete disclaimer appears here.
IMPORTANT INFORMATION: Issuance, publication or distribution of this press release in certain jurisdictions could be subject to restrictions. The recipient of this press release is responsible for using this press release and the information herein in accordance with the applicable rules and regulations in the particular jurisdiction. This press release does not constitute an offer or an offering to acquire or subscribe for any Trustwave securities in any jurisdiction including any other companies listed or named in this release.

IT Security / Anti-Spam / Cybersecurity via RSSAdd NewswireToday - PRZOOM Headline News to FeedBurner
Find who RetweetFollow @NewswireTODAY

Are you the owner of this article?, Turn it PREMIUM with your LOGO instead - and make it 3rd party Ads-Free! within the next hour!


Read Latest Articles From Trustwave / Company Profile


Read IT Security / Anti-Spam / Cybersecurity Most Recent Related Newswires:

Acronis Named a Leader in the IDC MarketScape: Worldwide Cyber-Recovery 2023 Vendor Assessment
TitanHQ Recognized as 'Top Solution' Provider by Expert Insights in Q4 2023 Awards
Kudelski IoT Simplifies Provisioning of Secure IoT Device Identity Across Multiple STMicroelectronics Products, adds Matter Support
Bitdefender Selected as an Official Partner of the San Antonio Spurs
TeamT5 Awarded Frost & Sullivan’s 2023 Taiwanese Company of the Year Award for Offering Superior Intelligence-driven Cyber Defense Solutions
BAE Systems Acquires Eurostep to Deliver Advanced Digital Asset Management
ImmuniWeb Is a Winner of 2023 Inc.’s Power Partner Awards
Bitdefender Launches New Offensive Cybersecurity Services
ImmuniWeb Named a Winner of the Top InfoSec Innovator Awards 2023
ScienceLogic Named to Inc.’s Second Annual Power Partner Award List
OpenText Cybersecurity Nastiest Malware of 2023 Shows Ransomware-as-a-Service Now Primary Business Model
Kudelski IoT Solves Misplaced Car Key Woes for Consumers and Dealerships with Launch of 'RecovR for Keys'
Bitdefender Named A Leader in Endpoint Security by Leading Independent Research Firm
Frost & Sullivan Recognizes CDNetworks with Customer Value Leadership Award for the Web Application Firewall (WAF) Market
VinCSS Applauded by Frost & Sullivan for Reducing Security Risks Associated with Traditional Authentication Technologies

Boost Your Social Network
& Crowdfunding Campaigns


LIFETIME SOCIAL MEDIA WALL
NewswireToday Celebrates 10 Years in Business


PREMIUM Members


Visit  RightITnow, Inc.

Visit  JobsWare.com





 
  ©2005-2023 NewswireToday — Limelon Advertising, Co.
Home | About | Advertise/Pricing | Contact | Investors | Privacy/TOS | Sitemap | FRANCAIS
newswire, PR press releases distribution service magazines engine news alert newsroom press room breaking news public relations articles company news alerts newswiredistribution ezine bizentrepreneur biznewstoday digital business report market search pr firms agencies reports distri-bution today investor relation successful internet entrepreneurs newswire distribution prtoday.com newswiredistribution asianewstoday bizwiretoday USA pr UK today - NOT affiliated with PRNewswire as we declined their partnership offer in 2013
 
PRTODAY & NewswireTODAY are proudly NOT affiliated with USA TODAY (usatoday.com)