21 November, 2018

Fortinet Threat Landscape Report Reveals Over One-quarter of Organizations Experienced a Mobile Malware Attack



As the Holiday Season Draws Near, Mobile Malware Attacks Are Prevalent




Dubai, UAE. – November 21, 2018





News Summary:

Fortinet® (NASDAQ: FTNT), a global leader in broad, integrated, and automated cybersecurity solutions, today announced the findings of its latest quarterly Global Threat Landscape Report. The research reveals threats are increasing and evolving to become more sophisticated. Unique threat variants and families are on the rise, while botnet infections continue to infect organizations. For a detailed view of the Threat Landscape Indices for exploits, botnets, and malware as well as some important takeaways for CISOs read the blog.




“Cyberthreats are growing rapidly and every organization is feeling the impact, with daily detections and exploits increasing,” said Phil Quade, Chief Information Security Officer, Fortinet.

“Previously, ransomware was the talk of the day, and now cryptojacking, mobile malware, and attacks against business-critical supply chains are proliferating. As our cyber adversaries continue to incorporate new threats and leverage increasingly automated techniques at speed and scale for their malicious activities, segmentation and integration have become critical security strategies for IT and OT environments today.”



Highlights of the report follow:





Threat Development Continues to Be a Top Focus for Cybercriminals. Cybercriminals are not only expanding their attack arsenal but also developing new strategies for breaching defenses. Unique malware variants grew 43%, while the number of malware families grew by nearly 32%. The number of unique daily malware detections per firm also rose 62%. In line with these trends, unique exploits increased nearly 10% and the number of exploit detections per firm rose 37%. Cybercriminals continue to evolve threats by creating unique malware variants and families, demonstrating the ongoing importance of threat intelligence and assessment tools.


Mobile Devices Remain a Target. Over one-quarter of organizations experienced a mobile malware attack, with the majority being on the Android operating system. In fact, of the threats organizations faced from all attack vectors, 14% of total malware alerts were Android related. By comparison, only .000311% of threats were targeted at Apple iOS. Mobile threats are a looming threat that must be addressed, especially as the mobile-shopping holiday season nears. These threats can become a gateway for corporate networks to be exploited. Criminals know mobile is an accessible target for infiltrating a network, and they are exploiting it.


Cryptojacking is a Gateway to Other Attacks. Cryptojacking remains prevalent and continues to grow in scope. The number of platforms affected by cryptojacking jumped 38% and the number of unique signatures nearly doubled in the past year. These include new sophisticated platforms for advanced attackers as well as “as-a-service” platforms for novice criminals. IoT botnets are also increasingly leveraging cryptojacking exploits for their attack strategy. Although it is often considered to be a nuisance threat that simply hijacks unused CPU cycles, security leaders are realizing how cryptojacking can become a gateway for additional attacks. Underestimating the repercussions of cryptojacking places an organization under heightened risk.


Percentage of Malicious Network Traffic is Higher on Weekends or Holidays. Data shows malicious network traffic represents a higher percentage of overall traffic on weekends and holidays as business traffic slows down significantly since many employees are not working during this time. For many organizations this may be an opportune time to sweep for malware because as the “haystack” of traffic becomes smaller, the chance of finding malicious “needles” is much greater. With cybercriminals using more automated and sophisticated techniques, any opportunity to increase visibility can be an advantage.


Burstiness of Botnets. The botnet index rose only 2%, though the number of infection days per firm increased 34% from 7.6 days to 10.2 days. This may be an indication that botnets are becoming more sophisticated, difficult to detect, or harder to remove. It may also denote a failure to practice good cyber hygiene in general by some organizations. The importance of consistent security hygiene remains vital to thoroughly addressing the total scope of these attacks. Sometimes botnets can go dormant, only to return after normal business operations have resumed, if the root cause or “patient zero” is not determined.


Encrypted Traffic Reaches a New Threshold. Encrypted traffic reached a new high, comprising 72% of all network traffic, up from 55% just one year ago. While encryption can certainly help protect data in motion as it moves between core, cloud, and endpoint environments, it also represents a challenge for traditional security solutions. The critical firewall and IPS performance limitations of some legacy security solutions continue to limit the ability of organizations to inspect encrypted data at business speeds. As a result, a growing percentage of this traffic is increasingly not analyzed for malicious activity, making it an ideal mechanism for criminals to spread malware or exfiltrate data.

Digital Change Requires a New Approach to Security

The threat data in this quarter’s report once again reinforces many of the threat prediction trends unveiled by the FortiGuard Labs global research team. To stay ahead of the ongoing efforts of cybercriminals, organizations need to transform their security strategies as part of their digital transformation efforts. Isolated, legacy security devices and poor security hygiene continue to be a formula for increased risk to today’s threat landscape as they do not provide adequate visibility or control. Instead, a security fabric that spans the entire expanded network environment and is integrated between each security element is vital to address today’s growing threat environment and to protect the expanding attack surface. This approach enables actionable threat intelligence to be shared at speed and scale, shrinks the necessary windows of detection, and provides the automated remediation required for today’s multi-vector exploits.

Report and Index Overview
The Fortinet Threat Landscape Report is a quarterly view that represents the collective intelligence of FortiGuard Labs drawn from Fortinet’s vast array of global sensors during Q3 2018. Research data covers global and regional perspectives. Also included in the report is the Fortinet Threat Landscape Index (TLI), comprised of individual indices for three central and complementary aspects of that landscape which are exploits, malware, and botnets, showing prevalence and volume in a given quarter. The report also examines important zero-day vulnerabilities and infrastructure trends to add context about the trajectory of cyberattacks affecting organizations over time.




Additional Resources


Read our blog for more information about the research or to access the full threat report.


View the Fortinet Threat Landscape Indices for botnets, malware, and exploits for Q3, 2018.


Learn more about FortiGuard Labs and the FortiGuard Security Services portfolio.


Learn more about the FortiGuard Security Rating Service, which provides security audits and best practices.


Sign up for the weekly FortiGuard Threat Intelligence Briefs.


Read more about our Network Security Expert program, Network Security Academy program or our FortiVets program.


Read more about the Fortinet Security Fabric or the Third Generation of Network Security.


Follow Fortinet on Twitter, LinkedIn, Facebook, YouTube, and Instagram.




About Fortinet



Fortinet (NASDAQ: FTNT) secures the largest enterprise, service provider, and government organizations around the world. Fortinet empowers its customers with intelligent, seamless protection across the expanding attack surface and the power to take on ever-increasing performance requirements of the borderless network - today and into the future. Only the Fortinet Security Fabric architecture can deliver security without compromise to address the most critical security challenges, whether in networked, application, cloud or mobile environments. Fortinet ranks #1 in the most security appliances shipped worldwide and more than 375,000 customers trust Fortinet to protect their businesses. Learn more at http://www.fortinet.com, the Fortinet Blog, or FortiGuard Labs.

Sophos Adds Endpoint Detection and Response to Intercept X Advanced




New Threat Investigation and Response Capabilities with Deep Learning File Analysis and On-Demand Access to SophosLabs Intelligence Database

Dubai, UAE, November 21, 2018: Sophos (LSE: SOPH), a global leader in network and endpoint security, today launched the latest addition to its endpoint solution portfolio, Intercept X with EDR. Powered by Sophos’ deep learning neural network, which is trained on hundreds of millions of samples to look for suspicious attributes of malicious code to detect never-before-seen threats, Intercept X with EDR provides organizations with broad, expert analysis of potential attacks by comparing the DNA of suspicious files against the malware samples already categorized in SophosLabs to enable them to identify and respond to suspicious threats more quickly.

Until now, effective investigation and incident response has only been achievable in organizations with a dedicated Security Operations Center (SOC) or specialized IT security team trained to hunt and analyze cyberattacks. With Sophos Intercept X Advanced with EDR, businesses of all sizes and those with limited resources can add threat tracking and SOC-like capabilities to their security defenses, reducing the time criminal hackers can hide in their network.

With a single click, IT managers have on-demand access to curated intelligence from SophosLabs, guided investigations into suspicious events, and recommended next steps. To maintain full visibility into the threat landscape, SophosLabs tracks, deconstructs and analyzes 400,000 unique and previously unseen malware attacks each day in a constant search for attack novelty and cybercriminal innovation. By providing access to SophosLabs data, IT managers of all skill levels have first-responder forensics at their fingertips to best determine if and what types of attacks are happening.

“’Am I under attack? Where is the attack taking place? How do I react?’ IT managers regularly face these time-sensitive questions, but without a SOC or trained security experts who know how to analyze potential threats, interrupting a cyberattack in real-time is very difficult,” said Dan Schiappa, senior vice president and general manager of products at Sophos. “The sheer volume of malware, frequency of attacks and wide availability of toolkits on the dark web have made EDR capabilities necessary to every business - especially those with limited IT security resources. Sophos is providing the equivalent of a team of global cybersecurity experts and access to the rich knowledgebase SophosLabs has about the reputation of files and other information collected through terabytes of malware analysis. IT managers can now quickly analyze and trace attack pathways without needing to reverse engineer files.”

Once cybercriminals get a foot hold, they use multiple attack methods to escalate privileges and advance step-by-step. With Intercept X Advanced with EDR, IT managers can see if an attacker is moving laterally, and leverage the anti-ransomware and anti-exploit capabilities in Intercept X, the industry’s most sophisticated endpoint prevention solution. Sophos Intercept X with EDR is integrated with Sophos Central, a cloud-based unified console for managing Sophos’ portfolio of products, allowing end users and Managed Security Partners to make decisions based on EDR intelligence from a single pane of glass.

Availability
Sophos Intercept X with EDR is available from registered Sophos partners worldwide. Additional information can be found on Sophos.com. To sign up for a free 30-day trial, click here.

18 November, 2018

Finablr acquires majority stake in digital gifting platform Swych


14-Nov-2018 04:13 pm


Swych is now part of Finablr’s platform
Deal strengthens opportunities for partnerships and growth in the digital gifting industry



Abu Dhabi, UAE and Plano, TX; November 12, 2018 – Finablr, a global platform for Payments and Foreign Exchange solutions, has increased its stake in Swych, a digital gifting platform, with a follow-on Series B investment to become a majority shareholder. With further exposure to the fast-growing digital gifting industry, Finablr will leverage its network’s leadership and global presence to bring Swych’s gifting network to a broader international audience.



Commenting on the transaction, Promoth Manghat, Executive Director and CEO of Finablr, said: “At Finablr, we facilitate access for consumers and businesses to the digital economy. To deliver on that promise, we are constantly looking to innovate and partner with companies providing exceptional products and services. Swych has a distinctive business proposition that complements the services offered by the Finablr network brands. We have collaborated closely with Swych’s high-calibre team on exciting projects over the last year. We will seek to continue building on this successful partnership through our majority stake in the company.”



Deepak Jain, CEO and Founder of Swych, added: “The presence of Finablr network companies in key international markets with millions of consumers has the potential to greatly accelerate Swych’s mission. Finablr network brands’ entrepreneurial culture combined with its focus on innovation and strong team is highly synergistic with our own core values at Swych. This investment is a testament to the robustness of our business model and will be invaluable as we look to take digital gifting to global audiences.”



Going forward, Finablr and Swych will share their experience and expertise to create enhanced gifting and payments experiences for consumers and businesses globally. This will be managed through Swych Blockchain Labs, a subsidiary of Swych and a dedicated centre of excellence located in Plano, Texas, established to develop and incubate pioneering FinTech products across blockchain, payments, digital wallets and cross-border e-commerce.



In October 2018, Swych partnered with Travelex, a Finablr network company, and WeChat to launch Travelex Pay, a unique new service for travellers from mainland China visiting the United States. Aimed at simplifying cashless spending, Travelex Pay enables WeChat Pay’s 800 million users to utilise digital gift cards offered by Swych for spending at more than 200 US retailers.



The Finablr network of companies includes category renowned brands, such as UAE Exchange, Travelex, Xpress Money, Unimoni, Remit2India and Ditto, and handles more than 150 million transactions per year. The network reaches over 160 countries, touching a billion lives through its digital channels, retail stores and agent locations.



Founded in late 2015, Swych operates a global gifting network from its headquarters in Plano, Texas. The company also has international offices in Canada and India, from where it oversees Gift Cards India, a gift card aggregator in India. Swych’s digital gifting network comprises of retailers in the USA, India, Philippines, Canada, the UK, Australia and the UAE, with future projects coming up in Japan and Latin America.

Prasanth Manghat of NMC Healthcare Wins Arabian Business Achievement Award




The CEO and Executive Director is acknowledged for making a mark on the global healthcare landscape.



Dubai, United Arab Emirates, 14 November 2018, (AETOSWire): Prasanth Manghat, CEO and Executive Director of NMC Health PLC, was honoured by Arabian Business, which presented him with an Achievement Award in recognition of his role in making NMC a global company and his contributions to the wider healthcare industry.


Prasanth was acknowledged for his innovative approach to healthcare delivery models and his excellent business practices. His outstanding contributions and leadership have improved the UAE’s healthcare landscape and inspired others to follow suit.


“It is indeed a pleasure to be honoured with this award. NMC’s commitment to business excellence and enhancing the patient experience has helped us create a niche for ourselves in the industry. While international recognition reflects the trust and confidence of our patients, it is the positive synergy demonstrated by our staff and team that has helped us achieve our goal of quality healthcare for everyone, which we consider a fundamental right,” said Prasanth.

Prasanth extended his heartfelt gratitude to his team for all their hard work and to the organisers of the awards for acknowledging high standards of quality healthcare delivery. This is the seventh time that Prasanth has received an award this year, which highlights NMC’s commitment to moral and ethical practices. The award also recognises NMC’s community outreach work.


The Arabian Business Award was presented to Prasanth in the presence of hundreds of business leaders and professionals from more than fifty organisations.




Other notable award recipients include the Ruler of Ras Al Khaimah, His Highness Sheikh Saud bin Saqr Al Qasimi; Abdul Aziz Al Ghurair, CEO of Mashreq Bank; Promoth Manghat, Executive Director of Finablr and Group CEO of UAE Exchange; Dr. Habib Al Mulla, Executive Chairman of Baker & McKenzie; and Fadi Ghandour, Executive Chairman of Wamda Group.




براسانت مانغات، الرئيس التنفيذي لمجموعة إن إم سي، يحصد جائزة الإنجاز للعام 2018 

جاء هذا التكريم تقديرا لإسهامات الرئيس والمدير التنفيذي المتميزة في مجال الرعاية الصحية

دبي، الإمارات العربية المتحدة، 14 نوفمبر 2018، ("ايتوس واير"): تم تكريم السيد براسانت مانغات، الرئيس والمدير التنفيذي لمجموعة إن إم سي للرعاية الصحية بمنحه جائزة الإنجاز من قبل أريبيان بزنس، وذلك تقديرا لدوره في جعل مجموعة إن إم سي الصحية الأوسع عالميا. 

وتم تكريم السيد براسانت مانغات لمقاربته المبتكرة لنماذج الرعاية الصحية والممارسات التجارية الممتازة. فاسهاماته البارزة وأسلوبه القيادي لم يساعدا على تحسين المشهد الصحي في دولة الإمارات العربية المتحدة فحسب، وإنما ألهما الآخرين أيضًا على أن يحذوا حذوه.

وتُمنح جائزة الإنجاز تقديرا للروح والإسهامات المتميزة للاختصاصيين في مجال الرعاية الصحية على امتداد المجتمعات البشرية.

وقال السيد براسانت مانغات: "إنه لمن دواعي سروري أن يتم تكريمي بهذه الجائزة. إن مجموعة إن إم سي للرعاية الصحية تواصل التزامها بالتميز في مجال عملها وتواصل تعزيز خدمات الرعاية الطبية لديها بالشكل الذي ساعدنا على نحت مكانة متميزة وإيجاد موطئ قدم خاص بنا في هذه الصناعة. وفي حين يعكس هذا التقدير الدولي ثقة مرضانا، فإن التآزر وروح التعاون الذي أظهره فريقنا هو الذي ساعدنا على تحقيق هذا الهدف الأسمى المتمثل في توفير أعلى مستويات الرعاية الصحية للجميع."

وأعرب السيد مانغات عن عميق امتنانه لفريق العمل لديه على كل ما بذلوه من جهود كبيرة وكذلك إلى المنظمين لجهودهم في الحفاظ على مستويات عالية من الرعاية الصحية النوعية. 

يُذكر أن هذه هي المرة السابعة التي يتم فيها تكريم السيد مانغات بجائزة هذا العام وذلك تقديرا لالتزام مجموعة إن إم سي بدعم مبادئ المسؤولية المجتمعية .

وتم تقديم الجائزة للسيد مانغات، بحضور عدد مئات من كبار رجال الأعمال من أكثر من 50 منظمة.

ومن بين الحاصلين على جوائز أخرى، حاكم رأس الخيمة ، صاحب السمو الشيخ سعود بن صقر القاسمي. عبد العزيز الغرير ، الرئيس التنفيذي لبنك المشرق ؛ بروموث مانجهات ، المدير التنفيذي والرئيس التنفيذي لشركة فينبلر والرئيس التنفيذي لمجموعة الإمارات للصرافة. د. حبيب الملا ، الرئيس التنفيذي لشركة بيكر آند ماكنزي. وفدي غندور ، الرئيس التنفيذي لمجموعة ومضة..



*المصدر: "ايتوس واير"

Raysut Cement Bags Oman’s Most Trusted Brand Awards





Muscat, Oman, November 14, 2018, (AETOSWire): Raysut Cement Company has bagged the award of the Oman’s most trusted brand 2018, reinforcing the company’s reputation as a prominent contributor to the economy of the country and as a brand that strives for excellence.

The award instituted by Apex Press and Publishing, Oman, was conferred on Raysut Cement, Oman’s largest cement manufacturer at a function held recently under the auspices of H.H Sayyida Tania Al Said and the patronage of H.E Talal Al Rahbi, Deputy Secretary General of Supreme Council for Planning and the General Coordinator for the Tanfeedh programme, Oman.

The awards were launched by Apex in 2016 to recognize brands that succeeded in creating a lasting customer appeal, said Mohana Prabhakar, CEO, Apex Press and Publishing.

Raysut Cement Company said in a statement that the winning of the award as Oman’s most trusted brand was a continuation of the company’s rich record of bagging a string of such accolades over the past years. Earlier, Raysut won eight honors in the competition of H.M Sultan Qaboos competition for the best five factories. It also won the honoring shield in 1993 and in 2013 after being adjudged as among the best 10 factories in the Sultanate.

The company had also won five awards as the best industrial institution in Oman in caring for environment and in as early as 1996 and 1999, Raysut was considered as one of the industrial institutions adhering to prudent environmental norms. In 1998, it won the gulf council award for its activities related to environment.

Raysut Cement Company had won many international certificates including quality control system certificate NO (ISO 9001:2008) and environmental control system certificate No (ISO 14001:2004) and the international ISO No (API 10 A. 0006) for the oil well cement from the American Petroleum Institute. Last September, Raysut Cement Company had also won the green era award in the field of sustainability in a ceremony held in Rome.



*Source: AETOSWire


ريسوت للأسمنت تتسلم جائزة العلامة الأكثر ثقة في سلطنة عمان





مسقط، عمان، 14 نوفمبر 2018، ("ايتوس واير") :حصلت شركة ريسوت للأسمنت على الجائزة المرموقة (العلامة الأكثر ثقة في سلطنة عمان) في حفل جوائز العلامة الأكثر ثقة في سلطنة عمان للعام ٢٠١٨ بتنظيم من شركة أبيكس للصحافة و النشر في فندق الكراون بلازا بمركزعمان للمعارض و المؤتمرات يوم الخميس الموافق ٢٥/١٠/٢٠١٨ تحت رعاية السيدة تانيا آل سعيد و سعادة طلال الرحبي ، نائب الأمين العام للمجلس الأعلى للتخطيط والمنسق العام لبرنامج تنفيد.


وحضر حفل توزيع الجوائز عدد من أصحاب المعالي والرؤساء والمديرين الإداريين والمديرين التنفيذيين. 


وفي الكلمة الإفتتاحية للحفل قالت موهانا الرئيس التنفيذي لـشركة أبيكس للصحافة و النشر، أن الجوائز قد تم إعدادها من قبل أبيكس للنشر و الصحافة في عام 2016 للإعتراف بالعلامات التجارية التي نجحت في إثبات أنها الأولى في أذهان عملائها.


يذكر أن الفوز بهذه الجائزة الفريدة لعلامة الاكثر ثقة في سلطنة عمان جاء إستمرارا للسجل الحافل لتاريخ الجوائز و الشهادات التي نالت عليها شركة ريسوت للأسمنت طيلة السنوات الماضيه فقد فازت شركة ريسوت للأسمنت بثمان كؤوس في مسابقة كأس حضرة صاحب الجلالة السلطان قابوس لأفضل خمسة مصانع.

كما حصلت على الدرع التكريمي لعام 1993 ، وعام 2013 باعتبارها ضمن أفضل عشرة مصانع بالسلطنة و حصلت الشركة أيضا على خمس كؤوس في مسابقة كأس البيئة كأفضل منشأة صناعية و على شهادة تقدير لعام 96 ، وعام 1999 باعتبارها إحدى المنشآت الصناعية الملتزمة بالشروط البيئية و أيضا على جائزة مجلس التعاون لأفضل الأعمال البيئية لعام 1998.


بالإضافة إلى شهادات عالمية منها شهادة نظام إدارة الجودة رقم ( ISO 9001 : 2008 ) ، وشهادة نظام إدارة البيئة رقم (14001:2004 ISO) ، وشهادة الجودة العالمية رقم ( API 10A - 0006 ) لإسمنت آبار النفط الصادرة من معهد البترول الأمريكي ، مما يدل على التزام الشركة بتطبيق معايير الجودة العالمية .


و حازت كذلك في شهر سبتمبر الماضي شركة ريسوت للأسمنت على جائزة العصر الأخضر في مجال الإستدامة في الحفل الذي أقيم بالعاصمة روما التابعة للجمهوريّة الإيطاليّة .


وكان الفوز بجائزة "العلامة الأكثر ثقة في سلطنة عمان" قد مر بمنافسة شديدة وكذلك بعملية تدقيق من قبل المؤسسة المنظمة للحفل الذي يشمل عدة معايير رئيسية ومهمة للفوز بالجائزة " العلامة الأكثر ثقة في سلطنة عمان" ومن ضمن هذه المعايير التصميم، الأداء والأهم من ذلك قبول و إستحسان السوق بشكل عام للعلامة.

*المصدر: "ايتوس واير"
=