Hiding malware in encrypted traffic makes it harder to detect

computing

(Image credit: Future)

Many modern cyberattacks leverage encrypted traffic, meaning they’re more difficult to identify and repel, a new report from Zscaler has claimed.

It states that businesses need to adopt a cloud-native zero-trust architecture to better monitor internet-bound traffic and defend against incoming threats. 

The report, based on more than 300 trillion daily signals and 270 billion daily transactions in the Zscaler Zero Trust Exchange, notes that the company blocked 24 billion encrypted threats, most using either TLS or SSL, in 2022. That’s a 20% increase from 2021 when the company blocked 20.7 billion such attacks and a 314% increase from 2020. 

Malware and ransomware

Most of the time, cybercriminals will hide malware in encrypted traffic. Malicious scripts and payloads make up almost 90% of all encrypted attack tactics that were blocked this year, Zscaler says. 

Of all the different types of malware (opens in new tab), ransomware remains one of the most devastating variants. Still, destructive power does not warrant popularity – the most popular malware families include ChromeLoader (infostealer and adware), Gamaredon, AdLoad, SolarMarker, and Manuscrypt.

The biggest targets remain those based in the United States, India, the UK, and Australia, with South African victims making the top five for the first time. 

With 613% and 155% respectively, Japan and the US were among the countries with the biggest uptick in attacks. The manufacturing industry is still the number one target (239% increase), mostly due to Covid-19 measures still dictating the way these businesses operate. Another notable industry is education (132% increase year-on-year). 

Read more

> These are the best endpoint protection services around (opens in new tab)
> What is encryption?
> The double-edged sword of encryption

On the other hand, attacks against government organizations and retail dropped by 40% and 63% respectively, mostly because law enforcement agencies were quick to pursue threat actors that targeted them, Zscaler believes.

“As organizations mature their cyber defenses, adversaries are becoming more sophisticated, particularly in their use of evasive tactics,” said Deepen Desai, CISO and VP of Security Research and Operations at Zscaler.

“Potential threats continue to hide in encrypted traffic, empowered by as-a-service models that dramatically reduce the technical barriers to doing so. It is critical for organizations to adopt a cloud-native zero-trust architecture that allows consistent inspection of all internet-bound traffic and effectively mitigates these attacks.”

    Are you a pro? Subscribe to our newsletter

    Sign up to theTechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    By submitting your information you agree to the Terms & Conditions (opens in new tab) and Privacy Policy (opens in new tab) and are aged 16 or over.

    Sead Fadilpašić

    Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

    TECH NEWS RELATED

    This Tiny MSI PC is Packed With Power

    MSI Following the example set by the Mac Mini, many Windows-powered compact PCs have popped up recently with solid hardware. If none have quite caught your eye, though, maybe this PC by MSI will. MSI has just released a new tiny PC called the Cubi 5 12M, and it’s ...

    View more: This Tiny MSI PC is Packed With Power

    Logitech’s New Colorful Keyboards and Mice Look Great

    Logitech Logitech makes some of the best keyboards and best mice around, and you might be familiar with the company’s RGB-packed gaming products. These new peripherals are really packed with color, but we’re not really talking about lights. Logitech has announced a range of new colors for a bunch ...

    View more: Logitech’s New Colorful Keyboards and Mice Look Great

    “Part of the Journey Is the End;” Marvel’s Avengers Seems to be Shutting Down

    Whether it be purely the lackluster quality of the game or the general distaste for live service games, Marvel’s Avengers never truly found its footing in the two years since it was released. Despite the fact that both the Marvel and Avengers labels should guarantee a happy, comic-lover audience, ...

    View more: “Part of the Journey Is the End;” Marvel’s Avengers Seems to be Shutting Down

    Satechi Thunderbolt 4 Slim Hub review: A sleek and portable laptop hub

    Thunderbolt 4 docks are now much more widely available, meaning that it’s much easier to get a high speed dock that works with your laptop. But unfortunately, while they’re relatively widely available now, they’re still quite expensive. Thankfully, however, that price seems to now be coming down a little through ...

    View more: Satechi Thunderbolt 4 Slim Hub review: A sleek and portable laptop hub

    Wi-Fi routers are being hit by a dangerous new Android malware with extra DNS hacks

    With the DNS changed, users are redirected to malicious pages

    View more: Wi-Fi routers are being hit by a dangerous new Android malware with extra DNS hacks

    Servant unleashes a bed bug blitz [Apple TV+ recap]

    Just when you thought things couldn't get any worse … bed bugs! Photo: Apple TV+ Dorothy is back in the bizarre Turner household this week on Apple TV+ thriller Servant — and she’s not happy to be home. Leanne insists on normalcy, but considering the things that have happened, ...

    View more: Servant unleashes a bed bug blitz [Apple TV+ recap]

    Hostinger quietly shutters Zyro to focus on Hostinger Website Builder service

    Will Zyro website builder still exist soon?

    View more: Hostinger quietly shutters Zyro to focus on Hostinger Website Builder service

    Redmi Note 12 Turbo Tipped to get Snapdragon 7-series SoC

    The Xiaomi Redmi Note 12 Series arrived in China and India last year. With that being said, we might see another offering in the Redmi Note series phone in the coming months where it will be powered by the Snapdragon 7-series chipset onboard. The information comes from a notable ...

    View more: Redmi Note 12 Turbo Tipped to get Snapdragon 7-series SoC

    Avatar 2 animators tricked James Cameron into believing some shots were practical

    Super Bowl 2023 live stream: how to watch the game, commercials and halftime show from anywhere

    The Minecraft Community Answers the Age-old Question: “Can it Run Doom?”

    Mark Hamill Hints That His Time as the Joker Is Over

    Deadpool joins Marvel's Midnight Suns next week, adding new story missions

    Chic-Fil-A’s Training Program Apparently Features a Familiar Fallout Face

    Nintendo is reportedly increasing Switch production ahead of Breath of the Wild 2

    Ex-Halo dev believes those who pushed for a better game ‘got laid off for it’

    There are two clear winners in the PSVR 2 launch lineup

    A nuclear-powered data center is opening this year

    Anker’s New Monitor Stand Doubles as an All-In-One Docking Station

    Naked Elden Ring Player Counter’s Placidusax’ Attack With Chaotic Results

    OTHER TECH NEWS

    Top Car News Car News