ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

A new era of cyber threats cascading from enhanced digital systems 

cyber threats
cyber threats

Ransomware, geopolitics, nation state and supply chain attacks rank as the biggest cyber threats according to new research

 

Cybersecurity leaders and analysts depict an industry in turmoil, rocked by a string of events such as the SolarWinds supply chain compromise, through to the Colonial Pipeline ransomware attack, the Log4Shell exploit, and concerns over the potential fallout from the Ukraine conflict. This is according to the 2022 Infosecurity Group State of Cybersecurity Report, produced by Infosecurity Europe and Infosecurity Magazine. This is the fourth in the series, which began in 2018, after a brief hiatus in 2021. 

 

The report examines cybersecurity professionals’ biggest concerns across a range of sectors, with this years’ top trends representing a departure from previous reports where they remained largely static. This year’s study found ransomware was the biggest trend among our survey respondents (28%), surging ahead having not made the top three trends in 2020. This is closely followed by geopolitics/nation-state attacks (24%) and supply chain attacks (22%). Additional trends of interest included, cloud/multi-cloud security (21%), remote work and return (18%), deperimeterisation and zero trust (15%), human factor (15%) and AI/ML (10%). 

 

Ransomware has become increasingly more sophisticated, with authorities stepping up their response in an effort to thwart these attacks and put pressure on ransomware groups. Report contributor and investigative journalist, Geoff White, noted that ransomware groups are becoming more cautious - "We’ve seen gangs’ affiliates either going rogue and attacking the Colonial Pipeline, or leaking information as we saw with the Conti ransomware gang," he said. He expects to see operators reining in their affiliates and being more guarded in their operations.  

 

Ransomware attacks have increased because they remain effective in not only locking up customer data, but bringing businesses to a halt and offering huge financial gain for the attackers. No other type of attack, other than perhaps a distributed denial of service (DDoS), can do such immediate and profound damage to an organisation’s bottom line.  

 

Geopolitical unrest was also a critical talking point in this years’ report with the war in Ukraine causing a shift in hostilities into cyberspace. Expectations for global change to address cyber warfare was heightened amongst the respondents. Praveen Singh, Head of Global IT Risk and Cyber Security, ICBC Standard Bank Plc, said that the situation in Eastern Europe makes a global legal framework on cybercrime and cyber warfare even more important. "We are going to be at a point where we globally are going to have UN-level state laws on cyber security, warfare and rules, and they must be written down and agreed by the key nations around the world."  

 

Furthermore, supply chain security leapt from a tangential issue in the 2020 report to a top three trend this year. The discovery of the SolarWinds attack in December had huge repercussions as dozens of agencies and hundreds of companies found themselves compromised by malicious code that had been injected into the vendor’s software.  

Robin Smith, Head of Cyber and Information Security at Aston Martin, warned that the problem will get worse before it gets better and geopolitical and economic issues continue to constrain hardware and talent supply chains, introducing more uncertainty, citing the Ukrainian war as an example.  

 

"The unintended effects are going to hit supply chains. Think about shortages in chips and staff," he said, adding that state actors might exploit supply chain issues. "We are being vigilant around our supply chain to make sure that things like equipment, people or any other aspect are monitored and scanned, and that any contagion is contained."  

Other key trends in the report include: 

  • Cloud/multi-cloud security  
  • Remote work and return  
  • Deperimeterisation/Zero trust  
  • Cybersecurity awareness/human behaviour  
  • AI/ML (including deep fakes)  
  • Phishing/ Social engineering  
  • IoT security and standardization  
  • Cyber crime  
  • Identity and access management  
  • Data protection/identity theft  

 

Nicole Mills, Exhibition Director at Infosecurity Group, comments: “The threat landscape is continually evolving, but this years’ report highlights just how quickly these changes are taking place. The industry is facing unprecedented challenges in trying to keep pace and stay one step ahead of the threats, and whilst most of these a familiar, the tactics and motivation behind them are diverse. We are facing a new era of cyber threats, being further propelled by increased digitalisation and geopolitical events. These attacks are no longer just headlines that people can read and forget about, their effect on all of us will continue to grow.” 

 


 

The annual State of Cybersecurity Report is based on interviews conducted in March 2022. Infosecurity Europe gathered the opinions numerous cybersecurity experts via online written responses and online one-to-one video interviews for a deeper dive into the state of cybersecurity. To download a copy of the report, please click here

 

Main image courtesy of iStockPhoto.com


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543