Khaleej Times

Beware of cyberattac­ks as Eid approaches

- Somshankar Bandyopadh­yay somshankar@khaleejtim­es.com

While the holy month of Ramadan — followed by Eid Al Fitr celebratio­ns — is a wonderful time to be surrounded by those you love, the increased shopping activity always brings with it a surge in cyberattac­ks.

According to data from GroupIB, a major cybersecur­ity company, in 2023, the GCC experience­d a substantia­l 65 per cent increase in ransomware victims published on dedicated leak sites (DLSS), rising from 32 in 2022 to 53 last year. The GCC experience­d a notable 36 per cent increase in compromise­d cards, rising from 98,339 in 2022 to 133,320 in 2023, data showed.

Cyber criminals anticipate the surge in consumer spending every year and seize the opportunit­y to dupe unassuming victims - both shoppers and those within the retail industry - through the use of phishing tactics, the promise of one-off time-bound discounts, and using well-known brands as cover.

As retail remains a critical sector of the economy of the region, attacks on the trade sector during the Eid Al Fitr shopping season result in serious consequenc­es, including leakage of confidenti­al informatio­n, disruption of business operations, financial losses and reputation­al damage, according to Irina Zinovkina, head of the informatio­n security research group at Positive Technologi­es.

“This highlights the need for retailers and e-commerce to strengthen informatio­n security measures and ensure effective cybersecur­ity. Adopting modern technologi­es and continuall­y improving security strategies is essential for companies to protect their business,” Zinovkina told Khaleej Times.

And it isn’t just shoppers who need to be alert; an intense shopping period creates a honey pot of payment and personally identifiab­le data within retail businesses, and threat actors swarm around it.

Netskope’s recent Threat Labs Report into the retail sector found that on average, profession­als in the retail sector engage with around twenty cloud apps every month, with the top one per cent of retail employees using a staggering 85 cloud apps monthly. In retail, Whatsapp use is three times more popular than other sectors, ranking only behind Onedrive in terms of both uploads and downloads. This poses a serious risk not only because Whatsapp is a common delivery channel for malicious content such as malware or phishing pages, but also because these numbers suggest that the retail sector is using a personal instant messaging app as an enterprise collaborat­ion tool.

Throughout this busy retail period, it’s more important than ever to stay informed about the latest threats and protect ourselves against them wherever possible.

The best advice is to always maintain vigilance, experts say. “Enterprise security teams should ensure they are inspecting all downloads from the web and trusted cloud apps, to prevent malware infiltrati­ng networks. And retail businesses should stop relying on annual security training which is generally forgotten at moments of busy activity and urgent opportunit­ies, and instead make use of technology that can enable justin-time user coaching, helping the workforce navigate appropriat­e behaviours in the moment that threats occur,” Steve Foster, Head of solutions engineerin­g, MEA at Netskope, told Khaleej Times.

Both shoppers and retail employees should reinforce their cyber education, rememberin­g the importance of scrutinisi­ng emails and messages, and thinking before clicking attractive, yet deadly, links. “We should take extra care when we go online and pay attention to where we share our personal details. Year after year, we are witnessing a surge in digital crime activities during these months. Staying vigilant is the best approach towards a digitally safe holiday,” Foster added.

Firm stance needed

“To effectivel­y combat the ransomware industry, it’s essential that companies and organisati­ons adopt a firm stance of not paying the ransom, as this disrupts their entire economic model. At the same time, proactive investment­s in preventive measures and robust cybersecur­ity strategies are vital. We also recommend that Mea-based government­s and organisati­ons work together with leading cybersecur­ity vendors to strengthen overall benchmarks, as public-private sector collaborat­ion, as well as joining efforts with law enforcemen­t agencies that operate in the region are crucial in this fight. Creating a culture of cybersecur­ity is a vital step towards raising overall standards among population­s, meaning that continued awareness efforts are also hugely important,” Ivan Pisarev, head of threat intelligen­ce (MEA) at Group-ib, said.

 ?? ?? Cyber criminals anticipate the surge in consumer spending every year and seize the opportunit­y to dupe unassuming victims.
Cyber criminals anticipate the surge in consumer spending every year and seize the opportunit­y to dupe unassuming victims.

Newspapers in English

Newspapers from United Arab Emirates