2023 Unit 42 Attack Surface Threat Report Highlights The Need For ASM
- Today's attackers can scan the entire IPv4 address space for vulnerable targets in minutes. Of the 30 Common Vulnerabilities and Exposures (CVEs) analyzed, three were exploited within hours of public disclosure and 63% were exploited within 12 weeks of the public disclosure. Of the 15 remote code execution (RCE) vulnerabilities analyzed by Unit 42, 20% were targeted by ransomware gangs within hours of disclosure, and 40% of the vulnerabilities were exploited within 8 weeks of publication.
- 80% of security exposures are present in cloud environments compared to on-premises at 19%. Cloud-based IT infrastructure is always in a state of flux, changing by more than 20% across every industry every month. Nearly 50% of high-risk, cloud-hosted exposures each month were a result of the constant change in cloud-hosted new services going online and/or old ones being replaced. Over 75% of publicly accessible software development infrastructure exposures were found in the cloud, making them attractive targets for attackers.
- Over 85% of organizations analyzed had Remote Desktop Protocol (RDP)
internet-accessible for at least 25% of the month, leaving them open to ransomware attacks or unauthorized login attempts.
- Eight of the nine industries that Unit 42 studied had internet-accessible RDP vulnerable to brute-force attacks for at least 25% of the month. The median financial services and state or local government organizations had RDP exposures for the entire month.
Enabling SecOps teams to reduce mean time to respond (MTTR) in a meaningful way requires accurate visibility into all organizational assets and the ability to automatically detect the exposure of those assets. Attack surface management solutions, like Palo Alto Networks industry-leading Cortex Xpanse, give SecOps teams a complete and accurate understanding of their global internet-facing assets and potential misconfigurations to continuously discover, evaluate and mitigate the risks on an attack surface.
Cortex Xpanse is agentless, automatic and routinely discovers assets that IT staff are unaware of and are not monitoring. Each day, it conducts over 500 billion scans of internet facing assets. This helps organizations actively discover, learn about, and most importantly, respond to unknown risks in all connected systems and exposed services.
Cortex Xpanse is one of the only products that not only gives businesses the ability to see their exposures, but to also automatically remediate them. Cortex Xpanse also recently introduced new capabilities to help organizations better prioritize and remediate attack surface risks by utilizing real-world intelligence and AI-assisted workflows.
It has become clear that the legacy technologies powering today's security operations center (SOC) are no longer working and that customers require a massive reduction in their mean time to respond and remediate. The Cortex portfolio of products, such as XSIAM, incorporates AI and automation to revolutionize security operations and help customers be more agile and secure.

Legal Disclaimer:
MENAFN provides the
information “as is” without warranty of any kind. We do not accept
any responsibility or liability for the accuracy, content, images,
videos, licenses, completeness, legality, or reliability of the information
contained in this article. If you have any complaints or copyright
issues related to this article, kindly contact the provider above.
Most popular stories
Market Research

- Poppy Seed Market Size, Share, In-Depth Insights, Opportunity And Forecast 2025-2033
- The Dubai Insiders Club Expands Access To Australia And Asia Amid Surge In International Investor Demand
- What Are The Latest Trends In The Europe Steel Market For 2025?
- UK Digital Health Market To Reach USD 37.6 Billion By 2033
- Nowpayments To Participate In Sigma Europe Rome 2025
- Japan Skin Care Products Market Size Worth USD 11.6 Billion By 2033 CAGR: 4.18%
Comments
No comment