Security teams are adapting quickly to the rising speed of cyber-attacks, as indicated in the latest Annual Threat Report published by ReliaQuest. The report reveals that attackers can execute lateral movements within networks in as little as 27 minutes, with an average time of 48 minutes. This rapid movement underscores the need for security operations to enhance their responsiveness.
ReliaQuest reported that its customers implementing automated workflows significantly reduced their mean time to contain (MTTC) cyber threats, achieving containment in as little as 3 minutes, compared to an average of 6.3 hours when relying on manual processes. The utilization of AI and automation is proving essential for defenses against increasingly sophisticated attacks.
Even with the quickening pace of attacks, adversaries are still employing familiar tactics, with phishing remaining the leading method for initial access. Approximately 30% of phishing emails now include credential harvesters, facilitating larger attacks such as business email compromise. These emails have become more refined, featuring improved language and design, making them a more effective tool for cybercriminals.
Michael McPherson, Senior Vice President of Technical Operations at ReliaQuest, states, “Time is the enemy in cybersecurity. Attackers are moving faster than ever, which means our defenses must speed up as well.” He emphasized that relying solely on manual responses is no longer viable and highlighted the capabilities of agentic AI, which can process security alerts 20 times faster than traditional methods, with a 30% higher accuracy in identifying real threats.
Aside from bolstering automation and AI usage, ReliaQuest's research pinpointed five additional critical controls that security teams must implement to mitigate exposure to cyber threats. These include improving detection capabilities, ensuring comprehensive monitoring of devices, using secure VPNs, limiting external exposure, and maintaining vigilance against social engineering tactics, particularly those aimed at IT professionals.
The full document detailing these findings is available in the ReliaQuest Annual Threat Report.
Comments