The great threat intelligence debate
Darren Anstee · Computer Fraud & Security · 2017
Cyberthreats continue to evolve, with ever-more complex attacks being used and with a wider spectrum of motivations behind them. Cyber-attacks can be launched for extortion, vandalism, ideological hacktivism, data theft and financial fraud with all kinds of attacks being regularly featured in the news. For example, ransomware has seen huge growth in the past year or so, highlighted most recently with the global WannaCry/NonPetya cyber-attacks. To protect themselves from an ever-increasing variety of threats, businesses need to leverage the capability and expertise available across the industry. This threat intelligence can be anything from statistical data on the kinds of threats being detected by a specific vendor's solutions through to specific indicators of compromise (IOCs). The gathering and sharing of threat intelligence is a key part of the security toolkit, but the nature of that intelligence will continue to evolve, explains Darren Anstee of Arbor Networks.