Friday, January 24, 2025
HomeCyber Attack150K+ Networking Devices & Apps Found Online with Critical Vulnerabilities

150K+ Networking Devices & Apps Found Online with Critical Vulnerabilities

Published on

SIEM as a Service

Follow Us on Google News

The “State of the UAE—Cybersecurity Report 2024,” a collaborative effort by the UAE Cyber Security Council and CPX Holding, has released the United Arab Emirates (UAE) cybersecurity landscape.

The report presents a detailed examination of the cyber threats that the nation faces, highlighting the critical need for advanced cybersecurity measures.

The report has uncovered over 155,000 vulnerable assets within the UAE, with 40 percent of critical vulnerabilities left unaddressed for over five years.

This significant number of exposed assets, combined with the rise in sophisticated cyber-attacks such as ransomware, underscores the urgent need for robust cyber defenses in a region known for its AI-driven technological advancements and geopolitical importance.

Ransomware and Data Breaches: A Growing Concern

Ransomware attacks account for more than half of the cyber incidents in the UAE, with the Government, Energy, and Information Technology sectors being the prime targets.

Traditional attack vectors like Business Email Compromise (BEC) and phishing are still prevalent. They are expected to evolve with the integration of AI tools, making social engineering and phishing attempts more sophisticated.

The Middle East, including the UAE, faces the second-highest data breach costs globally, indicating the economic motivations of cyber threat actors amidst the region’s prosperity, as reported by CPX.

The increase in Distributed Denial of Service (DDoS) attacks further highlights the geopolitical complexity of cyber threats.

National Call to Action by UAE Officials

H.E. Dr. Mohamed Al Kuwaiti, Head of Cyber Security for the UAE Government, emphasized the critical need for collective vigilance and strategic action to counter these sophisticated cyber threats.

He called for an ecosystem-wide proactive engagement to reduce the nation’s vulnerability.

TECHx recently tweeted about the release of the ‘State of the UAE—Cybersecurity Report 2024’, which illuminates potential security weaknesses and the importance of a proactive approach to combating cyber threats.

Hadi Anwar, Executive Director of Strategic Programs at CPX, pointed out the economic vulnerabilities highlighted in the report and called for a unified approach to strengthen national defenses.

He stressed the importance of adopting advanced technologies, fostering a culture of cyber awareness, and building resilience.

Strategic Guide for Cyber Resilience

The report, compiled by a consortium of cybersecurity experts, serves as a strategic guide for government entities, businesses, and individuals.

It provides actionable insights to navigate the complexities of the digital era and outlines key best practices to mitigate cyber risks:

  • Implement Endpoint Detection and Response (EDR): This is essential for identifying and mitigating threats and ensuring visibility across digital assets.
  • Establish a 24/7 Security Operation Centre (SOC): Vital for continuous surveillance and management of cyber incidents.
  • Leverage Cyber Threat Intelligence: Crucial for anticipating and neutralizing emerging threats through informed decision-making.
  • Create and Implement an Incident Response Plan: Fundamental for preparedness and swift action during cyber incidents.
  • Adopt Proactive Threat Hunting Processes: A forward-looking approach to identify and mitigate hidden threats, enhancing security posture.

As the UAE continues to lead in digital transformation, the report underscores the need for a concerted effort from all sectors to ensure the resilience and security of the nation’s digital landscape.

With Perimeter81 malware protection, you can block malware, including Trojans, ransomware, spyware, rootkits, worms, and zero-day exploits. All are incredibly harmful and can wreak havoc on your network.

Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Subaru’s STARLINK Connected Car’s Vulnerability Let Attackers Gain Restricted Access

In a groundbreaking discovery on November 20, 2024, cybersecurity researchers Shubham Shah and a...

Android Kiosk Tablets Vulnerability Let Attackers Control AC & Lights

A security flaw found in Android-based kiosk tablets at luxury hotels has exposed a...

CISA Releases Six ICS Advisories Details Security Issues

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued six Industrial Control Systems (ICS)...

Juniper Routers Exploited via Magic Packet Vulnerability to Deploy Custom Backdoor

A sophisticated cyber campaign dubbed "J-magic" has been discovered targeting enterprise-grade Juniper routers with...

API Security Webinar

Free Webinar - DevSecOps Hacks

By embedding security into your CI/CD workflows, you can shift left, streamline your DevSecOps processes, and release secure applications faster—all while saving time and resources.

In this webinar, join Phani Deepak Akella ( VP of Marketing ) and Karthik Krishnamoorthy (CTO), Indusface as they explores best practices for integrating application security into your CI/CD workflows using tools like Jenkins and Jira.

Discussion points

Automate security scans as part of the CI/CD pipeline.
Get real-time, actionable insights into vulnerabilities.
Prioritize and track fixes directly in Jira, enhancing collaboration.
Reduce risks and costs by addressing vulnerabilities pre-production.

More like this

Android Kiosk Tablets Vulnerability Let Attackers Control AC & Lights

A security flaw found in Android-based kiosk tablets at luxury hotels has exposed a...

CISA Releases Six ICS Advisories Details Security Issues

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued six Industrial Control Systems (ICS)...

KEYPLUG Infrastructure Exposed: Server Configurations and TLS Certificates Revealed

In a recent technical investigation, researchers uncovered critical insights into the infrastructure linked to...