The report, developed by Viettel Cyber Security (VCS), is based on data from the Viettel Threat Intelligence system. During the first half of 2024, Viettel Threat Intelligence recorded a significant increase in cybersecurity risks.
Specifically, the number of stolen personal data instances rose by 50% compared to the same period last year. The number of phishing websites impersonating organizations and businesses increased fourfold, leading to a surge in fraud and financial scams.
Among the 46 data breaches involving Vietnamese businesses and organizations in the first half of the year, customer information and transaction data from retail companies were the most frequently exposed. This was followed by eKYC (electronic Know Your Customer) data and information from several universities and educational institutions.
Approximately 17,000 new vulnerabilities emerged, with more than half classified as high or critical severity according to the Common Vulnerability Scoring System (CVSS). Notably, the report highlights 71 vulnerabilities posing potential risks to organizations and businesses in Vietnam, including severe vulnerabilities in Ivanti Connect Secure internal network solutions and Palo Alto Networks PAN-OS firewall solutions.
In the first half of 2024, ransomware attacks encrypted up to 3 terabytes of data, with estimated losses exceeding $10 million. One notable example was the Lockbit attack on a financial company in March, which caused prolonged service disruptions. Additionally, numerous other campaigns targeted various sectors, including finance, public services, IT, and manufacturing. Viettel Threat Intelligence reported that 56 organizations across these sectors were initially targeted by ransomware attacks but had not yet suffered data encryption.
Nearly half a million DDoS attacks were recorded, representing a 16% increase compared to the same period in 2023. Concerning DDoS trends, the number of attacks below 1Gbps tripled compared to 2023. This increase was attributed to new attack methods using ultra-low-intensity assaults designed to bypass threshold-based traffic protection systems.
VCS recommends that organizations and businesses review their backup systems, ensuring that backup data is physically and logically isolated from primary systems and capable of restoration in the event of severe incidents. Companies should also review and tighten access rights, manage server and access control systems, implement multi-factor authentication for critical systems and accounts, and regularly update internet-facing application patches.
Early access to threat information plays a strategic role in enabling businesses to stay proactive and ensure cybersecurity. Viettel Threat Intelligence is a service that provides data and insights on cybersecurity threats, helping organizations and businesses proactively develop strategies for prevention and timely response before becoming targets.
The full Viettel Threat Intelligence report and recommendations are available HERE.
Guidelines on ransomware prevention and response are available HERE.
Filter