Skip to content
July 29, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
  • Home
  • News
  • Malware
  • Verizon Releases “2018 Data Breach Investigations Report”: Ransomware Has Become the Most PrevalentMalware
  • Malware

Verizon Releases “2018 Data Breach Investigations Report”: Ransomware Has Become the Most PrevalentMalware

Do Son April 12, 2018 4 minutes read
Add Daily CyberSecurity as a preferred source on Google

According to threatpost reports, U.S. telecommunications giant Verizon said in its 2018 Data Leakage Investigation Report (DBIR) on Tuesday that the number of ransomware attacks has doubled in the past year and become the most popular malware. It’s because hacking organizations want to pay ransoms by locking down key business systems and thus gain huge benefits.

Bryan Sartin, Verizon Executive Director of Security Professional Services, said in a statement: “[Ransomware] is now the most prevalent form of malware, and its use has increased significantly over recent years. What is interesting to us is that businesses are still not investing in appropriate security strategies to combat ransomware, meaning they end up with no option but to pay the ransom – the cybercriminal is the only winner here.”

After analyzing more than 53,000 security incidents (including 2,215 violations), Verizon said that ransomware attacks represent 39% of specific malware incidents.

One of the trends in the promotion of ransomware attacks is the ability to target critical business systems (non-desktops) that may cause more damage to the company, and it is likely that hacking organizations will attempt to use it as a target of extortion to gain more benefits. Over time, asset classes in ransomware incidents have moved from user devices to servers. Verizon says this is because hackers realize that encrypting file servers or databases is more destructive than a single user’s device.

Verizon said that horizontal movements and other threat activities are often involved in other systems that can be used for infection and occlusion. These ransomware attacks are attractive to hacking organizations because hackers themselves barely need to bear any risks or costs, and they also do not need to breach confidentiality terms to achieve their goals.

Verizon stated in his report that many hackers currently consider money as their top priority. According to the survey, 76% of all violations are financially motivated.

For example, the most prominent examples of ransomware in 2017 were the WannaCry and NotPetya attacks in May. WannaCry ransomware infects more than 300,000 systems in 150 countries and requires a $300 ransom to decrypt the key. At the same time, NotPetya encrypted the master boot record and requested Bitcoin as the main form of the ransom payment.

In October, BadRabbit, another ransomware activity, shook the security industry. This event-related to Russia’s Telebots was launched using malware on websites in Russia, Ukraine, and Eastern Europe. In this incident, the attackers aimed at the infrastructure (not just the desktop system) and caused great damage, of which Ukraine suffered the greatest damage to key network assets and infrastructure.

Recently, in March 2018, the city of Atlanta became the target of ransomware attacks. The incident affected several departments and smashed government websites that process payments and pass on court information. Subsequently, Atlanta City was asked to pay $51,000 in exchange for a key to decrypt the system.

To mitigate the possibility of ransomware attacks, Verizon recommends in its report that users should ensure that they have regular backups, segregate those assets that are important, and prioritize business continuity.

Verizon found that, overall, hackers, malware, and social attacks (such as phishing) were the top security breaches in the past year.

In addition, Distributed Denial of Service (DDoS) attacks is another major threat highlighted by the Verizon 2018 report. Verizon said: “DDoS attacks can impact anyone and are often used as camouflage, often being started, stopped and restarted to hide other breaches in progress.”

Currently, most cybercriminals are economically motivated. Therefore, it is not surprising that they attacked the financial, insurance, and retail industries. Sean Newman, director of product management at Corero Network Security, believes that DDoS technology that detects and automatically mitigates attacks in real time is an essential requirement for online companies that want 100% uptime.

Source: threatpost

Get Zero-Hour Vulnerability Alerts

Critical CVEs, CVSS scores, and PoC updates — straight to your inbox every week.


We respect your inbox. Unsubscribe anytime.

Related coverage

  • InnoLoader Malware Evades Detection Posing as Cracked Software
  • New Cryptojacking Campaign Targets Exposed Docker APIs
  • QakBot Returns with Evasive Tactics, Posing Renewed Threat
  • ScrubCrypt Deployed to Distribute VenomRAT and Powerful Array of Malware
  • TA397 Leverages Sophisticated Spearphishing Techniques to Deploy Malware in Defense Sector
Track all actively exploited CVEs →

Support Our Threat Intelligence

If you find our CVE report and cybersecurity news helpful, consider supporting our work.

Buy Me a Coffee Logo Buy Me a Coffee PayPal
Crypto QR Code
USDT (TRC20):
TN8BdV8cp4T1Cd28gK9qTAnZknzzuwyUtm
USDT (ERC20):
0x3725e1a7d3bc5765499fa6aaafe307fabcd75bce

Share this article:

Facebook Post LinkedIn Telegram
Written by
@DdoS · Security Researcher

Do Son

Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.

Tags: Data Breach Investigations

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-18072CVSS 9.8
    The Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick … plugin for WordPress is vulnerable to...
    Admin intel📅 Updated: Jul 29, 2026
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-54680CVSS 9.9
    Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior...
  • CVE-2026-54735CVSS 10.0
    Prebid Server is an open-source solution for running real-time advertising auctions in...
  • CVE-2026-67191CVSS 9.8
    Xlight FTP Server before 3.9.5 contains a pre-authentication heap buffer overflow vulnerability...
  • CVE-2026-60113CVSS 9.8
    AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains...
  • CVE-2026-60112CVSS 9.8
    AMMOS Instrument Toolkit (AIT) GUI before 2.5.1 contains a missing authentication vulnerability...
  • CVE-2026-14900CVSS 9.8
    The Cost Calculator Builder PRO plugin for WordPress is vulnerable to Remote...
  • CVE-2026-14488CVSS 9.1
    The Meta Box AIO plugin for WordPress is vulnerable to Missing Authorization...
  • CVE-2026-59243CVSS 9.8
    The FAB auth manager's Azure AD OAuth login defaulted `verify_signature=False` when decoding...
  • CVE-2025-10656CVSS 9.8
    The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin...
  • CVE-2026-58162CVSS 10.0
    The Apache Traffic Server certifier plugin generates certificates based on attacker-controlled client...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.