Analysis of an Attack Surface
This report is a data-driven exploration of 5 areas of the attack surface where organizations lack visibility and the pathways hackers are using to exploit these blind spots.
Report highlights include:
- The Global Attack Surface is much bigger than you think: RiskIQ observed 2,959,498 new domains (211,392 per day) and 772,786,941 new hosts (55,199,067) across the internet over two weeks, each representing a possible target for threat actors.
- Sometimes hackers know more about your attack surface than you do: Looking at the attack surfaces of FTSE-30 companies, each organization had, on average, 324 expired certificates and 46 Web frameworks with known vulnerabilities.
- JavaScript Threats - A New Frontier of Cybercrime: So far, in 2020, RiskIQ has detected 2,552 Magecart attacks or 425 instances of Magecart per month