Nation-state actors take center stage in the Microsoft Digital Defense Report 2024, which also underscores the increasing use of artificial intelligence (AI) in cyberattacks this year.

Microsoft revealed that nation-state actors are increasingly working with cybercriminals, using their tools and expertise to orchestrate attacks. The report highlights North Korean hackers stealing over $3 billion in cryptocurrency since 2017, reportedly to fund state initiatives, including nuclear programs. These North Korean threat actors have also been deploying ransomware to target cryptocurrencies.

The report is based on Microsoft’s surveillance of more than 78 trillion security signals daily, offering a clear vantage point on global cyber threats. Microsoft collaborated with 15,000 specialized partners and leveraged the expertise of 34,000 full-time-equivalent engineers dedicated to security initiatives.

Nation-state actors have widened their scope, targeting the education and research sectors. According to the report, these sectors rank as the second most targeted due to their vast repositories of data. Microsoft noted that these areas also serve as testing grounds for new attack techniques, including the use of QR code phishing, which has been observed since August 2023.

AI in cybersecurity

As AI becomes a necessity for businesses, it is also transforming the cybersecurity landscape. Nation-state actors are now integrating AI into their operations and attacks. The report highlights the use of generative AI (GenAI) to enhance productivity and engagement in cyber campaigns.

“While the impact has been limited so far, the potential for AI to significantly amplify these campaigns is evident,” the report stated. “China leads with AI-generated imagery targeting elections, Russia focuses on audio manipulations, and Iran is gradually integrating AI into its strategies.”

The report also observed a decline in ransomware attacks; however, the scope of these attacks has broadened. Microsoft also noted a surge in tech scam traffic and reported that 99% of identity attacks remain password-based.

“Organizations must enhance defenses against both nation-state threat actors and cybercriminal threats,” Microsoft advised. “Implementing robust cybersecurity measures, monitoring for advanced persistent threats, and staying informed about evolving tactics can help mitigate risks from these sophisticated actors.”

By Marlet Salazar

Marlet Salazar is a technology writer focusing on cybersecurity. In 2018, driven by her passion for the tech industry, she founded Back End News through bootstrapped funding. She honed her writing skills at the Philippine Daily Inquirer, rising from proofreader to desk editor through the years.

Discover more from Back End News

Subscribe now to keep reading and get access to the full archive.

Continue reading