• Skip to primary navigation
  • Skip to main content
  • Skip to footer

Cisco Umbrella

Enterprise network security

  • Free Trial
  • Contact us
  • Blog
  • Login
    • Umbrella Login
    • Cloudlock Login
  • Products
    • Product
      • Cisco Umbrella Cloud Security Service
      • Cisco Umbrella Investigate
      • Product Packages
      • Support Packages
    • Functionality
      • DNS-Layer Security
      • Secure Web Gateway
      • Cloud Access Security Broker (CASB)
      • Interactive Intelligence
      • Cloud-Delivered Firewall
    •  
    • Webinar signup
  • Solutions
    • By Need
      • Protect Mobile Users
      • Fast Incident Response
      • Web Content Filtering
      • Shadow IT Discovery & App Blocking
      • Unified Threat Enforcement
      • Reduce Security Infections
      • Secure Direct Internet Access
      • Securing Remote and Roaming Users
    • By Network
      • Protect Guest Wi-Fi
      • SD-WAN Security
      • Off-Network Endpoint Security
    • By Industry
      • Higher Education Security
      • K-12 Schools Security
      • Healthcare, Retail and Hospitality Security
      • Enterprise Cloud Security
      • Small Business Cybersecurity
      • Our Customers
      • Customer Stories
    • Ransomware Defense for Dummies book
  • Why Us
    • Fast Reliable Cloud
      • Global Cloud Architecture
      • Cloud Network Status
      • Cloud Network Activity
      • Recursive DNS Services
      • Top Reasons to Trial
      • Getting Started
    • Unmatched Intelligence
      • Cyber Attack Prevention
      • Interactive Intelligence
    • Extensive Integrations
      • IT Security Integrations
      • Hardware Integrations
      • Meraki Integration
      • Cisco SD-WAN
    • Navigation-dropdown-promo-free-trial_102820
  • Resources
    • Content Library
      • Top Resources
      • Cybersecurity Webinars
      • Events
      • Analyst Reports
      • Case Studies
      • Customer Videos
      • Datasheets
      • eBooks
      • Infographics
      • Solution Briefs
    • International Documents
      • Deutsch/German
      • Español/Spanish
      • Français/French
      • Italiano/Italian
      • 日本語/Japanese
    • Cisco Umbrella Blog
      • Latest Posts
      • Security Posts
      • Research Posts
      • Threats Posts
      • Product Posts
      • Spotlight
    • For Customers
      • Support
      • Customer Success Hub
      • Umbrella Deployment Hub
      • Customer Success Webinars
      • What’s New
      • Cisco Umbrella Studio
  • Trends & Threats
    • Market Trends
      • Rise of Remote Workers
      • Secure Internet Gateway (SIG)
      • Secure Access Service Edge (SASE)
    • Security Threats
      • Ransomware
      • Cryptomining Malware Protection
      • Cybersecurity Threat Landscape
    •  
    • Navigation-dropdown-promo-threat-report_020521
  • Partners
    • Channel Partners
      • Partner Program
      • Become a Partner
    • Service Providers
      • Secure Connectivity
      • Managed Security for MSSPs
      • Managed IT for MSPs
    •  
    • Become a partner
  • Free Trial Signup
  • Umbrella Login
  • Cloudlock Login
  • Contact Us

Cybersecurity threat landscape

Scaling for threats in motion

Download the report

The threat landscape continues rapid evolution

Cyber attackers are producing new tricks. In our most recent report, we dive into the latest major threat trends:

  1. Trojans and droppers are being re-used

  2. Multi-staged attacks are becoming the norm

  3. Cryptomining leads to other cyber threats

  4. Pandemic topics open new attack routes

Download the report

Change told by the numbers

of customers saw a domain linked to malware in 2020

Cryptomining attack query volumes twice as large as next greatest attack type

Phishing threats jumped 40% between 2019 and 2020, driven partly by pandemic themes

Trend #1: Repurposing trojans and droppers for new forms of malware delivery

Attackers are using and re-using malware that has been proven to deliver results. They’re doing this as part of a larger, orchestrated attack chain. Two major reasons for their success are:

  • Their ability to deploy follow-up malware that does further damage down the cyber attack chain
  • Their highly distributed command-and-control (C2) infrastructure makes take-down harder


Trend #2: Orchestrated, multi-staged, and evasive attacks are becoming the norm

Attackers are employing complex attacks that use new delivery mechanisms such as macros and other legitimate application functionality to:

  • Evade detection
  • Hide the theft of data
  • Coordinate through command and control servers


“Cybersecurity professionals need new tricks to sort the hidden bad actors . . . One tool that could reveal these hidden threats is the use of entropy.”

-Shyam S. Ramaswami
Security Researcher, Cisco

Download the report Read the blog


Trend #3: Cryptomining opens the door to other cyber threats

Some think that cryptomining is not a big concern. But there are situations that pose more risk, such as cryptomining software that, when loaded, becomes the first step in a multi-staged attack on your infrastructure.


Trend #4: Attackers using pandemic-related themes to pick the cyber locks

The pandemic has a lot of people on edge. Bad actors are taking advantage of our interest in the topic and setting up numerous sites to phish for credentials and drop malware.

Key takeaways

The world is changing, threats are changing, and you should be changing too.

SASE solutions

Implement scalable first-line-of-defense tools, like cloud security technologies and Secure Access Service Edge (SASE) solutions

Interactive threat intelligence

Leverage timely, accurate threat intelligence that allows for data to be incorporated into security monitoring.

Automated prevention

Embrace automated event sequencing and machine learning to prevent attacks

Download the report Start a free trial

Follow Us

  • Twitter
  • Facebook
  • LinkedIn
  • YouTube

Footer Sections

What we make

  • Cloud Security Service
  • DNS-Layer Network Security
  • Secure Web Gateway
  • Security Packages

Who we are

  • Global Cloud Architecture
  • Cloud Network Status
  • Cloud Network Activity
  • OpenDNS is now Umbrella
  • Cisco Umbrella Blog

Learn more

  • Webinars
  • Careers
  • Support
  • Cisco Umbrella Live Demo
  • Contact Sales
Umbrella by Cisco
208.67.222.222+208.67.220.220
2620:119:35::35+2620:119:53::53
Sign up for a Free Trial
  • Cisco Online Privacy Statement
  • Terms of Service
  • Sitemap

© 2021 Cisco Umbrella