TahawulTech.com
  • TahawulTech.com
  • Region
    • UAE
      • FLAG drives global connectivity and growth with resilient digital infrastructure, says CEO
      • Huawei set to unveil new wearables, tablets, and phones in Paris on September 19 
      • Milestone Systems power future-ready smart cities with innovation in VMS
      • Vertiv Holdings completes acquisition of Great Lakes Data Racks & Cabinets 
        Vertiv Holdings completes acquisition of Great Lakes Data Racks & Cabinets 
      • Precision meets presence with Logitech’s powerful Ultra HD MX Brio 4K Webcam 
    • Saudi Arabia
      • SANS Institute returns with fourth edition of SANS Cyber Leaders Forum to Riyadh
      • Arthur D. Little appoints Goetz Kuras as ‘Partner’ in financial services practice 
      • MFTA launches Saudi Chapter, co-chaired by Mona Alsemayen and Sophie Guibaud 
      • Cluster 2 signs agreement to advance smart airport operations in Saudi Arabia
      • Nokia drives cloud-native, AI-driven, secure networks for hyperconnected world
    • Oman
      • Microsoft AI Tour showcases groundbreaking AI innovations for Oman
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • KROHNE delivers insights to inspire the next generation of engineers in Oman
      • Oracle supports major project to accelerate Oman digital economy
      • Ooredoo accelerates cybersecurity in Oman with new deal
    • Bahrain
      • Bahrain sets global benchmark with GCC’s first stablecoin regulatory framework
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • BDB launches “tijara” platform for SMEs
      • Bahrain achieves full nationwide 5G coverage
      • Batelco, SonicWall launch integrated security solutions for SMEs in Bahrain
    • Kuwait
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • Infopercept opens its first Middle East office in Kuwait
      • Microsoft Compliance Manager now available in Kuwait
      • Commercial Bank of Kuwait gets mobile payments moving with Thales Digital Solutions
      • Ooredoo chooses Fortinet to deliver secure SD-WAN managed services in Kuwait
    • Africa
      • Orange, Hashgraph Association and Dar Blockchain launch $1 Million hackathon 
      • Dubai’s Omining unveils first African site in Kenya’s Special Economic Zone
      • Rise of Fearless unites 2,500+ gamers through African heritage, battle royale
      • Rise of Fearless launches $700K investment round to advance Web3 mobile gaming in Africa 
      • e& enterprise and RAIN Technology to revolutionise Operating Room efficiency in hospitals across MEA
    • Middle East
      • FLAG drives global connectivity and growth with resilient digital infrastructure, says CEO
      • Orange, Hashgraph Association and Dar Blockchain launch $1 Million hackathon 
      • NTT DATA and Google Cloud to accelerate Agentic AI adoption, cloud modernisation
      • Zain powers Iraq’s digital future through customer-driven innovation, inclusion
      • SANS Institute returns with fourth edition of SANS Cyber Leaders Forum to Riyadh
    • Global
      • FLAG drives global connectivity and growth with resilient digital infrastructure, says CEO
      • Nvidia starts work on upgraded chip offering for China
      • South Korea looks to address legal uncertainties posed by GenAI
      • NTT DATA and Google Cloud to accelerate Agentic AI adoption, cloud modernisation
      • DPG33 set to host region’s first-ever govt pavilion at Gamescom 2025 in Germany
  • Industry
    • Education
      • ASUS offers up to AED 1,000 off for Back-to-School 2025
      • Huawei MatePad 11.5 makes multitasking, creativity, and learning more accessible
      • Vodafone Ukraine launches university 5G open space
      • Fujairah’s Young Techpreneurs Initiative Enters its final Phase
      • American University of Sharjah, Ghaf Labs partner to boost student industry exposure 
    • Energy
      • Google invests in nuclear power for its data centres
      • Can U.S. power grids keep up with the data centre boom? 
      • Tesla applies for UK electricity supply license
      • Google invests heavily in hydroelectric energy
      • Amazon enters nuclear energy partnership to power data centres
    • Financial services
      • Zain powers Iraq’s digital future through customer-driven innovation, inclusion
      • American University of Sharjah, Ghaf Labs partner to boost student industry exposure 
      • American based insurance giant suffers cyber breach
      • Qi, K2 Integrity join forces to align Iraq’s financial sector with global standards
      • ruya unveils AI-generated brand film: “You’ve Got Better Things to Do” 
    • Government
      • Google seeks Play Store compliance with EU rules
      • UK rescinds Apple backdoor demand
      • AI player Anthropic teams up with U.S. Government branches
      • Trump Administration considers a stake in Intel
      • Australian court calls out Apple and Google misuse of market power
    • Healthcare
      • Apple’s latest watch improves blood oxygen monitoring
      • UAE health sector targeted in sophisticated ransomware attack, says Sophos official
      • Artificial Intelligence set to revolutionise healthcare’s future, says Dr. Azad Moopen 
      • Aster Clinics introduce Smyl AI – UAE’s first AI dental tool
      • Genomics company fined over data breach
    • Property
      • DLD boosts transparency with AI-enabled real estate advertising governance 
      • MBRHE and Beyond Limits AI MoU to enhance digital transformation
      • Huspy launches GCC’s first AI-powered mortgage chatbot to transform home financing  
      • DLD, VARA collaborate to boost leadership in realty and virtual assets regulation
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
    • Retail
      • Huawei MatePad 11.5 makes multitasking, creativity, and learning more accessible
      • Belkin announces record-low prices on tech essentials for Amazon Prime Day 2025
      • Beyond Pixels: How next-gen LED displays are powering immersive brand experiences 
      • Global second-hand smartphone market sees annual drop
      • Hushday enters UAE market with private luxury sales and steep discounts
    • Technology
      • Grok chat transcripts exposed in search engine results
      • New Google Pixel 10 features advanced AI capabilities
      • Meta restructures AI teams in pursuit of personal superintelligence
      • Microsoft head concerned by the condition of AI psychosis
      • Omnix strengthens digitisation in manufacturing solutions
    • Transport & Logistics
      • StarLink looking to collaborate with Saudi Arabia’s main airline
      • Tesla found partly liable for fatal 2019 Autopilot crash
      • Hefring Marine launches new app for comprehensive fleet management 
      • EV maker Telsa sees collapse in sales
      • Cybercriminals set their sights on U.S. airlines
    • Travel & Hospitality
      • Sojern and PubMatic join forces to power next-gen travel advertising solutions
      • Cluster 2 signs agreement to advance smart airport operations in Saudi Arabia
      • 8th Int’l Conference on Education Quality kicks off in Dubai; highlights AI innovations
      • Arabian Travel Market to gather global AI experts to explore new frontiers in travel
      • Smartphones, social media drive travel decisions for Indians, says travel report
  • Company
    • Enterprise
      • Meta restructures AI teams in pursuit of personal superintelligence
      • GSMA MWC25 Doha unveils expanded agenda featuring smart city expo and digital leaders programme
      • Tencent hits double-digit profit growth
      • Apple denies bias against Grok AI
      • Trump changes mind regarding Intel CEO
    • Corporate
      • Qlik expands cloud footprint with new AWS region in Middle East
      • PeopleStrong powers UAE’s talent shift, accelerates ME growth: Mrigank Tripathi
      • Microsoft names Samer Abu-Ltaif president for Europe, ME and Africa
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • YouGotaGift CEO says ‘product-centricity’ the key to their phenomenal success
    • SME
      • AI-powered solutions shape future of SMEs, says Zoftware founder 
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • Kaspersky exposes new scam targeting SMBs
      • Thriwe: Enhancing the Omni-channel experience
      • Alaris expands information capture ecosystem for SMEs
    • Startup
      • AI without borders: Startups leading the next global leap 
      • Secure Domains brings cutting-edge DNS protection to MENA region 
      • Open Innovation AI collaborates with Intel to revolutionize AI orchestration with Gaudi
      • Kaspersky exposes new scam targeting SMBs
      • Thriwe: Enhancing the Omni-channel experience
    • Vendor
      • Juniper Research predicts cellular IoT windfall in 2030
      • Orange Belgium compromised by recent cyberattack
      • New Google Pixel 10 features advanced AI capabilities
      • Learn how Qlik Answers is empowering industries
      • Google seeks Play Store compliance with EU rules
    • Channel
      • Perplexity makes $34.5 billion offer for Google Chrome
      • Honeywell to address distribution centre pain points
      • Orange Group upgrades its partnership with OpenAI
      • Nokia empowers Asia-Pacific data centres
      • Ericsson eyes an investment in Intel
  • Trending
    • Digital Transformation
      • Internet of Things
      • Big Data
      • Blockchain
      • Smart City
      • Cloud Computing
    • Artificial Intelligence
      • Data Centre
      • Machine Learning
      • Virtual Reality
      • Robotics
      • Systems Integrator
      • E-commerce
    • 3D Printing
      • Self-driving Cars
      • Drones
      • Automation
      • Smartphones
      • Wearables
      • Virtualisation
    • Fintech
      • Storage
      • Mobile Payment
      • Startups
      • Applications
      • Security
  • News
    • All News
      • Juniper Research predicts cellular IoT windfall in 2030
      • Orange Belgium compromised by recent cyberattack
      • Grok chat transcripts exposed in search engine results
      • New Google Pixel 10 features advanced AI capabilities
      • Extreme delivers integrated AI networking platform aimed at accelerating productivity
    • Software
      • Trump Administration threatens a U.S. TikTok ban 
      • X accused of breaching advertising rules 
      • WeTransfer clarifies stance on training AI
      • U.S. Senate votes on state-level AI regulation 
      • Redington launches Software Solutions Group to power digital-first future
    • Hardware
      • Apple weighs the value of AI-designed hardware
      • Netherlands talks with Nvidia and AMB over supply for AI-facility
      • ASUS Evo lineup: Enhancing the online experience
      • ASUS A3402-Next level computing performance
      • The UAE ranks 8th globally for the readiness of markets for electric transportation
    • Networking
      • TikTok employees concerned about app’s mental health impact
      • T-Mobile’s U.S satellite service makes a nationwide debut
      • Nokia lowers 2025 profit outlook
      • X accused of breaching advertising rules 
      • TikTok’s data storage practices face scrutiny 
    • Security
      • Orange Belgium compromised by recent cyberattack
      • Grok chat transcripts exposed in search engine results
      • Cybercriminals abuse AI website creation app for phishing
      • Kaspersky uncovers new trojan targeting financial institutions via Skype
      • Kaspersky & BI.ZONE reveal new cybercrime activity in GCC and Latin America
    • Channel
      • Perplexity makes $34.5 billion offer for Google Chrome
      • Honeywell to address distribution centre pain points
      • Orange Group upgrades its partnership with OpenAI
      • Nokia empowers Asia-Pacific data centres
      • Ericsson eyes an investment in Intel
    • Telecoms
      • AST SpaceMobile outlines 2026 satellite deployment plans 
      • EE introduces new child-safe smartphone plan
      • e&’s Monitoring-as-a-Service offers UAE businesses real-time infrastructure visibility
      • SK Telecom sees massive customer drop after data breach 
      • MoIAT, e& ink MoU to empower ICV-certified small and medium-sized enterprises
    • Video
      • Catch up on the highlights from our Channel Leadership Forum and Awards 2025
      • Catch up on the highlights from Bespin Global’s recent roundtable 
      • Relive all the thrills from the GovTech Innovation Forum and Awards 2025
      • Catch up on the highlights from Hitachi Vantara’s recent KSA roundtable
      • Seclore’s Saudi journey powers regional cybersecurity growth
  • Features
    • Features
      • Microsoft head concerned by the condition of AI psychosis
      • Building resilient cloud security frameworks for Middle East enterprises
      • Cisco President outlines the biggest AI adoption mistake
      • From overload to orchestration: Enabling digital workspaces with an MSP platform 
        From overload to orchestration: Enabling digital workspaces with an MSP platform 
      • Mobile Security: The blind spot in CISO agendas for 2025 
    • CIO Spotlight
      • DMCC
        Rare commodity: DMCC IT director Abdalla Al Ali
      • HSBC MENAT CIO Ghinwa Baradhi
        The bigger picture: HSBC MENAT CIO Ghinwa Baradhi
      • Mubadala Investment Company CIO Mansour Al Ketbi
        Mansour Al Ketbi unites IT teams for $125 billion Mubadala Investment Company
      • Tariq Al Usaimi, head of digital strategy for the Central Bank of Kuwait
        The new breed: National Bank of Kuwait CDO Tariq Al-Usaimi
      • Al Masah Capital CIO Ashith Piriyattiath
        Ashith Piriyattiath’s diverse & transformative GCC career
    • Case Studies
      • Survey reveals misalignment between cybersecurity and business goals in the UAE and KSA
      • 3,200+ fake Meta profiles used in Facebook scam attempt
      • Edenred UAE: Transforming Customer Service Over WhatsApp with Conversations and Answers
      • Customer Story: Nissan Saudi Arabia
      • elseco
        DIFC prioritises digital transformation to enhance connectivity and accessibility with Wi-Fi 6
    • Partner Watch
      • Juniper Networks Expands Partner Ecosystem Leveraging AI-Native Networking Solutions
      • Commvault selects AlJammaz Technologies as key distributor in the Kingdom of Saudi Arabia
      • Kaspersky signs MoU with Zayed University
      • F5 Appoints Al Jammaz as a Value-Added Distribution Partner
      • The time is now for RNS Managed Security Services
    • Vendor focus
      • Dell Technologies To Establish New Merge & Logistics Fulfilment Hub in Riyadh
      • Dell Technologies study reveals innovation leaders better equipped for economic challenges
      • A10 Networks partners on a mission to ‘accelerate’
      • “The world is on the verge of a new intelligent era powered by Industry 5.0” – David Shi, Huawei
      • Huawei signs new partnership in effort to accelerate SMBs digital transformation
    • Analysis
      • Emirati entrepreneurs learn, sell, and grow in a digital world, says new GoDaddy data 
      • Special Feature: Data Security in the Banking and Financial Sectors
      • Safeguarding Healthcare: Protecting Critical Data and Patient Privacy
      • Trend Micro Predictions Report Forecasts Cyber Fightback in 2022
      • Frost & Sullivan Names Tenable a Growth and Innovation Leader in the Global Vulnerability Management Market, 2021
    • Video
      • Catch up on the highlights from our Channel Leadership Forum and Awards 2025
      • Catch up on the highlights from Bespin Global’s recent roundtable 
      • Relive all the thrills from the GovTech Innovation Forum and Awards 2025
      • Catch up on the highlights from Hitachi Vantara’s recent KSA roundtable
      • Seclore’s Saudi journey powers regional cybersecurity growth
    • Lifestyle
      • Huawei set to unveil new wearables, tablets, and phones in Paris on September 19 
      • Exotel’s intelligent communication platform boosts patient care, efficiency at Medcare
      • Dubai-based self.space studios empower women through AI-driven privacy, culture
      • Deliverect crosses 1 billion orders, boosts Middle East North Africa expansion plans
      • MBZUAI’s MAILIS, AD Gaming to spotlight AI’s role in future of game development
    • Insight
      • Juniper Research predicts cellular IoT windfall in 2030
      • Microsoft head concerned by the condition of AI psychosis
      • Building resilient cloud security frameworks for Middle East enterprises
      • Kaspersky uncovers new trojan targeting financial institutions via Skype
      • Cisco President outlines the biggest AI adoption mistake
    • Opinion
      • Building resilient cloud security frameworks for Middle East enterprises
      • Cisco President outlines the biggest AI adoption mistake
      • From overload to orchestration: Enabling digital workspaces with an MSP platform 
        From overload to orchestration: Enabling digital workspaces with an MSP platform 
      • Empowering MENA women: Bridging digital future with AI, 5G, and inclusive education
      • Mobile Security: The blind spot in CISO agendas for 2025 
    • Blogs
      • Opinion: TeKnowledge CTO on the Enterprise AI Execution Gap
      • Why I joined Cloudflare: To build world-class partnerships in EMEA
      • Revolutionising fan engagement in football through data, gamification, and smart stadium experiences
      • How enterprises can raise their cyber security readiness by going through 3 stages of preparation
      • Maestro Blocks: Transferring passion into businesses!
  • News
    • Region
      • Juniper Research predicts cellular IoT windfall in 2030
      • Orange Belgium compromised by recent cyberattack
      • Grok chat transcripts exposed in search engine results
      • New Google Pixel 10 features advanced AI capabilities
      • FLAG drives global connectivity and growth with resilient digital infrastructure, says CEO
  • Magazines
    • CNME
      • July 2025
      • May 2025
      • April 2025
      • March 2025
      • February 2025
    • Reseller ME
      • July 2025
      • May 2025
      • April 2025
      • February 2025
      • January 2025
    • Security Advisor ME
      • June 2025
      • May 2025
      • April 2025
      • March 2025
      • February 2025
    • 60 Minutes
      • 60mins Day 5 – PM (2024)
      • 60mins Day 5 – AM (2024)
      • 60mins Day 4 – PM (2024)
      • 60mins Day 4 – AM (2024)
      • 60mins Day 3 – PM (2024)
    • Supplements
      • GISEC 2025 – Special Report
      • GovTech – October 2024
      • GITEX Tech Vision 2024
      • LinkShadow Special Report October 2024
      • GovTech – May 2023
  • Events & Conferences
    • Awards
      • The Channel Leaders Forum & Awards 2025
      • Infosec & Cybersecurity Congress 2025 – Abu Dhabi
      • CISO 50 & Future Security Awards 2025
      • The Future of Finance Conference
      • The Future Enterprise Awards
    • Customer Events
      • Infosec & Cybersecurity Congress 2025 – Abu Dhabi
      • Infosec & Cybersecurity Congress 2024
      • Infosec & Cybersecurity Congress 2023
      • Race to innovate | Your Voice | Tahawul Tech
        Race to Innovate
      • Combating credit crunch
    • Forums
      • The Channel Leaders Forum & Awards 2025
      • Infosec & Cybersecurity Congress 2025 – Abu Dhabi
      • The Future of Finance Conference
      • Women in Tech (Pride of Tech) Forum and Awards 2025
      • Tahawultech Conference 2025
    • Your Voice
      • Race to innovate | Your Voice | Tahawul Tech
        Race to Innovate
      • Combating credit crunch
      • Rise of e-commerce
      • Expectations vs Investment
    • Webinars
      • Freshworks virtual webinar highlights increasing role of IT industry in accelerating digital transformation
      • Mimecast virtual webinar highlights importance of brand protection
      • Huawei and IDC collaborate on Autonomous Network white paper
      • WEBINAR: Experience the Intelligent HPE Hyperconverged and Composable Infrastructure
      • WEBINAR: How Alpha Data and Veritas Enable Enterprises to Win the War Against Ransomware
  • GISEC 2025
Don’t show this ad again.
D-Link
Bespin Global
Fortinet
Enterprise, Features, News

Mandiant’s M-Trends 2023 report reveals frontline threat intelligence

by Veronica Martin
May 2, 2023, 9:15 amMay 2, 2023

The results of the M-Trends 2023 report by Mandiant Inc., now a part of Google Cloud, have been announced and offer up-to-date information and knowledgeable analysis on the constantly changing threat landscape based on frontline Mandiant investigations and remediations of high-impact cyber attacks globally.

The new report reveals the progress organizations globally have made in strengthening defenses against increasingly sophisticated adversaries.

“M-Trends 2023 makes it clear that, while our industry is getting better at cyber security, we are combating ever evolving and increasingly sophisticated adversaries. Several trends we saw in 2021 continued in 2022, such as an increasing number of new malware families as well as rising cyber espionage from nation-state-backed actors. As a result, organizations must remain diligent and continue to enhance their cyber security posture with modern cyber defense capabilities. Ongoing validation of cyber resilience against these latest threats and testing of overall response capabilities are equally critical.” – Jurgen Kutscher, VP, Mandiant Consulting at Google Cloud

Global Median Dwell Time Declines to Just Over Two Weeks

According to the M-Trends 2023 report, the global median dwell time – which is calculated as the median number of days an attacker is present in a target’s environment before being detected – continues to drop year-over-year down to 16 days in 2022. This is the shortest median global dwell time from all M-Trends reporting periods, with a median dwell time of 21 days in 2021.

When comparing how threats were detected, Mandiant observed a general increase in the number of organizations that were alerted by an external entity of historic or ongoing compromise. Organizations headquartered in the Americas were notified by an external entity in 55% of incidents, compared to 40% of incidents last year. This is the highest percentage of external notifications the Americas has seen over the past six years. Similarly, organizations in Europe, the Middle East and Africa (EMEA) were alerted of an intrusion by an external entity in 74% of investigations in 2022 compared to 62% in 2021.

Mandiant experts noted a decrease in the percentage of their global investigations involving ransomware between 2021 and 2022. In 2022, 18% of investigations involved ransomware compared to 23% in 2021. This represents the smallest percentage of Mandiant investigations related to ransomware since prior to 2020.

“While we don’t have data that suggests there is a single cause for the slight drop in ransomware-related attacks that we observed, there have been multiple shifts in the operating environment that have likely contributed to these lower figures. These factors include, but are not limited to: ongoing government and law enforcement disruption efforts targeting ransomware services and individuals, which at minimum require actors to retool or develop new partnerships; the conflict in Ukraine; actors needing to adjust their initial access operations to a world where macros may often be disabled by default, as well as organizations potentially getting better at detecting and preventing or recovering from ransomware events at faster rates.” – Sandra Joyce, VP, Mandiant Intelligence at Google Cloud.

Stuart McKenzie, Head of Mandiant Consulting EMEA at Google Cloud, said: “Our latest M-Trends report shows dwell time has decreased for another consecutive year. We look at the median number of days an attacker sits in a target’s environment before being detected – in EMEA this is now less than three weeks, compared to 48 days in the previous year, so an improvement of 58% year-on-year.”

“While this shows clear progress in cyber security capabilities on the part of defenders, we’re also seeing threat actors being increasingly brazen. It’s important that defences aren’t static and organisations are running continuous testing programmes to maintain a strong security posture. As ever, practice makes perfect – one of the best ways to stay prepared is to keep defending against cyber-attacks simulated by a red team. By continuously testing defences against likely, real-world scenarios, an organisation can quickly uncover vulnerabilities and focus on the right things to work on,” concluded Stuart.

Cyber Espionage, Malware Families Increase Globally 

Mandiant identified extensive cyber espionage and information operations leading up to and since Russia’s invasion of Ukraine on February 24, 2022. Most notably, Mandiant saw activity by UNC2589 and APT28 prior to the invasion of Ukraine, and observed more destructive cyber attacks in Ukraine during the first four months of 2022 than in the previous eight years.

In 2022, Mandiant began tracking 588 new malware families, revealing how adversaries are continuing to expand their toolsets. Of the newly tracked malware families, the top five categories consisted of backdoors (34%), downloaders (14%), droppers (11%), ransomware (7%) and launchers (5%). These categories of malware remain consistent over the years and backdoors continue to represent a little over one third of the newly tracked malware families.

In line with previous years, the most common malware family identified by Mandiant in investigations was BEACON, a multi-function backdoor. In 2022, BEACON was identified in 15% of all intrusions investigated by Mandiant and remains by far the most seen in investigations across regions. It has been used by a wide variety of threat groups tracked by Mandiant including nation state-backed threat groups attributed to China, Russia and Iran, as well as financial threat groups and over 700 UNC groups. This ubiquity is likely due to the common availability of BEACON combined with the malware’s high customizability and ease of use, according to the report.

“Mandiant has investigated several intrusions carried out by newer adversaries that are becoming increasingly savvy and effective. They leverage data from underground cybercrime markets, conduct convincing social engineering schemes over voice calls and text messages, and even attempt to bribe employees to obtain access to networks. These groups pose a significant risk to organizations, even those with robust security programs, as these techniques are challenging to defend against. As organizations continue to build their security teams, infrastructure, and capabilities, protecting against these threat actors should be part of their design goals.” – Charles Carmakal, CTO, Mandiant Consulting at Google Cloud

Actioning Intelligence

The goal of M-Trends is to arm security professionals with insights on the latest attacker activity as seen directly on the frontlines, backed by actionable intelligence to improve organizations’ security postures within an evolving threat landscape. To meet this objective, Mandiant provides insight into some of the most prolific threat actors and their expanding tactics, techniques and procedures.

To further support this objective, Mandiant mapped an additional 150 Mandiant techniques to the updated MITRE ATT&CK® framework, bringing the total to 2,300+ Mandiant techniques and subsequent findings associated with the ATT&CK framework. Organizations should prioritize which security measures to implement based on the likelihood of a specific technique being used during an intrusion.

Additional takeaways from M-Trends 2023 Report include:

  • Infection vector: For the third year in a row, exploits remained the most leveraged initial infection vector used by adversaries at 32%. While this was a decrease from the 37% of intrusions identified in 2021, exploits remained a critical tool for adversaries to use against their targets. Phishing returned as the second most utilized vector, representing 22% of intrusions as compared to 12% in 2021.
  • Target industries impacted: Response efforts for government-related organizations captured 25% of all investigations, compared to 9% in 2021. This primarily reflects Mandiant’s investigative support of cyber threat activity which targeted Ukraine. The next four most targeted industries from 2022 are consistent with what Mandiant experts observed in 2021, with business & professional services, financial, high tech, and healthcare industries being favored by adversaries. These industries remain attractive targets for both financially and espionage motivated actors.
  • Credential theft: Mandiant investigations uncovered an increased prevalence in both the use of widespread information stealer malware and credential purchasing in 2022 when compared to previous years. In many cases, investigations identified that credentials were likely stolen outside of the organization’s environment and then used against the organization, potentially due to reused passwords or use of personal accounts on corporate devices.
  • Data theft: Mandiant experts identified that in 40% of intrusions in 2022, adversaries prioritized data theft. Mandiant defenders have observed threat actors attempting to steal, or successfully completing data theft operations more often in 2022 compared to previous years.
  • North Korea’s Use of Crypto: Alongside traditional intelligence collection missions and disruptive attacks, in 2022, Democratic People’s Republic of Korea operators showed more interest in stealing—and using—cryptocurrency. These operations have been highly lucrative and will likely continue unabated throughout 2023. For more on how North Korean threat actors are using cybercrime as a way to fund their espionage operations, check out Mandiant’s APT43 report.

M-Trends 2023 Methodology:

The metrics reported in M-Trends 2023 are based on Mandiant Consulting Investigations of targeted attack activity between January 1, 2022 and December 31, 2022. The intelligence gleaned has been sanitized to protect the identities of targets and their data.

Resources:

M-Trends 2023 Report: www.mandiant.com/m-trends

Related Articles

  • Aster DM Healthcare launches myAster in Saudi Arabia
  • API supergroup unveils its first CEO and new name
  • Interview: AI-Powered Security
[easy-social-share buttons="facebook,twitter,google,linkedin,stumbleupon,pinterest" counters=0 hide_names="force" fixedwidth="yes" fixedwidth_px="111"]
constantly changing threat landscape Google Cloud high-impact cyber attacks investigations Mandiant's M-Trends 2023 report ransomware

Previous ArticleHuawei announces 2023 Q1 business resultsNext ArticleMindware signs master distribution rights for Genesys in MEA

Related Articles

  • Help AG Unveils Top Digital Threats and Trends in Cybersecurity
  • Google Cloud recognises Oredata as MENAT Region Partner of the Year
  • Google Cloud announce appointment of Ziad Jammal as UAE Country Manager
tahawultech tahawultech.com @tahawultech ·
22 Aug

“With @qlik Answers, we’re seeing customers transition from experimentation to execution, using their own data assets to solve real problems, today”.
Learn more about this new GenAI tool below.
https://www.tahawultech.com/news/learn-how-qlik-answers-is-empowering-industries/
#QlikAnswers #GenAI #tahawultech

Reply on Twitter 1958841777068147153 Retweet on Twitter 1958841777068147153 Like on Twitter 1958841777068147153 Twitter 1958841777068147153
tahawultech tahawultech.com @tahawultech ·
22 Aug

"We have made additional updates to our external offers program to offer more flexibility for developers while balancing trust and safety needs across the ecosystem".
Learn more about how @Google is changing Play Store below.
https://www.tahawultech.com/news/google-seeks-play-store-compliance-with-eu-rules/
#Google #tahawultech

Reply on Twitter 1958796866658734411 Retweet on Twitter 1958796866658734411 Like on Twitter 1958796866658734411 Twitter 1958796866658734411
tahawultech tahawultech.com @tahawultech ·
22 Aug

"Superintelligence is coming, and in order to take it seriously, we need to organise around the key areas that will be critical to reach it".
Learn more about how @Meta is restructuring its AI teams below.
https://www.tahawultech.com/enterprise/meta-restructures-ai-teams-in-pursuit-of-personal-superintelligence/
#Meta #AI #tahawultech

Reply on Twitter 1958794444682998054 Retweet on Twitter 1958794444682998054 Like on Twitter 1958794444682998054 Twitter 1958794444682998054
Load More

RECOMMENDED FOR YOU

  • Opinion: Role of AI in cybersecurity
  • Mindware partners up to promote regional growth
  • Exclusive Interview: Aloysius Cheang, Chief Security Officer, Huawei Middle East and Central Asia
  • Qualys’ 2023 TruRisk report: more than 2.3 billion vulnerabilities detected worldwide in 2022

GET TAHAWULTECH.COM IN YOUR INBOX

The free newsletter covering the top industry headlines

CPI Media Group
TahawulTech.com is the definitive platform in the Middle East for IT content. Covering stories across enterprise technology, cybersecurity and the region’s IT channel industry, TahawulTech.com brings business leaders and technology decision makers together to share their stories of transformation.

OTHER LINKS

  • Events and Conferences
  • Media Pack
  • Resource Centre
  • Subscription

 

  • Advertise
  • Contact Us
  • Privacy Policy

Contact Us

Office:
Office 1307, Dubai Studio City
Dubai, United Arab Emirates, PO Box 13700
Tel: +971 4 568 2993
Email: info@tahawultech.com
© 2025 All Rights Reserved. Product of CPI
Menu
  • Region
    • UAE
    • Saudi Arabia
    • Oman
    • Bahrain
    • Kuwait
    • Africa
    • Middle East
    • Global
  • Industry
    • Education
    • Energy
    • Financial services
    • Government
    • Healthcare
    • Property
    • Retail
    • Technology
    • Transport & Logistics
    • Travel & Hospitality
  • Company
    • Enterprise
    • Corporate
    • SME
    • Startup
    • Vendor
    • Channel
  • Trending
    • Digital Transformation
      • Internet of Things
      • Big Data
      • Blockchain
      • Smart City
      • Cloud Computing
    • Artificial Intelligence
      • Data Centre
      • Machine Learning
      • Virtual Reality
      • Robotics
      • Systems Integrator
      • E-commerce
    • 3D Printing
      • Self-driving Cars
      • Drones
      • Automation
      • Smartphones
      • Wearables
      • Virtualisation
    • Fintech
      • Storage
      • Mobile Payment
      • Startups
      • Applications
      • Security
  • News
    • All News
    • Software
    • Hardware
    • Networking
    • Security
    • Channel
    • Telecoms
    • Video
  • Features
    • Features
    • CIO Spotlight
    • Case Studies
    • Partner Watch
    • Vendor focus
    • Analysis
    • Video
    • Lifestyle
    • Insight
    • Opinion
    • Blogs
  • News
    • Region
  • Magazines
    • CNME
    • Reseller ME
    • Security Advisor ME
    • 60 Minutes
    • Supplements
  • Events & Conferences
    • Awards
    • Customer Events
    • Forums
    • Your Voice
    • Webinars
  • GISEC 2025
  • Bitz News
    • Business News
    • Financial News
  • Example Column Title
    • Bitz News Group Websites:
    • Insider Journal
    • Business Day
    • Weekly Selection
    • Tech News
    • Cool Stories
    • Geek Reviews
 

Loading Comments...
 

    tahawultech.com Intro