Welcome!

News Feed Item

Agari Q1 Trustindex Reveals Health Care, Retail and Banks Lag behind Etailers and Social Media in Consumer Protection in Wake of Malware Onslaught

Agari, the leading provider of real-time, data-driven security solutions that detect and prevent advanced cyberthreats, today released its 2014 first quarter edition of the Agari Email TrustIndex.

The 2014 Q1 TrustIndex covers the period from January through March 2014 and identifies the sectors and companies that have the highest and lowest risk for dangerous emails, and the sectors and companies that are taking action to stop cybercriminals from reaching consumers.

“In Q1, criminals amplified their use of email to spread data-theft malware with a specific focus on massive blitzkrieg attacks. Q1 illustrated yet again that organizations who secure their email channel not only have more consumer trust, but also fewer fraud losses, less operational overhead and stay out of headline news stories about security breaches,” said Patrick Peterson, Founder and CEO of Agari. “Despite a widening array of incidents where brands who are suffering criminal abuse trick consumers into taking action that leads to malware infection, major industry sectors fail to prevent cyberattacks with the DMARC standard. The massive volume spikes in blitzkrieg-style email attacks necessitate a proactive, preventive solution.”

Phishing is undergoing a rapid and dramatic evolution

In Q1 2014, Agari saw a dramatic evolution in phishing, with CryptoLocker “ransomware” and GameOver Zeus data-theft malware driving large attacks. CryptoLocker encrypts the user’s hard drive until a $400 Bitcoin ransom payment is made, and GameOver Zeus is the latest data-theft malware. These attacks abuse a growing number of domains, with attacks typically spiking from thousands of malicious emails per day to millions as the criminals attempt to let loose the malware barrage before the security industry can respond. Unfortunately, too many companies fail to join their peers in taking advantage of the DMARC standard.

Notable highlights from the Agari TrustIndex Report:

  • Health Care continues to be the worst performer across all measures of the study and most susceptible to email attacks and cyber-fraud. Health care records are five times more vulnerable than credit card data, categorizing all but one health care company as Easy Targets.
  • Financial Services was broken down into Payments, Mega Banks, Large Banks and Retail Banks (Europe) in Q1.
    • Retail Banks: in Q1 the ThreatScore for the largest retail banks jumped 500%, primarily the result of two months of heavy spamming connected with two banks. This shows that criminals are constantly shifting their targets and the attack landscape is volatile.
  • Social Media has been a consistent winner in security, with sites such as Facebook and Twitter achieving a perfect TrustScore of 100. These two companies were among the seven companies, out of 133 who achieved a perfect TrustScore.
  • Retailers v. Etailers
    • Retailers are still one of the main targets of email attacks, yet the sector’s ThreatScore decreased by nearly 53% from Q4 to Q1, indicating that fraudsters are aiming for higher profile attacks.
    • Etailers remain leaders in email security, with companies such as Netflix, Amazon and Groupon maintaining perfect, or near-perfect, TrustScores. Retailers have a long way to go to catch up to the security practices of Etailers.

About the Agari TrustIndex

The Agari TrustIndex contains ratings developed by Agari that reflects how fully organizations have deployed three standards (SPF, DKIM, and DMARC) across their primary active domains. While all three standards are deployed "behind the scenes" and are not directly visible to consumers in most cases, by looking at TrustIndex scores you can get a simple, easy to understand rating of how well any given organization is protecting their customers from receiving malicious email under the guise of the organization's brand and domain name. It's important to note that the Agari TrustScore reflects that level of security deployed by the organization, and is not directly related to the ThreatScore, which is an indicator of how high a level of attack is directed at an organization. A company could have a very high TrustIndex score and still have a high ThreatScore as well, as even though they've deployed effective security the bad guys are still trying to break in.

The Q1 TrustIndex includes the following industry sectors:

Financial Services

  E-Commerce   Other
  • Payments
  • Mega Banks
  • Large Banks
  • Retail Banks - Europe
 
  • Etailers
  • Retailers
 
  • Logistics
  • Airlines
  • Travel
  • Social Media
  • Health Care

*In this study, Mega Banks are retail banks with more than $5B in annual revenue; Large Banks have more than $2B in annual revenue.

The latest copy of the Agari Email TrustIndex is available for download here.

RELATED LINKS AND CONVERSATIONS

About Agari

Agari collects terabytes of email data from email receivers like Gmail and Yahoo! representing 85% of the email inboxes in the U.S., to provide global brands with a cloud-based SaaS solution that eliminates email threats, protects customers and their personal data, and proactively guards brand reputation. Today, Agari has analyzed over a trillion emails, and has blocked over a 2.5 billion malicious messages at a clip of over 200 per second. Founded by the thought leaders behind Cisco’s IronPort solutions, Agari, a recipient of the JPMorgan Chase Hall of Innovation Award and recognized as a Gartner Cool Vendor, is headquartered in Silicon Valley. Learn more at http://www.agari.com.

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
SYS-CON Events announced today that TMC has been named “Media Sponsor” of SYS-CON's 21st International Cloud Expo and Big Data at Cloud Expo, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Global buyers rely on TMC’s content-driven marketplaces to make purchase decisions and navigate markets. Learn how we can help you reach your marketing goals.
Both SaaS vendors and SaaS buyers are going “all-in” to hyperscale IaaS platforms such as AWS, which is disrupting the SaaS value proposition. Why should the enterprise SaaS consumer pay for the SaaS service if their data is resident in adjacent AWS S3 buckets? If both SaaS sellers and buyers are using the same cloud tools, automation and pay-per-transaction model offered by IaaS platforms, then why not host the “shrink-wrapped” software in the customers’ cloud? Further, serverless computing, cl...
You know you need the cloud, but you’re hesitant to simply dump everything at Amazon since you know that not all workloads are suitable for cloud. You know that you want the kind of ease of use and scalability that you get with public cloud, but your applications are architected in a way that makes the public cloud a non-starter. You’re looking at private cloud solutions based on hyperconverged infrastructure, but you’re concerned with the limits inherent in those technologies.
"MobiDev is a Ukraine-based software development company. We do mobile development, and we're specialists in that. But we do full stack software development for entrepreneurs, for emerging companies, and for enterprise ventures," explained Alan Winters, U.S. Head of Business Development at MobiDev, in this SYS-CON.tv interview at 20th Cloud Expo, held June 6-8, 2017, at the Javits Center in New York City, NY.
SYS-CON Events announced today that Conference Guru has been named “Media Sponsor” of SYS-CON's 21st International Cloud Expo, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. A valuable conference experience generates new contacts, sales leads, potential strategic partners and potential investors; helps gather competitive intelligence and even provides inspiration for new products and services. Conference Guru works with conference organi...
With major technology companies and startups seriously embracing Cloud strategies, now is the perfect time to attend 21st Cloud Expo October 31 - November 2, 2017, at the Santa Clara Convention Center, CA, and June 12-14, 2018, at the Javits Center in New York City, NY, and learn what is going on, contribute to the discussions, and ensure that your enterprise is on the right path to Digital Transformation.
IoT solutions exploit operational data generated by Internet-connected smart “things” for the purpose of gaining operational insight and producing “better outcomes” (for example, create new business models, eliminate unscheduled maintenance, etc.). The explosive proliferation of IoT solutions will result in an exponential growth in the volume of IoT data, precipitating significant Information Governance issues: who owns the IoT data, what are the rights/duties of IoT solutions adopters towards t...
"We focus on composable infrastructure. Composable infrastructure has been named by companies like Gartner as the evolution of the IT infrastructure where everything is now driven by software," explained Bruno Andrade, CEO and Founder of HTBase, in this SYS-CON.tv interview at 20th Cloud Expo, held June 6-8, 2017, at the Javits Center in New York City, NY.
It is ironic, but perhaps not unexpected, that many organizations who want the benefits of using an Agile approach to deliver software use a waterfall approach to adopting Agile practices: they form plans, they set milestones, and they measure progress by how many teams they have engaged. Old habits die hard, but like most waterfall software projects, most waterfall-style Agile adoption efforts fail to produce the results desired. The problem is that to get the results they want, they have to ch...
With the introduction of IoT and Smart Living in every aspect of our lives, one question has become relevant: What are the security implications? To answer this, first we have to look and explore the security models of the technologies that IoT is founded upon. In his session at @ThingsExpo, Nevi Kaja, a Research Engineer at Ford Motor Company, discussed some of the security challenges of the IoT infrastructure and related how these aspects impact Smart Living. The material was delivered interac...
Wooed by the promise of faster innovation, lower TCO, and greater agility, businesses of every shape and size have embraced the cloud at every layer of the IT stack – from apps to file sharing to infrastructure. The typical organization currently uses more than a dozen sanctioned cloud apps and will shift more than half of all workloads to the cloud by 2018. Such cloud investments have delivered measurable benefits. But they’ve also resulted in some unintended side-effects: complexity and risk. ...
Cloud applications are seeing a deluge of requests to support the exploding advanced analytics market. “Open analytics” is the emerging strategy to deliver that data through an open data access layer, in the cloud, to be directly consumed by external analytics tools and popular programming languages. An increasing number of data engineers and data scientists use a variety of platforms and advanced analytics languages such as SAS, R, Python and Java, as well as frameworks such as Hadoop and Spark...
In 2014, Amazon announced a new form of compute called Lambda. We didn't know it at the time, but this represented a fundamental shift in what we expect from cloud computing. Now, all of the major cloud computing vendors want to take part in this disruptive technology. In his session at 20th Cloud Expo, Doug Vanderweide, an instructor at Linux Academy, discussed why major players like AWS, Microsoft Azure, IBM Bluemix, and Google Cloud Platform are all trying to sidestep VMs and containers wit...
Today we can collect lots and lots of performance data. We build beautiful dashboards and even have fancy query languages to access and transform the data. Still performance data is a secret language only a couple of people understand. The more business becomes digital the more stakeholders are interested in this data including how it relates to business. Some of these people have never used a monitoring tool before. They have a question on their mind like “How is my application doing” but no id...
While DevOps most critically and famously fosters collaboration, communication, and integration through cultural change, culture is more of an output than an input. In order to actively drive cultural evolution, organizations must make substantial organizational and process changes, and adopt new technologies, to encourage a DevOps culture. Moderated by Andi Mann, panelists discussed how to balance these three pillars of DevOps, where to focus attention (and resources), where organizations might...