scorecard
  1. Home
  2. tech
  3. Hackers are seeing a whopping 1,425% return on investment for these two kinds of attacks

Hackers are seeing a whopping 1,425% return on investment for these two kinds of attacks

Nathan McAlone   

Hackers are seeing a whopping 1,425% return on investment for these two kinds of attacks
Tech2 min read

Malware code

REUTERS/Jim Urquhart

An analyst looks at code in the malware lab of a cyber security defense lab at the Idaho National Laboratory in Idaho Falls, Idaho.

A new report by Trustwave reveals that certain types of hacking can yield an insane return on investment - to the tune of 1,425%.

Hackers are targeting two types of malware in 2014 to maximize how much they make: "Exploit kits" and "ransomware schemes."

Exploit kits typically deliver malware through the victim's web browser, while ransomware schemes encrypt files on a victim's computer, and only decrypt them when they pay up. The average return seen by attackers using these kinds of malware was $84,100 on an investment of only $5,900.

Ransomware is evolving fast, and most cyber criminals are getting really good at making the downloads that house the malware appear benign to the average user. One particularly virulent strain of ransomware is called CDT-Locker, which can hide files so well even security software can't find it.

And even if you pay up, that doesn't always mean you'll get your files back. "We have seen many scenarios where even if the user pays, they don't get the recovery keys," Steve Grobman, CTO of Intel's Security Group, told Business Insider. "So it's one of the reasons we tell our customers that paying the ransom is not the best course of action."

The Trustwave study pulled from 574 breach investigations the SpiderLabs team conducted to put together a comprehensive picture of 2014 trends.

The report also found a 14% increase in hackers targeting payment card data over 2013, which was sought almost half the time. Victims were usually unaware they had even been compromised, and 81% of them did not detect the security breach themselves.

NOW WATCH: Here's The Trailer For 'The Interview' - The Movie The Hackers Don't Want You To See

READ MORE ARTICLES ON


Advertisement

Advertisement