Cyber security risk to open source apps set to soar in 2015
Trend Micro predicts uptick in attacks on open source apps next year, in the wake of Heartbleed and Shellshock

The coming year will see cybercriminals increasingly harness the anonymity of the dark net to pedal malware and organise attacks, Trend Micro has warned.
The security vendor made the prediction in its latest report, which sets out how the threat landscape is anticipated to evolve in 2015.
In anticipation of this uptick in the dark net's use, the report says law enforcers and IT security firms will need to adjust their approach to tackling cybercrime accordingly.
"As the bad guys move deeper into the web, security firms and law enforcers need to extend their reach as well to cover the Deep Web and darknet services," the report states.
"This will require greater effort and investment... [and] lawmakers worldwide, meanwhile, need to agree on what constitutes cybercrime to aid enforcers, regardless of jurisdiction, to bring the bad guys to justice."
The report also warns users of open source apps and technologies to prepare themselves for a further onslaught of attacks aimed at exploiting vulnerabilities found in them over the coming year.
This comes on the back of the Heartbleed and Shellshock IT security scares that emerged in 2014, which were heavily exploited by hackers despite being undetected in the software for many years.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"Attackers will continue their search for seemingly dormant vulnerabilities like Heartbleed and Shellshock in the coming years," the report warns.
"They will keep tabs on oft-forgotten platforms, protocols, and software and rely on irresponsible coding practices to get to their targets."
Furthermore, cybercriminals will become increasingly compelled to target open source platforms as makers of proprietary operating systems and software continue to tighten up the security of their software.
"Continuous security improvements in Microsoft Windows and other big-name operating systems will lead to a decline in [the] number of vulnerabilities [found in them]. This will push attackers to instead focus on finding vulnerabilities in open source platforms and apps," the report continues.
"Individuals and organisations can, however, stay protected by regularly patching and updating their systems and software."
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
Exploitation of Docker remote API servers has reached a “critical level”
News Hackers are targeting Docker’s remote access API as it allows them to pivot from a single container to the host and deploy malware with ease
By Solomon Klappholz Published
-
Cyber criminal underground “thriving” as weekly attacks surge by 75% in Q3 2024
Cyber attacks reached another all-time high this quarter as digital crime continues to be a highly profitable industry for threat actors
By Solomon Klappholz Published
-
Alarm raised over patched Phemedrone Stealer malware that's being used to target Windows PCs - here's what you need to know
News Phemedrone Stealer is being used to exploit a vulnerability in Windows Defender SmartScreen despite the issue being patched in November 2023
By Solomon Klappholz Published
-
SOC modernization and the role of XDR
Whitepaper Automate security processes to deliver efficiencies across IT
By ITPro Published
-
Uncovering the ransomware threat from global supply chains
Whitepaper Effectively mitigate ransomware risk
By ITPro Published
-
The near and far future of ransomware business models
Whitepaper Discover how criminals use ransomware as a cyberweapon
By ITPro Published
-
Trend Micro security predictions for 2023
Whitepaper Prioritise cyber security strategies on capabilities rather than costs
By ITPro Published
-
'Potentially unsecured' SMBs are propping up an IT supply chain riddled with ransomware
News More than half of IT supply chains have been impacted by ransomware attacks in recent years and organisations are failing to implement the necessary steps to prevent future damage
By Connor Jones Published