zerofox logo
Advisories

ZeroFox Intelligence - Q1 2023 Public Sector Quarterly Threat Landscape Report

|by Alpha Team

banner image

ZeroFox Intelligence - Q1 2023 Public Sector Quarterly Threat Landscape Report

Product Serial: A-2023-05-26a

TLP:CLEAR

ZeroFox Intelligence is excited to announce the release of our Public Sector Quarterly Threat Landscape Scorecard for Q1 of 2023.

Standing Intelligence Requirements

Deep Dark Web and Criminal Underground DDW

For the most up-to-date list of ZeroFox’s Intelligence Requirements, please visit:

https://cloud.zerofox.com/intelligence/advisories/14956

Link to Download View the full report here.

Key Findings

  • The threat to public sector employees and members of the public from smishing and callback phishing (vishing) remained high.
  • The threat of nefarious actors exploiting Common Vulnerabilities and Exposure (CVEs) likely increased in Q1 2023, with threat actors continuing to target commonly-used software modules and products reportedly used by multiple federal, national, and central government entities.
  • The threat from ransomware and digital extortion likely increased, underpinned by a significant increase in LockBit deployment against sector targets. Threat actors may be becoming increasingly emboldened to target high-value public sector targets, believing that any blowback will be small or inconsequential.
  • Most public sector bodies around the world saw a negligible change in the threat from botnets, though Eastern European entities likely faced an increased threat.
  • Malware-as-a-service offerings sustained low barriers to entry for threat actors seeking to target public sector entities.

Tags: tlp:clear,  vulnerability/exploit,  government, MAL Ransomware, malware, phishing & fraud