ZeroFox Intelligence - Q1 2023 Public Sector Quarterly Threat Landscape Report
|by Alpha Team

ZeroFox Intelligence - Q1 2023 Public Sector Quarterly Threat Landscape Report
Product Serial: A-2023-05-26a
TLP:CLEAR
ZeroFox Intelligence is excited to announce the release of our Public Sector Quarterly Threat Landscape Scorecard for Q1 of 2023.
Standing Intelligence Requirements
Deep Dark Web and Criminal Underground

For the most up-to-date list of ZeroFox’s Intelligence Requirements, please visit:
https://cloud.zerofox.com/intelligence/advisories/14956
Link to Download View the full report here.
Key Findings
- The threat to public sector employees and members of the public from smishing and callback phishing (vishing) remained high.
- The threat of nefarious actors exploiting Common Vulnerabilities and Exposure (CVEs) likely increased in Q1 2023, with threat actors continuing to target commonly-used software modules and products reportedly used by multiple federal, national, and central government entities.
- The threat from ransomware and digital extortion likely increased, underpinned by a significant increase in LockBit deployment against sector targets. Threat actors may be becoming increasingly emboldened to target high-value public sector targets, believing that any blowback will be small or inconsequential.
- Most public sector bodies around the world saw a negligible change in the threat from botnets, though Eastern European entities likely faced an increased threat.
- Malware-as-a-service offerings sustained low barriers to entry for threat actors seeking to target public sector entities.
Tags: tlp:clear, vulnerability/exploit, government, MAL Ransomware, malware, phishing & fraud