Cyber security report shares dire warnings

Published at Feb 19, 2016, in Features

More than 30% of all applications used on laptops, mobiles and tablets have a critical vulnerabilities, that can be easily compromised for sensitive data, according to a cyber security report published by Hewlett Packard Enterprise (NYSE:HPE). HPE is a multinational technology company worth around US$25 billion, providing a wide range of IT solutions for corporate clients around the globe.

HPE’s annual Cyber Risk Report is designed to provide a better understanding of the threat landscape which all businesses now face and help them to minimise security risks in their operations.

Keen to address these challenges, start-up cyber security companies have hastily come to the fore considering the huge gap between what companies expect in terms of security and what they’re actually getting.

This year’s report focuses on the widening range of threats including open-source, mobile and the Internet of Things (IoT), noting that cyber-attacks are growing in frequency and severity.

According to HPE, “data compromise is no longer just about getting payment card information. It’s about getting information capable of changing someone’s life forever”.

“In 2015, we saw attackers infiltrate networks at an alarming rate, leading to some of the largest data breaches to date, but now is not the time to take the foot off the gas and put the enterprise on lockdown,” said Sue Barsamian, Senior Vice President and General Manager at HPE. “We must learn from these incidents, understand and monitor the risk environment, and build security into the fabric of the organisation to better mitigate known and unknown threats, which will enable companies to fearlessly innovate and accelerate business growth.”

The fastest growing cyber security battlefield is Mobiles

Web applications continue to cause problems for companies although its mobile connectivity that is attracting the most focus from hackers. HPE’s research shows that approximately 75% of all mobile applications scanned exhibited “at least one critical or high-severity security vulnerability, compared to 35% of non-mobile applications”.

In 2015, Microsoft Windows represented the most targeted software platform, with 42% of the top 20 exploits directed at Microsoft platforms and applications.

When it comes to malware, Windows is far and away the most popular target for hackers, recording 94% of all threats discovered as part of HPE’s research.

Malware has “evolved from being simply disruptive to a revenue-generating activity for attackers”. Although the overall number of newly discovered malware samples declined 3.6% year-over-year, the attack targets shifted notably and “focused heavily on monetisation”.

As the number of connected mobile devices expands, malware is diversifying to target the most popular mobile operating platforms such as Android and iOS. The number of Android threats, malware, and potentially unwanted applications have grown to more than 10,000 new threats discovered daily, reaching a total year-over-year increase of 153%. Over the course of 2015 HPE estimates that the Android platform saw a month-on-month increase between 100,000 threats in January 2015 to just under 400,000 by October.

Despite the sharp climb in Android vulnerabilities, the Apple iOS platform saw the greatest growth rate, increasing by 230%.

In another shocking finding, HPE detected that fraudsters are now able to bypass physical attacks on automatic teller machines (ATMs) and go directly into compromising the underlying software.

“In some cases, attacks at the software level bypass card authentication to directly dispense cash,” says HPE.

From point of sale to point of steal

As part of its findings HPE’s report criticises the lack of action among businesses as being part of the underlying problem.

The report found that the industry didn’t learn anything about patching in 2015. The number one most exploited vulnerability in 2015, was the most exploited in 2014, and has been patched by the vendor...twice”.

Going further and firing a shot across the bows of legislators and policymakers, HPE says that “many lawmakers in the US, UK and elsewhere claimed that security was only possible if fundamental rights of privacy and due process were abridged.”

In other words, for cyber security to improve civil liberties must be curtailed.

A far cry indeed, evoking Benjamin Franklin’s heeded warning: “They who can give up essential liberty to obtain a little temporary safety deserve neither liberty nor safety.”

For a full copy of the HPE Cyber Security Report 2016, click here.

View Our Investment Portfolios

S3 Consortium Pty Ltd (CAR No.433913) is a corporate authorised representative of LeMessurier Securities Pty Ltd (AFSL No. 296877). The information contained in this article is general information only. Any advice is general advice only. Neither your personal objectives, financial situation nor needs have been taken into consideration. Accordingly you should consider how appropriate the advice (if any) is to those objectives, financial situation and needs, before acting on the advice.

Conflict of Interest Notice

S3 Consortium Pty Ltd does and seeks to do business with companies featured in its articles. As a result, investors should be aware that the Firm may have a conflict of interest that could affect the objectivity of this article. Investors should consider this article as only a single factor in making any investment decision. The publishers of this article also wish to disclose that they may hold this stock in their portfolios and that any decision to purchase this stock should be done so after the purchaser has made their own inquires as to the validity of any information in this article.

Publishers Notice

The information contained in this article is current at the finalised date. The information contained in this article is based on sources reasonably considered to be reliable by S3 Consortium Pty Ltd, and available in the public domain. No “insider information” is ever sourced, disclosed or used by S3 Consortium.

Australian ASX Small Cap stocks | Why is Australia’s leading small cap publication

Founded seven years ago, is Australia’s leading and longest standing website for investor and finance news, education and expert opinion.

Published by StocksDigital, Finfeed was created to report daily on the comings and goings of ASX listed stocks in the small cap market.

As the first digital publication dedicated specifically to this space, Finfeed soon became the most trusted publication in the market, quickly garnering over two million page views – a number that continues to rise. provides its readers with informative articles that tackle the latest in market moving #ASX small cap news, plus exclusive content you won’t find anywhere else. It is aimed at those with an interest in investing, market education, company performance, start-ups and much more. is the only media organisation operating under the strength of a Financial Services License and is backed by leading journalists and analysts all with brands of their own.

The website aims to inform, educate and entertain with content that drills down into the heart of financial matters.

Finfeed is a leading source of investor and market information, with everything investors need to know about how to invest written in a way that anyone can understand. 

Over the years, the website has expanded beyond exclusively reporting on small caps, to profile Australia’s leading ASX listed small, mid and large caps as well as some of the country’s most successful CEOs and business leaders to find out what makes them tick.

Every day you will find fresh content covering:

Fast Facts

Over 4,000 articles published

Over 2.3 Million Page Views and counting

Over 10,000 followers on social media

Subscriber list growing by 2% monthly

Thanks for subscribing!