Quarter Four Report 2017

CERT NZ’s fourth quarter report (1 October – 31 December) covers the latest cyber security threats in New Zealand and a summary of results for 2017.

In 2017, we received over 1100 reports since we went live in April. This quarter we received 390 incident reports, a similar number to previous quarters.

Reported financial losses from incidents during this quarter were $3.4 million; more than double the losses reported in the previous quarter. This includes nine incidents that involved losses of over $100,000 each. This brings the total financial loss to New Zealanders from cyber security issues since CERT NZ went live in April 2017 to over $5.3 million.

We’ve seen increasingly sophisticated phishing campaigns that aim to steal people’s credentials. This was a common threat for all types of businesses. Other notable trends include a growing interest in cryptocurrencies which is contributing to an increase in cryptocurrency scams in New Zealand. These types of scams resulted in nearly $265k losses alone in quarter four.

Quarterly report October - December 2017 [PDF, 2.6 MB]

Summary report October - December 2017 [PDF, 684 KB]

Results

Incidents reported to CERT NZ

Between 1 October and 31 December, 377 cyber security incidents were reported to CERT NZ, similar to the 390 incidents in quarter three.

Diagram of incidents reported and orgs that responded. 377 in total.

 

Incidents reported by type

We received 377 incident reports in quarter four. This quarter we have expanded our category reporting to include all incidents, including those referred to NZ Police and Netsafe. In quarter four the most commonly reported incident types were scams & fraud (37%) and phishing & credential harvesting (33%), followed by unauthorised access (10%), malware (8%), reported vulnerabilities (4%), and ransomware (4%).

 

 

Graphic of an email with a hazard triangle (phishing email)

Reports of scams and fraud have increased significantly to 139 in quarter four from 65 in quarter three

 Pie diagram: 56% in Q4

56% of unauthorised access

incidents in quarter four involved some form of loss. This is the highest porportion since reporting began.

Most of the unauthorised access incidents we have seen use phishing emails to trick users into giving up their credentials, giving attackers access to the system.

Impacts

 Graph of Q3 vs Q4 financial loss reported. Q4 is more than double.

Over $3.4 million

in direct financial loss has been reported to us in quarter four. This is more than double the losses reported in quarter three.

High value losses

Nine incidents involved losses of over $100,000 each. From the nine incidents, $2.8 million in total loss was reported.

SEE ALL QUARTELY REPORTS
Top