Q4 2021 was a quieter quarter, with decreases in activity across malware, botnet and exploitation events. The same is true when comparing 2021 to 2020. However, threats continue to evolve and become more sophisticated. Learn more about the biggest threats in our latest report.
The Apache Log4j vulnerability, which didn’t appear until December, had such wide sweeping impacts that it shot to the top 5 exploits for 2021.
Ransomware saw a 54.2% increase in Q4
Hover over tiles to learn more
October through December
Total Events
Unique Variants
Total Activity
Across Nuspire managed and monitored devices, there was a decrease of 4.24% in total malware activity compared to Q3.
How to Combat
To strengthen your defenses against malware activity, you’ll need to adopt a multiprong approach including endpoint protection platforms and cyber awareness training.
As previously witnessed, VBA Agents continue to dominate malware activity, as these are commonly deployed in phishing malspam campaigns and act as an initial loader for other malware families.
Total Events
Unique Variants
Total Activity
We saw a decrease of 57.92% in botnet activity.
How to Combat
Step up your efforts to stop botnet activity, which is usually detected post-infection. We recommend detecting malicious activity and quarantining devices to minimize botnet spread throughout the network.
XorDDOS had a resurgence in Q3 and continued attacks throughout Q4. Other top botnets include Andromeda and Torpig.
Total Events
Unique Variants
Total Activity
Exploit activity decreased by 45.97% over Q3 data, and threat actors focused on targeting perimeter devices.
How to Combat
Stop exploits before they do harm by patching systems and security monitoring to thwart attackers and decrease risk.
When reviewing exploit attempts, SMB Brute Forcing remains at the top, comprising 51% of all seen attacks.