The trillion-dollar global  market opportunity for Cyber Security market

The trillion-dollar global market opportunity for Cyber Security market

AS PER THE LATEST GLOBAL TRILLIONS DOLLAR BUSINESS OPPORTUNITIES AVAILABLE FOR CYBERSECURITY TECHNOLOGY AND SERVICE PROVIDERS

BACKGROUND

 At present, most of the economic, commercial, cultural, social, and governmental activities and interactions of countries, at all levels, including individuals, non-governmental organizations, and government and governmental institutions, are carried out in cyberspace.  As we become increasingly reliant on digital financial services, the number of cyberattacks has tripled over the last decade, and financial services continue to be the most targeted industry. Cybersecurity has clearly become a threat to financial stability. While the daily foundational risk management work — maintaining networks, updating software, and enforcing strong ‘cyber hygiene’ — remains with financial institutions, there is also a need to address common challenges and recognize the spillovers and interconnections across the financial system. Individual firm incentives to invest in protection are not enough; regulation and public policy intervention are needed to guard against underinvestment and protect the broader financial system from the consequences of an attack. A lot of national financial systems are not yet ready to manage attacks, while international coordination is still weak. In new IMF staff research, six-pronged major strategies are under implementation at the global level to considerably strengthen cybersecurity and improve financial stability worldwide. Hacking tools are now cheaper, simpler, and more powerful, allowing lower-skilled hackers to do more damage at a fraction of the previous cost. The expansion of mobile-based services (the only technology platform available for many people), increases the opportunities for hackers. Attackers target large and small institutions, rich and poor countries, and operate without borders. Fighting cybercrime and reducing risk must therefore be a shared undertaking across and inside countries.

Recently, many private companies and government organizations around the world are facing the problem of cyber-attacks and the danger of wireless communication technologies. Today’s world is highly dependent on electronic technology, and protecting this data from cyber-attacks is a challenging issue. The purpose of cyber-attacks is to harm companies financially. In some cases, cyber-attacks can have military or political purposes. Some of these damages are PC viruses, knowledge breaks, data distribution services (DDS), and other assault vectors. Regarding the security of online transactions, various organizations use various solutions to prevent damage caused by cyber-attacks. Cyber security follows real-time information on the latest IT data. Globally numerous methods had been proposed by researchers around the world to prevent cyber-attacks or reduce the damage caused by them. Some of the methods/systems/strategies are in the operational phase and others are in the study phase.  Given strong financial and technological interconnections, a successful attack on a major financial institution, or on a core system or service used by many, could quickly spread through the entire financial system causing widespread disruption and loss of confidence. Transactions could fail as liquidity is trapped, and households and companies could lose access to deposits and payments. Under extreme scenarios, investors and depositors may demand their funds or try to cancel their accounts or services and products they regularly do. Considering the loss of trust in the FIs will spread chaos to the entire banking industry ecosystem.   To understand comprehensively, an evaluation of the standard advances presented in the field of cyber security and to investigate the challenges, weaknesses, and strengths of the proposed methods. Different types of new descendant attacks are considered in detail. Standard security frameworks are discussed with the history and early-generation cyber-security methods. In addition, emerging trends and recent developments in cyber security and security threats and challenges are presented. It is expected that the comprehensive review study presented for IT and cyber security researchers will be useful. Many of us take for granted the ability to withdraw money from our bank account, wire it to family in another country, and pay bills online. Amid the global pandemic, we’ve seen how much digital connection matters in our everyday life. But the simplicity of digital transactions has brought many users into this fold and charms of new delighting experiences, the number of new users has been growing day to day, both in terms of the number of transactions and amount of transactions.   As Covid 19 has now been classified from pandemic to endemic considering the emergence of its variants and the disease does not seem to be completely eliminated. We are taking cybercrime as a normal risk not completely preventable but to be mitigated to a major extent and a system is already in place to ensure a person lost his money in which there is no security break has been done to be insured for reimbursement of loss by taking the corporate level insurance policy.

 THE MAGNITUDE OF CYBER ATTACKS

Cyberattacks are proliferating, causing trillions of dollars of damage every year. The cybersecurity industry has a chance to step up and seize the opportunity. As the digital economy grows, digital crime grows with it too. The exponential increase in the number of online and mobile interactions is creating millions of attack opportunities. Many leads to data breaches that threaten both people and businesses. At the current rate of growth, damage from cyberattacks will amount to about $10.5 trillion annually by 2025—a 300 percent increase from 2015 levels. In the face of this cyber assault, organizations around the world spent around $150 billion in 2021 on cybersecurity, growing by 12.4 percent annually. However, set against the scale of the problem, even this “security awakening” is probably insufficient. A survey of 4,000 midsized companies suggests that threat volumes will almost double from 2021 to 2022. 

THE INFORMATION GATHERED FROM A SURVEY

 According to the survey, nearly 80 percent of the observed threat groups operating in 2021, and more than 40 percent of the observed malware, had never been seen previously. These dynamics point to significant potential in an evolving market. Currently available commercial solutions do not fully meet customer demands in terms of automation, pricing, services, and other capabilities—which this article will explore in further detail. As a result, the gap today between the $150 billion vended market and a fully addressable market is huge. At approximately 10 percent penetration of security solutions today, the total opportunity amounts to a staggering $1.5 trillion to $2.0 trillion addressable market. This does not imply the market will reach such a size anytime soon (the current growth rate is 12.4 percent annually off a base of approximately $150 billion in 2021), but rather that such a massive delta requires providers and investors to “unlock” more impact with customers by better meeting the needs of underserved segments, continuously improving technology and reducing complexity and the current buyer climate may pose a unique moment in time for innovation in the cybersecurity industry. The under-penetration of cybersecurity products and services is, on the face of it, the result of the below-target adoption of cybersecurity products and services by organizations—which suggests that the budgets of many if not most chief information security officers (CISOs) are underfunded. Cybersecurity providers must meet the challenge by modernizing their capabilities and rethinking their go-to-market strategies.

 To maximize the opportunity, providers must get a grip on the factors shaping the market, the segments most likely to grow, and the services customers need. Here we set out four areas likely to be the focus of such discussions: cloud technologies, pricing mechanisms, artificial intelligence, and (particularly in the midmarket) managed services. With strategic planning in these areas and a robust approach to implementation, cybersecurity providers can make themselves more competitive and get a slice of the $2 trillion pie.

GROWING CYBERMARKET POTENTIAL

Why does the cyber-market offer such significant potential right now? We see five key drivers. More attacks targeting smaller companies. From a demand perspective, fast-growing smaller organizations are exposed to proliferating digital touchpoints and ecosystem relationships. In addition, malware such as ransomware can pose an existential threat to small and midsize businesses (SMBs) and midmarket companies in a way it often doesn’t too large enterprises. What might remain a silent breach at a larger organization is often a significant, overt disruption at a smaller one. For example, a Texas-based midsize steel structure manufacturer was forced into bankruptcy in May 2019 when ransomware permanently encrypted both its tooling and financial accounting software. In 2022, India's prime company Oil India Ltd in Assam, had its entire system hacked and asked for ransom to sillow its systems to work normally. Ransoms can be out of reach, while information retrieval and recovery services are timely and difficult. Moreover, the trust of customers can prove difficult to recover once a company has been breached. In fact, according to previous McKinsey research on the importance of digital trust, in the past 12 months nearly 10 percent of respondents reported stopping business with a supplier after learning of a data breach.

Midmarket entities are often targeted by criminals looking to exploit unsophisticated security tooling. These companies, for example, may miss threats such as EternalBlue, an exploit developed by the US National Security Agency and later used by Wannacry ransomware. Many smaller entities use a single-backup strategy, which can leave them susceptible to attacks from ransomware such as PureLocker. The proliferation of ransomware attacks targeting SMBs and midmarket companies means that even those that don’t currently employ or engage a security team have a responsibility to act. Fortunately, the SMB segment is becoming truly addressable by cybersecurity products and services for the first time, comparison in hanks to emerging economies of scale.

The impetus from regulation

At least 45 states and Puerto Rico introduced or considered more than 250 bills or resolutions that deal significantly with cybersecurity. Federal initiatives include the US National Defense Authorization Act, Executive Order 14028, and the extension of the False Claims Act to include the misrepresentation of an organization’s cybersecurity program and qualifications. Based upon McKinsey’s client conversations, federal cybersecurity contracting requirements are trickling down to thousands of SMB and midmarket contractors. The US Securities and Exchange Commission (SEC) is discussing new rules on breach notifications. Compliance challenges grow more onerous as ecosystems proliferate. The Department of Defense’s Cybersecurity Maturity Model Certification (CMMC), for example, underscores the critical importance of holistic cybersecurity, much of it beyond the reach of SMBs and the midmarket unless they get help from vendors. Rules around the world are equally stringent. The European Union’s General Data Protection Regulation, for example, may levy fines of up to 4 percent of global turnover against companies that fail to protect their customers.

CISOs are as serious as ever about closing the (log) visibility gap

Moves to significantly increase log processing are critical because just three years ago the average enterprise saw only 30 percent of what was happening. Finding more needles in the haystack will probably require more commitment—in particular, in areas such as AI, which can spot cyber threats and malicious activities. For providers, AI will force a rethinking of technology and how they bring it to market. Over the past three years, companies have boosted their share of total log volume visibility from about 30 percent to about 50 percent on average and are pushing toward 65 to 80 percent over the next three years. SMBs expect to widen their deployment of end-point detection and response (EDR) tooling, to use single panes of glass that ingest and monitor their cloud environments, and to rely on managed-service partners (such as providers of managed detection and response services) for more sophisticated activities. A surprising aspect of the current market landscape is the significant extent to which the slowest-moving enterprises are trailing their faster-moving peers. Bottom-quartile enterprises report lifting their log volume visibility by just 6 percent over the past three years and forecast a meager 5 percent rise in the next three. By comparison, the best performers, particularly in the SMB segment, increased their log coverage by between 25 and 35 percent in the past three years and plan to accelerate those efforts over the next three.

TALENT SHORTAGES AND SERVICE OFFERINGS

An existing global cyber-talent shortage, compounded by the intensification of digital threats like ransomware during the COVID-19 pandemic, has created further growth opportunities for service providers as CISOs and talent partners struggle to fully staff their organizations. Structural dynamics are also boosting demand for vended solutions. As companies build out their protections, buyers increasingly expect products to come bundled with offerings that ensure both short-term services (for instance, implementation) and long-term ones (ongoing security). The bottom line of across all segments, forecasted changes in allocated security spending is increasing as a percentage of services between internal and third-party services. So long as talent remains a problem, outsourced services will be essential for companies that need to support strong security outcomes.

HIGHER LEVELS OF CUSTOMER ENGAGEMENT

Until recently, many organizations that required cyber protection were not fully engaged with the challenges they faced. Often, they saw the cost and complexity of action as greater than the need for it. Now, with attacks becoming more frequent, the risk-benefit equation has changed. With security and privacy concerns being elevated to the C-suite across industries, geographies, and enterprises whatever their size, both providers and investors have opportunities. We see the potential for innovation in prices and bundles, geographic coverage, target customer groups, integration, and off-the-shelf analytics. It is also being noted that the trick applied by cybercriminals penetrating Malware is the email link, some offer easy money, threat of curtailment of electricity, and gas connection, and many more. It is opined that through various customer outreach programs especially to make awareness of the users, some of them not having very less illiteracy of awareness provided vital personal data to fraudster. However, collaborating with the Government and others stakeholders through email messages highlighting a major implication can happen because of various do’s and not to do’s. It is a widely welcome approach and goes a long way to prevent users to face no such transactions.

MCKINSEY'S MAJOR CONTRIBUTION TO UNDERSTANDING THE STATUS AN SERVICE PROVIDERS ADVISED TO USE AND  EXCEL ON FOUR FRONTS

To gauge the market opportunity, McKinsey used a bottom-up model: an assessment of key players and validation against industry logic and our conversations with clients. We also surveyed 500 cybersecurity buyers and interviewed 50 market-leading vendors. The combined insights, tracked in McKinsey’s Cyber Market Map, show that spending on products and services from vendors is set to rise 13 percent annually up to 2025, a significant uptick from 10 percent growth over the past three to five years. Key changes to previous market forecasts include not only faster growth, with services increasing much faster than products, but also a significant opportunity in the SMB segment. For providers, the message is clear. Current market dynamics give them a chance to boost their penetration of both existing accounts and the unvented space. This growth will be spurred by an evolving threat landscape and talent shortages—a gap of at least 600,000 in the United States alone.8 To maximize the opportunity, we see the potential for action on four fronts.

Ride the coattails of the cloud transformation

Public-cloud migrations will continue to define enterprise technology strategies for the next several years. Providers (especially product providers) should thus consider not only accommodating but also specializing in hybrid and multi-load architectures. Where cloud providers offer cybersecurity solutions, the tooling on offer in many cases is not a comprehensive substitute to the capabilities of cybersecurity specialists—at least in the enterprise segment. Organizations that adopt multi-load strategies or maintain critical on-prem workloads will in all likelihood persistently need best-of-breed solutions. The challenges that vendors are expected to help resolve include ease of implementation, day-to-day ease of use, integration, and coverage across environments, and agility and flexibility in attack environments. If information about an attack detected in one cloud provider environment is not conveyed immediately to other cloud environments, for example, that lapse would amount to a tooling failure. In many security-related markets, characterized by large numbers of tools, entire categories of orchestration players (such as those that orchestrate security and the identity of users) have been created to simplify the combination of parallel processes. Antifraud programs, for instance, require so many different sets of tooling to manage different geographies that a new category has emerged to manage workflows. In another example, in the cloud, orchestration coordinates workflows and the deployment and management of data across multiple public and private clouds, software-as-a-service (SaaS) providers, managed data centers, and on-prem infrastructure enterprises. All of these demands for increased visibility are potential entry points for providers. Finally, the regulation also creates a cloud-related opportunity for providers. Highly regulated verticals are migrating to the cloud about four times more quickly than low-regulated verticals are. This could help unlock new markets, particularly in highly regulated Europe, and be a key differentiator for multinationals that must navigate complex cross-border data flows, local regulations and data sovereignty, and geopolitical issues that spike cyber and data risk.

CREATE A PRICING MODEL FOR THE MIDMARKET

Many cyber solutions are mispriced for SMBs. Larger organizations can pre-pay or buy in bulk to obtain volume discounts, but many SMBs and midmarket companies are less able to negotiate hard for these services. Large enterprises have an abundance of metrics, historical data, and reference points. SMBs and mid-markets, however, often lack information on how much they and others have spent. Consumption-based pricing models (for example, per gigabyte) can add flexibility but also risk: if an organization doesn’t know what good security looks like, will it burn through its budget just looking for needles in haystacks? Instead, customers increasingly reward vendors that use outcome-based or more “plannable” pricing models, such as per workload. One cause of the pricing mismatch is simple economies of scale. SMBs and midmarket companies have a smaller base of employees over which to spread cyber-tooling costs, so they face a decision: either pay a disproportionate price per employee—by a factor of three to five or more than larger companies do, depending on the tooling category—or forego some security controls entirely.

BETTER AUTOMATION, AI, AND ML

The steepest innovation curve is for developing the brains of next-gen products and managed security services. Fully autonomous intelligent cyber-defense platforms (for example, end-to-end automated SIEM/SOAR detection and response pipelines) are challenging to engineer and validate to the point where they are fully trusted by operators. Providers should therefore strive to enable high-fidelity assisted intelligence that makes human analysts more efficient be it through leveraging advanced analytics or building tight integrations with other security platforms. Many next-gen algorithms for AI and ML, while not yet ready for autonomy, are getting close. Rule libraries are increasingly refreshed from open sources and built on common standards, such as Yara. Eventually, one human being, operating as a remote or virtual resource to serve multiple companies, will reduce the cost of MDR solutions and boost the margins of providers. To reach this target state of optimized low-cost services, managed-service providers can focus on the brains of next-generation security products by concentrating innovation in areas such as data source integration and neural/logic engines. Enhancing and building data source integrations could yield indirect revenue opportunities and widen access to larger ecosystems—for example, as part of an open extended detection and response (XDR) concept. Spreading investment in neural/logic engines across both cutting-edge AI and static rules libraries will ensure that R&D efforts are measurably productive.

EXPAND MANAGED SERVICES AND CREATE A MIDMARKET-FRIENDLY SOLUTION

Demand for full-service offerings is set to rise by as much as 10 percent annually over the next three years. Providers should thus seek to develop bundled offerings that take advantage of hot-button use cases. And they ought to focus on outcomes, not technology. A potentially rewarding approach would be to adopt co-creative models with managed-service providers (MSPs) to build workbench solutions. This would require investments in R&D and development tooling (for example, APIs) that allow MSPs to connect your platform to theirs rather than the other way around. Partnering will make it possible to create centers of excellence, which will lead to faster implementation and more efficient operations. The resulting improvement in customer outcomes will feed into the performance metrics of providers, and a more robust service layer will create a runway to master product market fit. Rather than the common laundry list approach, vendors should adopt a clear MSP partnership strategy. Where necessary, they should invest in building collaborative sales capabilities with their partners. (In several cyber-partner programs, 20 percent of the partnerships generate 80 percent of the partners’ revenues.) Finally, vendors must articulate industry-specific use cases with tweaks to their products’ user interfaces and user experiences, as well as potential MSP and partner channel sales and marketing. Winning companies will work with SMB-focused channel partners and optimize their marketing. That approach could involve partnerships with small-business software providers (such as tax prep software and cloud email and storage) and with vertical SaaS providers (such as payroll management and point-of-sales services). In some cases, it will make sense to replace form offerings as lighter-weight SaaS-first solutions, catering to buyers already deep in the trenches of SaaS transformations in other enterprise applications and platform realms.

The continuing digitization of the global economy, ever-increasing numbers of cyberattacks, and regulatory pressure on companies to protect their data present cybersecurity providers with a compelling opportunity. Amid talent deficits and the desire to boost log visibility, SMBs and midmarket players in particular are focused on implementing more advanced solutions. With billions of dollars of revenues set to flow into the market in the next three years, providers should seize the moment. That means optimizing engagement with the cloud, developing a pricing model for the midmarket, embracing innovation, and expanding managed-service offerings to create midmarket-friendly solutions. In short, it means finding productive combinations of products, prices, and services that vendors can tailor to target segments and are flexible enough to scale. If the industry can meet these priorities, it can start to create momentum that will increase its penetration across segments and put the $2 trillion prize in play.

Building a cybersecurity culture from within: An interview with MongoDB

MongoDB’s security champions program leadership team discusses how cybersecurity training can create a company-wide culture that prioritizes security and encourages employees to get involved. Transforming the cybersecurity culture underpins successful security program implementation. Building and integrating security throughout an organization is accelerated when all employees understand why security matters and how it adds value to the business. Further, equipping high-risk teams with security expertise, training, and development allows companies to place talent in areas where the business needs value protection the most. In line with recent McKinsey research, understanding best-practice programs provide insight for other organizations on what levers to implement and how to shift their culture to viewing cyber as an enabler rather than a control. This interview provides one example of how a company implemented a broader cyber-awareness program that has led to a rapid expansion of frontline cyber knowledge and addressed critical internal security gaps. During this time of ever-evolving cybersecurity threats, the developer data platform company MongoDB developed a security champions program to help ensure its employees are making security a top priority. McKinsey recently hosted cybersecurity leaders from MongoDB for a virtual conversation about taking every day, every-employee approach to securing their organization. McKinsey’s James Kaplan and Charlie Lewis interviewed MongoDB’s Lena Smart, chief information security officer; Amy Berman, director of security engineering; and Felix Chen, cybersecurity education and advocacy senior analyst. The following is an edited version of their conversation.

 McKinsey: What is MongoDB’s security champions program?

This is a program we rebooted in February 2021 during the pandemic. We saw the desire and need from various parts of our organization to raise security awareness. We wanted to create a positive security culture. There are now more than 100 security champions within the program from 45 different global locations. We have hosted more than 20 events, bringing these people together to work on different things, such as capture the flag and scenario planning, in addition to team-building activities, including watching movies and TV shows about hackers, technology, and cybersecurity. Our security champions program has been very successful, and it continues to grow. We believe it encompasses all our cultural values as well. We also have a diverse group within our program, from the most experienced cybersecurity professionals to novices. Participants come to our events prepared and ready to learn and participate. For example, we may have password-cracking sessions on rainbow tables for more advanced members, while a security playbook discussion might be more suited to intermediate levels. Our program’s diversity in background, beyond experience, ensures a broad range of ideas, innovation, and engagement. We have tried to make it as open as possible to anyone in the company, from executive assistants to programming and development engineers. We have employees with no cybersecurity experience at all, which makes up about 10 percent, in addition people who would describe themselves as experts, which makes up about 20 percent. And the rest is in between. We’ve found that there is a lot of collaboration among all different levels of expertise. This is creating a culture with security at the forefront. The champions are basically the voices of their team for security. We continue to develop activities to grow the program, including competitions, for example, to win tickets to cybersecurity conferences and events such as DEF CON [hacking conference].

Our goal is to have 10 percent of our employees be part of the security champions program, but ultimately, everyone is a security champion, responsible for security at the company. But our program participants have just taken it one step further and vowed to give us a certain amount of their time each week. They are valuing what they get from the program, and they help us grow the program at the same time. We are also using the program from a feeder or training approach—we have seven participants who have now moved into the security and compliance teams. This is great during a time when it is quite difficult to find skilled talent. This is a voluntary program, but occasionally I will approach someone and say, “Hey, you’ve come to me with a great idea for security; are you part of our security champions program?” When we redesigned the program, we looked at motivation theory and adult learning theory and asked, “How do we really make this a long-term, sustainable program and continue the interest across multiple different angles?” Each quarter we have a formal meeting for insights and feedback for continuous program improvements. We make changes to keep the program fresh and relevant in an effort to address ever-evolving cyber threats. It varies by interest level, but generally, it is a couple of hours per week. Participants are basically the initial data testers for certain security-related tools. In addition to our feedback loop, we maintain dedicated channels of communication where program participants can disclose potential vulnerabilities within their teams. There is no one-size-fits-all approach to onboarding or training. We do these in various locations and on various topics; it is designed to encourage behaviors of pointing out security flaws or vulnerabilities and also providing feedback to the security team. We had weekly e-staff meetings with our executive management team. We outlined the program's mission and how it aligns with our company’s mission and values. We discussed adding this to people's performance and growth.

The following week, our CEO introduced the program during an all-hands meeting, and shortly after, we were accepting program volunteers. We also developed a playbook we share with external stakeholders for program development and implementation. Each participant has unique insights, and each sees a potential vulnerability in a different light. You hear a lot from the technical side, but we think some of the nontechnical sides have been extremely helpful in contributing to messaging, positioning new policies, and so on. We think people sometimes forget that an executive assistant [EA] has access to everything his or her boss has access to. So, if I’m a hacker, we are going after an executive assistant. We make sure that we give them specialized training as EAs, but we also encourage them to be part of the security champions program, so we’re covering them through individual training, group training as EAs, or overall training as security champions. And they enjoy that; it’s something different from their everyday work. Just being part of the security champions program gives them visibility into a world that they’re not part of, generally, and it’s really helping.  Human risk is a very big vulnerability for companies—and usually the starting point for cyber vulnerability. It’s a matter of figuring out the most effective way of influencing behavioral change. Team members can apply their experiences and test out and reimagine what cybersecurity looks like and how it fits with our culture. It’s a matter of looking at different perspectives and then coming together and thinking about cultural changes and organizational changes.

McKinsey: How do you measure success?

We test the success of different measures and determine where to make adjustments. We look at trends over time—for example, in our phishing simulation campaigns, we look at how many people clicked on a phishing link. We look at event attendance and reported vulnerabilities. And, importantly, we communicate our progress with leadership. Buy-in is critical. People need to be able to manage their teams, and if they’re acting as security professionals when they’re not security professionals, that’s not good. Making this voluntary, fun, and collaborative is important. Our top four things would be to get buy-in from the top, ensure ongoing communication and progress reporting—we do so with regular “tailgate” meetings—develop a playbook to set procedures and processes, and demonstrate the value of the program company-wide. We would like to double membership and give more employees the opportunity to learn about cybersecurity. Again, we’ve had instances in which a non-security-centric employee has joined our program and it sparked further interest and professional development in cybersecurity, opening up new job opportunities within MongoDB. One other thing that’s important is the respect we have for the champions.  We u have to create an environment where they feel comfortable to come to us and that we are open to the feedback they provide. It’s important that there’s a level of respect, not just from us running the program but also from the entire information security team to the champions. What is also important is the correlation between involvement and adoption. If program and participant input and feedback drive the adoption of the tool, that is a big advantage. We ask them for simple input. Even if it’s something that we don’t go with, the fact that we are asking creates a sense of inclusion and contribution.

 CONCLUSION

Digital transaction is here to stay. Based on past crime incidences, we can employ ML/ AI to understand behavioral patterns. It is observed that in a number of cases, the users have breached the security thread on account of various reasons, inter alia, lured by easy money, threat to disconnect some utilities like pipe gas cylinder, electricity, insurance lapse, winning lotteries, etc. The human factor is the weakest point in the happening of cybercrime. The use of malware found easy for criminals to insert into the system to hack the information employing various sophisticated technology. We can mitigate it but can not stop it because criminals are experts in this method and create novel techniques to succeed in their efforts.

 

To view or add a comment, sign in

More articles by ashutosh K.

  • THE HYPOCRITE PEOPLE

    THE HYPOCRITE PEOPLE

    HOW TO EXPLAIN HYPOCRITE IN TERMS OF PSYCHOLOGY Hypocrisy, at its principal, a exercise of claiming to have moral…

  • Hypocrisy

    Hypocrisy

    Hypocrisy Hypocrisy is germinated out of fear and low self-esteem. It is like ignoring own weakness and display our…

  • The Basic of energy

    The Basic of energy

    BUILDING AN INTUITION ABOUT ENERGY There’s an enormous amount of energy infrastructure that needs to be built for the…

  • DEVSECOPS

    DEVSECOPS

    THE NEW WAVE OF APPLICATION QUALITY DEVSECOPS MERGES DEVELOPMENT, SECURITY, AND OPERATIONS In the world of software…

  • CRYTO POTENTIAL IN 2025

    CRYTO POTENTIAL IN 2025

    BITCOIN, STABLECOINS, AND CRYPTO ETFS SET TO RESHAPE GLOBAL FINANCE IN 2025, WITH NATIONS DIVERSIFYING RESERVES AND NEW…

  • DEEPMIND, META

    DEEPMIND, META

    A FOUNDER ADAM BROWN IS A FOUNDER AND LEAD OF BLUESHIFT WHICH IS CRACKING MATHS AND REASONING AT GOOGLE DEEPMIND AND A…

  • THE INDIA ECONOMY

    THE INDIA ECONOMY

    THE STATUS OF INDIA ECONOMY 2025 INTRODUCTION Compliance changes under India’s Goods and Services Tax (GST) regime in…

  • Hybrid AI: A NEW PARADIGM

    Hybrid AI: A NEW PARADIGM

    WHY DOES HYBRID AI BECOME A CHOICE OF BUSINESS? INTRODUCTION Artificial intelligence (AI) is no longer just a…

  • INDIAN ECONOMY IN FY 2025

    INDIAN ECONOMY IN FY 2025

    THE STATUS OF INDIA ECONOMY 2025 INTRODUCTION Compliance changes under India’s Goods and Services Tax (GST) regime in…

  • Startup year 2024 under Review

    Startup year 2024 under Review

    2024: Year in Review Year in Review: There’s an Esop fable in Startup Inc’s IPO run: Initial public offerings (IPOs) of…

Explore topics