started · updated
Cybersecurity threats rise as detection delays and AI-driven phishing increase
A new report from Kaspersky reveals significant delays in detecting cyber incidents within organizations. The findings show that in 31% of analyzed cases, malicious activity lasted more than three months before discovery. Furthermore, 52% of high-severity compromises were only identified after more than 90 days of attacker presence, with one incident remaining undetected for four years.
The report highlights that over-reliance on automated tools without human analysis is a major vulnerability. While 20% of incidents were identified manually, 60% of organizations failed to detect breaches due to a lack of high-confidence alerts from existing security tools. Additionally, 40% of detected web shell scripts were found hidden in data backups, posing a risk of reinfection during system restores.
In Montenegro, the Cyber Security Agency has issued warnings regarding increasingly sophisticated phishing scams. Fraudsters are using SMS, messaging apps, and social media to impersonate banks, postal services, and government institutions. The agency noted that attackers are now utilizing artificial intelligence, voice imitations, and fake videos to make fraudulent messages appear more authentic. Citizens are advised to avoid clicking unexpected links and to never share sensitive data like PINs or passwords via unsolicited communications.