Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Why the Cloud is Key to Mitigating the Menace of Phishing

by The Gurus
July 23, 2018
in This Week's Gurus
Share on FacebookShare on Twitter

By Lior Samuelson, CEO, Cyren 

The cloud can stop phishing in its tracks faster than appliances

After the rise of ransomware over the last few years (largely combatted through better detection of the malware and more attention paid to having decent backups), phishing has stormed back onto the IT security manager’s radar.

According to our latest survey on IT security in the UK and Ireland, phishing is now the second most pressing cybersecurity issue after data breaches. The survey of 104 IT and security managers found that the majority of organisations report that their security was increasingly failing to block phishing emails over the past year.

With the intensity of phishing attacks increasing, simply waiting for malware to hit the endpoint is not enough. Many organisations have appliances in place within their infrastructure to check data coming into the network to see if it contains malware or phishing attacks. These appliances have to match suspicious content against signatures or carry out heuristic analysis. They also have to be constantly updated as threats change.

Not only that, these email and web content security solutions take up a lot of an IT professional’s time with such tasks as creating spam rules, examining quarantines and creating blocklists. If filtering is too aggressive, there will be more false positives, meaning more time spent in support calls and dealing with complaints. Such manual interventions are a direct result of technology failure.

Users can also be less than vigilant when it comes to clicking on links they see in emails or on the web. User training can help, but it only takes one person to click on something suspicious for an infection to occur.

Cybercriminals are getting smarter and will adapt quickly to any security measures put in place – basic security measures may weed out a lot of spam, but are no good against today’s sophisticated, targeted phishing attacks. In order to better protect an enterprise’s infrastructure, preventing phishing and malware should be automatic; it should just work.

Leveraging the cloud

In order to combat the evermore sophisticated phishing attacks we see today, we have to speed up the time it takes to detect and block such attacks. The cloud is by far the best way in which to do that, as everything gets updated instantaneously.

Why is that? Well imagine a vendor with an anti-phishing appliance in their customer’s network. If a vendor’s analysts spot something on that device and decide that it is malware or a phishing attack, they then have to update other appliances (sometimes running into the thousands) around the world. This takes a long time – even if a vendor is really fast, it could still take an hour. Most of the time, it takes far longer. If a vendor uses the word update, they are probably not secure.

All the while, attackers are looking to advanced cloud automation and evasion techniques to bypass these cyber perimeters. A legacy response just isn’t fast enough.

The key to a quick response is not just the cloud, but also automation and artificial intelligence. You have to be proactive to identify and mitigate evolving threats before they become a problem.

The cloud allows you to have a large, distributed system that can actively track millions of new domains and websites every day. This proactively fetches traffic, takes the output from that, whether that is URL lists, drive-by downloads, DNS transactions, etc. and harvest it in a multiple-cloud sandbox in real time without waiting for customers to harvest any data themselves.

Machine learning, analytics and automation

To process all of this information requires big data analytics, large-scale automation and machine learning. With this in-built intelligence, a system, such as the one we offer, can spot anomalies based on the behaviour exhibited. Instead of focusing in on one particular vector, we can analyse a multitude of different vectors including files, emails, domains, among others.

Multiple sandboxes are used in analysis to pinpoint suspicious activity and determine threat levels. This is used to prevent threats way before they can infect systems, saving a lot of money and heartache. Once a threat is detected, all users are protected – instantaneously – that’s the beauty of the cloud.

This new approach to internet security means that enterprises have the means to get ahead of the threats facing their business and protect themselves in seconds, not hours.

ShareTweet
Previous Post

City of London Police get cryptocurrency training to help tackle money laundering

Next Post

Positive Technologies experts discover dangerous vulnerabilities in robotic vacuum cleaners

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol