HOW SECURE IS
YOUR BUSINESS?
COPYRIGHT 2018 © CYBER GATES
SAMVEL GEVORGYAN
CEO, CYBER GATES
Ph.D. in Information systems and cybersecurity
WEBSITE ATTACK STATISTICS
WWW.CYBERGATES.ORG
Attacks around the Worldwide
 Over 1 Billion active websites (NetCraft reports)
 Over 1 Million hacked websites / year (Zone-H reports)
Over 4K hacked websites since 2011
Top attacks
 Jan 2011 (379)
 Jul 2012 (364)
 Feb 2013 (275)
 Feb 2014 (359)
 Apr 2015 (129)
 Dec 2016 (188)
Attacks in Armenia
INCIDENT AND VULNERABILITY FACTS
WWW.CYBERGATES.ORG
The average number of serious
vulnerabilities per website is 56
Serious vulnerabilities are resolved in an
average of 193 days from first notification
43% of cyber attacks target small
businesses
30% of SMEs lack an incident response plan
68% of funds lost as a result of a cyber attack
where declared unrecoverable
60% of small businesses close their doors
within 6 months after a serious cyber attack.
REAL WORLD EXAMPLES
WWW.CYBERGATES.ORG
“The revelation of the 3 billion accounts hack
could have implications for the $4.8 billion sale
of Yahoo to Verizon.”
“Microsoft Corp. closed its roughly $26 billion
deal to buy professional-networking site
LinkedIn after a few weeks of an incident when
a hacker put up 167 million LinkedIn passwords
for sale.”
COMMON BUSINESS THREATS
WWW.CYBERGATES.ORG
RISK ASSESSMENT
WWW.CYBERGATES.ORG
Technical impact
 Loss of confidentiality
 Loss of integrity
 Loss of availability
 Loss of accountability
Business impact
 Financial damage
 Reputation damage
 Non-compliance
 Privacy violation
Incident
 Incident is open or resolved?
 Incident reported a day or a month ago?
 What is the avg. damage?
Vulnerability
 What is the likelihood of an attack?
 What is the potential damage?
COMPLIANCE REPORT
WWW.CYBERGATES.ORG
IS YOUR BUSINESS IN
COMPLIANCE?
WWW.CYBERGATES.ORG
PROJECT URL
https://websecurity.pro
https://onlineservices.cybergates.org/en/websecurity/

Web Application Security Compliance & Risk Management

  • 1.
    HOW SECURE IS YOURBUSINESS? COPYRIGHT 2018 © CYBER GATES SAMVEL GEVORGYAN CEO, CYBER GATES Ph.D. in Information systems and cybersecurity
  • 2.
    WEBSITE ATTACK STATISTICS WWW.CYBERGATES.ORG Attacksaround the Worldwide  Over 1 Billion active websites (NetCraft reports)  Over 1 Million hacked websites / year (Zone-H reports) Over 4K hacked websites since 2011 Top attacks  Jan 2011 (379)  Jul 2012 (364)  Feb 2013 (275)  Feb 2014 (359)  Apr 2015 (129)  Dec 2016 (188) Attacks in Armenia
  • 3.
    INCIDENT AND VULNERABILITYFACTS WWW.CYBERGATES.ORG The average number of serious vulnerabilities per website is 56 Serious vulnerabilities are resolved in an average of 193 days from first notification 43% of cyber attacks target small businesses 30% of SMEs lack an incident response plan 68% of funds lost as a result of a cyber attack where declared unrecoverable 60% of small businesses close their doors within 6 months after a serious cyber attack.
  • 4.
    REAL WORLD EXAMPLES WWW.CYBERGATES.ORG “Therevelation of the 3 billion accounts hack could have implications for the $4.8 billion sale of Yahoo to Verizon.” “Microsoft Corp. closed its roughly $26 billion deal to buy professional-networking site LinkedIn after a few weeks of an incident when a hacker put up 167 million LinkedIn passwords for sale.”
  • 5.
  • 6.
    RISK ASSESSMENT WWW.CYBERGATES.ORG Technical impact Loss of confidentiality  Loss of integrity  Loss of availability  Loss of accountability Business impact  Financial damage  Reputation damage  Non-compliance  Privacy violation Incident  Incident is open or resolved?  Incident reported a day or a month ago?  What is the avg. damage? Vulnerability  What is the likelihood of an attack?  What is the potential damage?
  • 7.
  • 8.
    IS YOUR BUSINESSIN COMPLIANCE? WWW.CYBERGATES.ORG PROJECT URL https://websecurity.pro https://onlineservices.cybergates.org/en/websecurity/