Vienna, VA (November 7, 2023) – The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) today released its 2023 Holiday Season Cyber Threat Trends report, which examines the threat landscape facing the retail and hospitality sectors during the holiday season, typically the busiest time of year for consumer-facing industries.
According to the report, phishing and fraud remain critical concerns, with return fraud and gift card fraud increasing dramatically in the current period. Organizations are seeing an increase in the prevalence of imposter domains, in-store theft, and credential harvesting attempts, especially leveraging social engineering tactics and multifactor authentication (MFA) bypass.
In assessing the threat landscape, the report predicts that for the 2023 period, credential harvesting, phishing, and imposter domains are likely to remain key threats. Malware trends may fluctuate slightly, and major zero-day vulnerabilities that emerged throughout 2023 (and those that have yet to emerge) are also likely to rank among key threats to retail and hospitality holiday operations.
“This year’s holiday report sheds light on the evolving threat landscape, offering valuable insights to empower retailers and consumer-facing organizations to safeguard their operations and protect their customers,” said Suzie Squier, president of RH-ISAC.
The report also features an analysis of the ransomware threat trends reported by the RH-ISAC member community for 2022 and so far in 2023. In 2022, members shared intelligence related to ransomware a total of 200 times, whereas from January to September alone in 2023, members shared intelligence on ransomware 419 times, which represents a 109.5% increase in reporting.
Additionally, in the report, RH-ISAC associate member Akamai provides analysis of bot traffic, audience hijacking, and Magecart-style web skimming attacks.
Download a copy of the full report here.
###
Media Contacts
Annie Chambliss
RH-ISAC Marketing & Communications
[email protected]
About RH-ISAC
The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) is the trusted community for sharing sector-specific cybersecurity information and intelligence. The RH-ISAC connects information security teams at the strategic, operational, and tactical levels to work together on issues and challenges, to share practices and insights, and to benchmark among each other – all with the goal of building better security for consumer-facing industries through collaboration. RH-ISAC serves businesses including retailers, restaurants, hotels, gaming casinos, food retailers, consumer products, and other consumer-facing companies. For more information, visit www.rhisac.org.