Le Lézard
Classified in: Science and technology
Subject: SVY

Unveiling the Key Findings of the SANS Institute 2024 Cyber Threat Intelligence Survey


Survey Reveals Critical Trends in Geopolitical Impact, AI Adoption, and Threat Hunting within CTI Teams

BETHESDA, Md., May 28, 2024 /PRNewswire-PRWeb/ -- The 2024 Cyber Threat Intelligence (CTI) Survey, authored by renowned cybersecurity experts, SANS Certified Instructor Rebekah Brown and SANS Instructor Candidate Andreas Sfakianakis, arrives at a critical time when cyber threats are becoming increasingly sophisticated. With a dramatic rise in covert activities, cloud breaches, and AI-driven attacks, the insights from this survey are vital for CISOs, CIOs, and security professionals looking to stay ahead of adversaries. Understanding the latest trends and preparing for emerging threats can help organizations protect their digital assets and maintain trust with customers and stakeholders.

For the first time, threat hunting has emerged as the top use case for CTI. This proactive approach to detecting unidentified threats has seen substantial reliance on the MITRE ATT&CK framework.

As cyber threats continue to evolve in complexity and sophistication, this year's survey highlights pivotal insights that are essential for organizations aiming to bolster their defenses with groundbreaking insights into the evolving threat landscape, with a focus on the significant influence of geopolitical events, the burgeoning role of artificial intelligence, and the emerging dominance of threat hunting within CTI teams. The full white paper is available for download here.

The 2024 Cyber Threat Intelligence Survey arrives at a critical time when cyber threats are becoming increasingly sophisticated. With a dramatic rise in covert activities, cloud breaches, and AI-driven attacks, the insights from this survey are vital for CISOs, CIOs, and security professionals looking to stay ahead of adversaries. Understanding the latest trends and preparing for emerging threats can help organizations protect their digital assets and maintain trust with customers and stakeholders.

Geopolitical and Regulatory Influences:
Geopolitics and new regulations are profoundly shaping CTI team activities. "The increasing frequency and complexity of global conflicts have made it essential for CTI teams to broaden their focus beyond internal issues," said Brown. "Our survey shows that 77.5% of respondents recognize the significant impact of geopolitics on their intelligence requirements, highlighting the need for adaptive and informed responses to external threats." Additionally, 74% of respondents emphasize the importance of adapting to new regulations, underscoring the necessity for CTI teams to stay compliant with evolving legal landscapes.

Rise of Threat Hunting:
For the first time, threat hunting has emerged as the top use case for CTI. This proactive approach to detecting unidentified threats has seen substantial reliance on the MITRE ATT&CK framework, with over 95% of respondents utilizing it for categorizing and communicating tactics, techniques, and procedures (TTPs). "The prominence of threat hunting reflects a strategic shift in how organizations are leveraging CTI," Sfakianakis noted. "This approach not only enhances detection capabilities but also strengthens overall security posture."

Impact of Artificial Intelligence:
AI is making significant inroads in CTI, with nearly one-quarter of respondents already leveraging AI in their programs and another 38% planning to adopt it. "Artificial intelligence is becoming a crucial tool for CTI teams, helping analysts prioritize and process vast amounts of information through advanced scoring and summarization techniques," said Brown. However, she also highlighted the growing concern about the adversarial use of AI, stressing the importance of preparing for AI-driven threats.

Integration via Threat Intelligence Platforms (TIPs):
The survey highlights the critical role of Threat Intelligence Platforms (TIPs) in integrating CTI into the security stack. A notable 58% of participants reported incorporating CTI into their detection and response controls through TIPs' built-in integration capabilities. "The mature state of TIPs demonstrates their effectiveness in disseminating threat intelligence across security tools, enhancing the overall efficiency of CTI programs," Sfakianakis explained.

CTI in Vulnerability Management:
The role of CTI in vulnerability management has seen a significant increase, with 66% of respondents now using CTI to pinpoint actively exploited vulnerabilities. This marks a rise from 54% in 2017, demonstrating CTI's pivotal role in prioritizing patches and supporting vulnerability remediation efforts. "Our findings highlight the growing reliance on CTI for operational purposes in vulnerability management, with 83% of respondents considering it essential for identifying and addressing critical vulnerabilities," Brown stated.

Download the Complete White Paper:
To explore the full findings and gain deeper insights into the evolving threat landscape, download the complete white paper here. For those who missed it, a detailed webcast covering the 2024 CTI Survey findings is available for viewing here, with two CPE credits for watching.

Media Contact

Jenn Elston, SANS Institute, 301-654-7267, [email protected], SANS.org

SOURCE SANS Institute


These press releases may also interest you

at 11:30
"We wanted to make a new electronic scoring device that would create added fun around a pool table," said one of two inventors, from Lone Tree, Colo., "so we invented BASE POOL. Our design would offer a new level of entertainment and competition for...

at 11:30
General Dynamics will webcast its second-quarter 2024 earnings results conference call on Wednesday, July 24, beginning at 9 a.m. EDT. The live webcast of the conference call will be available at www.gd.com. A replay will be available shortly after...

at 11:30
Webflow's State of the Website 2024 report reveals that while nearly all marketing leaders prioritize website improvement, 57% find it increasingly challenging to meet customer expectations. This is why skilled...

at 11:30
GZERO WORLD with Ian Bremmer opens its seventh season at a critical moment for both the United States and the world. A deeply polarized American public will head to the polls this fall in what may be the most contentious election of our time. A...

at 11:28
From coast to coast to coast, Canadians are saving thousands of dollars a year on gas by...

at 11:13
In a bold move to accelerate and enhance mobile phone services for credit union members, Members Mobile today announced a key strategic partnership with i-new, a leading global MVNE (Mobile Virtual Network Enabler)....



News published on and distributed by: