According to an analysis conducted by IBM Security, the number of emails containing ransomware has increased 6,000% between 2016 and 2017. The risk today is greater than ever.
Email systems based in the Cloud - like Office 365 - are not spared, and are as vulnerable as any other if they do not have appropriate protection.
Thus, the Office 365 environment has been hit in 2017 by waves of Jaff and Locky ransomware attacks, as with other systems.
At the start of 2018, specific threats to the Office 365 environment appeared, such as “ShurL0ckr”, “Ransomware as a Service” platform which go undetected by Office 365’s anti-malware filters.
ShurL0ckr targets and infects OneDrive (Office 365) collaborative storage areas, encrypting the data it finds.
These sneak attacks can steal passwords, Bitcoin portfolios or software keys, launch denial of service attacks, and more. They are increasingly advanced and hard to detect. For example, they invite their future victims to open a document contained in a ZIP file and provided as an attachment, or to click on a corrupted link. The company can suffer serious consequences with only one attack. This is even more true in a centralized and collaborative environment like that of Office 365.
In truth, the entire sector must adopt stricter measures to ensure the security of their emails. An increase of 50% in ransomware attacks in the past year shows that companies are confronted with a crude struggle to protect their team members’ emails.
Download how to protect OFFICE 365 emails
What is the level of email protection offered by Office 365?
Your company has chosen Microsoft Office 365 to protect your emails against attacks. But do you think that this is sufficient? We report below on the strengths and weaknesses of Office 365 related to email protection:
Strengths:
Weaknesses:
Download how to protect OFFICE 365 emails
How can one protect Office 365 email systems against all attacks?
As we have observed for over a year, new malware using 0-day faults (unknown to publishers and the public) can penetrate the usual email filtering mechanisms.
Classic email protection technologies, based on analysis of the reputation and fingerprinting, are no longer effective against the evolution of these threats. The only effective email security solution uses the ability to anticipate new attacks using prediction.
In order to protect Office 365 email services, the native protection system should be completed with artificial intelligence systems, the only ones which can detect all new threats from the first attack forward.