More than 1 in 4 cloud apps are high risk

In this article (5)
More than a quarter (27%) of third-party apps can be classified as high risk, according to research from CloudLock Cyberlab.
Analysis conducted across 10 million users, 1 billion files, and nearly 160,000 unique applications found that cybercriminals can exploit weaknesses in high-risk apps to gain programmatic access to corporate platforms impersonating end users.
The shadow IT dilemma is meanwhile only becoming more challenging as usage is increasing exponentially year over year, the company said.
The past three years saw nearly a 30 times increase in the number of apps detected, from 5,500 to nearly 160,000. Each application instance represents a backdoor through which hackers can infiltrate and externalize sensitive corporate assets.
CloudLock Cyberlab said an organization may embrace its employees’ “shadow” exploration of innovative technology solutions and sanction a subset of these apps as Productivity IT, but it’s essential to closely monitor the connected third-party apps and identify cloud native malware in real time.
Security conscious enterprises recognize the high risk associated with connected third-party apps and take immediate action. While apps can be banned for any number of reasons, including concerns around productivity, a clear majority are banned because of the security vulnerabilities they introduce.
The key recommendation is to reduce cloud app risk by establishing an acceptable use policy, with which organizations can significantly reduce the application risk level organization-wide. Automating whitelisting or banning of potentially risky applications is an effective strategy.
“The shift to the cloud creates a new, virtual security perimeter that includes third-party apps granted access to corporate systems,” said Ayse Kaya Firat, CloudLock director of customer insights and analytics.
“Today, most employees leverage a wide variety of apps to get their jobs done efficiently, unwittingly exposing corporate data and systems to malware and the possibility of data theft.”
Questions & Answers
Q.What percentage of third-party apps are considered high risk according to this research?
What percentage of third-party apps are considered high risk according to this research?
More than a quarter of third-party apps, specifically 27%, are classified as high risk. Cybercriminals can exploit weaknesses in these apps to gain programmatic access to corporate platforms by impersonating end users.
Q.How many applications were analysed in this research, and over what period has app usage increased?
How many applications were analysed in this research, and over what period has app usage increased?
The research analysed nearly 160,000 unique applications, across 10 million users and 1 billion files. The number of detected apps increased almost 30 times in the past three years.
Q.What is the primary reason why companies ban third-party applications?
What is the primary reason why companies ban third-party applications?
While apps can be banned for various reasons including productivity concerns, a clear majority are banned due to the security vulnerabilities they introduce. These apps can act as backdoors for hackers.
Q.What is CloudLock Cyberlab's key recommendation for reducing cloud app risk?
What is CloudLock Cyberlab's key recommendation for reducing cloud app risk?
The key recommendation is to establish an acceptable use policy. This allows organisations to significantly reduce their overall application risk level, potentially by automating whitelisting or banning risky apps.
Reader pulse
Is your retail business prepared for high-risk cloud apps?
24,045 votes so far