High-severity threats are increasing and peak during holidays

A detailed analysis of the most prevalent Barracuda XDR detections in 2023 reveals a steady rise in high-severity attack attempts during the year.

The data also shows a significant spike in such threats around November, and a lower peak in June, prime times for holidays and for online shopping. The findings are summarized in a new Threat Spotlight. They underscore both the growing severity of cyberthreats targeting organizations, and adversarial behavior that Barracuda first reported on in 2022, namely how attackers seize the opportunity of people being away, busy, or distracted to launch more damaging and high-risk attacks.

Leading the list of attack detections are activities related to identity compromise, which enable attackers to breach an account and gain access to the corporate network, data, and more.

The detections that signpost identity abuse include suspicious logins, brute force attacks, and attackers disabling multifactor authentication. Suspicious login activity is spotted by Barracuda XDR’s features and AI-powered detection rules that identify pattern anomalies.

“Cybersecurity involves understanding attackers’ behavior as well as their tools and tactics. Our data for 2023 shows that attackers are launching more high-severity attacks overall, and especially during times when IT teams are away from the workplace or less attentive, such as during holidays, outside working hours, during the night, and at weekends,” said Merium Khalid, Director, SOC Offensive Security, Barracuda XDR. “Most attacks are trying to gain access to accounts by compromising identities. As attackers start to leverage AI tools to scale the volume, speed, and sophistication of attacks, these trends will escalate. Security teams need to ensure their security tools have the same power.”

Barracuda recommends that companies implement robust authentication and access controls (multifactor authentication at a minimum and ideally moving to Zero Trust-based measures), alongside a solid approach to patch management and data protection, with regular cybersecurity awareness training for employees.

This should ideally sit within an overall security framework of next-generation security technologies, backed by expert analysis and 24/7/365 SOC security monitoring to catch unknowns and anomalies that might otherwise slip through the net.

Dynatrace expands AI observability with AWS integrations

Posted 11 hours ago by Sophie Milburn
Dynatrace surpasses $1 billion in AWS Marketplace sales, enhancing AI observability and cloud operations through AWS collaborations and agentic AI...

The security implications of AI skills in organisations

Posted 12 hours ago by Sophie Milburn
AI skills provide operational benefits but introduce new risks, particularly in security-intensive environments like SOCs and MSSPs.
Expereo and Cato Networks join forces to provide a secure, all-in-one networking solution for global enterprises.

AI in 2026: ensuring safe and accountable use

Posted 14 hours ago by Sophie Milburn
In advance of Safer Internet Day, Sean Tilley, Senior Sales Director EMEA at 11:11 Systems, found that as AI becomes increasingly central in our...
Nebula Global Services partners with Meter, enhancing deployment and lifecycle support for global networking solutions.
MSP leaders came together at Hotel Du Vin for a day of meaningful discussion, candid peer conversations, and practical strategies, exploring the...
The 2026 SonicWall Partner Awards highlight the achievements of partners and distributors across the UK and EMEA regions.
Veeam Software appoints Piero Gallucci as Regional VP for UK and Ireland, aiming to strengthen its leadership in data resilience.