Traditional antivirus software misses 'vast majority of threats'

Malware
(Image credit: solarseven / Shutterstock)

Most widely-used "traditional" antivirus solutions fail to capture nearly 3/4 of threats in the first quarter of 2021, new research has claimed.

Compiled by cybersecurity vendor WatchGuard Technologies, the report shows that 74% of threats detected in Q1 2021 were zero-day malware, which can bypass conventional signature-based antivirus solutions.

In all WatchGuard appliances detected over four million network attacks, which represents a 21% increase compared to the previous quarter and the highest volume since early 2018.

“Last quarter saw the highest level of zero day malware detections we’ve ever recorded. Evasive malware rates have actually eclipsed those of traditional threats, which is yet another sign that organisations need to evolve their defences to stay ahead of increasingly sophisticated threat actors,” said Corey Nachreiner, chief security officer at WatchGuard.

The sheer number of attacks leads WatchGuard to conclude that corporate servers continue to be a high-value target for attackers, despite the shift to remote and hybrid work.

Insufficient defense

One of the interesting findings in the report is how attackers are trying to disguise and repurpose old exploits.

For instance, the report sheds light on a simple file name trick that enabled threat actors to pass off a sinister ransomware loader as a legitimate PDF attachment. It also talks about an old directory traversal attack technique that uses the now decommissioned .cab archive files. 

WatchGuard also witnessed attackers co-opting legitimate web domains to orchestrate malicious cryptomining campaigns. They pin the increase of cryptomining malware to recent price spikes in the cryptocurrency market and the relative ease with which threat actors can repurpose their victims’ computing resources.

In light of the developments, Nachreiner believes that traditional anti-malware solutions are “simply insufficient” for the prevailing threat environment. 

He suggests that every business should implement a layered security strategy “that involves machine learning and behavioral analysis to detect and block new and advanced threats.” 

TOPICS
Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
Android phone malware
Over 25 new malware variants created every single hour as smart device cyberattacks more than double in 2024
Fraud
Hackers are tricking victims into scam-yourself attacks with fake tutorials, CAPTCHAs, and updates
A digital representation of a lock
Exploits on the rise: How defenders can combat sophisticated threat actors
Mustang Panda
Chinese hackers abuse Microsoft tool to get past antivirus and cause havoc
ransomware avast
“Every organization is vulnerable” - ransomware dominates security threats in 2024, so how can your business stay safe?
A person at a laptop with a cybersecure lock symbol floating above it.
Best cloud antivirus of 2025
Latest in Security
healthcare
Software bug meant NHS information was potentially “vulnerable to hackers”
A close-up of a phone screen showing the Telegram, Signal and WhatsApp apps
Agentic AI has “profound” issues with security and privacy, Signal President says
Bluetooth
Top Bluetooth chip security flaw could put a billion devices at risk worldwide
How to prevent cyberattacks
NTT admits hackers accessed details of almost 18,000 corporate customers in cyberattack
Woman shocked by online scam, holding her credit card outside
Cybercriminals used vendor backdoor to steal almost $600,000 of Taylor Swift tickets
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Latest in News
Nvidia geforce rtx 3050
RTX 5050 rumors detail full spec of desktop graphics card, suggesting Nvidia may use slower video RAM – but I wouldn’t panic yet
OnePlus 13
OnePlus is ditching the Alert Slider for an iPhone-style customizable button - and I’ll be sad to see it go
healthcare
Software bug meant NHS information was potentially “vulnerable to hackers”
Q Acoustics Q SUB80, QSUB100 and QSUB120 subwoofers
Q Acoustics wants to bring the bass to your post-Oscars movie catch-up
Hospital
Major Oracle outage hits US Federal health record systems
Samsung Galaxy A56 display
Samsung’s new budget handsets are getting One UI 7 before the Galaxy S24 Ultra, and I’m as confused as you are