SDMmag logo
search
Go to Ask SDM AI
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
SDMmag logo
  • NEWS
  • PRODUCTS
  • TOPICS
    • Access Control & Identification
    • Integration & Network Solutions
    • Life Safety & Fire Alarm
    • Monitoring
    • Smart Home
    • Trends & Industry Issues
    • Video Solutions
  • COLUMNS
    • Digital Shuffle
    • Editor's Angle
    • Insider News & Business
    • Integration Spotlight
    • Marketing Madmen
    • Security & the Law
    • Security Comings & Goings
    • Security Networkings
    • Technology @ Work
    • Technology Solutions & Skills
    • SIA Waypoints
    • Cybersecurity Chronicle
  • EXCLUSIVES
    • Annual Industry Forecast
    • Dealer of the Year
    • Project of the Year
    • SDM 100
    • State of the Market Series
    • Systems Integrator of the Year
    • Top Systems Integrator Report
    • TMA Excellence Awards
  • BLOG
  • MEDIA
    • Videos
    • Podcasts
    • Polls
    • White Papers
  • EVENTS
    • Industry Calendar
    • Webinars
  • MORE
    • Classified Ads
    • Newsletters
    • SDM Store
    • State of Security eBook
    • Sponsored Insights
  • BUYERS GUIDE
    • Buyers Guide
    • Take a Tour
  • EMAG
    • eMagazine
    • Archive Issues
    • Monitoring Today
    • Advertise
  • SIGN UP!
Standards, Regulations & LegislationTrends & Industry IssuesSDM NewswireInsider News & Business

Breach Activity Declines in Q1 2018 to 2012 Level

cyber breach
May 9, 2018

After year-over-year increases in the number of reported data breaches, Risk Based Security has released the results of their Q1 2018 Data Breach QuickView Report, showing the number of breaches disclosed in the first three months of the year fell to 686 compared with 1,444 breaches reported in Q1 2017. The number of records compromised in the quarter remained high, with more than 1.4 billion records exposed.

“We knew we were seeing less activity than prior quarters, but we were still surprised by the final tally,” said Inga Goddijn, executive vice president at Risk Based Security. “We were geared up for a wave of activity targeting tax filing data that never fully materialized as expected.” Indeed, in Q1 2017 there were over 200 instances of phishing for employee W2 data. At the end of April 2018, that activity had waned to just over 30 such reported events.

Shifting tactics also appear to have played a role in the decrease. Crypo-mining malware and cryptojacking has been a part of the threat landscape since early 2017. However the spike in the value of cryptocurrencies that took place in January fueled a rapid expansion into the theft of computing resources. Goddijn went on to comment, “While there is no direct data linking the rise of crypo-miners to a reduction in data breach activity, there are tantalizing bits of evidence that lead us to believe there is some level of relationship at play here.”

Beyond the number of breaches reported, many of the trends observed throughout 2017 continued to be evident in the first three months of 2018. For example, the top five breach types that dominated recent reports — hacking, skimming, inadvertent disclosure on the Internet, phishing and malware — all remained the top breach types into 2018. Likewise, the vast majority of breaches are still originating from outside the organization, most events are being discovered by external parties, the data types targeted and average number of records compromised showed little variation from 2017. Goddijn added, “Other than the dip in the number of data breaches reported, Q1 2018 was very much in lock step with recent quarters. If there was a truly seismic shift in breach activity we would expect other metrics to show some signs of change as well. Given this, we think the jury is still out on whether the dip is a one-time blip or part of a larger trend.”

In addition the typical metrics found in the Data Breach QuickView Report, Risk Based Security added two new enhancements this quarter. First it included the metrics on the average number of days between breach discovery and disclosure.

“We have tracked a variety of dates for many years but haven’t included an analysis of this data in our breach reports. With the GDPR taking effect in May, we wanted to share how well organizations might be able to comply with Article 33 — the 72-hour notification rule based on our research,” Goddijn said. To that end, the Q1 2018 report includes an analysis of the average number of days between the day the organization first learns of the breach event and the day the event is publicly reported. The findings are encouraging, showing the average number of days between discovery and disclosure has been steadily declining from year to year. However, at a current average of 37.9 days, the analysis shows there is still work to be done to meet the obligation to report a breach to the authorities within 72 hours of becoming aware of the event.

The other new feature of the breach report moving forward is a companion webinar session. Each quarter, Risk Based Security will offer a 30-minute dive into the report findings as well as a discussion of the most interesting and prominent events disclosed in the quarter. 

Risk Based Security has been capturing and aggregating data breach events for more than a decade. The resulting wealth of breach data coupled with actionable security ratings for organizations has made Risk Based Security a leader in vendor risk management, cyber insurance and risk modeling, the company described. 

Looking for quick answers on security topics? Try Ask SDM, our new smart AI search tool. Ask SDM →

KEYWORDS: cyber security security dealers security industry

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Recommended Content

JOIN TODAY
to unlock your recommendations.

Already have an account? Sign In

  • SDM 100

    SDM 100: Top 100 Security Dealers of 2026

    The top 100 security dealers navigated a complex...
    SDM 100 Report
    By: Karyn Hodgson
  • Security camera

    State of the Market: Video Surveillance

    As video surveillance shifts from siloed systems to...
    State of the Market Series
    By: Brianna Wilson
  • 2026 Industry Forecast

    SDM 2026 INDUSTRY FORECAST

    Rapid technology advances meet shifting economic...
    Exclusives
    By: Karyn Hodgson
Manage My Account
  • SDM Newsletters
  • Online Registration
  • eMagazine Subscriptions
  • Subscription Customer Service
  • Manage My Preferences

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the SDM audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of SDM or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Doctor examining child patient with mother present in medical clinic
    Sponsored byHID

    The Human Side of Hospital Security: How Modern Visitor Management Protects People First

Popular Stories

April Maloney, Guardian Protection

State of the Market: Security’s ‘Sixth Sense’ Drives Intrusion & Smart Home

ESA Board of Directors Q2 26 Elections

Electronic Security Association Announces 2026 Board of Directors Election Results

AMAG CONNECT-2.0

Beyond the Buzzwords: What Security Integration Really Looks Like Today

SDM Dealer of the Year 2026 Promotion fire alarms webinar

Events

July 23, 2026

Fire Alarms in Focus: Tech Trends, Code Changes & Business Growth Strategies

In this webinar, SDM will explore how companies are expanding their fire offerings, increasing recurring revenue, and strengthening customer relationships. Discover practical insights to help position your company for success.

View All Submit An Event

Poll

What’s the most promising trend in the industry?

What’s the most promising trend in the industry?
View Results Poll Archive

Products

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

See More Products
SDM 100 2026 Rankings

Related Articles

  • Pivot3

    Pivot3 Continues Growth in Q1 2019

    See More
  • SIAC to Recognize 2012 William Moody Award Winners

    See More
  • Bozeman to Receive 2012 Lippert Award

    See More

Related Products

See More Products
  • s and the law.jpg

    Surveillance and the Law: Language, Power and Privacy

  • 9780367259044.jpg

    Understanding Homeland Security: Foundations of Security Policy

  • 9780367030407.jpg

    National Security, Personal Privacy and the Law

See More Products
×

Be in the forefront of security intelligence when you receive SDM.

Join over 10,000+ professionals when you subscribe today.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Directories
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing