COMMENTARY: The dark web continues to grow significantly in size and influence, increasingly becoming a hub for illicit activity. By 2022, an estimated 30,000 websites were active on the dark web, marking a 44% increase over the previous year. Daily traffic continues to surge, with approximately 2.5 million visitors as of 2023.As we enter 2025, organizations must adopt a more vigilant and skeptical stance than ever before. Assume exposure. Assume the worst. An organization’s most valuable assets—intellectual property, customer data, and trade secrets—are likely already circulating in the depths of the dark web, putting the organization at risk of financial loss and reputational damage.[SC Media Perspectives columns are written by a trusted community of SC Media cybersecurity subject matter experts. Read more Perspectives here.]With each passing year, more and more of our data shifts online. Naturally, as we conduct business, this data moves and disperses across various web servers, networks, applications, APIs, and systems. Unable to secure every last system the data touches, some of this information inevitably becomes exposed, often by a simple misconfiguration that leads to an easy hack. In short order, millions of dollars in IP exits the back door without notice. Just ask the organizations hit by the MOVEit breach in 2023, where a single flaw exposed data from 77 million individuals and 2,600 organizations, including the U.S. Department of Energy. Or those affected by the National Public Data Breach this year, with 2.9 billion sensitive records leaked, impacting 270 million people. Or Ticketmaster, AT&T, LinkedIn—the list goes on.Despite this overwhelming evidence, many remain either unaware of or indifferent to the threats posed by the dark web. Getting a clear picture of where the dark web data resides, how it works, and the costs to businesses, will dramatically change this.Abacus Market: A newer platform, valued at $15 million, offering more than 40,000 listings, including drugs, counterfeit items, and cybercrime tools. Russian Market: Active since 2019, it specializes in personally identifiable information (PII), stolen credit cards, and compromised PayPal accounts. BriansClub: One of the most notorious platforms, it focuses on selling stolen credit card details and PII. FreshTools: With more than 800,000 products, it specializes in stolen accounts, spanning categories from banking to social media. Cypher Marketplace: Known for more than 12,000 listings, it deals in credit cards, fake documents, and narcotics. These marketplaces are highly organized, offering search functionality, customer reviews, and even “customer service” to buyers. Dark web marketplaces are ephemeral and frequently disappear because of law enforcement action or exit scams, but when one shuts down a new one rises to take its place.Leaked Credentials: Login details for personal and corporate accounts, sold in bulk. These let attackers breach networks, steal data, and escalate attacks. Privileged Access: Administrative accounts, VPN credentials, and access to sensitive networks are prized for their ability to compromise critical systems. Corporate Secrets: Trade secrets, customer databases, financial records, and internal communications are frequent targets, posing severe competitive and reputational risks. Exploit Kits and Malware: Ready-made tools, including ransomware-as-a-service, allow even low-skill attackers to launch sophisticated cyberattacks. Personally Identifiable Information (PII): Names, addresses, social security numbers, and other personal details are used for identity theft, fraud, and social engineering schemes. Financial Data: Credit card details, bank credentials, and cryptocurrency keys are sold for direct theft and fraud. Compromised Devices: Infected devices are sold to build botnets, launch DDoS attacks, or mine cryptocurrency.
Related Events
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news
You can skip this ad in 5 seconds