What Companies did Hackers Target in 2022?

End of Year Review

What Companies did Hackers Target in 2022?

A year in review of which companies had the most vulnerabilities targeted in the wild

What Companies did Hackers Target in 2022?

CISA keeps track of vulnerabilities attackers are targetting in the wild in order to inform the public of which vulnerabilities need priority. Using their Known Exploited Vulnerabilites Catalog, I will aggregate the data for 2022.

Top companies with total vulnerabilities 2022

RankCompanyTotal
1Microsoft165
2Adobe54
3Cisco49
4Apple26
5Oracle22
6Google21
7Apache13
8D-Link11
9QNAP10
10Vmware8

Now lets compare the data to the previous year.

Top Companies 2022 vs 2021

 2022 2021 
RankCompanyTotalCompanyTotal
1Microsoft165Microsoft83
2Adobe54Apple23
3Cisco49Google23
4Apple26Apache12
5Oracle22Cisco11
6Google21Pulse Secure8
7Apache13Vmware8
8D-Link11Oracle7
9QNAP10Trend Micro7
10Vmware8Citrix6

It’s no surprise that Microsoft is number one consecutively. It’s interesting to see Adobe this year jumping up to second place. Overall companies have more vulnerabilies. This may be due to APTs becoming more advanced or we have more security researches spending time to discover these vulnerabilities. I don’t have an exact answer, but here’s to 2023!

cisaCatalogBot

If you’re unaware, I run a Twitter bot @cisaCatalogBot that tweets everytime CISA updates their Known Exploited Vulnerabilites Catalog. Be sure to follow the bot to stay up-to-date when a new vulnerability is added!

Read about how I made the cisaCatalogBot with python: Making the cisaCatalogBot