www.elisity.com Survey Reveals 99% Demand for Microsegmentation Amidst Lateral Movement Attacks
Article Content
- •99% of security leaders want microsegmentation, but over 90% lack adequate protection.
- •Nearly half of organizations experienced lateral movement attacks in the past year.
- •Only 24% of organizations have deployed microsegmentation despite its importance.
A recent Omdia survey commissioned by Elisity found that 99% of cybersecurity leaders in healthcare and manufacturing want microsegmentation deployed, yet over 90% have protected fewer than 80% of their critical systems. Nearly half of the respondents reported experiencing lateral movement attacks in the past year. The survey included 352 U.S. cybersecurity decision makers, highlighting a significant gap between demand and implementation. While 68% are pursuing microsegmentation as part of a Zero Trust strategy, only 24% have deployed it. Many organizations still rely on outdated tools like VLANs and ACLs, which leave them vulnerable to attacks. The survey indicates that 44% of respondents lack comprehensive device visibility, and 69% emphasize the need for identity-based controls. Business pressures, such as cyber insurance requirements, are driving the push for microsegmentation. The findings suggest that while organizations recognize the importance of modern security measures, execution remains a challenge.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…