Predictable attacks, unpredictable defenses: why observability is the real security gap
Most cyberattacks don't succeed because attackers are clever or innovative.
The vast majority are highly predictable, following the same well-worn paths of least resistance through their victims’ environments.
What remains unpredictable is not attacker behavior, but organizational defense.
Security strategies are often undermined by misconfigurations, excessive privileges, exposed services, and unmonitored connections between systems.
When enterprises are operating with unreliable defenses built on incomplete maps, even the most predictable attack comes as a surprise.
Why defenders are stuck with security maps they can’t read It isn’t an exaggeration to say that threat actors often have a clearer picture of how systems connect than most security teams do.
Across hybrid and cloud computing environments, most organizations lack full visibility into how their applications, identities, devices, and workloads communicate.
They can identify what exists but can't reliably map how it all connects.
That means they also can’t trace the paths an attacker would follow.
This lack of contextual visibility is reflected directly in the cyber risks driving most breaches.
Our Containment Gap research found that IT vulnerabilities top the list of security concerns at 66%, with credential theft and privilege escalation close behind at 45%.
These are not sophisticated, hard-to-anticipate attack vectors, they are well-understood fundamentals.
Meanwhile, the more unpredictable unknown of zero-day vulnerabilities ranks far lower at 23%.
So why are these known risks still driving most exposure, rather than advanced attack techniques? In part, it’s a tooling problem.
5News aggregated this summary from the outlet’s public feed. The full article, with all the context, is on www.techradar.com — the content belongs to TechRadar.