Read up on the latest ideas and technologies from companies that sell hardware, software and services. Cutting printer costs
Improving Sales Productivity: An Opportunity for Sales and IT Leadership
Optimized Back-up and Recovery for VMWare for VMWare Infrastructure with EMC Avamar
Radicati Market Quadrant 2008 on Corporate Web Security
Email Archiving 101—Customer Case Study
Web Security SaaS: The Next Generation of Web Security
Solve Exchange Mailbox Storage Issues Once and for All
Wireless LANs: Is my enterprise at risk?
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
When Hollywood finally latches onto a technological innovation it's usually a pretty good sign that the idea itself is no longer new - that it is, at least in practical terms, more likely to be on the decline. The fact that Harrison Ford is starring in a movie called Firewall should send a message to IT managers everywhere that the age of perimeter protection is coming to an end. The perimeter will still need to be patrolled, of course, but firewalls are not cutting-edge technology anymore; they are routine. And today's cybercriminals - well-organized, well resourced and ruthlessly profit driven - routinely circumvent them.
Over the last few years AusCert general manager Graham Ingram has noticed a general shift from random hacking and other "ad hoc attacks" to work that bears the hallmarks of organized crime.
"The nature of cybercrime is changing," Ingram says. "In the past, hackers would break into your system for kudos or bragging rights among other hackers. Today, attacks are all about profit. Illicit financial gain is probably the number-one issue on the Internet at the moment."
Servers are no longer attackers' first choice. These days, it is a company's client computers that tend to be the target of attacks. Today's sophisticated attack code is mobile and modular, and it targets PCs using spam, Web sites and a range of other mechanisms. Malicious code in Web sites, for instance, attacks vulnerable browsers instantly. Once code like this gets onto a client machine, attackers are able to use that client as a launchpad for a range of other nefarious activities.
"First, they'll profile that machine and conduct reconnaissance," Ingram says. "If it's a home machine, it could be on an ADSL line and could then be used as a spam relay or hosting site. If it's on a corporate network [attackers] are going to find their way to where the file servers are, and learn what sort of usage there is, look for corporate applications and find user IDs and passwords."
Most corporate defences are all about stopping attacks at the perimeter. Defending against client attacks on the network is difficult because they are launched from inside that perimeter.
"For years IT security has been trying to prevent people getting through the firewall, but if an activity is initiated internally on the network then that is a legitimate connection for all intents and purposes," Ingram says.
"Social engineering is now a really significant part of the attack process. It's no longer hackers like Kevin Mitnick calling up someone at the company and convincing them to give him their password. Today it is an e-mail that looks like a legitimate message from a company that you know and trust."
A lot of businesses have developed a dependency on the Internet and they are now exposed by that dependency. According to Ingram, this also means that IT managers have a large challenge ahead of them. "I'm not sure a lot of network administrators realize the capability of this code, and a lot of them probably haven't experienced it before," Ingram says. "The environment has changed so much that our whole view of how we defend against it needs to change as well."
Meanwhile, the stream of new malicious code continues to flow unabated. According to a recent report from the Computer Emergency Response Team in the US, when the recent Microsoft Windows Metafile (WMF) vulnerability was found in January, some 57 worm variants appeared almost immediately.
"It's quite clear that the bad guys jump on IT vulnerabilities quickly," Ingram says.
"Now that the blood is in the water the shark isn't going to leave. The days when you had six months between a vulnerability and somebody working out a worm are gone. We're getting very close to vulnerability today, exploit tomorrow and hacked the next day. And for most enterprises that's a hideously short lifecycle to be working in."
Computerworld Member Login
Discover how SOA can create smarter outcomes for your business.
Attend and learn:
- How SOA is helping leading companies to become more agile
- Where you should be applying SOA processes in your company
- The top SOA implementation mistakes to avoid
Click here for more information.
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
VeCommerce Launches Top Ten List of Personal Security Breaches In Lead Up to National ID Fraud Awareness Week 2008-10-07 15:10:00+10
Multimedia Technology signs exclusive National distribution agreement with Freecom 2008-10-07 14:30:00+10
Open Text: Upheaval in the Financial Markets Sharpens the Focus on Information Governance and Enterprise 2008-10-07 13:19:00+10
Symantec State of Spam Report - October 2008 2008-10-07 11:58:00+10
AIIA to Reward Sustainability and Green IT Champions at the 2009 iAwards 2008-10-07 11:56:00+10
Mimosa™ NearPoint™ for Microsoft® Exchange Server: Email Archiving 101
Email archiving is emerging as a critical new application for managing email. Learn how to reduce and manage online and offline email storage, add powerful tools for legal discovery and compliance and extend native exchange recovery capability by reading on.











