Predictions of some sort of cyberwar have been floating around for months now, with security experts suggesting that if war actually broke out, a series of cyberattacks was sure to follow. However, there hasn't been much evidence of anything devious happening in cyberspace beyond attacks by isolated groups of criminals and vandals -- until now.
According to U.K.-based mi2g Ltd., a security consultancy (www.mi2g.com), its intelligence unit is receiving reports of significantly increased numbers of cyberattacks between interests sympathetic to Iraq and interests sympathetic to the United States, the United Kingdom, and other nations in the coalition currently involved in the war in Iraq. The company also reports that both site defacements and DoS (denial of service) attacks have increased markedly on both sides.
The company's executive chairman, M.K. Matai, says that the level of sophistication used in the attacks on both sides, but especially on the U.S./U.K. coalition side, is much higher than would be expected from an average teenaged hacker. In fact, he says the activity more closely resembles what you'd expect from government, military, or corporate operations.
Of course, you're probably not involved in DoS attacks on Iraqi interests, so this doesn't matter to you, right? Wrong. It could matter to you, a lot. There are three ways that DoS attacks can affect you: decreased access to your site from the outside, use of your network as an attack pathway, and effects of misdirected attacks on your site even though you're not actually involved.
As you probably know, DoS attacks can fill up the Internet bandwidth available in some areas, although they don't necessarily have a huge effect on the Internet as a whole. If your Web site shares a backbone provider with a site that's being attacked, you could find yourself with congestion problems that could make your site unreachable at times. The best way to avoid this, of course, is to make sure you have more than one provider.
If you've already set up your firewalls and servers so that they can repel break-in attempts and DoS attacks, you're probably not going to have much of a problem with misdirected attacks. Unfortunately, that's about all you can do besides hope that no one on the other side of the world gets your site confused with one that they don't like.
The most serious threat is that people trying to break into a system will use your network as a pathway to their ultimate target. If you have a supply-chain relationship with a site an attacker is interested in, you could find your network targeted as a means of entry into the other organization's network. As you might imagine, such access -- if successful -- can wreak havoc on your company. It could also seriously hurt your business relationships.
How do you keep this from happening? Perhaps the best option is to use the increased cyberattack activity as motivation to review your security practices and to make certain your network can't be used as a pathway to an intended target. Make sure you're monitoring your network, your intrusion detection systems are working properly, and your firewalls are updated and being monitored, and pay close attention to the traffic between your network and your business partners' networks.
Regardless of what you think about the war, it would be a shame to have your business brought to a halt as a cyberattack bystander. But it will take action on your part to help ensure that doesn't happen.
Read up on the latest ideas and technologies from companies that sell hardware, software and services. Achieving the impossible: Unlimited application scalability
Business Intelligence and Enterprise Performance Management: Trends for Emerging Businesses
CRM your salespeople will love
Strategies for Eliminating .PST Files
The state of Middleware
Discover the advantages of an open architecture multi-vendor network solution
How to improve employee productivity in small and medium businesses
Gaining Competitive Advantage Through Enterprise Planning
Zones provide focussed content from Computerworld and leading technology partners.Discover how SOA can create smarter outcomes for your business.
Attend and learn:
- How SOA is helping leading companies to become more agile
- Where you should be applying SOA processes in your company
- The top SOA implementation mistakes to avoid
Click here for more information.
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
AOC Launches 18.5” Widescreen Green 16:9 LCD Monitor in Australia and New Zealand 2008-12-03 15:30:00+11
FrontRange Solutions eases software license management with new License Manager 3.0 2008-12-03 14:56:00+11
Progress Software's Cure for Managing Services-based Applications 2008-12-03 14:42:00+11
S3 Graphics Unleashes Full OpenGL® 3.0 API Support with Beta Driver for Chrome 500 Series GPUs 2008-12-03 14:08:00+11
Informatica Powercenter added to Nec Infoframe Solution Suite 2008-12-03 11:36:00+11
Controlling storage costs with Oracle database 11g
Organisations must embrace new ways of storing data that don't involve adding more of the same hardware to accommodate data growth and dealing with duplication as well as uncompressed information. Simple steps such as tiering storage, moving data across these tiers and reducing the amount of data to be managed, can dramatically reduce capital and operating expenses. Read on to learn how to implement these steps in your business.












