System security
System security

System attackers up the ante

Attacks are not only rising in number, but in speed and sophistication too

Written by Madeline Bennett

The recent Internet Security Threat Report from security vendor Symantec painted a bleak picture for IT security - both now and into the future. The firm outlined myriad threats, including phishing attacks, spyware programs and the spread of malicious code via peer-to-peer networks and web browsers.

Symantec also warned firms to take additional measures to secure portable devices such as PDAs and mobile phones, which will face increasing attacks.

Another problem identified in the report is that devices put in place to secure systems are actually becoming vulnerable themselves. Symantec discovered over 20 flaws in perimeter devices such as firewalls and broadband routers, which are actually designed to prevent intrusions.

Additionally, the security company warned of a dramatic rise in the number of hijacked machines, referred to as bots. Bots hold hidden programs that enable malicious users to remotely control systems for the purposes of gathering confidential data or launching attacks.

Before 2004, there were under 2,000 bots detected per day. Now that figure has increased to an average of 30,000.

Bob Jones, managing director of security company Equiinet, warned that the threats are increasing. "[The danger is worse] both in terms of the number of attacks and the time it's taking for each flaw to be exploited," he said.

Jones added that industry is now relying more heavily on artificial intelligence techniques to thwart attacks as early as possible. He cited Bayesian filtering as a useful self-refining technique that firms could add to the more conventional methods of detection and defence.

However, more traditional forms of attack are still widely used. The report indicated a worrying rise in the number of new Windows-based viruses and worms. Almost 5,000 were discovered during the first six months of this year compared with under 1,000 in the same period in 2003.

The head of IT security at a large investment bank said corporate defences are usually capable of stopping viruses and worms, presuming there is a properly-configured firewall in place. "[But] there's always a chance that a worm might enter through a previously-safe protocol that can't be blocked, for example DNS, HTTP, mail," he said. "So the more different types of attacks being made, the more chances that they get lucky. Sometimes configuration mistakes are made."

At the same time that attacks are increasing, the average period between a flaw being discovered and an exploit being launched has been reduced from seven days to under six days, according to Symantec. Nigel Beighton, Symantec's director of community defence, said firms now have to patch their systems more quickly.

"Whether it's seven days or 5.8, it's still a huge challenge for firms. It became a huge problem once the window fell under a month," he said. "The drop to under seven days means firms can't rely on their normal patch schedules and have to move to an ad hoc scheme, which is more difficult."

One reason for the growing number of attacks is that many firms are relying on older, common systems, said Beighton. "There have not been many technology changes over the past two years, so hackers can reuse exploits," he said. "The rate of attacks will slow down when we see some big technology changes and move to a far more web services-based environment. But we're a few years away from that yet."

For the latest news for IT professionals, visit ITWeek.co.uk

Tags:

reader comments

related articles

High-performance security engine to beat viruses and hackers

Nortel and Symantec seal security alliance

Pair develop prototype to identify threats deep within the network 08 Dec 2004

 

Time to battle the bots

Businesses face a growing threat from armies of infected consumer PCs 28 Sep 2004

Hackers deploying 'bots' on a massive scale

Symantec reports up to 75,000 PCs being compromised daily 20 Sep 2004

Symantec to add to security services

Antivirus firm expands consultancy capabilities with latest acquisition 20 Sep 2004

related whitepapers

today's top stories

CIOs must embrace collaboration tools

Author Don Tapscott gives Angelica Mari his reasons for promoting social networking tools and says transparency is the key to security 04 Dec 2008

On a quest to build a connected society

BT Design’s JP Rangaswami talks to Gareth Morgan about his pivotal role in the telecoms giant’s efforts to deliver universal broadband and his plans to tap into the creativity of the open source community 04 Dec 2008

IT leaders must stand by India

A sense of perspective is the most important response from IT leaders to the attacks in Mumbai 04 Dec 2008

Case study: Clifford Chance

Law firm implements Sun platform and reduces datacentres to gain efficiency and cost synergies 03 Dec 2008

Should CRM be more sociable?

As vendors rush to add more social networking bells and whistles to their CRM products, some experts warn that users must tread carefully when venturing into online communities 03 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Doctors looking at a computerAnalysis

Watchdog wants IT to cure privacy woes

Information Commissioner Richard Thomas is urging organisations to put privacy protection at the top of their procurement and development criteria 04 Dec 2008

Colin McDonaldComment

Web 2.0 has potential to transform staff training

Employees can sharpen their IT skills through using the latest interactive training tools, writes Colin McDonald 04 Dec 2008

Advertisement

Primary Navigation