Anticipating Threats Georgia

CIOs can no longer rely solely on security updates and patch management companies to keep their businesses safe from hackers and criminals. Recent attacks to computer networks have shown how dangerous today's security threats can be. When MyDoom brought down the servers of software company SCO earlier this year, the damage was so extensive and expensive that the firm offered a $250,000 reward to anyone who could catch the virus creator. The SQL Slammer worm that hit hard in January caused airplanes to be grounded and ATM machines to malfunction, all of which added up to a reported $1 billion price tag. Even Internet businesses -- companies that should be in the know, such as eBay and America Online -- have fallen prey to hacks and malware (short for "malicious software").

Local Companies

Millennium Information Technolgies
678-297-9823
1885 McFarland Road
Alpharetta, GA
Comcast Spotlight
770-559-2731
2975 Courtyards Drive
Norcross, GA
Grisanti Galef & Goldress Inc
(404) 256-4555
333 Sandy Springs Cir NE
Atlanta, GA
Inland Securities Corporation
(770) 578-3337
1501 Johnson Ferry Rd Ste 275
Marietta, GA
Rcb Management Inc
(706) 398-0655
14653 Highway 157
Rising Fawn, GA
Barrell & Associates Inc
(770) 476-9331
4126 Howell Ferry Rd
Duluth, GA
Walnut Square Mall Management & Leasing
(706) 226-5255
Dalton, GA
Ples Bruce
(404) 344-6389
3550 Hamlin Sq SW
Atlanta, GA
Management Resource Inc
(770) 396-9856
2392 Mount Vernon Rd
Atlanta, GA
Wendy's Bbb Service Company
(770) 390-9905
2 Concourse Pkwy NE Ste 270
Atlanta, GA


Anticipating Threats



By Lauren Barack

CIOs can no longer rely solely on security updates and patch management companies to keep their businesses safe from hackers and criminals. Recent attacks to computer networks have shown how dangerous today's security threats can be. When MyDoom brought down the servers of software company SCO earlier this year, the damage was so extensive and expensive that the firm offered a $250,000 reward to anyone who could catch the virus creator. The SQL Slammer worm that hit hard in January caused airplanes to be grounded and ATM machines to malfunction, all of which added up to a reported $1 billion price tag. Even Internet businesses -- companies that should be in the know, such as eBay and America Online -- have fallen prey to hacks and malware (short for "malicious software").

The onslaught of threats continues, and groups that track attacks made across the Internet are finding these dangers on the rise. Recently, the SANS Institute's Internet Storm Center, which monitors the activity and traffic on the Internet, noted that unprotected servers were getting hacked approximately every 13 minutes. In fact, about 80 percent of the activity on the Internet is taken up every day by viruses, worms, spyware and other forms of malware, according to Peter Cochrane, a co-founder of technology consultancy firm ConceptLabs.  Experts believe so-called "zero-day" threats -- a virus or worm that hits the Internet within minutes of the announcement of a known software weakness -- are a very likely danger.

CIOs who rely on a reactive approach are potentially endangering their company's data. This wait-and-see mind-set gives attackers the edge. In some cases, companies literally pay the price, as they become victims of hacker extortion. For example, a hacker will attack a company with a DDoS (distributed denial-of-service attack), and then threaten to do it again if not paid. At least six to seven thousand companies are paying online extortion demands, according to Alan Paller, director of research of the SANS Institute. "[The hackers'] motivation is money and extortion," agrees Lance Spitzner, a founding member of The Honeynet Project, a five-year-old non-profit hacker research group. "The easiest way for them to make money is to threaten to attack again, rather than actually launch the attack."

The Right Support: Proactive rather than Reactive

Companies need to review their approaches to protecting their networks. A secure system will implement every software patch and utilize every notification it receives. But a company must think like a hacker -- and start using proactive tools to anticipate the source of an attack, and how it might enter a firm's network. A proactive CIO will:

  • Share secrets with competitors so that everyone in a similar industry is following best practices. If one firm is compromised by a computer attack, a competitor will often find its customers demanding potentially costly assurances of their security. By sharing information with competitors on how each keeps its own system secure before an attack happens, firms can save time and money.

  • Hire firms that specialize in breaking into their IT infrastructure to find vulnerabilities before hackers do. This should be done at least annually, to locate and then neutralize any insecure portal.

  • Demand a direct pipeline to software vendors. Instead of relying on notification messages, major clients of software vendors are eligible for early versions of patches. Hackers understand that an open-patch release dispatched by a software company is an alert to where the vulnerabilities lie in an existing system. Less public communication between CIOs and software vendors will help eliminate this exposure.

  • Train employees to be cautious when callers request information such as their password or user name. "If you did not initiate the conversation, then do not give out your information," says The Honeynet Project's Spitzner. A telephone on an employee's desk is as much of a danger to an IT Infrastructure as a hacker discovering a software flaw. If a hacker can get an employee's name and password, they can have open access to a computer mainframe.

With new ways of thinking, CIOs can start implementing proactive tools to not just react to threats, but anticipate their arrival. A holistic approach -- one that involves not just an IT department and employees, but industry colleagues as well -- is the strongest firewall.

Lauren Barack's work has been published in Business 2.0 and Wired.

Featured Local Company

Comcast Spotlight

770-559-2731
2975 Courtyards Drive
Norcross, GA
www.atlanta.comcastspotlight.com

Related Articles
- Hackers Will Shift Targets in 2006 Georgia
The year 2006 was barely under way when a recently discovered flaw in Microsoft Windows allowed attackers to perform arbitrary code execution, initiate a denial-of-service attack, and take control of a user's machine. According to US-CERT, at least 57 worm variants were almost immediately observed leveraging this vulnerability. Such a rapid rise in cyber attacks ultimately forced Microsoft to bow to "strong customer sentiment" and issue an early fix to the problem.
- Ad-Aware 2008 Free Now Available for Download Georgia
- Managed Security Service Provider Georgia
- Making the Case for Managed Security Georgia
- Protection for Small and Midsize Financial Institutions Georgia
- Preparing for Windows Vista Georgia
- Safer Networking Spybot-Search & Destroy 1.4 Georgia
- Sunbelt Software CounterSpy 2.0 Beta Georgia
- The Importance of Assessment Services and Penetration Testing Georgia
- Making the Case for Managed Security Services Georgia
Regional Articles
- Anticipating Threats Acworth GA
- Anticipating Threats Albany GA
- Anticipating Threats Alpharetta GA
- Anticipating Threats Americus GA
- Anticipating Threats Athens GA
- Anticipating Threats Atlanta GA
- Anticipating Threats Augusta GA
- Anticipating Threats Austell GA
- Anticipating Threats Baxley GA
- Anticipating Threats Blairsville GA
- Anticipating Threats Brunswick GA
- Anticipating Threats Buford GA
- Anticipating Threats Calhoun GA
- Anticipating Threats Canton GA
- Anticipating Threats Carrollton GA
- Anticipating Threats Cartersville GA
- Anticipating Threats Cedartown GA
- Anticipating Threats Chatsworth GA
- Anticipating Threats Columbus GA
- Anticipating Threats Conyers GA
- Anticipating Threats Cordele GA
- Anticipating Threats Covington GA
- Anticipating Threats Cumming GA
- Anticipating Threats Dacula GA
- Anticipating Threats Dahlonega GA
- Anticipating Threats Dallas GA
- Anticipating Threats Dalton GA
- Anticipating Threats Dawsonville GA
- Anticipating Threats Decatur GA
- Anticipating Threats Douglas GA
- Anticipating Threats Douglasville GA
- Anticipating Threats Dublin GA
- Anticipating Threats Duluth GA
- Anticipating Threats Eatonton GA
- Anticipating Threats Elberton GA
- Anticipating Threats Ellenwood GA
- Anticipating Threats Ellijay GA
- Anticipating Threats Evans GA
- Anticipating Threats Fairburn GA
- Anticipating Threats Fayetteville GA
- Anticipating Threats Fitzgerald GA
- Anticipating Threats Flowery Branch GA
- Anticipating Threats Forest Park GA
- Anticipating Threats Fort Benning GA
- Anticipating Threats Fort Valley GA
- Anticipating Threats Gainesville GA
- Anticipating Threats Griffin GA
- Anticipating Threats Grovetown GA
- Anticipating Threats Hartwell GA
- Anticipating Threats Hephzibah GA
- Anticipating Threats Hinesville GA
- Anticipating Threats Jesup GA
- Anticipating Threats Jonesboro GA
- Anticipating Threats Kennesaw GA
- Anticipating Threats Kingsland GA
- Anticipating Threats La Fayette GA
- Anticipating Threats Lagrange GA
- Anticipating Threats Lawrenceville GA
- Anticipating Threats Lilburn GA
- Anticipating Threats Lithia Springs GA
- Anticipating Threats Lithonia GA
- Anticipating Threats Loganville GA
- Anticipating Threats Mableton GA
- Anticipating Threats Macon GA
- Anticipating Threats Marietta GA
- Anticipating Threats Mcdonough GA
- Anticipating Threats Milledgeville GA
- Anticipating Threats Monroe GA
- Anticipating Threats Morrow GA
- Anticipating Threats Moultrie GA
- Anticipating Threats Newnan GA
- Anticipating Threats Norcross GA
- Anticipating Threats Peachtree City GA
- Anticipating Threats Powder Springs GA
- Anticipating Threats Ringgold GA
- Anticipating Threats Riverdale GA
- Anticipating Threats Rockmart GA
- Anticipating Threats Rome GA
- Anticipating Threats Rossville GA
- Anticipating Threats Roswell GA
- Anticipating Threats Saint Simons Island GA
- Anticipating Threats Savannah GA
- Anticipating Threats Sharpsburg GA
- Anticipating Threats Smyrna GA
- Anticipating Threats Snellville GA
- Anticipating Threats Statesboro GA
- Anticipating Threats Stockbridge GA
- Anticipating Threats Stone Mountain GA
- Anticipating Threats Suwanee GA
- Anticipating Threats Thomaston GA
- Anticipating Threats Thomasville GA
- Anticipating Threats Thomson GA
- Anticipating Threats Tifton GA
- Anticipating Threats Toccoa GA
- Anticipating Threats Tucker GA
- Anticipating Threats Valdosta GA
- Anticipating Threats Vidalia GA
- Anticipating Threats Villa Rica GA
- Anticipating Threats Warner Robins GA
- Anticipating Threats Waycross GA
- Anticipating Threats Winder GA
- Anticipating Threats Woodstock GA
Related Articles
- Hackers Will Shift Targets in 2006 Georgia
The year 2006 was barely under way when a recently discovered flaw in Microsoft Windows allowed attackers to perform arbitrary code execution, initiate a denial-of-service attack, and take control of a user's machine. According to US-CERT, at least 57 worm variants were almost immediately observed leveraging this vulnerability. Such a rapid rise in cyber attacks ultimately forced Microsoft to bow to "strong customer sentiment" and issue an early fix to the problem.
- Ad-Aware 2008 Free Now Available for Download Georgia
- Managed Security Service Provider Georgia
- Making the Case for Managed Security Georgia
- Protection for Small and Midsize Financial Institutions Georgia
- Preparing for Windows Vista Georgia
- Safer Networking Spybot-Search & Destroy 1.4 Georgia
- Sunbelt Software CounterSpy 2.0 Beta Georgia
- The Importance of Assessment Services and Penetration Testing Georgia
- Making the Case for Managed Security Services Georgia
Rate Article
     
Articles Insider

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Family Home Services Software
Business Services Fashion Internet Technology
Career Financial Services Legal Telecommunications
Cars Franchise Miscellaneous Trade Shows
Computer Hardware Health Nightlife Travel
Construction Holidays Online Database Weddings
Education Home Appliances Real Estate Resources World History
Entertainment Home Electronics