cio
Browser attacks up, spam down
Filed in archive Security by Scott Wilson on February 12, 2008
19156059.jpg
So says IBM in their recent 2007 X-Force Security report, released yesterday.

I haven't done a year to year comparison of spam on any of the systems I monitor yet, but personally I haven't noticed any dramatic changes in the overall percentages (hovering around 75% spam, 25% "ham," as the pros like to refer to legitimate e-mail) coming in. And on the flip side, I haven't seen any great increase in browser-based attacks at any of my clients, either.

Of course those are extremely subjective measures and the numbers vary even among the various systems I have access to, so I don't doubt the report. Perhaps the more sinister information, although it's not exactly new, is the increasing penetration of organized crime into the world of electronic theft. The public, whatever their perception, had relatively little to fear from the random individual who was writing a virus for fun or to impress his friends; in fact, those sorts of exploits were welcome in that they demonstrated security holes and were extremely easy to detect. Malware written to lurk and harvest information worth real money, however, is what organized crime brings to the stage, and such programs will do everything they can to avoid detection and to keep from tipping of security researchers on the mechanisms they use to breach security. That's considerably more worrisome from the standpoint of real security, if not stability; you needn't worry about viruses crashing your systems so much anymore, as about them lurking quietly and harvesting customer records and sending them off to be sold without your knowledge.

In the sense that users are less disrupted by these categories of exploits, the perception is probably that security has improved markedly over the past few years. But that in itself may prove a weakness, since for a long time the best virus detector has been the person at the computer that is crashing. Without that safety net, security professionals and CIOs will be relying on security software and the efforts of software vendors, which are notoriously behind the curve defending against exploits.

Full IBM article can be found here.

Related Entries:

Permalink: Browser attacks up, spam down
Tags: CIO  security  malware  2007  spam  browser+attacks  spam+down  attacks+spam 
Trackback: http://publish.creative-weblogging.com/publish/mt-tb.pl/113469
img Addthis img Ask img Blinklist img del.icio.us img Digg img Fark img Facebook img Google img Lycos img Ma.gnolia Add this page to Mister Wong Mr Wong img Netscape img Netvousz img Newsvine img Reddit img StumbleUpon img Slashdot img Tailrank img Technorati img Wink img Yahoo

Vote for Browser attacks up, spam down:

  • Currently 7.25/10
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
Rating: 7.25 out of 4 vote(s) cast.
 
Subscribe
Share It
RSSrss
See all blog subscribe options
Google google
What is RSS?
Yahoo! yahoo
Addthis Subscribe using any feed reader!
Bloglines Bloglines
Newsletter

TwitterFollow us on Twitter!