Please
login
or
register
.
Home
Forum
Help
TinyPortal
Login
Register
Art Music Learning How To!
»
Forum
»
.: Computers / Internet :.
»
News / Headlines
»
Topic:
Most 2011 cyberattacks were avoidable, Verizon says
Send this topic
Print
Pages: [
1
]
Go Down
Author
Topic: Most 2011 cyberattacks were avoidable, Verizon says (Read 635 times)
Tweet
0 Members and 1 Guest are viewing this topic.
Sudds
Follow
Sudds
wrote
Most 2011 cyberattacks were avoidable, Verizon says
on March 23, 2012, 05:25:05 AM
Most 2011 cyberattacks were avoidable, Verizon says
By Jaikumar Vijayan - March 22, 2012. source: computernewsworld.com
Computerworld - Despite rising concern that cyberattacks are becoming increasingly sophisticated, hackers used relatively simple methods 97% of data breaches in 2011, according to a report compiled by Verizon.
The annual Verizon report on data breaches, released Thursday, also found that in a vast majority of attacks (80%), hackers hit victims of opportunity rather than companies they sought out.
The findings suggest that while companies are spending increasing sums of money on sophisticated new security controls, they are also continuing to overlook fundamental security precautions.
The conclusions in the Verizon report are based on the investigations into more than 850 data breaches. The report was compiled with the help of the U.S. Secret Service and law enforcement agencies in the United Kingdom, The Netherlands, Ireland and Australia, Verizon said.
Verizon said it found that attacks by so-called "hactivist" groups such as Anonymous for the first time compromised more breached records -- more than 100 million -- than the number of attacks by hackers specifically looking to steal financial or personal data.
Data breach victims and security vendors generally tend to describe attacks as highly sophisticated and involving a great deal of expertise on the part of hackers.
The Verizon report though shows a far more mundane reality.
Most of the breaches didn't require hackers to possess special skills or resources, or to do much customization work. In fact, Verizon said that 96% of the attacks "were not highly difficult" for the hackers.
"Additionally, 97% were avoidable, without the need for organizations to resort to difficult or expensive countermeasures," the report said.
Very often, the companies breached had no firewalls, had ports open to the Internet or used default or easily guessable passwords, said Marc Spitler a Verizon security analyst.
The study found that cybercriminals did not have to work any harder to break into a large organization than into a small one.
Attackers in 2011 generally didn't need new sophisticated tools to break into most organizations, Spitler said.
"We have seen nothing new. Some of the old standbys are continuing to work very well for the people going after information," he said. "Not enough has been done to raise the bar and to force them to spend" significant sums on new tools and exploits.
The most sophistication found by the researchers was in the methods used by attackers to steal data after breaking in to systems, he said.
Attackers typically have installed malware on a victim company's network to escalate privileges, set up backdoors, enable remote control and sniff out sensitive data. Many take steps to remain hidden on the network for a long time and then wipe their tracks when they are done.
Such tasks require moderate to advanced skills and extensive resources on the part of the attackers, according to Spitler. "That is one area where we have raised the bar," he said.
Most of the targeted attacks last year were directed large companies in the finance and insurance industries, according to Verizon.
Hackers, often part of organized groups, used large-scale automated methods to find vulnerable businesses to exploit.
In such cases, more than 85% of victim companies employed less than 1,000 employees and were mostly in the retail, hospitality and food services industries.
The findings once again highlight the need for companies to pay attention to security basics, Spitler said.
"It is about going back to basic security principles. A lot of the same recommendations we have used in past years, we have recommended this year," he said.
Skhilled
Follow
Skhilled
wrote
Re: Most 2011 cyberattacks were avoidable, Verizon says
on March 23, 2012, 08:20:21 PM
They also need to stop surfing bad porn sites or downloading while at work. LOL
Maxx
Follow
Maxx
wrote
Re: Most 2011 cyberattacks were avoidable, Verizon says
on March 23, 2012, 08:53:40 PM
yes this is very true and also avoid free stuff unless you know what and where you downloading.
Now days even reputable site, get questionable software uploaded to them, with add is on them that have spyware and Trojans as well as hard to rid cookies!
Social sites another thing to consider avoiding! how many PC's I had clean from this stuff!
slowing down and taking control over their stuff.
It's crazy out there!
regards,
maxx
Skhilled
Follow
Skhilled
wrote
Re: Most 2011 cyberattacks were avoidable, Verizon says
on March 23, 2012, 09:16:38 PM
Yes, you have to closely watch every page when you're installing something even if it is well known.
Send this topic
Print
Pages: [
1
]
Go Up
Menu
Web Design - Editing
Media/TV
Internet & Security
Site Rules
Graphics Software
Canadian News
World News
Education
Rock/Pop
Country Music
R&B Old School
Heavy Rock
Family Care
Pet care
Theme Select
BloQcs
BloQcs-Dark
BlueLight
Carbonate
Coral_md
CZ2012
Envision2013
ModernDark96
ModernDark96
RedZone88
Salvaged
SMF Default Theme -
surface 16
surface 25
surface 31
surface 31
Surface r
surface rs
Loading...