Latest news
2) Many enterprises have invested in conventional firewall technology, blind to blended threats, or antivirus software in the host or client environment, but the multiple edge of today's modern distributed enterprise generally have not been secured adequately against the blended threat. Establishing 'trusted zones' between edge connections, such as email servers and remote access servers, is a more progressive, comprehensive defence strategy. This is an effective way of dealing with threats that originate internally so as to stem further outbreaks and also to nullify external threats that bounce from edge point to edge point probing for vulnerabilities.
Based on the feedback you get from your clients, are there more internal or external security breaches?
As outline above, the nature of the modern threat is such that it's really difficult to distinguish between external and internal threats; an external threat can quickly become an internal threat if the multiple edges and access points to business critical data are not 'redoubted' or protected by multiple layers, and internal threats can quickly become external liabilities if your network becomes vulnerable to an agent attack that uses a FTP engine to export internal documents and data, as with the Sasser attack, or uses it's own SMTP engine to harvest internal Outlook accounts and broadcast email spam attacks to the outside world, effectively diminishing your corporate reputation and brand equity. A full context security solution that scans the complete cross-section of internal and external threats is the best way to redoubt network connections.
What do you expect from the future? Is it likely for a "cyberterrorism" event to take place in the next 12 months or do you see it as media hype?
Companies and organisations are victims of a form of cyberterrorism everyday; professional hackers who invade corporate networks to slow down business performance or outright disrupt business continuity are stealing money and damaging reputations. In worse cases, the hackers cause billions of dollars of damage to computer systems or steal sensitive business or customer data. The criminal nature of the blended threat attack is evidenced by the recent arrest of the Sasser attack author.
Spotlight

IT security jobs: What's in demand and how to meet it
Posted on 15 May 2013. | Let's say you want a career in information security, where do you start? What credentials do you need? What are employers looking for? Read on to find some answers.

Is Microsoft is reading your Skype communications?
Posted on 15 May 2013. | The question of whether Skype allows U.S. intelligence and law enforcement agencies to access the communications exchanged by its users has still not been adequately answered by Microsoft.

Internet Explorer best at blocking malware
Posted on 14 May 2013. | While Chrome’s malware download protection improved significantly, Internet Explorer 10 continues to outperform the other browsers with a block rate of 99.96%.

Researcher refuses to help Saudi telco to spy on people
Posted on 14 May 2013. | You would think that a Saudi Arabian telecom firm interested in monitoring its users' mobile communications would not be asking a well-known pro-privacy researcher for help, but you would be wrong.

Malicious browser extensions are hijacking Facebook accounts
Posted on 13 May 2013. | Facebook users - especially those in Brazil - are being targeted with malicious browser extensions trying to hijack Facebook profiles, warns Microsoft.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.





