CYBER CRIME – FBI REPORTS INCREASE IN COMPLAINTS & LOSSES FOR 2009.
As if your organization didn’t have enough to worry about – the FBI reported that cyber-crime is on the rise (click here for a post at Inside Counsel). The full report is available here.
Among the cyber-crime victims coming forward is a law firm that filed suit against the Chinese government (Click here for the full story from Wired’s Threat Level). In fact, the Wired article notes that “If you’re a law firm and you’re doing business in places like China, it’s so probable you’re compromised and it’s very probable there’s not much you can do about it.” The types of threats that such law firms and other companies face are called Advanced Persistent Threats (APT). An APT attack is distinctive in that they are rarely detected by antivirus and intrusion programs. Further, these attacks are espionage focused. In other words, APT hackers attempt to take business intelligence, e.g., files, e-mails, etc., rather than financial or customer data, which serves as a precursor for identity theft. For an in depth, yet very readable discussion about APT attacks, click here (also a Dark Reading post).
Equally dangerous as APT hackers or other cyber-criminals is the current or former rogue employee. For example, a federal grand jury recently indicted a former employee of the Transportation Security Administration (TSA) for trying to corrupt a database of terrorism suspects in an inside job that many within the information security industry say is a stark reminder of how important it is to track insider access to sensitive data stores. (click here for the full story originally posted at Dark Reading.)
The preceding FBI report and stories illustrate that business organizations should assume that an attempt will be made to compromise their IT infrastructure. I’ve talked with various IT security professionals about what are the appropriate steps to prevent APT or other cyber-attacks. Unfortunately, the general and unsatisfying response has been to the effect of if someone wants in bad enough and has the resources, they will get into your network. The sophistication and resources of some of the high-profile of cyber-victims (Google, Marathon Oil, ExxonMobil, and ConocoPhillips, to name a few), would seem to confirm this conclusion.
And many remedies available to business organizations are only available after the fact (Click here for prior post discussing theft of business assets and Computer Fraud and Abuse Act). But when it comes to discharging employees, low-tech and common sense go a long way in preventing near disasters like that allegedly committed by the former TSA employee: Make sure your termination process first removes all access to sensitive information, databases, e-mail, etc., and then terminate the individual – not the other way around. Such steps are especially important when the employee has administrative rights to the IT infrastructure.
Unfortunately this is a growing problem..
ReplyDeleteCSI SCHOOL
السفير المثالي للتنظيف ومكافحة الحشرات بالمنطقة الشرقية
ReplyDeletehttps://almthaly-dammam.com
واحة الخليج لنقل العفش بمكة وجدة ورابغ والطائف
https://jeddah-moving.com
التنظيف المثالي لخدمات التنظيف ومكافحة الحشرات بجازان
https://cleaning6.com
ركن الضحى لخدمات التنظيف ومكافحة الحشرات بجازان
https://www.rokneldoha.com
الاكمل كلين لخدمات التنظيف ومكافحة الحشرات بالرياض
https://www.alakml.com
النخيل لخدمات التنظيف ومكافحة الحشرات بحائل
http://alnakheelservice.com
mmorpg oyunlar
ReplyDeleteinstagram takipçi satın al
tiktok jeton hilesi
tiktok jeton hilesi
saç ekimi antalya
referans kimliği nedir
instagram takipçi satın al
metin2 pvp serverlar
instagram takipçi satın al
TÜL PERDE MODELLERİ
ReplyDeleteMOBİL ONAY
MOBİL ODEME BOZDURMA
Nftnasilalinir
ankara evden eve nakliyat
trafik sigortası
Dedektör
web sitesi kurma
Ask kitaplari
beykoz samsung klima servisi
ReplyDeleteataşehir arçelik klima servisi
kadıköy samsung klima servisi
kadıköy mitsubishi klima servisi
üsküdar samsung klima servisi
beykoz mitsubishi klima servisi
üsküdar mitsubishi klima servisi
pendik vestel klima servisi
pendik bosch klima servisi
yurtdışı kargo
ReplyDeletelisans satın al
minecraft premium
nft nasıl alınır
özel ambulans
en son çıkan perde modelleri
en son çıkan perde modelleri
uc satın al