Newsletter
July 4, 2009
Search 
JUST IN
cxo_content_drill
Home
CXOtoday Storage
CXOtoday Plus
News
Industry Verticals
Tech Insight
Market Scan
Interview
CXO Lifestyle
CXO Views
Case Studies
White Papers
Editorial
Downloads
Specials
SMB Zone
TECH INSIGHT
SaaS: Opportunities and Challenges in India
Despite challenges, SaaS model is here to stay. Anita N, corporate communications, Calsoft talks about what these challenges are and how enterprises can overcome them to leverage SaaS benefits.
More...
MARKET SCAN
Broadband Internet Investment Beat Recession Blues
The urge to avoid commuting and green concerns have ensured investments in broadband Internet globally remain robust and are not pared down, finds a study.
More...
 Home > News > Security
Email Print View Comments   
Beware of the New Breed of Hackers
By Abhinna Shreshtha
Mumbai, Sep 25, 2008 1527 hrs IST

Unknown to us, a silent war is continuously being fought between hackers and those who stand against them. With the Internet evolving daily and as organizations keep beefing up their security, hackers too have evolved their modus operandi. In recent years attacks have a level of sophistication that was not seen previously. Capt. Raghu Raman, CEO of Mahindra Special Services Group (MSSG) is not a novice when it comes to Internet security. In his15 years as an information security professional, he has seen a lot of security breaches and hacker attacks. But he too is amazed at the complexity and ingenuity of some of the recent attacks. "To hoodwink security systems and administrators hackers are resorting to more and more subtle methods. Taking a look at some recent examples, it is really difficult to understand just how they attained this level of expertise." He gave an interesting example that MSSG had come across some time back involving a financial company. During a security audit, MSSG found that one particular machine on the network was extremely hardened, compared to other machines. In fact, considering the level of expertise required, it could not have possibly been done by the system administrator. MSSG investigated further and found that someone had inserted a sophisticated Trojan inside the machine and then hardened the machine so that no one else could get in. So what is the reason for this increase cybercrimes? According to Niraj Kaushik, country manager of Trend Micro India and SAARC, hackers are getting more financial motivation to carry out attacks. "Cyber criminals are presently selling credit card numbers for $0.40 to $20 while bank account details can command $10 to $1,000 in shady online forums. And on the black market malware, such as Trojan horses used to steal online account information, are being sold for $1,000-$5,000," he said. Besides financial profits, some criminals also spread malware just to increase their Internet footprint. Botnet herders, for example, use spam to spread malicious code that hijacks unknowing users' PCs and assimilates them into botnets. These are then used to commit click-fraud and plant spyware and adware that distribute spam and other malicious content throughout the world. Today's botnets can control hundreds of thousands of infected PCs, placing computing power and network bandwidth into the hands of criminals. An interesting trend is that nowadays hackers prefer to corrupt legitimate websites instead of going to the trouble of creating fake websites for launching phishing attacks, spreading worms, etc. According to security company - Websense, in the first half of 2008, more than 75 % of the web sites Websense classified as malicious were actually sites with good reputations that had been compromised by attacker. Hackers are also exploiting the exploding social networking and Web 2.0 scenario to further their attacks. So what can an enterprise do to protect itself from these attacks? Vasant Kumar, sales engineer for Websense India said, "Companies could use a step by step methodology, using various technologies to evaluate their security strategies. A recommended best practice model is understanding who is authorized to access specific Web sites, sensitive content, or applications, what data is critically important to the organization and must be protected from accidental or intentional leaks, where users are allowed to go online, and where sensitive data can be sent safely and lastly how sensitive data is allowed to be communicated, and how online resources can be used safely and productively by the business." With hackers continuing to focus their attention on Web 2.0 elements of the evolving Webscape, adaptive content classification and dynamic content scanning is now required to protect business and their information said Kumar. Kaushik also advocates a multi-layered strategy that includes preventing unnecessary protocols from entering the corporate network, restricting user privileges for all network users, choosing security products with in-cloud updates to protect the mobile workforce. However all experts we talked to agree that no matter what precautions an organization takes, there is nothing that can guarantee complete safety from a hacker attack. As an IT administrator, all one can do is be ever vigilant and take all possible safeguards. Related links: Value of Information Security Being Recognized
  Tags: Hacker   information security   MSSG   Websense   Trend Micro   Abhinna Shreshtha   Niraj Kauhsik   Vasant Kumar   Capt. Raghu Raman  
  Share and Connect   Myweb MyWeb  Newsvine.comNewsvine.com 
  You may also be interested to read latest news under :
  Business| Hardware| Software| People| Technology|
  Recent news in Security
 
Symantec's New Approach to Security with Quorum
Hyderabad Police Gets Tough with Cyber Crime
PwC to Research Tech Approaches for PCI (SSC)
HDFC Strengthens Security of Online Customers
Security Revenues Up, Appliance-based Products In
 
 
Comment :

Name :
Company :
City :
E-mail :
Word verification : Type the characters you see in the picture below.
 
Characters are not case-sensitive
   


Disclaimer
ITNation (India) Pvt. Limited and its sites: www.channeltimes.com, www.techtree.com and www.cxotoday.com provide Comments and discussion boards as a professional medium for the various businesses of the IT industry to discuss business problems. Gossip, personal attacks and unsubstantiated charges are prohibited. Messages posted on this Web site as discussion threads or Comments (Content) are solely the opinions of their creators and do not necessarily reflect the opinions of ITNation (India) Pvt. Limited or its sites www.channeltimes.com, www.techtree.com and www.cxotoday.com.
All individuals who post material to this web site are solely responsible for all Content that they upload, post or otherwise transmit via the Web Site.
ITNation cannot vouch for the authenticity of the user or company names or e-mail addresses associated with posted messages. Under no circumstances will ITNation India Pvt.Ltd. or Cxotoday.com be liable in any way for any Content, including, but not limited to, for any errors or omissions in any Content, or for any loss or damage of any kind incurred as a result of the use of any Content posted or otherwise transmitted via the Bulletin Boards.
ITNation reserves the exclusive right to edit or remove messages containing inappropriate language or other material that could be construed as libelous, potentially libelous, or otherwise offensive or inappropriate. Discussion forums, bulletin boards and chat facilities are provided by ITNation solely for the convenience of those who make use of the service. ITNation does not endorse the products and services or other offerings mentioned in messages.
TODAY'S HEADLINES
ESOPs should be made
Symantec's Quorum
BI to Manage Unstructure
Barrett Gives Intel-Noki
Agilent Names Parmeet Ah
CXO VIEWS
Lean Six Sigma Makes Biz Customer Responsive
Lean Six Sigma (LSS) is a management concept that focuses on customer needs like no other process does, says Balaji Rajagopalan, executive director-Operations and LSS, Xerox. Rajagopalan dwells extensively on the LSS concept in an interview with Tabrez Khan
More...
LATEST COMMENTS
I am happy to say, "Corporate India has ..
i want to give his land for any bank ? ..
Yes, I also want to be ticketing agent
how can with deal you with retainers
Hi, I am interested to have mobile tower ..
MOST POPULAR STORIES
Nandan Nilekani to Quit (2)
Budget Expectations (2)
Healthcare, Energy (1)
Satyam Computers is MS (1)
Idea Inks Rs 145 CrDeal (1)
Copyright (C) 2009 ITNation India Pvt. Ltd. All Rights Reserved.