Share

Related Links

Related Stories

  • Downadup Worm goes Nuclear
    A network worm that began to spread late last year has turned into a epidemic. The Downadup worm, which we reported on last week, has infected around 3.5m PCs, according to F-Secure.
  • The Approaching Mobility Maelstrom
    Last year Drew Amorosi polled the Infosecurity editorial board on their predictions for 2011. This year he decided to broaden the sample and find out what the rest of the industry are talking about. What he received was an overdose of mobile security warnings
  • The Good, the Bad, and the Ugly Insider Threats
    Whether intentional or unintentional, insider threats take many forms. The (ISC)² US Government Advisory Board Executive Writers Bureau examines this dichotomy and how it is being affected by both regulatory considerations, and the rapidly changing technology landscape
    Members' Content
  • The Spy Who Hacked Me
    James Bond was more of a jock than a nerd, and he probably wouldn’t have known how to use a computer, says Danny Bradbury. How things have changed…
  • Computers infected with viruses should be quarantined, says Microsoft official
    Comparing the internet to the medical world, Scott Charney, Microsoft’s corporate vice president for trustworthy computing, said that computers infected with computer viruses, such as botnets, should be quarantined from the internet.

Top 5 Stories

News

Organizations stumped on compromised device containment

06 January 2010

Over 40% of executives don't know how to stop compromised devices from polluting their networks, according to a poll conducted by Deloitte.

Peter Makohon, a senior manager at Deloitte, warned that companies lack the automated systems to analyze and contain compromised devices. Forty-one percent of those polled agreed with him, saying that they did not know how their organizations found compromised devices inside their network.

More than 40% of executives polled also said that unknown quantities such as embedded middleware in computers, applications and devices, and opaque security protocols used by suppliers, are the greatest cyber risks facing them today. Remote internet access to corporate systems was also considered a big threat.

Deloitte polled the executives during a session titled "Combating Cyber Threats from the Underground Economy: a View from the Front Lines." Two hundred seventy professionals took part in the real-time online survey, in positions ranging from upper management to consultant.

Sixty-two percent of respondents said that they did not know how their organization understands what data is leaving the company's network. That said, 14% confirmed that their organizations were using some form of data loss prevention.

Richard Baich, a principal in Deloitte's security and privacy practice, warned that targeted attacks against specific individuals in an organization were becoming a part of the threat landscape for purposes including espionage and financial gain.

"Companies should consider establishing cyber threat intelligence programs, as well as leveraging existing technology and architecture investments to help detect and prevent these problems," he advised.

Only 2.8% of the participants said that they did not need this type of program. 

This article is featured in:
Compliance and Policy  • Data Loss

 

Comment on this article

You must be registered and logged in to leave a comment about this article.