Tuesday, April 14, 2009

Pirates of the ‘Online’ Carribbean


IIPM set to beat economic slowdown

2008 is done with. But have you done away with your fears of a possible cyber attack in the New Year? Clearly, the chances are – if you are an online surfer, you are still a likely target. Steven Philip warner & Arun Kumar Roy warn...

News like the fifth man pleads guilty over Citibank ATM hack scam, browsers fail password protection tests, German card leak delivered by microfilm, electronic votes mysteriously vanish in Ohio election et al have become too common to be surprised about. But just like surprises never end, shocks too don’t. And though it’s a brand new 2009 (and you’d want to enjoy a security threat-less year), there’s no guarantee of a threat-free year from anyone or anywhere! We discuss such threats here; threats that are not your ‘typical’ enterprise security issues but are more dangerous – mainly large-scale Internet threats that could well trickle down to your organisational mainframe. The good news/bad news is that your organisation is more likely to suffer a simple ‘Website hack’; but that doesn’t mean you can gleefully put your security officers to rest! And we are caught helpless many a time, as Kevin Prince, chief architect for Perimeter eSecurity avers, “These aren’t something IT administrators or everyday Joes can do [much of] anything about.” So before you turn out the office lights for the night, check out these lesser-known potential threats that security experts are watching out for in 2009.

1. An Internet “e-bomb”: The attacks of 2008 indeed were focused on applications as the network perimeter was more secure. But before we knew it, our faith was shaken by disclosure of some major vulnerabilities in the Internet’s TCP/IP architecture: the Domain Name Service (DNS) cache-poisoning flaw and a denial-of-service vulnerability in the Transmission Control Protocol (TCP). David Maynor, CTO, Errata Security, opines, “2009 could be the year when the first large-scale and widespread attack occurs on the Internet’s infrastructure.” He thinks that we’ll see the first wide-scale ‘e-bomb’ that will make large portions of the Internet unreachable.

2. Radical extremist hackers: iDefense predicts that 2009 will be the year that Middle-Eastern cybercartels expand into online fraud. According to the agency, a recent wave of fatwas issued by radical Islamic religious leaders in that region authorise these groups to use cyberattacks to defend Islam. This has opened the door for these groups to wage ‘open’ cyberattacks in the name of God and religion. “They will do it openly to fund the Islamic agenda,” avers Rick Howard, Intelligence Director, iDefense. iDefense also opines that US financial institutions would be the prime targets. The fact that Islamic extremists have already hacked into Israeli websites over the past few days with more than 300 sites defaced with anti-Israeli and anti-US messages might just be the start.

3. Attacks on online ad-revenues: Internet ads could be hit too, as enterprises and users increasingly begin to deploy technologies that block third-party content. ScanSafe says that the volume of Web-borne malware is growing at a considerable rate of 6% a month, and the rate that a user is exposed to this malware is increasing at a rate of 16% per month.There are many incidents where attackers target Google AdWords. We’ve seen them inject iFrames for SQL injection attacks or other things inside ads on websites also. Till date, users are mainly blocking pop-ups rather than legitimate ads, but now attackers could wreak havoc on online ads and their potential revenue by compromising the ad’s source. 2008 is over. But can you put your fears to rest? Not yet, dear netizens!

For more articles, Click on IIPM Article.

Source : IIPM Editorial, 2009

An Initiative of IIPM, Malay Chaudhuri and Arindam chaudhuri (Renowned Management Guru and Economist).

For More IIPM Info, Visit below mentioned IIPM articles.
1500-plus IIPM students placed across the country with 44 bagging international offers
IIPM Admission Detail
IIPM Programme :- SUPERIOR COURSE CONTENTS
IIPM INTERNATIONAL - NEW DELHI, GURGAON & NOIDA