Ads by TechWords

See your link here
Receive the latest technology news and information.
Security
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
Cloud Computing
View all newsletters




Privacy Policy
 

Security flaws under the microscope

August 7, 2003 12:00 PM ET

PC World - A study unveiled at the Black Hat Briefings conference in Las Vegas last week paints a grim picture of network security problems.
Among the study's surprising results: Some kinds of computer security vulnerabilities--especially ones with an aggressive "exploit" (something that takes advantage of the vulnerability, such as a worm or virus)--may plague computer networks indefinitely.
"I wanted to understand how prevalent critical vulnerabilities are," said Gerhard Eschelbeck, chief technology officer of security software provider Qualys Inc. and author of the study. His first-of-its-kind research is the result of 18 months of constantly probing his customers' networks for common security problems.
The study, along with guidelines proposed by the Organization for Internet Safety (OIS) on how to report buggy and insecure software dominated the first day of the conference.

Perpetual vulnerabilities
Thought Slammer was over? Not according to Eschelbeck's study.
In his research, the security hole that allows entry to the Microsoft SQL Slammer worm, which first appeared in January of this year (and for which a patch was available as of July 2002), was detected more than 30 times in the first week of February, then sharply declined over the following six weeks to just five detections the week of March 22nd. That sounds like good news, but since attention to the worm waned, Slammer's hole has made a comeback, with 22 vulnerable PCs detected the week of June 28. (The research did not indicate whether the scanned computers had become infected or otherwise fell victim to the security problems, only that they were in peril.)
For the Code Red worm, the rise is less dramatic, but detectable. From the end of April through the end of June, Eschelbeck's research detected a slight rise in the average number of Code Red-vulnerable computers among the networks he scanned. Code Red first made an appearance in June 2001.
Eschelbeck theorized that IT departments are partly to blame for the resurgence of some old security problems. Computer support staff store "images" of hard drives with pertinent data, drivers, and software configurations, so they can quickly restore a laptop or desktop to the company's defaults. But often the IT department doesn't update those images to include the latest patches to the operating system or the applications. When a computer hard drive has the old image reinstalled, all the old problems come with it.
In addition, a number of home computer users didn't apply recommended security patches to their systems, so their vulnerabilities--detectable by Eschelbeck's software--remain a threat to the rest of the networked world.


Reprinted with permission from

For more PC news, visit PCWorld.com.
Story copyright 2009 PC World Communications. All rights reserved.

Jump to comments

Security

Additional Resources

EFD vs. HDD - What You Need to Know
WHITE PAPER
Enterprise flash drives provide a new Tier 0 storage layer capable of delivering high I/O performance at a very low latency. Proper use of EFDs in an Oracle environment can deliver increased performance compared to fibre channel drives. Read the recommendations for identification of the best DB components for EFDs.
Gartner Research Report: Magic Quadrant for Application Delivery Controllers, 2009
WHITE PAPER
The market for products to improve the delivery of application software over networks remains dynamic and innovative. Vendors focused on solving enterprises' most-pressing application problems have become the top players.
Eight Criteria for Server Load Balancing
WHITE PAPER
Server load balancers are a simple yet highly effective means to scale an application environment while ensuring its availability. Today's solutions should also address application performance and security. Read about the top eight criteria you should consider when choosing a server load balancer and how Citrix NetScaler meets those requirements.

White Papers & Webcasts

Death to PST Files
Download Now  

Web 2.0, Social Media and the Dark Web - A Web Criminals Paradise?
In this discussion, learn about the challenges of protecting your users from the potentially unsafe content hidden in the "Dark Web".

eGuide: Enterprise Security
Smart Security Strategies for 2010. Read now!  

Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...


IT Jobs