Spyware Wake-up Call
Computerworld - Like most oblivious users, I've never given much thought to spyware. I've always shrugged it off as just another slimy advertising gimmick in an online world chock-full of them. But as any security expert will tell you, anybody who surfs the Net has spyware on his machine.
Whatever you call it -- adware, sneakware or snoopware -- spyware is a catch-all term for any hidden software program that surreptitiously monitors your Web activities or gathers data without your knowledge. At its most harmless, spyware tracks your Web shopping pathways and gives marketers new numbers to crunch. At its most toxic, it may be monitoring your keystrokes, installing programs, scanning files or even turning on a webcam to secretly film you.
Yet, until recently, spyware has been seen as mainly a consumer, home-user concern -- a perpetual hot button among privacy advocates, but hardly a significant corporate IT security risk. That view is changing, however, and once you read Robert L. Mitchell's "Spyware Sneaks Into the Office" , you'll see why. The story makes a strong case for paying attention to this menacing but silent invader of corporate networks.
What kind of menace are we talking about? For starters, spyware is doing the following:
- Interfering with regulatory compliance efforts. Companies must comply with a complex legal web of privacy regulations and data protection mandates today. When spyware is loose in your environment, you can no longer guarantee that corporate information is secure. Unauthorized, untested software on corporate laptops basically blows a hole in your carefully crafted security policies.
- Generating even more spam. When spyware finds e-mail addresses, it obligingly sends them back out over the Internet to be traded, shared or sold to spammers. Users clueless enough to click on product ads within the spam may be downloading additional spyware.
- Devouring network resources. One LAN administrator quoted in our story discovered multiple spyware programs running on 200 desktop PCs when he investigated complaints about lousy network performance and proliferating pop-up ads. When his ever-helpful users tried to block the pop-ups by downloading freeware to do the job, even more spyware rode in with the free software.
Ah, freeware. Or not-so-free ware, as it turns out. Bundling in adware programs is all part and parcel of the way distributors make money on freeware . Exhibit A is the wildly popular Kazaa Media Desktop, a kitchen-sink collection of peer-to-peer file sharing services that also delivers multiple adware programs (and much worse). If downloading freeware isn't already outlawed in your company, it should be.
Which brings us



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring...
- X-Ray of the PCI Process-4 Proactive Steps
- This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into...
- Identity Governance: The Business Imperatives
- This white paper describes the business challenges and opportunities that are driving interest in Identity Governance while discussing considerations your organization should make... All Security White Papers
- Live Webcast
Playing Defense: Staying on Top of Your Disaster Recovery Game - When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing...
- Introduction to VMware vCenter Site Recovery Manager 5
- Traditional disaster recovery solutions are often too expensive, complex and unreliable to meet business requirements. As a result, IT departments are hesitant to...
- The Top Ten Secrets to Avoiding SAN Performance Problems
- Maintaining peak performance while simultaneously addressing the root cause of SAN errors is challenging. Learn the most common SAN problems and explore new...
- Deduplication Without Compromise
- Go inside Quantum's scalable, high-performance, multi-protocol new DXi deduplication appliances, designed to make backup much more effective. Discover how the new future-proof DXi6700...
- Director of Disk Products Discusses DXi6700
- Discover how the new DXi 6700 series of deduplication appliances provide investment protection and a future-proof feature set, all while delivering fast, scalable,...
- Playing Defense: Staying on Top of Your Disaster Recovery Game
- When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing... All Security Webcasts