ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Flaws quickly turn into attacks

Published: 02 Oct 2003 12:25 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Online vandals are quickly exploiting flaws, leaving companies with little time to patch their computer systems, according to a report published on Wednesday by Symantec.

The Internet Security Threat Report -- based on an analysis of six months of data from the security company's widespread intrusion-detection network -- found that two-thirds of new attacks take advantage of vulnerabilities less than a year old. The MSBlast worm, for example, appeared 26 days after Microsoft warned customers about the security flaw exploited by the worm.

"The window for us to get things fixed is a great deal smaller," said Alfred Huger, a senior director of engineering for Symantec. "If you have a window of less than a month to get things fixed, that is pretty problematic for any large enterprise."

The report, which uses data from more than 20,000 sensors in 180 countries, found that four out of 10 attacks took place less than six months after the first release of information about a flaw.

While the last six months may have made the trend more evident, for some time attackers have been closing the gap between the release of information about vulnerabilities and the writing of code to exploit them. Moreover, the lag for some major attacks has run counter to the suggested time frame. The Code Red worm, released more than two years ago, quickly came out after the flaw on which it was based, while the more recent Slammer worm appeared six months after the vulnerability it took advantage of.

The report also found that more-complex worms and viruses -- known in the antivirus industry as blended threats -- are becoming the attack of choice among Internet vandals. Such threats often exploit several different flaws to increase the chance of infecting a computer system. The number of attacks that could be classified as a blended threat in the first half of 2003 was 20 percent higher than in the previous six months, according to the report.

Moreover, threats are increasingly targeting specific goals, Symantec found. Bugbear.B, which started spreading in June, targeted certain financial institutions with attacks that stole confidential information and passwords (though it's not known how effective those attacks were). The SoBig family of viruses are designed to aid spammers by allowing bulk emailers to use home computers infected by the virus as relay points for sending mass quantities of email.

The report's conclusion that attacks are increasing reverses the findings of a Symantec report published in February. In that edition of the report, the security company found that Internet attacks against companies had fallen in the last half of 2002.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
126 out of 180 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:




Related Jobs

QA Manager, London CRO

QA Manager, London CRO QA Manager (GCP): My client is a leading specialist CRO (Clinical Research Organisation), focusing on research into viruses ...

Internet Team Leader

Responsibility for maintaining the integrity of the networks (i.e.providing adequate protection from viruses, spam, hacking, compliance with the Data ...

Business Analyst ( OO , Java ) - London

Primary Responsibilities - Work with Financial Engineers and Developers to conduct sophisticated validation of existing and new models; develop test ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment