ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Corporate crimeware threat 'moving to Adobe'

Graeme Wearden in San Francisco ZDNet.co.uk

Published: 08 Feb 2007 15:22 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The launch of Microsoft Office 2007 is likely to force malicious hackers to focus more attention on looking for vulnerabilities in other desktop applications, such as Abobe's Acrobat Reader, experts told delegates at the RSA Conference 2007 in San Francisco on Wednesday.

Today, most spyware and other "crimeware" applications target flaws in client-side applications, explained Jeff Moss, who founded the Black Hat and Def Con hacker conventions. These attacks involve sending an employee or home user a modified file, or a hyperlink to a web download, which will compromise their system if executed.

So, where do the attackers go? Every other app that you are running. That's going to be Acrobat, and we've already started seeing that in the last couple of months

Jeff Moss, founder, Black Hat and Def Con hacker conventions

"Office 2007 is much better architected, and the fine-grained capabilities are much better [than Office 2003], so you're going to see a lot less application attacks against Office, and because of that you're going to see less attacks against Vista that are successful," predicted Moss.

"So, where do the attackers go? Every other app that you are running. That's going to be Acrobat, and we've already started seeing that in the last couple of months. They just go for the lowest hanging fruit", Moss said.

Moss added that Adobe has recently begun patching more quickly, because it has become more of a target for these attacks. In January, Adobe admitted that its PDF Reader application contained a major security hole, which exposes a user's hard drive to attack.

The RSA Conference heard that crimeware is a rapidly growing threat facing both companies and individuals. Criminals are using Trojans, rootkits, keyloggers and other pieces of malware in a concerted attempt to steal personal data, log-in codes or banking details.

Doug Camplejohn, chief executive of Mi5 Networks — which sells anti-spyware products — cited analyst firm Gartner's prediction that 75 percent of enterprises will fall victim to a piece of financially motivated spyware in 2007. However, he wasn't sure that the recent launch of Office 2007 will have a significant effect on the problem.

"Not everyone is going to move to Vista overnight. So there's going to be a broad period of time when there's a broad user base that is going to have the existing vulnerabilities to deal with," said Camplejohn.

According to Moss, a team of malicious hackers might spend a month working on a client-side exploit before releasing it, but may devote as much as nine months perfecting a server-side attack, trying to get it exactly right before launching it. If the attack relies on a previously-unknown flaw, they may only have one shot before security vendors wake up to the problem and issue protection.

Because crimeware often relies on an individual running an application or clicking on a link, education should be a key part of a company's defence strategy, the conference heard. Locking down non-essential applications to limit the company's exposure to danger is also recommended.

"If I've got a user who isn't supposed to go onto the internet, why am I allowing them internet access?" asked Andre Gold, director of information security at Continental Airlines.

Camplejohn agreed that a more prescriptive, proactive approach may be better. "User education is nice, but I think that for the most part it falls on deaf ears," he said. "What we find most effective is to basically slap someone's hand right when they're doing something. A screen pop-up that tells them 'You can't do this' because that's confidential data that's going out that door."

"In some cases, people don't know that's something that they shouldn't be doing. And also, they know someone's watching."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
65 out of 67 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:












Related Jobs

C#, MOSS 2007 Developer for Microsoft Media House, London

C#, MOSS 2007 Developer for Successful Media House to work on various business critical projects for very large brand names There will be many ...

MOSS 2007 - Sharepoint Developer - Bristol

Huxley Associates Client is looking for a MOSS 2007 Developer. My client has an urgent requirement for a MOSS 2007 Developer, they are looking for a ...

MOSS Developer required in Slough 6 Month Contract

My Slough based client has an urgent requirement for a Sharepoint MOSS 2007 Developer on a 6 month contract. Key Skills: MOSS 2007, C#, ASP .Net If ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment