Arab Today, arab today cyber failures spark search for new security approach
Last Updated : GMT 21:22:07
Arab Today, arab today
Arab Today, arab today

Cyber failures spark search for new security approach

Arab Today, arab today

Arab Today, arab today Cyber failures spark search for new security approach

Washington - AFP

With cybersecurity's most glaring failures in the limelight, many experts say it's time for a new approach. In recent weeks, the security community has been rocked by news of a massive breach at online giant eBay affecting as many as 145 million customers, following another that hit as many as 110 million at retailer Target. A US indictment earlier this month accused members of a shadowy Chinese military unit for allegedly hacking US companies for trade secrets, a charge denied by Beijing. The incidents highlight huge gaps in cybersecurity, or the ease in which malicious actors can break into a single computer and subsequently penetrate a network or cloud. "The old model (for cybersecurity) doesn't work," said James Lewis of the Center for Strategic and International Studies. "It is getting worse and getting out of control... One of the dilemmas is that when people have a choice between security and utility, they often choose utility." A survey released Wednesday by the security firm Trustwave said it identified 691 breaches across 24 countries last year, with the number of incidents up 53.6 percent over 2012. "As long as criminals can make money by stealing data and selling that sensitive information on the black market, we don't expect data compromises to subside," the report said. Much of the problem stems from so-called "phishing" attacks in which emails are disguised as coming from a trusted person. When links are opened, hackers can install malicious software allowing them to control a computer, and potentially an entire network. A report by security firm Symantec found a 91 percent increase in targeted "spearphishing" attacks in 2013 and said more than 552 million identities were exposed via breaches. IBM recently unveiled a new cyber defense system aimed at thwarting attacks before they happen, with predictive analytics. Symantec suggests a similar approach touting its platform "that aggregates and correlates unfiltered alerts from a diverse set of technologies, harnessing global threat intelligence to detect traffic patterns associated with malicious activity," according to a blog post by Symantec's James Hanlon. - Hardware security approach - But others in the cybersecurity community dispute that approach. The idea of predicting and halting attacks "is utter nonsense," said Simon Crosby co-founder of the security firm Bromium, which uses a hardware-based solution that isolates computers to prevent the spread of an infection. Crosby told AFP he views as unlikely "the ability to pick through the noise to find a bad guy before he does bad things." He said Bromium offers a better solution "by making the system defend itself by design." Johannes Ullrich, a researcher with the SANS Institute, said hardware isolation "is a solid approach," but just one of many new options being explored. Ullrich said that in hunting for malware, "you cannot come up with a list of everything that is bad, but what you can do is enumerate what is supposed to be there." This "white list" approach has a higher chance of success, Ullrich said. - 'Hunting ghosts' - The old notion of using anti-virus software, which updates itself based on new malware "signatures," is rapidly losing credence. A 2012 study by the security firm Imperva said most software only detected around five percent of malware. Another firm, FireEye, concluded last year that 82 percent of malware disappears after one hour and 70 percent exists just once. "With the half-life of malware being so short, we can draw the conclusion that the function signature-based AV (anti-virus) serves has become more akin to ghost hunting than threat detection and prevention," said a blog post by FireEye's Zheng Bu and Rob Rachwald. Ullrich said that over time, companies need to invest more in information security and develop strategies before the problems subside. "Security will never prevent every single breach," he said. "You want to keep it at a manageable level, to stay in business. That's what security is all about."

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

Arab Today, arab today cyber failures spark search for new security approach Arab Today, arab today cyber failures spark search for new security approach

 



Arab Today, arab today
Arab Today, arab today Mohamed Bahari prepares new collection for spring 2017

GMT 06:15 2017 Monday ,27 February

Mohamed Bahari prepares new collection for spring 2017
Arab Today, arab today 17.4 million tourists visit UAE in 2016

GMT 00:47 2017 Monday ,27 February

17.4 million tourists visit UAE in 2016
Arab Today, arab today Sheds light on major steps in 12-year career

GMT 06:07 2017 Monday ,27 February

Sheds light on major steps in 12-year career
Arab Today, arab today UN envoy sets out framework

GMT 07:25 2017 Monday ,27 February

UN envoy sets out framework
Arab Today, arab today Ayat Abaza says state TV presented major stars

GMT 03:52 2017 Sunday ,26 February

Ayat Abaza says state TV presented major stars
View News in Arabic - Media: انترنت
Arab Today, arab today
Arab Today, arab today
Arab Today, arab today Reading therapy relieves mental disorders

GMT 15:39 2017 Friday ,24 February

Reading therapy relieves mental disorders
Arab Today, arab today Penguins in the age of dinos

GMT 11:44 2017 Saturday ,25 February

Penguins in the age of dinos
Arab Today, arab today Pluto's unruly moons

GMT 06:31 2015 Thursday ,04 June

Pluto's unruly moons
Arab Today, arab today 'Constructive' Vauxhall talk with union

GMT 08:54 2017 Saturday ,25 February

'Constructive' Vauxhall talk with union
Arab Today, arab today Tesla back into red but revenue grows

GMT 07:27 2017 Thursday ,23 February

Tesla back into red but revenue grows
Arab Today, arab today Reasons for the delay 'On the Stairs of Servants'

GMT 06:42 2017 Saturday ,25 February

Reasons for the delay 'On the Stairs of Servants'
Arab Today, arab today Ex-yoga missionary unleashes rage

GMT 12:16 2017 Thursday ,23 February

Ex-yoga missionary unleashes rage

GMT 07:23 2017 Friday ,24 February

Ola Ghanem hopes to work with M.Ramadan

GMT 05:14 2017 Thursday ,23 February

UK appoints 1st Scotland Yard chief in 188 years

GMT 18:23 2017 Friday ,24 February

Fadi explains secrets of  Nancy Ajram's newlook

GMT 10:28 2017 Wednesday ,22 February

Milan laughs while Rome cries

GMT 19:45 2017 Monday ,20 February

Sarah Belamesh designs antiques of "ceramic"

GMT 10:51 2017 Saturday ,25 February

Pigs with edited genes show resistance

GMT 14:04 2017 Friday ,24 February

Messi visit will contribute in tourism

GMT 13:12 2015 Saturday ,09 May

Sheikh Sultan opens Sharjah Centre

GMT 22:42 2017 Thursday ,23 February

Nasima Gamei revives heritage in jewelries
Arab Today, arab today
Arab Today, arab today
 
 Arab Today Facebook,arab today facebook  Arab Today Twitter,arab today twitter Arab Today Rss,arab today rss  Arab Today Youtube,arab today youtube  Arab Today Youtube,arab today youtube
arabstoday arabstoday arabstoday arabstoday
arabstoday arabstoday arabstoday
arabstoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
arabstoday, Arabstoday, Arabstoday