Comments on: Data breach incidents are increasing, study shows
An annual survey shows a stark increase in data breaches in 2008, worrisome news as CIOs are asked to make cuts in security spending.
An annual survey shows a stark increase in data breaches in 2008, worrisome news as CIOs are asked to make cuts in security spending.
Web sites launch all the time, but they also shut their doors. We highlight 15 that bit the dust this year.
Let the debate begin: Was the iPhone more important than iTunes? Was anything bigger than Google finding a great business model? CNET offers its list of the 10 most important stories of the '00s.
Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.
Add this feed to your online news reader
Jon- Interesting to note that the difference in number of breaches between larger and smaller organizations is not that huge - does this imply that current security practices being implemented in larger organizations are not doing their job? As you said, an uphill battle indeed - the number of devices increasing, the networks multiplying and data getting even more distributed. I don't think the current approach of protecting mainly the data at rest on devices is working and the numbers seem to reflect that. I believe an information-centric approach of protecting the data itself is the more logical way to address these challenges.
Hmm. Agree with the prognosis, but am wondering about the cause. Given that IT has been foisted on our ex-hunter-gatherer cultures and still-evolving brains, is it any wonder that, when we are given in the space of only a few decades, an electronic playground as full of holes and as empty of agreed behaviours that we have today, that the level of data breaches should be so high? I wish I had the answers, but I know (sorry, vendor comments) that technology ain't going to solve the problem by itself. My current philosophy is, 'one-third technology, two-thirds best practice', which feels about right though woudl be difficult to prove scientifically.
Cheers, Jon
Freeform Dynamics
http://www.freeformdynamics.com
http://viewsfromthebridge.wordpress.com/
twitter: jonno
Continuump mentioned looking for solutions, here's what I've found works:
1) Check your firewall logs. Specifically, spend some time looking at outbound traffic flow during non-business hours (both permitted and blocked, *especially* TCP/80). Weed out known patch sites and investigate everything else.
2) Forget about the treadmill that is A/V signature updating and move towards application control, also sometimes referred to as application white listing. I work with sites that see zero malware infections despite the fact that they dumped their A/V solution over a year ago.
3) The target of choice for serious attackers is desktops, not the servers. With this in mind consider deploying HIPS software on every system. Focus on back end management capability rather than slick features. Something that runs as a kernel module works best.
- by MChuvas July 31, 2009 6:05 AM PDT
- Many breaches are occurring due to data being lost by employees, third parties or while in transit. This is one of the areas needing to be controlled....
- Like this Reply to this comment
-
(5 Comments)How do you control who accesses your data once it?s left your physical control? How do you audit what has happened to your information?