Welcome | Sign In
CRMBuyer.com
Security

INDUSTRY REPORT
Internal Threats Still Major Network Concern

Print Version
E-Mail Article
Reprints
Internal Threats Still Major Network Concern

A recent extensive review of security posed by internal threats concludes that the majority of U.S.-based organizations is still at considerable risk of exploit. Mazu teamed up with Enterprise Strategy Group to study the current state of affairs with network security. The report exposes numerous flaws in the approach to network security commonly used in corporate workplaces.


As wireless technology gains popularity, network security issues continue to multiply. However, wireless connectivity isn't the only major concern for IT managers; corporate workers pose heightened threats from within enterprise structures.

One of the most productive -- and abused -- communication tools in the workplace is instant messaging. IM applications pose new risks for unauthorized passage around firewalls. E-mail, too, is pushing safety concerns to the limit on medium and large corporate networks.

Extensive Security Review

According to Paul Brady, president and COO of security firm Mazu Networks, based on customer Increase Customer Sales with Email Marketing -- Free Trial from VerticalResponse response, the No. 1 problem is worm intrusions. In the wake of these growing worm and insider attacks comes increasing government involvement in network security.

A recent extensive review of security posed by internal threats concludes that the majority of U.S.-based organizations is still at considerable risk of exploit.

Mazu teamed up with Enterprise Strategy Group to study the current state of affairs with network security. The report exposes numerous flaws in the approach to network security commonly used in corporate workplaces.

Mazu is a security company focused on securing internal network assets. The company's technology is based inside the perimeter and analyzes network anomalies to identify suspicious behavioral patterns.

Enterprise Strategy Group, a leading industry analyst firm, focuses on storage and information management, information security and applications.

The Mazu report is based on the responses from 229 IT professionals responsible for evaluating, purchasing or managing information security products and services for their organizations. Respondents represented companies ranging in size from less than US$50 million to more than $5 billion in revenue. The participants came from 18 different industry segments.

Flawed Premise

To qualify for inclusion, respondents had to work for organizations with at least 1,000 employees.

Corporations typically design their network security around the belief that external networks present the most risk to an organization's critical infrastructure. Thus, most organization's security technologies concentrate on performing border patrol activities through firewalls, intrusion detection systems (IDS) and intrusion prevention systems (IPS).

Such systems look closely at suspicious incoming network packets. The goal is to pass through so-called good traffic and to block any discovered malicious code.

"Security technology has evolved around fortifying the perimeter. But 90 percent of what people are trying to protect is internal," Brady told TechNewsWorld.

Mazu Networks doesn't operate solely around the perimeter. Instead, it takes a more proactive approach to identifying the threats, Robert Nazzal, director of product management for Mazu, said.

"People need to realign their perimeter defenses," Nazzal said.

Almost half of all respondents indicted that their networks were struck by a worm attack in the last year. Thus, worm attacks remain a major threat to network assets.

About one-quarter of all respondents agreed that their networks had at least one internal security breach in 2004. Slightly more than that number of respondents did not know if their networks were compromised.

IT personnel do not share a solid confidence in the reliability of their firewall rules and access policies. Only 28 percent said they were very confident about this.

Government pressure is responsible for most movement by companies that tighten up their network security. Some 73 percent of the respondents stated that Sarbanes-Oxley Act of 2002 forced compliance efforts that led to an increase in security investment and/or resources.

Startling Concerns

Brady noted that the profile of network attackers has changed. Hacking into corporate networks is no longer a rite of passage. Instead, today's hackers have political and financial goals in mind.

Networks that are filled with vulnerabilities are facing such new threats from hackers. In order to effectively protect their networks, IT managers need more powerful tools than firewalls -- either hardware or software.

The Mazu study revealed the four most common types of vulnerabilities to corporate networks.

The No. 1 offender is the existence of active user accounts that belonged to ex-employees (46 percent). The second most common offender (44 percent) is misconfigured hosts or networking equipment.

Rogue wireless access points (31 percent) and network nodes with default passwords (26 percent) round out the most prevalent offenders to network security.

Prognosis for Better Security

The Mazu report concluded that without a viable solution, internal security breaches will continue to stymie business progress due to interruption and remediation of critical systems. These continued occurrences will lead to tighter government regulations around information security.

The need for better internal network security will force IT managers to become more proactive and impose stricter employee monitoring.

The Mazu report concludes that Internet worms have become a primary threat to system availability and potentially threaten their victim companies with billions of dollars in damages.

The real danger with worm intrusions lies in the fact that organizations still have not integrated adequate worm defenses. This worry is compounded by the fact that the largest networks are the most likely to have an internal breach, according to Mazu's conclusions.

Organizations with no internal breaches overwhelmingly point to tightly managed user authentication and authorization, well defined security policies and procedures, and "effective network security technologies" as a key to their success Download Free eBook - The Edge of Success: 9 Building Blocks to Double Your Sales

The report stressed that auditing is a key part of securing networks and that vulnerabilities and exploits are widespread.

Mazu's Approach

Mazu has a two-product approach to protecting networks. The first solution, Profiler, protects internal networks against worms and insider threats. It leverages existing network infrastructure to detect and mitigate new and zero-day attacks. It hardens the internal network against future attacks and audits how sensitive assets are used and by whom.

The second solution, Enforcer, protects the network perimeter against denial of service attacks and worm storms. It detects, characterizes and filters static and dynamic attacks.

Both of these products are designed for enterprise network infrastructures. However, Nazzal said Mazu will enter the small-to-medium-sized business market by the end of the second quarter.

Brady said mission-critical protection for smaller companies is being driven by VoIP service.

"CIOs want people on the networks, not off them. But they have to protect the integrity of the data for the most low-cost way possible," he said.

For enterprise users, Mazu's security solution costs from around $75,000, depending on the product configuration and the options purchased.


Print Version E-Mail Article Reprints More by Jack M. Germain


More by Jack M. Germain

Microsoft FOSSifies .Net Micro Framework
November 18, 2009
Microsoft has declared its .Net Micro framework open source under the Apace 2.0 license. Not all bits of .Net Micro are covered, however. Its TCP/IP stack has been stripped, as has its cryptography libraries. Rights to the TCP/IP stack aren't Redmond's to give, and the cryptography libraries are used outside of the scope of the .Net Micro framework, according to the company.
New Ubuntu OS Features Create Good Karma
November 13, 2009
Amidst the OS upgrades from Apple and Microsoft over the last few months, the Linux OS Ubuntu got a version bump of its own. Ubuntu 9.10, or Karmic Koala, is well worth the effort to upgrade, and its developers have made the process easier -- if you're using the full-sized desktop/notebook version. The Remix version, intended for netbooks, caused quite a few headaches.
Samsung Chimes In With Bada Mobile OS
November 11, 2009
With Android, iPhone, BlackBerry, WinMo, Symbian, WebOS and plenty other mobile platforms fighting for space, is there room for one more? Samsung believes there is, and it's announced a new open mobile platform called "Bada." The company, which already makes handsets for several existing platforms, says Bada will make app-making easy for developers. The first Bada handset should be out in the first half of 2010.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network