Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Gaming Platforms Used for Mainstream Computing, Target for Malware | Main | Easy iPhone Hack Demonstrated »

McAfee Foresees Growing Threat from Botnets and Vulnerable Web Services

McAfee is looking to the recent past and predicting that two of the biggest problems we'll face in the next year are more resilient and dangerous botnets and more attacks on Web sites. vnunet.com notes:


Many of the threats to web 2.0 services are based on poor design. McAfee security researcher Craig Schmugar suggested that companies are not making security a top priority, ... "Functionality is ahead of the security curve in the web 2.0 space," he said. "Security may not have been the top of the list as far as the feature set goes. "

Other increasingly likely threats are more botnets like the polymorphic Storm, more attacks on Vista, and attacks on VoIP and virtualized servers.

More interactive Web sites are increasing the attack surface open to attackers and newer technologies, like VoIP, are being rolled out before the security implications are fully understood. This, like death and taxes, is probably inevitable.

Businesses want the advantages of emerging technologies, they will only spend so much time with them in a lab or test environment before moving them to production. At that point system admins have to come up to speed pretty quickly to keep new mission critical applications running and of course secure. It's a lot to ask but we do it anyway. Attackers know this and as McAfee predicts, we'll see those bad guys exploiting the application and configuration vulnerabilities we know will be there.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/527

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net