Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Intruders the biggest threat to network security

Two vendors debate whether company insiders are a greater security threat than hackers.
Face-off By Jonathan Bingham , Network World , 02/21/2005
  • Share/Email
  • Tweet This
  • Comment
  • Print

Companies find it convenient to single out employees as the main threat to internal network security so they can put a face on the problem. But unwanted intruders, not employees, pose the greatest risk to organizations. An intruder can be a malicious hacker, former employee or one of the thousands of third-party connections organizations have opened to help further business goals.


The other side: It's insiders
The forum - What do you think?

Solutions exist to protect against employee abuse. The most common is access control - locking down file servers, desktops and applications. Recently, vendors have tried to protect content on the networks. This approach only fortifies against the casual employee who is bored or looking to get a head start with the sales list before heading to the next job. These solutions cannot protect against sophisticated intruders who employ state-of-the-art tools and technologies to cause damage to companies.

Today, hackers circumvent network security by disguising themselves as legitimate users. With one legitimate access account, the intruders can infiltrate systems - not breaking down gates, but accessing each system with legitimate credentials they gather along the way. They steal these credentials in a variety of ways: compromising a home user's computer, tricking employees into divulging passwords or user names, or sniffing an ISP.

Scarier still, most companies don't have a way to detect these compromises. Compromises are usually discovered while operating or rebuilding a server or, more likely, when a CEO wakes up to find his proprietary data publicly available.

Criminals use an arsenal of techniques to access valuable data: reverse HTTP tunnels, Internet Control Messaging Protocol backdoors, sniffers, Trojans, even steganography - embedding data in images. And with the proliferation of sources to download these tools on the Web, users need less sophistication than they did even six months ago. That's why companies should worry about sophisticated hackers and not employees who blindly access networks.

A new technology - compromise detection - exists to combat the risk malicious hackers pose. Unlike both access controls and content filters, compromise detection was built specifically to defend against the stealthy and sophisticated attacks that intruders will use now and in the future.

  • Share/Email
  • Tweet This
  • Comment
  • Print
Comments (3)
Login
Forgot your account info?

Intruders the biggest threat to network securityBy Anonymous on March 21, 2007, 1:52 pmWow u guys just contradicted yourselves, in an other article u said that inside workers were the biggest threat

Reply | Read entire comment

He's right, ya'll just did contradict yourselves! I mean come onBy Anonymous on April 28, 2009, 10:05 amHe's right, ya'll just did contradict yourselves! I mean come on! people do read more than just one out of two articles!

Reply | Read entire comment

types of intrudersBy Anonymous on September 10, 2009, 1:07 pmplz list type of intruders

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed