Feb 5, 2008, News Report
The SANS Institute announced that during December 2007 twelve cyber security veterans with significant knowledge about emerging attack patterns worked together to compile a list of the attacks most likely to cause substantial damage during 2008.
Increasingly Sophisticated Web Site Attacks That Exploit Browser Vulnerabilities -- Especially on Trusted Web Sites -- Web site attacks on browsers are increasingly targeting components, such as Flash and QuickTime, that are not automatically patched when the browser is patched. At the same time, Web site attacks have migrated from simple ones to more sophisticated attacks that increasingly utilize packaged modules that can effectively disguise their payloads. Placing better attack tools on trusted sites is giving attackers a huge advantage over the unwary public.
Increasing Sophistication and Effectiveness in Botnets -- The so-called Storm worm (which was not really a worm at all) started spreading in January, 2007, with an e-mail saying, "230 dead as storm batters Europe," and was followed by subsequent variants. Within a week, it accounted for one out of every twelve infections on the Internet, installing rootkits and making each infected system a member of a new type of botnet. Previous botnets used centralized command and control; the Storm worm uses peer-to-peer control, so there is no central controller to take down. Additional variants have used messages with different subjects and improved the capabilities of the rootkit. In 2008, additional variants and continually increasing sophistication will keep this worm and other even more sophisticated worms near the top of any list of menaces.
Cyber Espionage Efforts By Well Resourced Organizations Looking To Extract Large Amounts Of Data Particularly Using Targeted Phishing -- One of the biggest security stories of 2007 was disclosure in Congressional hearings and by senior DoD officials of massive penetration of federal agencies and defense contractors and theft of terabytes of data by the Chinese and other nation states. In 2008, despite intense scrutiny, these nation-state attacks will expand; more targets and increased sophistication will mean many successes for attackers. Economic espionage will be increasingly common as nation-states use cyber theft of data to gain economic advantage in multinational deals. The attack of choice involves targeted spear phishing with attachments, using well-researched social engineering methods to make the victim believe that an attachment comes from a trusted source, and using newly discovered Microsoft Office vulnerabilities and hiding techniques to circumvent virus checking.
Mobile Phone Threats, Especially Against iPhones and Android-Based Phones; Plus VOIP -- Mobile phones are general purpose computers, so worms, viruses, and other malware will increasingly target them. Google's recent announcement of "android" and the formation of the "open handset alliance" is a watershed moment for the mobile industry. A truly open mobile platform will usher in completely unforeseen security nightmares. The developer toolkits provide easy access for hackers. And, hackers are taking note. Attacks on VoIP systems are on the horizon and may surge in 2008. VoIP phones and the IP PBXs have had numerous published vulnerabilities. Attack tools exploiting these vulnerabilities have been written and are available on the Internet. In short, the VoIP attack surface is enormous.
Insider Attacks -- Insider attacks are initiated by rogue employees, consultants, and/or contractors of an organization. Insider-related risk has long been exacerbated by the fact that insiders usually have been granted some degree of physical and logical access to systems, databases, and networks that they attack, giving them a significant head start in attacks that they launch. More recently, however, security perimeters have broken down, something that allows insiders to attack both from the inside and from outside an organization's network boundaries. Insider-related risk (as well as outsider risk) has thus skyrocketed. Organizations need to put into place substantial defenses against this kind of risk, one of the most basic of which is limiting
Read real world deployments of technology in government from our sponsors.
View All Industry SolutionsThis section
brought to you by:
Emergency Management magazine invites you to participate in our Communications and Interoperable Technology Survey. Our 11 questions are very brief and should only take 5 minutes of your time.
Complete our survey now, and enter to win a $25 Amazon Gift Card!
Webinar: A New Era in Public Safety Wednesday, December 10, 2008 from 11:00 am - 12:00 pm PST/2:00 pm - 3:00 pm EST
A New Era in Public Safety BlackBerry® smartphones running on Sprint networks deliver a wide range of applications that are transforming public safety operations.
Hurricane Preparedness Tips When a hurricane hits, are you prepared to keep in touch?
Case Study - Morris County, New Jersey The Morris County Communications Center upgraded to a new trunked radio system with the benefits of a cellular network, extending coverage beyond county lines
Case Study - Iredell County, North Carolina Spanning over 570 sq miles, it became imperative that the Iredell County Emergency Communications, Operations and Management extend it's communications systems to enhance reliability, security, and coverage.
Case Study - City of Anaheim, California The City of Anaheim saw an opportunity to leverage existing GST and partner with nearby cities to enhance safety operations through data interoperability.
Case Study - Charlottesville, Virginia Fire Department Taking advantage of a range of interoperability solution, the Charlottesville Fire Department has achieved a network that can serve as backup to their existing public safety network.
Sprint ERT Go-Kit with GST Optima Rapid, interoperable communications for emergencies, drills and field exercises.
Optimal Interoperability Until recently it was not possible to cost effectively connect commercial networks to LMR systems. Improvements in communications technology have resulted in greatly enhanced operational capability and have reduced the log-term cost of communications system ownership.
Multi-agency interoperability for Public Safety Establishing cross-agency, real-time situational awareness is critical to effective incident management as well as daily resource management.
DHS Grants and Assistance Programs Link to overview of available grants administered by The Department of Homeland Security (DHS)
Fact Sheet: Fiscal Year 2008 Preparedness Grants Major changes in funding and focus for 2008 DHS grant programs
Remarks on 2008 Homeland Security Grant Guidance DHS Secretary Michael Chertoff and FEMA Administrator David Paulison
$1.8 billion in DHS Homeland Security Grant Program Awards
Funding Public Safety Communications Whether you are a law enforcement agency, looking for funding to support an interoperable communications solution or a school, seeking to improve communications between building administrators, grants may provide the funding you need to implement a robust, scalable communication system.