Government Technology

Top 10 Network Security Threats


security illustration
security illustration

September 20, 2010 By

With cyber-threats becoming a daily headache for IT security staff, it helps to have some advice, or at least know what to look out for. One researcher of Fortinet, a network security software provider, offered his observations on the top 10 threats that can harm networks from the inside and ways to combat them. And according to him, the number of threats just keeps growing.

“The ways that the networks can be compromised five years ago internally, certainly still exist. It’s just that today, that list is really growing, and that’s why this is ongoing research,” said Derek Manky, a project manager for cyber-security and threat research at Fortinet.

Manky said that the company has more than 100 researchers worldwide who monitor network activity.

“It’s really an ongoing case again of all this data that we’re seeing worldwide, all this feedback we’re getting, all the new threats that we’re seeing and how those threats can potentially affect systems,” he said.

According to the researchers, the top 10 internal network vulnerabilities are:

  1. USB drives
  2. laptops and netbooks
  3. wireless access points
  4. miscellaneous USB devices (digital cameras, MP3 players, etc.)
  5. employees borrowing others’ machines or devices
  6. the Trojan Human (attackers who visit sites disguised as employee personnel or contractors)
  7. optical media (CDs, DVDs, etc.)
  8. lack of employee alertness 
  9. smartphones
  10. e-mail

     

The list also includes advice for prevention and mitigation, with tips like implementing asset control policies to handle removable media threats and implementing an encrypted file system for sensitive data.

Some potential security threats such as smartphones can be dangerous in part because people don’t see them as threats. And even though they can house viruses, the devices can threaten networks in ways people may not think of.

“If you have any sort of confidential information and you have access to that, even if the document doesn’t leave the quarantined area and you take a picture of that with a smartphone, you can send that over [a] 3G network. You can just keep it on the smartphone and walk out with it,” Manky said.

But when it comes to locking down networks and implementing security protocols, Manky said the government may be in a different position than the private sector when it comes to enforcement.

“They have a heavier hand. They can enforce this and say, ‘OK, across all agencies, we are banning this until we can think of what’s going on with this.’ So that is a good thing in my view because if you can properly enforce something, and you can take action on that, then it’s a step forward,” he said.

But there could be drawbacks. In addition to policy “turf wars,” Manky admits that different sectors of government can cause confusion if they’re trying to enforce the same thing but have different ideas on how to go about it.


You may use or reference this story with attribution and a link to
http://www.govtech.com/security/Top-10-Network-Security-Threats.html


| More

Comments

Peter Haskel    |    Commented September 21, 2010

I can't find a link or other citation to the report/list described by this article -- within the article, elsewhere on the Web page or on the Fortinet Web site. Perhaps I'm looking right at it but missing it. Kindly assist.

Jean    |    Commented September 22, 2010

People are the #1 security risk either knowingly or unknowingly. Policy must be put in place to protect companies. Then all people-even techies must be held accountable for good, ethical computer usage.

Elman    |    Commented September 22, 2010

AirPatrol corp has a solution for these threats except for the human element.

triveni    |    Commented September 23, 2010

good

tim    |    Commented May 30, 2011

all we can do is update our system to be better protected against this attack or whatnot

shubeydo    |    Commented November 19, 2011

You listed the top 10 vulnerabilities..not threats.

tsegay    |    Commented January 14, 2012

i have not any comment to ward that .

Vick    |    Commented January 31, 2012

As shubeydo said, this article is not about network security threats. I recommend the following article where briefly are described the most dangerous threats and some notices how to avoid them: http://www.nortoninternetsecurity.cc/2010/12/network-security-threats.html

LUZIINDA RICHARD HECHTER KIGONGO    |    Commented April 4, 2012

Y DON'T U B BRIEF "SUMMARISED "

walter    |    Commented August 20, 2012

umm people are the ones that use the networks... so therefore, yes they would be the 1# security risk now wouldn't they... until skynet becomes self aware that is.

sharon    |    Commented September 19, 2012

you did not explain each and every threat specifically...

maimuna    |    Commented October 30, 2012

i can find what i want threats to network danage network

Ani Lewaniu    |    Commented April 2, 2013

i also understand the types of network threats stated above with network threats because people are the ones who are using the networks all around the world so we need to be specific in a way that this threats can be prevented as stated

gfds    |    Commented 12 Days Ago

hello


Add Your Comment

You are solely responsible for the content of your comments. We reserve the right to remove comments that are considered profane, vulgar, obscene, factually inaccurate, off-topic, or considered a personal attack.


Collaboration for the Public Sector



Collaborative Justice: Transforming Criminal Justice Services Through Unified Collaboration
This issue brief examines video collaboration in every stage of the human justice process, demonstrating how this technology can not only make services more efficient, affordable, and accessible.

Cloud-Based Services Accelerate Public Sector Adoption of Video Collaboration
Today, thanks to new cloud technologies and high-quality networks, mobile video services - which provide not only cost savings but which help governmental interactions become more efficient - are more feasible than ever before.

Modernization as a Service: Acquiring IT through Innovative Procurement

Five Ways Collaboration is Driving Government Performance

Mobile Video Collaboration: The New Business Reality