IT Security – the outlook for 2008

Written by Saran on December 28, 2007

think.jpg
Wireless networks and ways of protecting them will top most of the IT Security issues for the coming year. Predictions place wireless networks to slowly take over the now existing networks and development into WiMax which has more coverage area in terms of distance compared to WiFi is making this a fast reality. Players in the WiMax development include the biggest names in the wireless network area such as Intel, Samsung, Motorola and many more. Innovations will continue to push the technology to better and improved performance like never before.

Studies also show that more and more workers are turning to wireless computing for their network and office needs doing what they do in the most unlikely places such as coffee shops and anywhere else they can get a stable and sustainable connection. It also raises ethics issues for people will no longer be out of reach of networks and equally their jobs. Family time and other more casual needs for privacy and quiet time will be secondary for your boss can always reach you anywhere on the planet there is coverage of a network.

The death of satellite based communications has spurred rapid development of Voip allowing anybody connected to the internet instant access to telephone-like services without the use of dedicated telephone lines. This saves on telephone bills and has been in use heavily initially with call centers and has now shifted to mainstream use so more is to be expected of the technology in the years to come which may ultimately result in the death of the standard telephone service many opting for high-speed internet access instead.

The release of the Quad-core processors and planned development of more multi-core microprocessors fuels the future of laptop supercomputers which may come in following years. This and all of the better and improved technology will allow computing to soar into new heights making them a mainstay in our everyday lives for the future.

[tags]Multi-core Processors, Mobile Computing, Mobile Workforce[/tags]

Tags: ,

Categories: General, IT Security Basics, Network Security, Physical Security, Privacy & Anonymity, Real-World Issues, Security Policies, Storage, Wireless Security

Leave a Comment

Network Assessment tools – for a better/secure network

Written by Saran on December 25, 2007

netsecurity.jpg
In the time when people are going more and more mobile making the telecommuting concept a true reality, the existence of the wall-less office has slowly been realized. The shift to WiFi and other wireless networking solutions has allowed people to work like never before without the wires that tied them physically to desks. More and more areas like metropolitan areas are putting up hot spots that allow constituents to work within specific areas which already have existing wireless networks. Even offices have shifted to the technology due to cheaper implementation without the expensive wires needed for each and every workstation. Maintenance of said wired networks also proved to be a very challenging task due to the restricted spaces and conduits which housed them behind walls, ceilings and under the floors. WiFi allowed then network to function without physical connections allowing mobile devices to be connected and linked to the network which could be taken anywhere in the office.

The wireless office has indeed given us more in the area of freedom but it has also created a more vulnerable network for control on who gets which access and other security issues quickly emerged. Software and hardware systems like Retina from eEye Corporation allowed network engineers and managers to analyze and address security loopholes such as unauthorized devices connected to the network like the occasional iPhone and most other unauthorized wireless devices. It also serves as an analysis tools on the proper placement and function of wireless antenna which can be analyzed based on signal strength. Weak signals can mean re-positioning the antenna system or worse it could be a signal of a pending failure for a specific network device. It can also show the effectivity of the network in terms of utilization and bandwidth that is being effectively shared/used by the users.

[tags]Network Invetory, Network Usage, Maximizing Internet Use[/tags]

Tags: , ,

Categories: Cryptography, General, IT Security Basics, Network Security, Privacy & Anonymity, Real-World Issues, Security Policies, Wireless Security

Leave a Comment

Passwords and back-up…still the best defense against data loss

Written by Saran on December 22, 2007

carbonite.jpg
Security experts agree and still recommend that passwords be as tough as possible to prevent access to information on computer systems/networks. Yeah, it sounds very redundant and has become a bit tiring to read but it truly is the best protection ever for a computer may it be in the office or home. Encryption is one of the most promising technologies that has swept the IT security arena but even these robust encryption technologies (hardware/software based) protection technologies can be circumvented given enough time and resources.

Some companies have even turned to military-grade encryption which is tough and almost impossible to break but a wrong move along the way (encryption, transmission and decoding) can lead to catastrophic data loss. Carbonite has another approach to data security by actually backing up data offsite from subscriber’s computers may they be corporate or home users. The initial process of copying and indexing may take a few hours or even days depending on the amount of data to be copied but the subsequent back-up process which is simultaneous (which means that it works in the background when there is not much going on in terms of resource use) as one connects to the internet. So you can be working all day and stop fro a few minutes for a coffee break and return to a computer that has all the necessary information backed up by the system automatically.

Data loss due to hardware failure, software corruption due to malicious code (viruses and the likes) and people simply being reckless and deleting information without following the proper assessment of the information still cost a lot of money to recover from and the approach Carbonite uses is a better option. The system uses secure military-grade encryption which even the Carbonite servers cannot break and use adding to it the use of SSL in the transmission of the information for one mean back-up solution. As a user in the article says, it is like getting an insurance policy for your data. More on the said technology in the coming posts so do return and check us out from time to time for more information on the latest and hottest information from all over the world in terms of IT Security. Merry Christmas and a Happy New year to all.

[tags]Data Security, Data Backup, Strong Passwords[/tags]

Tags: , , ,

Categories: Backups, Cryptography, IT Security Basics, Network Security, Real-World Issues, Security Policies, Wireless Security

Leave a Comment

Handhelds : Still the Biggest threat to Corporate Security

Written by Saran on November 30, 2007

hh3.jpghh3.jpghh2.jpgEmployee’s love them, Network Administrators hate them, the advent of more function packed handheld devices have sparked a re-evaluation of the threat these small devices pose. Traditionally, networks were quite safe for to gain access to it you needed to be hooked up to the network, physically with a LAN cable. Now that the shift to wireless has become the network engineer’s best friend the network has surely been simplified and companies are switching to the new technology. Thy no longer needed wires and all existing computers are either replaced with ones that support Wi-Fi or bought individual dongles that allowed connection within the office. That was still an easy security agenda for they usually had a range of a couple of hundred feet.

Then came wireless internet hotspots which commercial developers started to put up to get more workers out of the office into their shops allowing them to work while, say having coffee. That’s where the problems began for the more office correspondence left the walls of the office, the more harder was it to secure. VPN’s were implemented that allowed a secure channel within existing networks making it a bit better. But that was still quite vulnerable to attack and security experts needed a better way of securing corporate data where-ever the user might be. Projections by business and security analysts estimate volume to increase to 100 million email transactions to and from outside the office locations that is still causing nightmares as the next step is found in the drive to secure this network without physical bounds.

[tags]Handheld Computing, Mobile Computing[/tags]

Tags: , , , ,

Categories: Cryptography, General, IM, IT Security Basics, Instant Messaging, Network Security, News, Real-World Issues, Security Policies, Wireless Security

1 Comment

Dangerous XP Vulnerabilities continue to be discovered… and re-discovered.

Written by Saran on November 13, 2007

Many of us have been using Windows XP for quite sometime in it’s many forms and versions. We have Media Center Edition, Windows XP SP1 and the one which is now most common Windows XP SP2. An independent demonstration of vulnerabilities by the British Government and Private industry (which was also an indirect drive to get more people to shift to the more recently released Windows Vista) to show a wide open gap in the security measures implemented by computers still using Windows XP SP1 without any protection (anti-virus, firewall and other upgrades implemented by the parent company after the products were released to the public).

The test involved two officers from a special task force that handles crimes such as those related to computer fraud, piracy etc. It showed how easy it was to get hold of tools that searched for vulnerabilities on a computer running the said Operating system without the owner/user even knowing about it. These tools are widespread on the internet and can be downloaded for free. After getting knowledge of the vulnerability list which can include open ports and much other wireless vulnerability, the second officer then proceeded to make a program in MS-DOS which was then sent and executed onto the victim computer.
Viola, in a matter of minutes the second officer has gotten hold of many vital files such as password lists, credit card information, bank statements and other personal information that may be stored into the said victim unit under a quarter of a minute.

Many such vulnerabilities have been discovered in the XP generation of Operating Systems since its release in 2003 and Microsoft has continued to come out with patches to resolve such issues. Vulnerabilities such as simple programs that can disable the windows firewall have been publicly released on the internet and are quite numerous. To date, Microsoft has managed to keep up with these vulnerabilities but XP remains open malicious attack. Asked for their opinion, a Microsoft executive replied that it truly was alarming but that all those vulnerabilities have been addressed with the release of XP SP2 and all subsequent updates and patches.

Tags: , , , ,

Categories: General, IT Security Basics, Malware, Network Security, News, Operating Systems, Real-World Issues, Security Policies, Wireless Security

1 Comment

Defining Security Roles and Administrative Rights Policies

Written by Saran on July 27, 2007

System users are usually granted specific rights with regards to their accessibility options towards the main server. This is why most systems administrators need to identify the licensed users and their rights as defined by their department heads and superiors. Granting rights to all may be a bad decision since it allows the system and the network vulnerable to any form of intrusion at any time without limiting the options of who may be behind it.

security access levels

Such has been an issue that systems administrators must learn to address. It is not mainly about knowing a person but by what he is capable of doing. That is why access rights should be properly labeled as administrators, users or guests. The absence of such tags makes it hard to audit and work backwards in cases where system malfunctions and possible conflicts such as server crashes may ensue. It is best to limit the users at a minimum so that pinpointing the probable suspects can be limited.

[tags]security rights, access levels, accessibility[/tags]

Tags: , ,

Categories: IT Security Basics, Network Security, Operating Systems, Privacy & Anonymity, Programming, Security Policies, Tips, Wireless Security

Comments Off

The Potential Threats of Foregoing Cyber Security

Written by Saran on May 23, 2007

While most of the world relies heavily today on computers and the Internet, safeguarding data and intrusion from malicious hackers and technology advanced individuals should be the main cause for concern.

Cyber Security

It is no secret that most systems that do not have the proper security programs face the risk of potential loss of information or being a cause for downtime for servers that need to be operational 24/7. Without the security perimeter fences installed, a server or workstation is prey to a lot of attacks stemming from hackers, worms and Trojans that are spread all over the Internet today.

The risk is indeed high considering that a lot of personal and business related programs and files are the bloodstream of most operational works today. Without the proper cyber guards to act as assigned protectors to key data, internal operations and key components in systems will surely be facing threats that may not immediately be recovered by back-up systems alone.

[tags] internet security, cyber security, cyberspace, cyberworld, firewall, intrusion[/tags]

Tags: , , , , ,

Categories: Backups, IT Security Basics, Malware, Network Security, Operating Systems, Physical Security, Privacy & Anonymity, Programming, Real-World Issues, Security Policies, Spyware, Storage, Tips, Wireless Security

Comments Off

Reading Technology Website News

Written by Saran on March 19, 2007

The best way for people to know what the latest threats and mischievous activities that people are up to over the web is to read the websites that specialize as well in network and computer security. There will always be new viruses, spyware and Trojans over the web and while the scope that these sites cover may not be saturated, it also depends on the part of the people on how they are inclined to be aware of such.

News Reading

Unless there is a real outbreak that possesses quite a threat towards every computer, people will not be aware or concerned about technology security today. While the religious practice of keeping track of these threats cannot be readily instilled, it would be best to exhaust all means in being able to do so. Besides, people know for a fact that neglecting such efforts will be at their own risk and network and computer security is something that many would realize when the harm has already been done.

[tags]newspapers, magazines, e-zine, websites[/tags]

Tags: , , ,

Categories: IT Security Basics, Malware, Network Security, Programming, Review, Security Policies, Spyware, Tips, Wireless Security

Comments Off

What are Intrusion Detection Systems?

Written by Saran on March 17, 2007

It has been a given that there are a lot of things that networks and workstations would be vulnerable to. At the top of the list are harmful files and sudden intrusions that are obviously up to no good. While resorting to firewalls may be seen as something that would prevent such attacks, intrusion detection systems cater more towards the inner system igniters, usually providing warnings prior to required action on the part of network administrators on the issue at hand.

Intrusion Detection Systems

Also, IDS monitors the behavior of the internal system since attacks of any sort may occur from files that can be initiated at any time or have already passed through the firewall for some reason beyond the set security policies.

It is a good practice to always check the network communications and identify possible security breaches. While intrusion detection systems can be able to apprehend abnormal processes, the presence of such intrusions within the internal system only proves that system and network security should be re-evaluated for stricter measures.

[tags]intrusion detection systems, network security, operating systems[/tags]

Tags: , ,

Categories: IT Security Basics, Network Security, Operating Systems, Security Policies, Tips, Wireless Security

Comments Off

Scan Storage Devices before Enabling

Written by Saran on February 19, 2007

Viruses and malware issues are far from being a thing of the past. On the contrary, they seem to grow large by numbers as each day passes. Thus the works of security software companies have their work cut out for them. There is not definite date to which such threats and intrusions would wholly be resolved.

Scanning Protocol

For the time being, it would be advisable for people to scan third party storage devices such as diskettes, USB drives and mobile storages to be safe and sound. These wandering viruses can attack at any time and this is a fact anywhere computer related materials are concerned.

Files can go as far as infecting the executable files, hence document, excel and compiled scripts are baits for immediate infection and malicious intrusions. Software applications also have their limits as their development teams cater only to a specific genre for known harmful files. But it is better to lower the risk of intrusion than not having protection at all.

[tags]scan, spyware, virus, infections, spyware, malware, trojans[/tags]

Tags: , , , , ,

Categories: Backups, IT Security Basics, Malware, Network Security, Operating Systems, Programming, Real-World Issues, Security Policies, Spyware, Storage, Tips, Wireless Security

Comments Off