Technology Industry
Industry: Email Alert RSS FeedBrowser-based Attacks Pose Emerging Threat
Enterprise Networks & Servers, May 2004
Browser-based attacks are surging and may pose the next significant security threat to information technology (IT) operations. That is one of the key findings of the second annual survey on IT security and the workforce from CompTIA, the Computing Technology Industry Association.
The survey of nearly 900 organizations found that 36.8 percent were plagued by one or more browser-based attacks in the last six months. That's up from 25 percent in last year's survey.
Most RecentTechnology Articles
Browser-based attacks use browser systems and user system permissions to disrupt computer functions. These attacks are unleashed when someone visits a Web page that appears harmless, but actually contains hidden malicious code intended to sabotage a computer or compromise privacy. The result of the attack may be as simple as a crashed browser, or as serious as the theft of personal information or the loss of confidential proprietary data.
"The explosion of dynamic, created-on-the-fly Web pages, which often incorporate individual personal preferences, is exposing organizations' IT systems to new security threats," said John Venator, president and chief executive officer, CompTIA. "It is clear that education on IT security can no longer be limited to a handful of IT personnel. Keeping the IT infrastructure safe is the responsibility of everyone in the organization."
Computer viruses and worm attacks, though still the biggest threat to IT security, are significantly less common than they were a year ago, according to the CompTIA survey.
Last year 80 percent of organizations identified worm and virus attacks as their most common IT security threat. This year, the comparable figure is 68.6 percent.
Network intrusion issues, named last year as the second-most common security threat (65.1 percent), showed a significant drop this year, falling to 39.9 percent. Organizations also reported significant declines in problems caused by remote access, such as virtual private networks and dial-up (41.7 percent, down from 49.9 percent); and social engineering (17.9 percent, down from 21.9 percent).
Antivirus applications are still the most commonly used technology or practice to enforce security requirements. The CompTIA survey found that 95.5 percent of organizations use some form of antivirus technologies.
Firewalls and proxy servers are the second most commonly used technology, identified by 90.8 percent of respondents. That's down from last year, when 93.7 percent of organizations reported using these technologies.
Security audits and penetration testing account for an increasing portion of the measures now in place to monitor general security performance. They were identified by 61 percent of respondents, up from 53 percent.
Other commonly used measures include systems baselines (51.4 percent, up from 46.5 percent) and change control tracking (44.3 percent, up from 39.1 percent)
Fifteen percent of organizations reported they have no measures in place to monitor general security performance.
The survey was conducted for CompTIA by TNS Prognostics of PaIo Alto, Calif., a leader in customer research based consulting for the IT industry.
CompTIA is a global trade association representing the business interests of the information technology industry. For more than 22 years CompTIA has provided research, networking and partnering opportunities to its more than 19,000 members in 89 countries. More information is at www.comptia.org.
CXO UnpluggedSmart Business interviews on BNET
Brought to you by CBS MoneyWatch.com
- Best- and Worst-Paid College Degrees
- 6 Things You Should Never Do on Twitter or Facebook
- How Much Sleep Do You Really Need?
- 6 Big Myths about Gas Mileage
- 5 Rules for Immediate Annuities
- Death in the Family: 12 Things to Do Now
- Dumbest Things You Do With Your Money
- 6 Online Networking Mistakes to Avoid
- 401(k) Mistakes to Avoid
- 5 Economic Scenarios to Keep You Up at Night
- The Real ‘Best Places to Retire’
- Best Credit Cards for You
- 12 Tough Questions to Ask Your Parents
- The Real ‘Best Colleges’
- Home Buyer Tax Credit: How to Cash In
- Why You Shouldn't Bash Cash
- 8 Phony 'Bargains' and Better Alternatives
- Danger: 3 Debit Card Scams to Avoid
- 6 Myths About Gas Mileage
- 29 Fees We Hate Most
- Quick and Easy Ways to Boost Returns
- Best Stocks to Buy Now
- Lower Your Taxes: 10 Moves to Make Now
- New Jobs: 8 Lessons from Real-Life Career Switchers
- The New Job Market: Who Wins and Who Loses?
- Health Care Reform's Public Option: Everything You Need to Know
- Volunteer Work When Unemployed: Should You Work for Free?
- Whose Recovery Is This?
- Long-Term-Care Insurance: 4 Biggest Risks to Avoid
Content provided in partnership with
Most Recent Technology Articles
Most Recent Technology Publications
Most Popular Technology Articles
- Building cost comparison between conventional and formwork system: a case study of four-storey school buildings in Malaysia
- BizRate to monitor in-store customer satisfaction for Office Depot stores - Market Intelligence
- Speed control of separately excited DC motor
- Failed businesses in Japan: a study of how different companies have failed, and tips on how to succeed, in the Japanese market
- Political stability and economic growth in Asia



