Untitled Document
Editor's note: Missed our SOA in Action Virtual Conference? Replay
sessions on demand right here.
The current threatscape, as with any landscape, can be viewed as endless vistas
of changing complexities and unfathomable permutations of technologies, network
topologies, risk scenarios and user requirements. It is the white noise of this
dizzying array of technologies, built upon an operating system monoculture,
which makes for a healthy breeding ground for cybercrime.
Essentially, cybercriminals are the ones who define the threatscape and can
be thought of as having the ultimate, but illegal, business plan. Currently
there are several negative elements that make up today's threatscape and in
this article I will focus on a few key pieces: malware, botnets, phishing and
the breach of data.
One of the main components of today's threatscape puzzle is malware. The term
malware is short for "malicious software," and over the last few years
there has been a shift in the malware dynamic. The shift is a result of the
change in malware author's motivation. While in past malware authors have been
driven by things like the possibility of fame and spite, however in today's
climate their motivation is almost always financial.
Today, one of the most popular types of malware are botnets. A botnet, also
known as drones or zombies, is a network of infected computers that is under
the management of a central controller or bot herder through the use of command
and control servers.
The goal of a botnet is to use the infected computers for criminal activities
such as generating spam or attacking a specific target (company, country, network,
etc.). Regardless of the crime committed with the botnet, it can be used by
the owner(s) for political purposes, to generate revenue and simply wreak mayhem.
The most noticeable effect of a botnet may be a decrease in computer performance.
A botnet may be sending thousands of spam emails from an infected computer and
there is no simple way to know that email is being sent from the computer. An
infected computer can also be used to attack other computer. While a slow computer
can be frustrating for an individual, for a business, it means reduced productivity.
-1-