Channel News and Analysis - Channel Insider
Empowering the next generation Channel
 
security
Surprising Security Shortcomings After nearly a decade of threat warnings, evolving threats and billions of dollars in technology investments, you’d think that businesses have at least a baseline of IT security protections. Recent reports reveal some surprising security shortcomings in the business community.



Sponsored Links
  • SonicWALL VS Status Quo Solutions. No Contest
  • Sell BlackBerry® Technical Support and earn
  • Ready. Set. 7. See who’s building with Windows 7.
  • Special support for Microsoft partners in today’s economy
  • Green is a huge opportunity with HP PartnerONE



  •  

    Cisco Source Code Reportedly Stolen

    in Channel News and Analysis


    Article Rating:starstarstarstarstar / 0
    Article Views: 874

    Rate This Article:
    Add This Article To:
    Updated: The FBI is investigating the possible theft of source code for Cisco's main networking device operating system.

    The FBI confirmed Tuesday that it is working with Cisco Systems Inc. to investigate the possible theft of source code for Cisco's main networking device operating system.

    FBI spokesman Paul Bresson said that the FBI is lending its "assistance" into the "possible" theft. "We are aware of it, and we're working with [Cisco] to resolve whatever issues may exist," said Bresson, in Washington, D.C.

    According to a Russian security Web site, criminal hackers broke into Cisco Systems' corporate network last week and stole 800MB of source code for IOS 12.3 and 12.3t (an early deployment version of the operating system containing features not found in the vanilla 12.3 version). In addition, a 2.5MB sample of what is supposedly IOS code was released on an Internet Relay Chat channel as proof of the alleged theft.

    "Cisco is aware that a potential compromise of its proprietary information occurred and was reported on a public website just prior to the weekend," said Cisco spokesman Robert Barlow. "Cisco is fully investigating what happened. As a matter of policy, we take security very seriously and we continue to take every measure to protect our intellectual property, employee and customer information."

    Resource Library:
    IOS 12.3 is the newest main version of San Jose, Calif.-based Cisco's popular operating system. It's used across the company's networking line, including in home office routers (the 800 Series); those for branch offices (the 3700 Series); and those that comprise the Internet backbone (the 7000 Series). Other routers that use the operating system include the 1700, 2500, 2600 and 3600 Series.

    This could represent a major security threat not just for Cisco users, but for the entire Internet. According to the Dell'Oro Group, a market research firm that specializes in the networking and telecommunications industries, Cisco owns 62 percent of the core router market.

    For insights on security coverage around the Web, check out eWEEK.com Security Center Editor Larry Seltzer's Weblog.

    With the proprietary source code in hand, criminal hackers could, in theory, create programs that could cause denial-of-service attacks in Cisco-based networks.

    Barlow said Cisco would "continue to actively monitor the situation and will respond according to established process and procedures, should the need arise."

    A previous major source code theft of parts of Microsoft's NT 4.0 and Windows 2000 has not led to any security violations. However the alleged theft of the Cisco source code, since it's both the most current edition and all of the code, has the potential to be more damaging.

    Paula Musich and Margarita Manwelyan contributed to this story.

    Editor's Note: This story was updated to include comments from a Cisco spokesman and FBI spokesman Paul Bresson.

    Check out eWEEK.com's Security Center at http://security.eweek.com for security news, views and analysis.

    Be sure to add our eWEEK.com security news feed to your RSS newsreader or My Yahoo page:  



    Discuss Cisco Source Code Reportedly Stolen
     
    >>> Be the FIRST to comment on this article!
     

     
     
    >>> More Channel News and Analysis Articles          >>> More By Steven Vaughan-Nichols
     


     

    SIGN UP FOR CHANNEL INSIDER NEWSLETTERS
    Reliable, timely information on the business of technology. Sign up now.

    RSS SUBSCRIPTIONS
    XML
    Add Channel News, Product Reviews, Trends and Analysis to your RSS newsreader or My Yahoo!

     


    CHANNEL RESOURCE CENTER
     
     
    Best Free Antivirus Apps
    Microsoft isn’t the first vendor to offer free antivirus software to consumers and small businesses. Several vendors have free general available versions of their malware protection suites. Their strategy: get customers interested and open opportunity to partners. Here are few worth free AV packages worth considering.
    View Slideshow

    Top 10 Most Profitable Vendor Certifications
    Solution providers that invest in vendor technical certifications are more profitable, sell more complex systems and have better relationships with their customers, according to the new Channel Insider/Amazon Consulting certification study. But not all vendor certifications have the same ROI. The following vendors have the best certifications for return on their partners’ investment.
    View Slideshow
    The IT industry is in the midst of a mass metamorphosis. Lines are blurring between networking technologies, storage, servers, software and telephony. Vendors that represent the tried and true establishment in one discipline are now making hard-right turns into new, largely unfamiliar and often competitive markets. Read on to see just a few of the major convergence plays of the last year.
    View Slideshow