Security - Channel Insider
Empowering the next generation Channel
 

Sponsored Links
  • Try Windows Azure free for 90 days

  • Introducing the world's first family of systems with integrated expertise

  • FREE Securing Smartphones & Tablets for Dummies Book from Sophos
  • 5 New Technologies That Will Change Enterprise ITAdvertisement
  • Build an IT Infrastructure That Delivers the Future

  •  

    Hackers Taking Aim at Bigger Targets

    in Security



    Article Rating:starstarstarstarstar / 1
    Article Views: 3590

    Cyber-attackers are hitting higher-profile targets and exposing ever-larger volumes of data, whether for financial gain, strategic advantage or to espouse "hacktivist" causes.

    Rate This Article:
    Add This Article To:

    Cyber-attacks have dominated headlines this summer as government agencies, large organizations and small businesses have been hit by malware, distributed-denial-of-service attacks and network intrusions. On the personal front, individuals' email and social networking accounts have been hijacked.

    Most cyber-attackers are motivated by money, whether it's by looting bank accounts or selling stolen information to other criminals, said Josh Shaul, CTO of Application Security. However, there's been a surge in politically motivated attacks in the past few months as a number of groups including the notorious hacker collective Anonymous turned to cyber-attacks as a form of protest.

    PandaLabs researchers predicted this past December that the cyber-protests that have added the word hacktivism" to the English language will continue to grow in frequency because it's been so effective in getting attention.

    In the past few months, even hacktivism has been transformed as tactics and motivations have evolved. In the past, cyber-protesters generally defaced Websites or launched DDoS attacks to express their discontent.

    In these DDoS attacks, Websites were overwhelmed with large volumes of server and database requests and became inaccessible to legitimate site visitors. For the most part, the majority of hacktivists relied on low-tech techniques for its activities, Shaul said.

    Anonymous encouraged supporters to download the Low Orbit Ion Cannon tool and to "fire" millions of packets at the targeted site. The program didn't do anything overly complex other than to use an automated script to repeatedly send a simple request to the target Web server in a very short period of time.

    Some of their past targets included "anti-piracy groups," such as the Motion Picture Association of America and the Recording Industry Association of America; businesses that cut off ties with WikiLeaks; or even the totalitarian regimes in North Africa facing pro-democracy demonstrations.

    Things changed when Aaron Barr, then-CEO of HBGary Federal, bragged about having unmasked the identities of several Anonymous members. Some members breached HBGary Federal's email server in February and posted stolen emails and sensitive documents onto a wiki, WikiLeaks-style.

    Several researchers told eWEEK that the attack on HBGary Federal was a sign of hacktivists adopting new and more aggressive tactics to express their displeasure.


    To read the original eWeek article, click here: Hackers Shift From Petty Vandalism to Massive Data Theft




    comments dic


     
     
    >>> More Security Articles          >>> More By Channel Insider Staff
     


     



    channel chatter


    HTML PLAIN TEXT

    Keep on top of news for VARs and Resellers with CI's Weekly Newsletter and Alerts.


    [ci] feeds
    XML
    Add Channel News, Product Reviews, Trends and Analysis to your RSS newsreader or My Yahoo!


     


    CHANNEL SPONSORED RESOURCE CENTER
     
     
     
    Start the New Year with business intelligence—it’s a smart move
    Join us on February 1 for an encore rebroadcast at either 5 am or 12 noon EST and discover how business intelligence (BI) supports companies in uncertain business and economic climates. Get expert advice on how to create a strategy that fits your organization's needs and budget and see how quickly it can pay for itself.
    Click Here
     
    Security and Availability Essentials for Running Your Business in the Cloud
    Are you moving to the cloud? Find out what every IT professional should know about security and availability before moving to the cloud. Hear what a security provider’s own CSO has to say.
    Watch Video
    A new algorithm automatically identifies relationships between variables to help reduce researcher prejudice.
    Click HereAdvertisement