RSA
Art
R E L A T E D   C O N T E N T
ADVERTISEMENT

Internet more dangerous than ever

25 million IDs stolen, $45bn lost in cybercrime - and that's just in the US

Iain Thomson at the RSA Security Conference, Amsterdam, vnunet.com 04 Nov 2003
ADVERTISEMENT

The internet is more dangerous than it was last year, according to Art Coviello, chief executive of RSA Security.

In his opening keynote at the RSA Security Conference in Amsterdam, Coviello (pictured) warned that the proliferation of web-enabled applications and devices and a lack of fault fixing have made the environment more dangerous.

Business will have to improve its performance if the industry is to avoid government regulation, he cautioned.

"Despite great efforts in the last year we as an industry have not made sufficient progress," said Coviello.

"Things are definitely worse, although for a good reason. The range of applications and devices that can access the internet has made us more productive but also more vulnerable."

The Federal Communications Commission (FCC) has estimated that online crime will cost $45bn in the US this year and that 25 million identities have been stolen. The commission has also warned that the internet is making it easier for criminals to exploit stolen identities.

But fears of cyber-terrorism have been dramatically overstated, maintained Coviello. Terrorists are not interested in cracking systems but instead on attacking people and physical targets. Spam poses a bigger threat to the productivity of the internet, he said.

Hackers are also getting smarter and more adept. The average time from a flaw being found to exploit code being available has fallen from 500 days in 2000 to 40 days now. Meanwhile, vendors are faced with a huge installed base of hardware and software that is riddled with flaws.

Coviello highlighted small and medium-sized enterprises as being particularly at risk, since they cannot afford the in-house security teams available to large companies. Hackers are growing increasingly aware of this and have started targeting such businesses, he added.

But while Coviello was upbeat about the progress made by governments in dealing with computer crime, especially the harmonisation of hacking laws and sentencing, he called for them to stay out of other areas of regulation.

"I'm concerned that governments get overzealous in trying to regulate how security works," he said.

"They don't know enough about the topic to regulate it, [they] move much more slowly than the security industry, and legislation can't acknowledge that different companies have different security profiles."

See also:

Widespread education needed as more consumers are targeted  03 Nov 2003
Commission launches computer forensics resources  03 Nov 2003
Local businesses still need to be aware of what the Unit can do for them  19 Jun 2003
National Hi Tech Crime Unit says business must report electronic crime  07 May 2003
To deter online attacks, forthcoming regulations will require EU states to harmonise anti-hacking laws and hand out custodial sentences for serious offences  28 Mar 2003

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Computer People
SQL Server 2008 Developer – Staffordshire – Market Rate – 3 - 6 month initial role Computer People have an exciting opportunity for a SQL Server 2008 Developer within an Large organisation based in Staffordshire. ... more >
| Aston Carter
JAVA J2SE DEVELOPER – CREDIT DERIVATIVES amp; Credit Derivatives (CDS, CDO, CDX, IRD, IRS), Exotics and Structured Hybrid products. Technical skills include: Server side Java, SQL, Sybase, SOAP, WEB SERVICE and OOA/D. Nice to have ... more >
| Aston Carter
JAVA J2SE DEVELOPER – CREDIT DERIVATIVES amp; Credit Derivatives (CDS, CDO, CDX, IRD, IRS), Exotics and Structured Hybrid products. Technical skills include: Server side Java, SQL, Sybase, SOAP, WEB SERVICE and OOA/D. Nice to have ... more >
| Aston Carter
Java, C++, SQL Analyst Developer – Interest Rate Risk Java, C++, SQL, Analyst Developer, interest rate, risk, credit risk, market risk, perl, scripting • At least 2-5 years experience developing in C++ and Java • ... more >
More job opportunities