Newsletters Welcome, Guest Log In | Register


Join the Community

Exchange

Get full access to our community's expertise and resources.

Register Now >

Currently Being Moderated

Malware Threats and Mitigation Strategies

0

Created on: Nov 20, 2009 12:40 PM by U.S.CERT - Last Modified:  Nov 20, 2009 12:40 PM by U.S.CERT

The nature of malicious code, or malware, (e.g., viruses, worms, bots) shifted recently from disrupting service to actively seeking financial gain. In the past, worms were designed primarily to propagate. The impact on victims and organizations was primarily a disruption of service resulting in loss of productivity and sometimes a loss in revenue. Now, many of the significant worms are designed to steal sensitive information such as credit card numbers, social security numbers, pin codes, and passwords and send the information to the attacker for nefarious purposes including identity theft.

Unfortunately, attackers have become very adept at circumventing traditional defenses such as anti-virus software and firewalls. Even encrypted web transactions may not protect sensitive information if the user’s computer has been infected.

Because malware writers are circumventing the basic security controls many organizations have implemented, the community needs to increase user awareness regarding cyber security issues in order to minimize the opportunity for sensitive information from “leaking out” of an organization. If a system is compromised, organizations need to improve the ability to minimize their damage. The purpose of this guide is to inform organizations of this rapidly growing problem and provide best-practice defense tactics.

The attached Zip file includes:

• Intro Page.doc

• Cover Sheet and Terms.pdf

• Malware Threats and Mitigation Strategies.pdf

Related Knowledge Network Content

Average User Rating
(0 ratings)




Add a comment Leave some feedback about this document.

There are no comments on this document

Strategic IT Planning & Governance Best Practices Guide

Use this guide — along with the more than 60 templates included — to ensure the overall success of your entire IT department.

Learn more >

ITIL V3 Foundation - Complete Certification Kit

Enhance your IT career by getting your ITIL Foundation Certificate. It's fast and easy with this complete resource. The 186-page eBook and companion online training course is guaranteed to help you pass the ITIL exam.

Learn more >

Compliance and Risk Mitigation

Compliance and risk mitigation solutions that strengthen data security, automate compliance measures, and reduce TCO for a more viable business future.

Service Oriented Architecture (SOA)

Service-Oriented Architecture is the catalyst that allows today’s companies to respond to business demands faster and more effectively than ever.

Enterprise Manager

Tools, best practices and expert advice on managing your enterprise IT infrastructure, databases, and Web service components.

Application Grid

Learn more about this middleware layer that pools and dynamically provisions infrastruction application delivery resources to lower costs and improve efficiency.

Maximizing the Return on Enterprise Mobility

This executive report assesses the current state of mobility management, explores the key ingredients of an effective mobility management plan, and suggests a path forward to maximize enterprise mobility.

Seven Ways to Gain Control of SAP Licensing

This white paper describes seven methods through which SAP® Basis and Procurement management teams can more efficiently manage the lifecycle of their SAP Business Suite licenses and make more informed software planning and purchasing decisions.