Feeds

Gartner lambasts security FUDmongers

Get a grip, analyst rants

  • alert
  • submit to reddit

5 things you didn’t know about cloud backup

Some organisations are holding back on the deployment of new technologies because of exaggerated IT security risks, according to Gartner. The analyst firm took aim at what it identified as the five most over-hyped threats at the end of a three-day IT security conference at its Stanford, Connecticut HQ, this week.

According to Gartner, the five most over-hyped security threats are:

  • Internet Protocol (IP) telephony is unsafe
  • Mobile malware will cause widespread damage
  • "Warhol Worms" will make the Internet unreliable for business traffic and virtual private networks (VPNs)
  • Regulatory compliance equals security
  • Wireless hot spots are unsafe

"Many businesses are delaying rolling out high productivity technologies, such as wireless local area networks (WLANs) and IP telephony systems because they have seen so much hype about potential threats," said Lawrence Orans, principal analyst at Gartner.

Gartner analysts singled out the ideas that IP Telephony is unsafe and that mobile malware will be a big problem for particular scorn.

"The reality is that security attacks are rare for IP telephony. Preventive measures for securing an IP telephony environment are very similar to securing a data-only environment. IP telephony eavesdropping is the most over-hyped threat. Eavesdropping is unlikely to happen since it requires local area network (LAN)-based access to the intranet," it said. And besides which firms can always encrypt traffic.

Mobile malware risks were dismissed as a "niche nuisance" in the foreseeable future if for no other reason than penetration of smartphone and personal digital assistants (PDAs) with always-on wireless capabilities remains low.

"Anti-virus vendors see huge potential profit opportunities in selling security solutions to billions of cell phone and PDA users," John Pescatore, vice president said. "In particular, the anti-viral industry sees cell phones as the way to grow sales outside of a flat, commoditized PC market. However, device-side anti-viruses for cell phones will be completely ineffective. The most effective approach to blocking mobile malware will be to block it in the network," he added.

In the past Gartner has been vocal about corporate wireless security issues in particular but like us they've probably had their fill of talk of Evil Twin threats and the like so we can excuse them for letting off steam. It's pretty well known that fear pushes security sales but over recent months the trend of vendors talking up real or perceived security risks has became more pronounced and tiresome than ever. Think of a threat real or imagined (phishing, pharming, Evil Twin Wi-Fi hotspots, hackers taking over the national grid, Bluesnarfing etc. etc. ad nauseam) and it only a matter of days or week before vendors tout "silver-bullet" security solutions. Gartner's rant represents a welcome reality check against that onslaught.

However one question remains: what have the anti-virus vendors done to upset Pescatore so much? How else to explain his (admittedly entertaining) diatribe? ®

Related stories

Users untouched by mobile viruses despite hype
Beware the rogue access points, says Gartner
Corporate governance goals impossible - RSA
Net survives mass-defacement contest
Soon al-Qaeda will kill you on the Internet

Next gen security for virtualised datacentres

More from The Register

next story
Snowden on NSA's MonsterMind TERROR: It may trigger cyberwar
Plus: Syria's internet going down? That was a US cock-up
Who needs hackers? 'Password1' opens a third of all biz doors
GPU-powered pen test yields more bad news about defences and passwords
e-Borders fiasco: Brits stung for £224m after US IT giant sues UK govt
Defeat to Raytheon branded 'catastrophic result'
Chinese hackers spied on investigators of Flight MH370 - report
Classified data on flight's disappearance pinched
Microsoft cries UNINSTALL in the wake of Blue Screens of Death™
Cache crash causes contained choloric calamity
Germany 'accidentally' snooped on John Kerry and Hillary Clinton
Dragnet surveillance picks up EVERYTHING, USA, m'kay?
prev story

Whitepapers

Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 10 endpoint backup mistakes
Avoid the ten endpoint backup mistakes to ensure that your critical corporate data is protected and end user productivity is improved.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Rethinking backup and recovery in the modern data center
Combining intelligence, operational analytics, and automation to enable efficient, data-driven IT organizations using the HP ABR approach.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.