Feeds

US accused of hypocrisy over cyber warfare

A state that sins more than its sinned against

Combat fraud and increase customer satisfaction

Recent warnings of a "cyber–Pearl Harbor" by US Defense Secretary Leon Panetta and others are hypocritical, according to a leading security expert, given that the US is responsible for most of the online attacks so far uncovered.

"If we look for offensive cyber attacks that have been linked back to a known government, we mostly find attacks that have been launched by United States, not against them," said F-Secure's chief research officer Mikko Hyppönen in a blistering blog post.

"As United States is doing offensive cyber attacks against other countries, certainly other countries feel that they are free to do the same," he writes. "Unfortunately the United States has the most to lose from attacks like these."

So far security researchers have identified five malware attacks that stem from Operation Olympic Games, a collaborative effort between the US and Israel to use malware offensively. The US government hasn't denied the attacks are its work, Hyppönen notes, just launched an investigation to find out who leaked news of the program.

There's very little incentive for a crushing attack against the internet, Hyppönen points out. Online criminals aren't going to bork the net, since it's their livelihood, while activists such as Anonymous have no motive either, since their power derives from being online. Other nation states would be better off using the internet for espionage rather than crashing the entire system, he notes.

Security experts are sharply split on the use of online weaponry to attack physical infrastructure. Some feel it's a better option than putting humans in the line of fire, but many feel it sets a dangerous precedent. Hyppönen clearly counts himself in the latter camp. ®

Combat fraud and increase customer satisfaction

Whitepapers

Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
SANS - Survey on application security programs
In this whitepaper learn about the state of application security programs and practices of 488 surveyed respondents, and discover how mature and effective these programs are.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.