| By Peter Silva | Article Rating: |
|
| March 1, 2010 10:00 AM EST | Reads: |
1,209 |
Security Track at Cloud Computing Expo
The Dummies series is a great collection of ‘How to' instructions on a wide array of topics and while they have not published a ‘Cybercrime for
Register Today and Save $550 !
Explore Sponsorship Opportunities !
Dummies' booklet (and don't think they will), DYI Cybercrime Kits are helping drive Internet attacks.
Gone are the days when you had to visit a dark alley to get a crook's cookbook.
You don't need to be an expert or tied to some sophisticated crime ring but now you can infect, spam, phish and generate other dastardly deeds with the best of them.
Similar to downloading and using iTunes, P2P applications, IM services, Skype and others to accomplish those specific tasks, you can get a Cybercrime toolkit to go with your black ski mask, getaway car and evil lair hideout. You don't really need any technical knowledge since all you do is install the program, tell it what you want, customize the message, send the infection and wait for the program to tell you when you've hit gold. The early ‘hacking' sites like www.2600.com or www.L0pht.com use to allow you to download your favorite virus to send to friends.
Granted, many organizations used their malicious code to test their own systems and they've since become more industry friendly and still provide great insight into the ‘black-hat'ing' community. I've even used L0phtcrack several times over the years. Remember, downloading a root kit isn't necessarily a crime, it's what you do with it that might be.
The initial data breach numbers for 2010 are already staggering. In just a couple weeks, around 1,233,432 records have already been breached according to Privacy Rights Clearinghouse - that's an average of over 68,000 a day. During 2009, Panda Labs saw a 77% increase in banking theft Trojans compared to 2008 which directly corresponded with the increase in available kits. As this trend continues, the ‘Kids with Kits' will be competing with the ‘Established Mobs' for your passwords, money, identity and any other valuable items/info to sell or use themselves.
Certainly, users need to be extra vigilant when receiving suspicious emails with ‘Click Here:' boldly pronounced and organizations need to realize that their systems will be poked, prodded and tapped even more this year. On the web facing front, deploying a Web Application Firewall, like BIG-IP ASM, not only protects against the typical, well known attacks like SQL Injection, DoS, Brute Force and Web Scraping; but can also help with identifying that bad-boy with IP Geolocation and ASM has always helped to keep you compliant. BIG-IP GTM v10.1, with the new DNSSEC feature, secures your web property against DNS Cache Poisoning and other malicious redirects. The FirePass SSL VPN and other BIG-IP products offer End Point inspection to ensure that the requesting host abides by your security policy prior to gaining access and Encryption to keep the traffic secure. The BIG-IP MSM takes a bite out of unwanted spam. Even BIG-IP LTM with it's virtualization capabilities among other security features provides some network firewall functionality and with BIG-IP PSM, you get powerful security services for HTTP(s), SMTP, and FTP at BIG-IP speeds.
Now that it's gotten easier for anyone to become a cybercriminal, your defenses must be also be easy and quick to deploy. F5's BIG-IP systems give you the control, power and ease of use to thwart both the organized crime syndicates and those rookies just getting into the game.
Read the original blog entry...
Published March 1, 2010 Reads 1,209
Copyright © 2010 Ulitzer, Inc. — All Rights Reserved.
Syndicated stories and blog feeds, all rights reserved by the author.
More Stories By Peter Silva
Peter Silva covers security for F5’s Technical Marketing Team. After working in Professional Theatre for 10 years, Peter decided to change careers. Starting out with a small VAR selling Netopia routers and the Instant Internet box, he soon became one of the first six Internet Specialists for AT&T managing customers on the original ATT WorldNet network.
Now having his Telco background he moved to Verio to focus on access, IP security along with web hosting. After losing a deal to Exodus Communications (now Savvis) for technical reasons, the customer still wanted Peter as their local SE contact so Exodus made him an offer he couldn’t refuse. As only the third person hired in the Midwest, he helped Exodus grow from an executive suite to two enormous datacenters in the Chicago land area working with such customers as Ticketmaster, Rolling Stone, uBid, Orbitz, Best Buy and others.
Bringing the slightly theatrical and fairly technical together, he covers training, writing, speaking, along with overall product direction and evangelism for F5’s security line. Prior to joining F5, he was the Business Development Manager with Pacific Wireless Communications. He’s also been in such plays as The Glass Menagerie, All’s Well That Ends Well, Cinderella and others. He earned his B.S. from Marquette University, and is a certified instructor in the Wisconsin System of Vocational, Technical & Adult Education.
- Einstein, Sharks and Clouds: IT Security in the Cloud
- Cloud Computing Bootcamp Returns to Cloud Expo in New York April 20, 2010
- "Shaping Government Clouds" Just Released
- DoD Cloud Computing Session at 5th International Cloud Expo
- Navy CANES and Cloud Computing
- EuroCloud Expands Quickly
- Cloud Expo, Inc. Names Carmen Gonzalez President & CEO
- Cybercrime, the Easy Way
- Security Isn't the Biggest Obstacle of Cloud Computing
- InformationWeek Prediction: Cloud Computing for Classified Software
- Review: Executive's Guide to Cloud Computing by Eric Marks and Bob Lozano
- Unisys VP to Present at World's Largest Cloud Computing Event
- Cloud Expo New York Call for Papers to Expire January 15, 2010
- Einstein, Sharks and Clouds: IT Security in the Cloud
- Cloud Computing Bootcamp Returns to Cloud Expo in New York April 20, 2010
- "Shaping Government Clouds" Just Released
- 2009: The Year the Government Discovered Cloud Computing
- GoogleHack Proves People are Easier to Hack then Networks
- DoD Cloud Computing Session at 5th International Cloud Expo
- Navy CANES and Cloud Computing
- EuroCloud Expands Quickly
- White House Taps Cyber Security Czar
- Most Influential Cloud Bloggers for 2009
- Jill Tummler Singer Appointed NRO CIO
- From Enterprise to Cloud, Virtualization Today on SYS-CON.TV
- Unisys President To Keynote Cloud Computing Expo
- Unisys Named “Platinum Sponsor” of Cloud Computing Expo
- Commercial vs Federal Cloud Computing
- The Cloud Computing Kettle Heats Right Up
- Deputy CIO of the CIA to Keynote 1st Annual GovIT Expo
- CIA was Headed to an Enterprise Cloud All Along: Jill Tummler Singer
- An Interview with Federal CIO Nominee Vivek Kundra
- 1st Annual Government IT Conference & Expo: Themes & Topics
- Cloud Expo New York Call for Papers to Expire January 15, 2010
- Tactical Cloud Computing Panel at 1st Annual GovIT Expo
- 1st International Cloud Computing Conference & Expo: Cultural Observations


























Ulitzer content is offered under Creative Commons "Attribution Non-Commercial No Derivatives" License.
For any reuse or distribution, you must make clear to others the license terms of this work.
The best way to do this is with a link to this web page.
Any of the above conditions can be waived if you get written permission from Ulitzer, Inc., the copyright holder.
Nothing in this license impairs or restricts the author's moral rights.