Share

Related Links

  • RSA Conference
  • Elsevier Ltd is not responsible for the content of external websites.

Related Stories

  • Intel targeted by January cyberattack
    Intel was the target of a concerned cyberattack in January – around the same time that Google identified the Operation Aurora attack, according to a 10-K filing that the chip maker made to the SEC.
  • School linked to Operation Aurora attack is tied indirectly to hacktivist group
    Two schools in China have been linked to the Operation Aurora attack that targeted Google and other companies last year – and one of them has been tied to a national network of hacktivist groups.
  • More details emerge on Hydraq trojan
    Hydraq, the trojan delivered by the Operation Aurora attackers, uses VNC techniques to stream live video from victims' machines, said Symantec in an analysis of the malware.
  • Further evidence links Aurora attack to China
    Further evidence has emerged suggesting that the Operation Aurora attack exploiting a zero-day flaw in Internet Explorer came from within the People's Republic of China.
  • Internet Explorer zero-day code goes public
    The Internet Explorer exploit code used in the Operation Aurora attack against Google and other technology companies has made it into the public domain, and has been incorporated into the Metasploit penetration testing tool, it was revealed this weekend.

Top 5 Stories

News

Brocade: Half of network solutions only stop one in four network attacks

10 March 2010

Almost one in five participants at the RSA conference last week believe that their companies' security policies are being effectively enforced, according to figures released by data center fabric company Brocade. That said, at least half of them seem to be unhappy with their companies' security technology solutions.

Brocade, which interviewed 144 RSA Conference attendees from a wide variety of different sectors, found that 18% of respondents believed company security policies were being totally enforced. One in 10 respondents felt that not enough policies were being enforced effectively at the network security level, however. The remainder fell somewhere in between.

Brocade also found that almost half of all respondents believe their network security solutions are less than 25% effective in stopping security threats. Forty-eight percent of them said that their network security stopped one in four or fewer network attacks against their organizations (although how can they be sure how many attacks hadn't been stopped?). As Donald Rumsfeld famously said, there are lots of unknown unknowns. It wasn't clear from the survey whether this was down to poor configuration, or inadequate equipment.

Half of all respondents were most worried about insider threats, particularly individuals selling sensitive information to competitors. Significantly, threats by foreign governments were the next most serious concern, with 15% of respondents pinpointing this issue. This reflects the mounting coverage of cyber espionage incidents that we are now calling advanced persistent threats, which are now happening at an international scale, such as Operation Aurora, that emerged in January.
 

This article is featured in:
Compliance and Policy  • Internet and Network Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.