<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CoreTrace WhiteSpace&#187; CoreTrace WhiteSpace</title>
	<atom:link href="http://www.coretraceblogs.com/tag/social-networks/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.coretraceblogs.com</link>
	<description>The Application Whitelisting and Security Weblog</description>
	<lastBuildDate>Fri, 30 Jul 2010 14:33:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Cyber attacks top terrorism as biggest concern for Indian companies</title>
		<link>http://www.coretraceblogs.com/2010-03/cyber-attacks-top-terrorism-as-biggest-concern-for-indian-companies/</link>
		<comments>http://www.coretraceblogs.com/2010-03/cyber-attacks-top-terrorism-as-biggest-concern-for-indian-companies/#comments</comments>
		<pubDate>Thu, 18 Mar 2010 18:04:12 +0000</pubDate>
		<dc:creator>Toney Jennings</dc:creator>
				<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[cyber attacks]]></category>
		<category><![CDATA[cyber threats]]></category>
		<category><![CDATA[enterprise security]]></category>
		<category><![CDATA[social networks]]></category>

		<guid isPermaLink="false">http://www.coretraceblogs.com/?p=1408</guid>
		<description><![CDATA[Escalating revenue losses from cyber crimes and understaffed network security teams have Indian companies more concerned about cyber attacks than terrorism.
In the article, &#8220;Cyber attacks worry firms more than terrorism,&#8221; the &#8220;2010 State of Enterprise Security Study&#8221; conducted by Symantec Software Solutions Pvt. Ltd. found that 42% of companies representing industries such as telecom, hospitality, [...]]]></description>
			<content:encoded><![CDATA[<p>Escalating revenue losses from cyber crimes and understaffed network security teams have Indian companies more concerned about cyber attacks than terrorism.</p>
<p>In the article, <a href="http://newshyderabad.wordpress.com/2010/03/13/cyber-attacks-worry-firms-more-than-terrorism/">&#8220;Cyber attacks worry firms more than terrorism,&#8221;</a> the &#8220;2010 State of Enterprise Security Study&#8221; conducted by Symantec Software Solutions Pvt. Ltd. found that 42% of companies representing industries such as telecom, hospitality, manufacturing, retail and technology perceive cyber attacks as the biggest threat to their enterprises.</p>
<p>One reason cited was the lack of adequate network security. Over the past year, 66% of companies surveyed said they had experienced cyber intrusions while 51% reported repeated attacks. The study also pointed out that deployment of enterprise security has turned into a difficult task for many organizations. Said Vishal Dhupar, managing director at Symantec:</p>
<blockquote>
<p>&#8220;Enterprise security is understaffed and the most affected areas in organizations are network security, web security and data-loss prevention. To tackle the issue, companies need to secure their messaging and web environments and defending critical internal servers. They should also have the ability to back up and recover data and respond to threats rapidly.</p>
</blockquote>
<p>With the rise in malicious attacks targeting sectors that can have a significant impact on India’s economy, one has to wonder if cyber attacks and terrorism weren&#8217;t one in the same. As I mentioned in a recent blog, <a href="http://www.coretraceblogs.com/2010-03/are-we-in-a-cyberwar-or-not/">&#8220;Are we in a cyberwar or not?&#8221;</a> cyber threats continue to have a growing impact on our nation&#8217;s economy and global competitiveness. Although U.S. Cyber Czar, Howard Schmidt, may not think we are engaged in cyber warfare, the impacts from targeted attacks are being felt everywhere, and are top IT concerns for many organizations and nations around the world.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.coretraceblogs.com/2010-03/cyber-attacks-top-terrorism-as-biggest-concern-for-indian-companies/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco&#8217;s 2009 Security Threat Report: We need a patch for the common user!</title>
		<link>http://www.coretraceblogs.com/2009-12/ciscos-2009-security-threat-report-we-need-a-patch-for-the-common-user/</link>
		<comments>http://www.coretraceblogs.com/2009-12/ciscos-2009-security-threat-report-we-need-a-patch-for-the-common-user/#comments</comments>
		<pubDate>Tue, 08 Dec 2009 20:21:46 +0000</pubDate>
		<dc:creator>JT Keating</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[application whitelisting]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[CoreTrace]]></category>
		<category><![CDATA[social networks]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://www.coretraceblogs.com/?p=999</guid>
		<description><![CDATA[In its 2009 Annual Security Report, released today, Cisco Systems did an excellent job of explaining the 2009 threat landscape and outlining its expectations for 2010.
While the 40 page report covers many, many topics, there was one overarching theme that continued to bubble to the surface for me: there are no patches for people, and [...]]]></description>
			<content:encoded><![CDATA[<p>In its <a href="http://cisco.com/en/US/prod/vpndevc/annual_security_report.html " target="_blank">2009 Annual Security Report</a>, released today, Cisco Systems did an excellent job of explaining the 2009 threat landscape and outlining its expectations for 2010.</p>
<p>While the 40 page report covers many, many topics, there was one overarching theme that continued to bubble to the surface for me: <em>there are no patches for people, and people are the primary vulnerability going forward</em>.</p>
<p>Like it or not, our people (employees, contractors, partners, etc.) will continue accessing social media sites, cloud computing solutions and parts of the web that we know nothing about (the &#8220;Dark Web&#8221; as Cisco calls it).<span id="more-999"></span></p>
<p>Like it or not, our people will continue clicking on links from trusted sources (especially those from &#8220;friends&#8221; in social networks like Facebook or Twitter), and be taken to sites that <em>download malware</em>. This is especially the case with URL shortners (e.g., bit.ly) because there is no way for the user to know what site they are about to visit. As Patrick Peterson, a Cisco researcher told Robert McMillan at <a href="http://www.pcworld.com/article/183977/social_network_and_banking_scams_are_on_the_rise_says_cisco.html?tk=rss_news" target="_blank"> PC World </a>, <em>&#8220;Social media and the data-theft Trojans are the things that are really in their ascent. You can see them replacing a lot of the old-school things.&#8221;</em></p>
<p> Like it or not, the deposited Trojan horses (e.g., Zeus and Clampi botnets), keyloggers and worms (e.g., the Koobface worm that has infected over 3 million computers mostly through Facebook and Twitter) will continue to morph and obfuscate themselves to avoid detection by blacklisting solutions.</p>
<p>Like it or not, we have to clean up after our people when the malware is deposited via their innocent actions.</p>
<p>I have a better idea: Why don&#8217;t we recognize that we cannot stop our people from accessing all these resources, and instead focus on stopping the real threat: the payload?  The best way to do that is application whitelisting. The malware is not on the approved list of applications, so it is stopped cold.</p>
<p>Application whitelisting: the patch for the common user.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.coretraceblogs.com/2009-12/ciscos-2009-security-threat-report-we-need-a-patch-for-the-common-user/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Social network security key issue for business in 2010</title>
		<link>http://www.coretraceblogs.com/2009-11/social-network-security-key-issue-for-business-in-2010/</link>
		<comments>http://www.coretraceblogs.com/2009-11/social-network-security-key-issue-for-business-in-2010/#comments</comments>
		<pubDate>Fri, 20 Nov 2009 17:15:12 +0000</pubDate>
		<dc:creator>JT Keating</dc:creator>
				<category><![CDATA[whitelisting]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[social networks]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[whitelist]]></category>

		<guid isPermaLink="false">http://www.coretraceblogs.com/?p=867</guid>
		<description><![CDATA[There have been many cases of social networks overlapping security software this year. Whether they are using Twitter or Facebook for botnet control or propagating phishing links through shortened URLs, online criminals are finding ways to tap into the explosive growth of social networks and use that to exploit end users and their devices.
A recent [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.coretraceblogs.com/wp-content/uploads/2009/11/iStock_socialmedia_server-211x227.jpg" alt="Social network security key for business in 2010" title="Social network security key for business in 2010" width="211" height="227" class="alignright size-medium wp-image-872" />There have been many cases of social networks overlapping security software this year. Whether they are using <a href="http://www.internetnews.com/security/article.php/3834721/Twitter+Used+as+Botnet+Control.htm" target="_blank">Twitter or Facebook for botnet control</a> or <a href="http://www.businessweek.com/smallbiz/tips/archives/2009/10/the_dangers_lur.html" target="_blank">propagating phishing links through shortened URLs</a>, online criminals are finding ways to tap into the explosive growth of social networks and use that to exploit end users and their devices.</p>
<p>A recent article in SearchSecurity.com, <a href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1374907,00.html?track=sy160&#038;utm_source=feedburner&#038;utm_medium=feed&#038;utm_campaign=Feed%3A+techtarget%2FSearchsecurity%2FSecurityWire+%28SearchSecurity+%3A+Security+Wire+Daily+News%29" target="_blank">&#8220;Hackers to sharpen malware, malicious software in 2010&#8243;</a>, points to increasing sophistication in cybercriminals&#8217; use of social networking sites.<span id="more-867"></span> Robert Westervelt writes:</p>
<blockquote>
<p>In an effort to sustain growth and pick up new users, more social networks are opening up their architecture to allow third-party applications. Cybercriminals can take advantage of this by developing applications out of the social network environment to target users. In addition, access to social network APIs gives attackers a roadmap to vulnerabilities in legitimate third-party applications and a way to tap into user accounts.</p>
</blockquote>
<p>Changes in this environment means that businesses will be more pressed than ever to set policies around the use of social networks on company IT resources and this won&#8217;t be popular. It will be made all the more difficult by the fact that social networks aren&#8217;t just for personal use any more. More businesses than ever are engaging in social media and using it to connect to customers, provide service, and promote their company.</p>
<p>Expect web site access control, application whitelisting and software asset management solutions to play an even more important role than ever on corporate networks. It will be essential that businesses both understand and control what applications their employees are using to defend against an increasingly prevalent threat.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.coretraceblogs.com/2009-11/social-network-security-key-issue-for-business-in-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
