Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Cybersecurity
    • Cybersecurity

    Plugging Holes in Security

    Written by

    eWEEK EDITORS
    Published June 18, 2001
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Chris Klaus is one of those people you love to hate. While still in college, he came up with the idea for a new kind of software that would probe computer networks for security holes. The resulting product, Internet Scanner, was the first widely available vulnerability assessment tool. In 1994, Klaus founded Internet Security Systems Inc. to market what had become a wildly successful application. Seven years later, ISS is going strong, and Klaus, now chief technology officer of the Atlanta company, is preparing to push ISS deeply into the red-hot area of managed security services. Senior Writer Dennis Fisher spoke with Klaus last week about his plans for the near future and how companies sabotage their own security.

      eWeek: Theres been a lot of hand wringing about the security issues with the wireless LAN protocol. Is it as bad as everyone thinks?

      Klaus: Id say so. There was a very minimal amount of security thought put into the wireless LAN system. It can be implemented securely, but most people just deploy it straight out of the box and dont bother with the security. Some of our researchers went out and drove around Atlanta with some wireless LAN gear and picked up more than 80 access points and could read all of their traffic. And only four of them even had the encryption available.

      eWeek: And with the boom in adoption of wireless technology, thats probably not going to get much better.

      Klaus: No. Pretty soon, you wont be able to hide from wireless. The threat is changing so fast, its hard to keep up.

      eWeek: Do you find that companies are becoming more security-conscious these days with all of the publicity around DoS [denial-of-service] attacks and viruses?

      Klaus: Its hard to say. Most companies havent thought about security to the extent that they should. Going into some of these big companies, its pretty scary. Security is a back-burner item.

      eWeek: How big of a threat do you consider things like DoS attacks and worms?

      Klaus: Theyre real problems and shouldnt be underestimated. People need to work with their ISPs [Internet service providers] to develop a response plan for big events like DoS attacks. But, in a lot of cases, good, upfront network design can prevent these problems.

      eWeek: Whats the most common mistake you see when youre assessing a companys security?

      Klaus: They get ahead of themselves. You have to start with a penetration test, then design and deploy the system. You cant skip that first step. A lot of customers dont know enough about security to realize what the problems are.

      eWeek: ISS has been moving into the managed security market lately. Is that an area that you think will continue to grow?

      Klaus: Definitely. With intrusion detection, the technology is complex, and understanding what it means requires an expert, and a lot of companies dont have those. Managed security services give customers access to those experts.

      eWeek: What kind of new services do you have in the works?

      Klaus: Later this year, were going to combine our intrusion detection and vulnerability assessment tools into one service. A lot of attacks are against machines that arent vulnerable to that particular exploit, and its a waste of time for the security guys to respond to an alert about it and try to track it down. But unless they have the vulnerability assessment data, they wont know that until they do the research.

      eWEEK EDITORS
      eWEEK EDITORS
      eWeek editors publish top thought leaders and leading experts in emerging technology across a wide variety of Enterprise B2B sectors. Our focus is providing actionable information for today’s technology decision makers.

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×