Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Latest News
    • Blogs
    • Security Watch

    Web Malware Remains Hot Button Issue

    Written by

    Matthew Hines
    Published January 5, 2009
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Some things change with the passage of the New Year, and some do not.

      When it comes to the problem of Web-based malware, it would seem that more organizations than ever before are aware of, and focused on addressing the issue – but clearly many people still have no idea what they should do, specifically in the face of rapidly growing worker mobility and unfettered Web access.

      According to a new piece of research conducted by Ostermann, and sponsored by hosted security management vendor Purewire, most IT shops are well versed in the problem of Web-driven malware by now, but whether or not that concern is translating into successful defense against the threats certainly remains to be seen.

      One of the biggest issues influencing the problem remains the growing rate of telecommuters who can avoid many corporate security policies when working remotely, and thereby greatly increase the scope of online risks, the report said.

      Based on Ostermann’s Nov. 2008 survey of 139 IT pros responsible for securing their company’s Web sites and online applications:

      •Some 46 percent said that Web-based attacks accounted for the majority of their malware infections last year, compared to 25 percent who said that e-mail remains their leading source of malware. •Roughly 76 percent of respondents said that they remain “very concerned” about the threat of Web-driven attacks. •In a nod to botnet threats, 55 percent indicated that they are “very concerned” about the impact that online malware has on networking bandwidth. •Some 49 percent are “concerned” or “very concerned” about enforcing Web usage and Web security policies for employees that work remotely, such as ensuring that they do not visit banned URLs. •Roughly 48 percent are “concerned” or “very concerned” about supporting remote workers with various Web applications. •Of all organizations that had remote workers’ computers infected with malware, spyware or related problems during the previous year, 46 percent estimates that these infections came from users visiting infected Web sites.

      Of course, vendors like Purewire want to become in-the-cloud security filtering providers for the types of companies answering the survey. By blocking suspicious URLs and other online attacks before end users can access the source of the threats – whether they are in the office or not – the risk of Web-borne malware can be significantly mitigated, the thinking goes.

      However, most companies have not yet gone down that road, and in the meantime:

      •Some 79 percent have established corporate policies against downloading certain types of Web files. •About 76 percent have deployed systems that will actively block downloads of certain file types. •Nearly 40 percent of those surveyed had no URL filtering solutions in place. •Some 69 percent have implemented tools to control the use of Web applications. •Roughly 46 percent lock down employee desktops so that users cannot install certain Web applications. •Some 39 percent do so for employee laptops.

      “Organizations have generally been fairly responsive in terms of establishing policies that are designed to protect their organizations from Web-related threats, but have generally not been as quick to implement effective tools to protect their infrastructure,” Ostermann researchers said in the report. “Many of the solutions that have been implemented are simply not adequate to meet the growing number or dynamic nature of current threats.”

      So there you have it, people know about the problem, most organizations have even gone to great lengths to create policies that aim to help address the problem… but many are still not doing whatever they can to actively enforce policies and stop the problem.

      As a result it would seem that until companies are more willing to take greater control of their assets, both those within their own networks and those they hand out to remote workers in the field, the issue of Web-driven malware isn’t going to diminish anytime soon.

      One only has to wonder what the tipping point will be.

      Matt Hines has been following the IT industry for over a decade as a reporter and blogger, and has been specifically focused on the security space since 2003, including a previous stint writing for eWeek and contributing to the Security Watch blog. Hines is currently employed as marketing communications manager at Core Security Technologies, a Boston-based maker of security testing software. The views expressed herein do not necessarily represent the views of Core Security, and neither the company, nor its products and services will be actively discussed in the blog. Please send news, research or tips to [email protected].

      Matthew Hines
      Matthew Hines

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×