Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Cybersecurity
    • Cybersecurity

    Unpatched Software and the Rising Cost of Breaches: Security Reports

    Written by

    Sean Michael Kerner
    Published May 13, 2016
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      This past week was another busy week for security research and statistical reports covering a diverse array of topics, including phone fraud, patching levels, mobile apps and distributed denial-of-service (DDoS) costs.

      Duo Security in a May 10 report found that 25 percent of all Windows devices are running outdated and unsupported versions of Internet Explorer. Examining the update status for the major browsers, Duo Security found that Google’s Chrome browser is the best, with 82 percent of users up-to-date. In contrast, only 66 percent of Firefox browser users are running the latest version, which is still better than Microsoft’s Edge and Internet Explorer 11 users at a 58 percent update rate.

      Beyond just the browser, plug-ins are also out-of-date on the majority of systems. Duo Security reported that 72 percent of the systems it surveyed were running an outdated version of Java, while 60 percent were running an out-of-date version of Flash.

      IT Confidence

      Tripwire in a May 11 study examined IT professional confidence in data breach detection skills. The report reveals contradictory results about how IT professionals view their security response readiness for a potential incident.

      Somewhat aligned with Duo Security’s findings, Tripwire’s research showed that not all organizations are patching all systems quickly. In fact, 40 percent of organizations polled admitted to applying less than 80 percent of patches successfully.

      Tripwire found that 92 percent of respondents indicated that their organization’s vulnerability scanning systems would generate an alert within minutes or hours if an unauthorized device was discovered on the network. That said, 77 percent, admitted that they can only automatically discover 80 percent or less of the devices on their networks, which means there is a visibility gap.

      Additionally, 29 percent of organizations are unable to detect all file access attempts that are made without the appropriate privileges, according to Tripwire.

      Security Costs

      A number of studies looked at security-related costs due to vulnerabilities and breaches. FireEye released its data breach cost report on May 10, revealing that 76 percent of respondents would likely take their business away from a vendor that had demonstrated negligent data handling practices.

      The study also found that more than half (52 percent) of consumers would consider paying a premium for a product or services in order to get better data security. The same percentage of consumers also noted that security is an important buying consideration for products and services.

      Emerson Network Power in a May 12 report provided insight into DoS-related costs. The report found that from 2010 to 2015, DoS attack frequency increased by 59 percent. For 2015, Emerson Network Power reported that a total outage DoS attack had an average cost of $610,300 while attacks that did not result in a total outage had an average cost of $36,800.

      Pindrop in a May 10 report examined the state of phone fraud and its related costs. Among the top findings of the reports is that in 2015 an average of $0.65 was lost to fraud per call. As such, Pindrop estimates that a call center that receives 40 million calls per year could lose as much as $27 million a year from phone fraud.

      Mobile App Security

      Mobile security vendor Wandera published a report this past week on the security of 10 top enterprise apps. Shockingly, Wandera found that all 10 of the top 10 apps analyzed were vulnerable to at least three of the OWASP (Open Web Application Security Project) top 10 mobile risks.

      In summary, out-of-date versions of Flash and Java are still common, phone fraud is a costly problem, mobile apps are still insecure and data breaches impact the confidence of consumers. Most of the results weren’t surprising, given the trends that have been common in the past few years, but once again, seeing data provides a degree of validation that the trends are real.

      Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist.

      Sean Michael Kerner
      Sean Michael Kerner
      Sean Michael Kerner is an Internet consultant, strategist, and writer for several leading IT business web sites.

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.