Find White Papers
Home About Contact Help
Free Membership Member Login
Search the Library                  Advanced Search

SMB Security: The Threat Landscape and the Plan of Action

Microworld
By : Microworld
INFORMATION
Published : Jul 03, 2007
Length : 11
Type : White Paper
 
Download Now
Save for Later
  Email This Page
Overview :

The Small and Medium Businesses contribute to around 68% of the world economy while making up for 80% of the employment. The security needs, issues and priorities of SMBs are different in many ways from that of large Business Houses.

Let's examine these threats in detail. 

View All Items By This Company
Browse Related Categories :

Anti Spam

,

Anti Spyware

,

Anti Virus

,

Email Security

,

Internet Security

,

Phishing

,

Small Business Networks

 
Virus, Trojan, Riskware and more

Virus
A typical computer Virus is a malicious program that destroys and alters files and folders, while replicating on its own. It usually attaches or inserts itself into an executable file or the boot sector of a disk.

Network Worms
This Malware spreads via P2P File Sharing, LAN, WAN and over the Internet using file sharing programs like Kazaa. A worm wriggling into a vulnerable computer of a large network will send requests to all other machines in order to propagate it.

Trojan
A Trojan refers to a program or a file that may look harmless otherwise, but carries a malicious component in it. Regular Trojans do not replicate on their own, but can be highly destructive, harm applications and threaten your Data Integrity. A MicroWorld study in September 2006 found that 31% of malware caught in SMBs belong to different Trojan families.

Trojan Downloaders
This breed downloads other Viruses, Worms and Trojans into the victim’s machine from the Internet. Often they turn off the AntiVirus and Firewall in the system before bringing in new malware!

Trojan Clickers
Trojan Clickers redirect victim’s machines to specific websites or other resources on the Internet. They make this possible by tampering with Windows HOSTS file to reroute regular web requests towards websites they wish. Trojan Clickers are widely used in increasing the hit-count of specific websites or for launching Denial of Service (DOS) attacks.

Pharming Trojans
This breed is similar to Trojan Clickers and is used in a dangerous attack called ‘Pharming’. When an employee from your company’s Finance Department accesses the website of the official bank to do a business transaction, he could unwittingly open a spoof website created by scamsters, where he gives away confidential financial information. They do this by making changes in the DNS settings.

Keyloggers
Keyloggers remain silent in a compromised computer and capture usernames and passwords when a user logs on to the websites of Financial Institutions, Banks and Credit Card Companies. The Information thus stolen is mailed to the author of the Malware. Some of the more evolved ones can take screenshots and capture mouse clicks too. This malicious code is a core component in Password Stealing Trojans. Keyloggers can pose a dangerous threat to the Data Integrity of SMBs. If they manage to steal the email ID and password of a senior executive, all of his or her mail communication can be spied on, day in and day out.

Backdoor
This Malware is hooked into the victim’s system by an intruder, in order to gain Access and Control of it. IRC (Internet Relay Chat) channels are widely used by Backdoors to connect to the attacker and take orders from the criminal sitting in his far away hideout, perhaps in the mountainside Russia! Using the Backdoors, the attacker can operate a compromised computer like his own desktop and execute commands.

Rootkit
A Rootkit is used by malicious programs to hide running processes, files or system data, so that Security Applications do not detect their presence in the computer. They modify parts of the Operating System, install themselves as drivers or kernel modules in order to achieve deep penetration in the computer. It’s the favored hiding mechanism for many recent Backdoors and Trojans.

Spyware
Spyware is a risky, malicious program typically bundled as a hidden part of freeware or shareware programs, downloaded from the Internet. It spies on user activities on computers and sends that information over the Internet to the Malware author. Spyware eats up system memory, damages its functioning, sneaks into sensitive, Personal Financial Information like Credit Card numbers and passwords.

Adware
Adwares are nasty software programs that pester your computer screens with countless pop-up advertisements. Often they push you to the limits in their attempts to make you visit certain websites, buy tacky products online or join scam services. They can cause system crashing and rob your computing resources and bandwidth, all the while being a perpetual nuisance as well.

Spam and Phishing Menace
Wading through the clutter of Spam is one of the biggest challenges faced by employees of SMBs on a daily basis. Accidentally deleting important and legitimate mails in that process is another issue. Bandwidth issues, Storage Concerns, Loss of Productive hours and Distribution of Malware are a slew of other concerns for organizations, stemming out of Spam mails. 
Search the Library                  Advanced Search
About Us Contact Us List Your Papers Partner With Us Site Map