Find White Papers
Home
About Us
List Your Papers
    
> Symantec.cloud > Web threats in 2010

Web threats in 2010

White Paper Published By: Symantec.cloud

Web threats don't just hide in the darkest corners of the internet. The vast majority are legitimate, compromised websites; the kind of sites your employees visit all the time. Read our whitepaper to understand the web threat in 2010 & equip your business to defend against it.



Tags : 
messagelabs symantec, web threat, malware, threat detection, web security services, anti spam, anti spyware, anti virus

Symantec.cloud
Published:  Jul 06, 2010
Type:  White Paper
Length:  11 pages

WHITEPAPER
Web Threats 2010:
The Risks Ramp Up

A White Paper by Dan Bleaken, Senior Malware Data Analyst,
Symantec Hosted Services
www.messagelabs.com info@messagelabs.comWHITEPAPER
Executive Summary
No-one can deny the phenomenal success of the World Wide Web. But its increasing prominence and importance come at a price. Quite apart from the big risks that businesses can find themselves exposed to as a result of inappropriate web use by their employees, cyber-criminals are focusing more of their resources on transforming the web into a malware minefield. Just one visit to a website infected with a virus or spyware can have serious revenue-reducing, reputation-eroding consequences for your business.
The reality is that infected websites are no longer confined to the 'dodgy' margins of the internet. There are now probably many tens of thousands of them - and 90% are perfectly legitimate, often mainstream sites that, unknown to their owners, have been compromised in some way by the sophisticated, skilled and determined gangs of cyber-criminals who now dominate the online 'underworld'.
Equally concerning is the fact that infection techniques have become much more cunning and virulent than they were just two or three years ago. In many cases, the simple act of visiting an infected website is enough to download malware onto the victim's PC - the so-called 'drive-by download'. And with cyber-criminals successfully extending the lifespan of many of their threats, the odds on a user stumbling on a malware-bearing website have never been shorter.
So far in 2010, the average number of website requests blocked by MessageLabs Web Security Service, provided by Symantec Hosted Services, is over 20% higher than in 2009 on a per client per month basis. Nevertheless, in the face of unprecedented web threat levels, the Service continues to deliver protection of the very highest quality for thousands of businesses worldwide.
www.messagelabs.com info@messagelabs.comWHITEPAPER
Introduction: Web Threats in 2010
Globally, an estimated 1-1.5 billion people use the internet. Every day hundreds of millions of visits are made to websites worldwide. But as usage continues to climb upwards, some accepted truths about the web have broken down. Take 'safe surfing', for instance. A few years ago, common sense was all you really needed to keep your computer free from infection by the malware that lurked in the shadier corners of the internet. But today, all that has changed.
In 2010, the threat posed by the web is sharper and more extensive than ever before. Almost any website can now host malware or forward you to one that does. Indeed, an infection is much more likely to result from a visit to a perfectly legitimate website that has been compromised with a virus or spyware than from one set up specifically to spread malware. In addition, techniques such as the 'drive by download' - where simply visiting an infected site is enough to contaminate a PC - have become mainstream.
But getting infected is just the start. It's what happens next that can really harm your business. For example, once the malware has breached defences, sensitive systems and confidential data may be exposed to damage or theft, resulting in loss of revenue and/or reputation. For the increasingly skilled gangs behind the attacks, the basic aim is to seize control of computers (usually surreptitiously) and then use/abuse that control in a range of business-compromising ways.
This White Paper assesses web threats today. Its headline findings are based on the latest data gathered and analysed by MessageLabs Web Security Service, provided by Symantec Hosted Services; every week, on behalf of thousands of clients, the service blocks over 100 million requests to visit websites infected with malware or whose content contravenes clients' web usage policies. The paper then outlines what those findings tell us about the current tactics being used by cyber-criminals - and their implications for web users. But it also demonstrates how, in the face of web threats of unprecedented severity, your business can protect itself against them comprehensively and cost-effectively.
Image: CIMUZ Trojan;
allows a remote user access to and control of your computer
www.messagelabs.com info@messagelabs.comWHITEPAPER
Headline Findings

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search