Topics:
Security
When It Comes To Getting Hacked, Organizations Fatalistic
My question to the other 6 percent: can I have some of what you are smoking? Of course, much of this boils down to definition of a breach. But it's pretty hard to use the Internet to any degree today without someone, somewhere, in your organization getting nailed with a traffic-sniffing something. Kelly Jackson Higgins, at our sister site DarkReading reports on the upcoming survey:
I won't delve into percent of budget dedicated to penetration tests. But when it comes to odds of suffering a breach, I peg that figure much closer to 100 percent. I've watched portions of a number of penetration tests. I've sat across the table from ethical hackers as their clients looked absolutely shocked and mortified when their systems were pwned with tools readily downloadable from the Internet. I've listened in on calls where employers were not only convinced to hand over critical information to the social engineer -- they were terrified that they'd get fired if they didn't. I've stood next to dumpsters with hackers rummaging through: eventually they pop their heads up and with an almost giddy voice and exclaim: "Look what I found!" The point is that all of us are hackable. No individual, let alone any organization of any complexity can call itself "HackProof." Well, they could. But that would only motivate someone who would relatively quickly prove them wrong. The best we can hope for, in today's sad state of software quality and bolted-on information security tools, is to raise the difficultly level so high that one is not worth the trouble to hack. « Microsoft Gives App Store Guidelines | Main | How To Make Money Selling iPhone Apps » |
| Sign Up Now For InformationWeek News Alerts |