- Recommend:
- 0 Comments
Computer Security Incidents on the Rise
Reports of viruses and security vulnerabilities in software nearly doubled in 2001, CERT says.
Total security incidents nearly doubled in 2001 compared to the prior year, according to statistics released Friday by the federally funded computer and network security body, the Computer Emergency Response Team Coordination Center.
While 2000 saw 21,756 security incidents, 52,658 such incidents were reported in 2001, CERT/CC says.
CERT/CC, based at Pittsburgh's Carnegie Mellon University, issues regular advisories about security vulnerabilities in software, as well as virus and worms outbreaks, offers tips on keeping computer systems secure, and helps to coordinate responses to some security incidents. CERT/CC also maintains a hotline for reporting security issues.
Security incidents, which are defined by the organization as any related set of security events, be they a large-scale virus outbreak or a much smaller one, have risen nearly every year since CERT's founding in 1988. That trend has risen sharply in the last few years with nearly 10,000 incidents reported for 1999, more than 21,000 in 2001 and now nearly 53,000 such events in 2001.
Software Holes
Reports of security vulnerabilities in software have followed the same trend as security incidents, as well, with a steady upward trend capped in 2001, which featured more than twice as many vulnerabilities as 2000. In 2001, there were 2437 security vulnerabilities reported compared to 2000's 1090 vulnerabilities and sharply up over 1999's 417.
Last year also saw more serious security events than most previous years, according to CERT/CC's figures. The body published 41 security alerts, the most serious notification of security problems, in 2001, up from 26 in 2000. 2001's figure, however, did not best the single-year high mark of 53, set in 1996.
Security incidents are going up in part because more people are more aware of security and are reporting more incidents, according to Chad Dougherty, an Internet security analyst at CERT/CC.
"Security awareness is increasing and we're starting to see more attention [paid] to Internet security," he says.
Widespread Worms
Also playing a role in the increase in security events in 2001 were attacks on widely deployed software, Dougherty says. Two worms, Code Red and Nimda, both attacked Microsoft Internet Information Service Web server platform in the last half of 2001. IIS is deployed on millions of servers worldwide.
Events like Code Red and Nimda, as well as CERT's overall numbers, play up the point that "everyone on the Internet is dependent on everyone else" for security, Dougherty says.
Although declining to make a prediction about this year, Dougherty expects that the rise in security incidents "is a trend we'll see increasing as time goes on."
"We still have a ways to go in software development and producing software that doesn't contain those vulnerabilities right out of the box," he says.
Dougherty advised users to check CERT's Web site, where the organization has posted papers on how to improve computer security, especially for home users.
Would you recommend this story? YES NO
- Recommend:
- 0 Comments
-
ThinkPad Edge E420 Lenovo Style in an Affordable Package
Buy now direct from Lenovo -
ThinkPad X220 Fast and light, with great input ergonomics and battery life, this powerhouse ultraportable is best-of-breed.
Buy now direct from Lenovo -
ThinkPad X120e One of the best netbooks ever, X120e has the best netbook keyboard ever--nothing else comes close
Buy now direct from Lenovo
- How We Test Antivirus Software and Security Suites
- Cybercrime Skyrockets, Say Security Reports
- Microsoft Plugs Money Security Hole
- Carrier IQ Rootkit Reportedly Logs Everything On Millions Of Phones [Updated]
- Hacker Collective Anonymous Strikes at Child Porn Sites
- Lessons Learned from the Epsilon Data Breach
- 12 Criteria for Selecting the Best ERP System Replacement An ERP system is your information backbone and reaches into all areas of your business and value chain. Replacing it can open unlimited business opportunities. This white paper explains the 12 criteria that allow you to identify and select the solution that will meet these expectations.
- Leveraging Social Computing Technologies for ERP Applications This white paper details how Web 2.0 technologies support business strategies by improving efficiency, productivity, and collaboration.


















