Computer Security Incidents on the Rise
Reports of viruses and security vulnerabilities in software nearly doubled in 2001, CERT says.
Sam Costello, IDG News Service
Total security incidents nearly doubled in 2001 compared to the prior year, according to statistics released Friday by the federally funded computer and network security body, the Computer Emergency Response Team Coordination Center.
While 2000 saw 21,756 security incidents, 52,658 such incidents were reported in 2001, CERT/CC says.
CERT/CC, based at Pittsburgh's Carnegie Mellon University, issues regular advisories about security vulnerabilities in software, as well as virus and worms outbreaks, offers tips on keeping computer systems secure, and helps to coordinate responses to some security incidents. CERT/CC also maintains a hotline for reporting security issues.
Security incidents, which are defined by the organization as any related set of security events, be they a large-scale virus outbreak or a much smaller one, have risen nearly every year since CERT's founding in 1988. That trend has risen sharply in the last few years with nearly 10,000 incidents reported for 1999, more than 21,000 in 2001 and now nearly 53,000 such events in 2001.
Software Holes
Reports of security vulnerabilities in software have followed the same trend as security incidents, as well, with a steady upward trend capped in 2001, which featured more than twice as many vulnerabilities as 2000. In 2001, there were 2437 security vulnerabilities reported compared to 2000's 1090 vulnerabilities and sharply up over 1999's 417.
Last year also saw more serious security events than most previous years, according to CERT/CC's figures. The body published 41 security alerts, the most serious notification of security problems, in 2001, up from 26 in 2000. 2001's figure, however, did not best the single-year high mark of 53, set in 1996.
Security incidents are going up in part because more people are more aware of security and are reporting more incidents, according to Chad Dougherty, an Internet security analyst at CERT/CC.
"Security awareness is increasing and we're starting to see more attention [paid] to Internet security," he says.
Widespread Worms
Also playing a role in the increase in security events in 2001 were attacks on widely deployed software, Dougherty says. Two worms, Code Red and Nimda, both attacked Microsoft Internet Information Service Web server platform in the last half of 2001. IIS is deployed on millions of servers worldwide.
Events like Code Red and Nimda, as well as CERT's overall numbers, play up the point that "everyone on the Internet is dependent on everyone else" for security, Dougherty says.
Although declining to make a prediction about this year, Dougherty expects that the rise in security incidents "is a trend we'll see increasing as time goes on."
"We still have a ways to go in software development and producing software that doesn't contain those vulnerabilities right out of the box," he says.
Dougherty advised users to check CERT's Web site, where the organization has posted papers on how to improve computer security, especially for home users.
- Sponsored Resource:Improve your network with the right mix of features, performance and pricing.
- Sponsored Resource:Growing your business requires the right tools. Dell's networking servers can help.
- Sponsored Resource:Thinking about a new Laptop? Lenovo has models to meet everyone's needs.
- Sponsored Resource:Twitter: A how-to guide for using Twitter as a business tool.
- Sponsored Resource:Smartphone security threats are on the rise. Is it time to safegaurd your device?
Print 65% more pages than with refilled inks. Trust Original HP Inks. Hit Print Reliably.
Solve Tech Issues Fast
Microsoft Office Home and Student 2007
Featured APC Accessories For Your System
10% Off Entire Cart at Online Store
-
APC Back-UPS ES
Safeguards your equipment from damaging surges and spikes that travel along your utility & data lines.
- APC SurgeArrest Performance Highest level of protection for your professional computers, electronics and connected devices, as well as provides surge protection.
People who read this also read:
Best Prices on Security Software
Norton Internet Security 2009 - 1 User/3 PCPrice: $29.97
Norton Internet Security 2009 - 1 User/1 PCPrice: $15.95
Norton 360Price: $25.00
Internet Security 2009Price: $15.99
Norton Internet Security 2009 - 1 User/3 PC, Small BoxPrice: $20.50
Internet Security 2009Price: $24.95
- HP Ink Center Bring improved color and brilliance to your printed material. Visit the Resource Center for more info...
- Lenovo Laptop Showcase Find out how Lenovo IdeaPads and Thinkpads balance performance and portability. Visit the Lenovo Resource Center for more info...




