Security experts: Botnets biggest threat on net

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS

Botnets are the biggest global threat facing the internet today, according to security experts at the RSA security conference in San Francisco this week.

Ira Winkler, president of the Internet Security Advisors Group, said: "The statistics are basically that we're screwed. There is no real strategy for it. No-one is doing anything."

Winkler said there needs to be a fundamental change in people's attitudes to effectively combat botnets. "It's going to take a lot more than education, technology and law enforcement."

The most effective approach to tackling botnets would be to impose penalties on people who allow their computers to become infected, making users take more responsibility, according to Winkler.

He said: "We need to hold users responsible. ISPs should have a responsibility of making sure users aren't hosting botnets."

The botnet problem is getting worse, with no obvious solution in sight, according to Joe Telafici, vice president of Avert Operation at McAfee.

Telafici said: "The problem today is many orders of magnitude worse [than] last year. If we don't find a way to make it less profitable to do this, it won't go away."

Jordana Siegel, deputy director of outreach and awareness at the National Cyber Security Division of the US Department of Homeland Security, said: "We're seeing a constant increase in malicious code, which includes botnets."

Read this

Feature
Special report: The top five internal security threats

What should an employer watch out for?

Read more +

Ronald Teixeira, executive director of the National Cyber Security Alliance, said: "Botnets are, I think, the biggest threat we face on the internet today. Tackling this is going a long way to limit attacks."

But Matthew Fine, supervisory special agent with the FBI, said the fact that criminals are now going to jail for botnet attacks is a step in the right direction.

"It's sending a message that judges understand this is affecting lives," said Fine.

But more still needs to be done, Fine warned. "I think we're all screaming for help. Hopefully we'll get some updated laws to help us."

Talkback

How do people know if they have got them?

More details would be useful.

KLR

334638 11 April, 2008 13:18
Reply

How do you know if you have them? Very simple, if you run windoze, you are prone to be infected.

ator1940 12 April, 2008 04:54
Reply

WIth respect, I run the security for over 280 Windows Servers and 3000+ laptop/desktops, and other than the few I see every Sunday morning and when executives etc come back from conferences. We do not have a problem, the front end IPS and firewall logs collect the data on infected machines and we disinfect the machines proactively.

Also consider a Network Access Control system in addition to above to quarantine the machines in their own Vlan prior to disinfection.

Security is and should be proactive, not just relying on AV and patching to ensure protection, passive protection is no protection.

1000229829 12 April, 2008 11:11
Reply

I have to ask, how does your strategy work if the bots are sending small amounts of encrypted stuff? Sometimes legit stuff is small in size and encrypted, so how do you work out what's what and what's not?

ego.sum.stig 13 April, 2008 17:25
Reply

We have a database of traffic profiles for each server/client vs the installed applications. Therefore additional traffic and open ports show up using the delta differences between the old profile and the new one.

This gives us a list of suspect machines, we then look at the NAC complicance logs, Altiris Software/Hardware inventory and AV alerts for indications of the source of the differences.

1000229829 13 April, 2008 17:34
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

Moley

@kevinmchapman. The discussion here reflects the very significant number of users who really do like the traditional menu system and who wish to...

2 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

Er, no... It is an efficient means of finding the application/file/setting you need in one place. The icons are a simply a fallback for when you...

3 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

Isn't the provision of a text based search an admission by the developers that the mass of icons approach does not work? I don't need to use a...

5 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

"Unity and GNOME 3 both abandon the old text-based cascading menus in favour of a graphical icon-driven system." Point truly missed. Both use a...

5 hours ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

whs001 - Thank you, I'm glad you liked the article. I absolutely agree with you on your first point. I should perhaps have made it clearer that...

5 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Dennis Nilsson

If we allow corporate interest to dictate the way our government circumvents due process against foreign entities then we should accept the same...

6 hours ago by Dennis Nilsson via Facebook on ACTA stumbles in Germany
GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

8 hours ago by GHar123 on ACTA stumbles in Germany
JCB33

How dare film makers, artists or anybody that invests in creativity stop us pirating their works for free. I want to be able to walk into my local...

14 hours ago by JCB33 on ACTA stumbles in Germany
Moley

@GrueMaster. I prefer horses for courses rather than one size fits all. I, and I suspect most other computer users, do not really wish to have...

16 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
greycynic

The product that scares me every time I have to use it is the Office 2007 version of Excel. The first bug that I found was applying the median...

16 hours ago by greycynic on Ten flawed products that derail productivity
GrueMaster

Nice review and very informative. One thing I'd like to add (in reply to whs001's 1st question), the main reason to have the same interface from...

17 hours ago by GrueMaster on A tale of two distros: Ubuntu and Linux Mint
Frederick Wrigley

I'be been using Mint 12 since the RC came out, and I am far more happy with the Cinnamon, the Mate, and, yes (with extensions), theGnome 3...

18 hours ago by Frederick Wrigley via Facebook on A tale of two distros: Ubuntu and Linux Mint
bdantas

Excellent article. One small correction, though--although a fresh installation of Linux Mint 12 will, indeed, provide the user with a version of...

19 hours ago by bdantas on A tale of two distros: Ubuntu and Linux Mint
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

19 hours ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

19 hours ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Moley

For Gnome 2 die-hards, it is possible to add icons to the bottom panel (or top top panel, if you prefer) which provide the exact Gnome 2...

20 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
ramwellian

Your comments would seem pretty naive and immature. Your 'solution' appears to be, "gee, let's all just give in to the hackers and give them...

20 hours ago by ramwellian on Cloud computing security: no more oxymoron?
BugStalker

"Interesting thought ... If you installed Win7 as a dual boot on a machine that previously only had Linux, and it wrecked your Linux installation,...

21 hours ago by BugStalker on Windows 7 Declares War on GRUB
whs001

This is an excellent summary of Ubuntu and Mint and the interface differences between them. Most such articles take a very partisan position for...

21 hours ago by whs001 on A tale of two distros: Ubuntu and Linux Mint
Moley

@ewallace. Not so clear. Anyone can obtain the text, for example from here http://www.ustr.gov/webfm_send/2379. I support ACTA so long as it and...

21 hours ago by Moley on ACTA: Facts, misconceptions and questions