Advertisement
Promo

Security threats Toolkit

Story: Virus downs systems at three London hospitals

  • Previous comment

Posted by: lumension (Wednesday 19 November 2008, 2:36 PM)

  • Reply

and don't forget to manage the vulnerabilities.....

I wondered how a virus could cause such a major issue.

I discovered that W32.Mytob.@mm is a mass-mailing worm that uses it own SMTP engine to send an email to addresses that it gathers from the Windows Address Book on the compromised computer. The worm also has the ability to open a back door and spread through the network by exploiting vulnerabilities.

So the problem spreads due to known vulnerabilities.

Managing vulnerablities is multi-faceted. It is not just about patching them, but it is about identifying and managing risk in a timely and cost-effective manner.

To be effective, there are a number of phases to vulnerability management.

Phases of vulnerability management:
- Discovering assets
- Assessing vulnerabilities and misconfigurations and prioritizing risks
- Mitigating non-patchable risks
- Remediating vulnerabilities
- Reporting and monitoring

Once vulnerabilities are known, the need to prioritise them and know where they need to be deployed is paramount. If all we do is identify that we have thne but are slow to do something about it, then we leave ourselves open to potential exploitation.

Once we have resolved the vulnerability, it is essential to continously monitor for those vulnerablities, since all it takes is for a user to reinstall their system from their CD and they are back to where they started. A comprehensive monitoring and reporting system rounds out a true vulnerability system.

By looking at risk and management of vulnerabilities in this way, IT managers can begin to take control of their environments, and not be laid open to potential chaos that arises when someone takes advantage of them.

Private message disabled

lumension

lumension
LONDON, UK
Member since: October 2008

Site Activity Rating:

3

 


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment

South Korea plans to fingerprint visit...

The South Korean authorities could fingerprint and photograph foreign visitors from 2012, the Korea Times reported on Tuesday. Barring diplomats and government operatives, all visitors... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters