November 20, 2003

Hackers, Inc.

This is discouraging, even if not unexpected.

Hackers who attack computer systems are becoming more nimble and are taking less time to exploit system vulnerabilities as they become known, a new report says.

The Internet Risk Impact Summary Report, published by Atlanta-based Internet Security Systems, Inc., said that overt attacks on computer systems increased by 15 per cent in the third quarter of 2003 over the previous quarter.

Moreover, network administrators saw an overall rise in "security events" of 9 per cent, which are defined as "confirmed attacks or events that present unusual risk."

The report blamed the increase in security incidents on fast-moving attacks that quickly targeted vulnerabilities in existing hardware and software disclosed during the second quarter of the year.

In what ISS calls a continuing security trend, the hacking underground is catching up with security research. ISS offered as an example the appearance of hacking code just two days after Cisco announced an operating system vulnerability, leaving virtually no time for administrators to patch their systems.

via The Globe and Mail
Full report via Internet Security Systems, Inc. (pdf)

Posted by Alan at November 20, 2003 07:00 PM