Internet Policy Task Force Makes Recommendations to Deal with Cyber Security Challenges

Information technology (IT) experts have been successful in leveraging Internet technology for diverse uses, revolutionizing the way businesses are run, governments function, and customers transact. However, Internet now stands at cross-roads, with increase in number of security threats. Cyber-attackers are using multifarious ways to infringe Internet infrastructure. According to some estimates quoted by U.S Commerce Secretary, over 45 new viruses, worms, spyware and other types of malicious threats were created every minute during the first quarter of the current year. The consistent and ever evolving threats pose challenge for governments to ensure security for consumers, businesses, military and government bodies. Cyber threats are now more sophisticated, frequent, indiscriminate and target-based.

The Internet Policy Task Force, of the Department of Commerce, United States, has recommended a new framework for addressing Internet security issues. The task force suggests creation of a nationally recognized approach to minimize threats for small businesses, brick and mortar companies, and large organizations that exist on Internet, that have provision for information services, facilitate transactional services over the Internet. The task force has referred to this group as Internet and Information Innovation Sector (I3S).The nationally recognized approach must include development of sector specific, and consensus based code of conduct to safeguard the I3S from varied cyber security threats. The government must encourage industry to develop innovative technology solutions, and promote use of emerging technologies such as cloud computing, and modernize security assurance policies.

The Internet Policy Task Force has advocated the need for creation of a national data breach notification law for appropriate disclosure of security incidents, and encouraging firms to improve security mechanisms. Sharing of information on cyber security incidents is crucial to improve defensive mechanisms. Government may use public policy tools such as liability protection, and insurance models to incentivize and promote best practices among I3S companies. Government must place emphasis on research, and work with industry to devise better cost-benefit analysis for I3S cyber security. Employee awareness is crucial to improve cyber security practices. Governments may asses the current cyber security education efforts, and encourage targeted and customized awareness programs in accordance with industry requirements. Employees may be encouraged to undertake Online computer degree programs to understand and implement best practices in cyber security. The task force emphasizes on encouraging research and development to meet the future demands for effective technological solutions. IT professionals may leverage online technology degree programs to update their technical know-how, and implement better security mechanisms.

Recent security incidents in major corporations have resulted in disclosure of sensitive information related to millions of individuals. Businesses face the challenge of strengthening information infrastructure, and ensuring security of customer and business databases. Vibrant threats have increased demand for cyber security professionals qualified in IT masters degree, computer science degree, computer forensics, network administration, penetration testing, and security threats.

Cybercriminals may conduct attacks from any part of the world. As such, government must coordinate with other countries to share threat information, best practices, and promote shared research and development goals. Government must encourage and develop cyber security standards, which converge with global practices.

New Zealand Government Releases New Cyber Security Strategy

Governments and businesses across the world are increasingly becoming dependent on Internet for their activities. Many countries are witnessing transformation towards e-governance. New Zealand has also benefitted from the growth of the Internet. According to a report by New Zealand government around 75% of people use Internet and over 70% of them have broadband connection. Most of the businesses use Internet banking and increasing number of people are making purchases online. At the same time, the growing use and reliance on Internet has resulted in increased exposure of government, business organizations and individuals to cyber threats. Cybercrime poses threat not only to personally identifiable information of customers, but also to intellectual property and proprietary information related to business enterprises.

There is increased threat of cyber espionage, intrusion, identity theft and use of the Internet space by terrorist organizations. According to figures of the government, New Zealanders suffer losses of around $500 million annually due to cybercrime. The New Zealand government has developed a new cyber security strategy to combat the growing threats in the Internet space. The government intends to increase awareness on cyber security, safeguard government systems and data, and improve incident response procedures. The government intends to partner with industry and Internet service providers (ISP) to improve awareness on online security. New Zealand government has decided to form a National Cyber Security Centre, which will function under the Government Communications Security Bureau. The objective of the Centre would be to protect government systems and confidential information by improving the existing information assurance capabilities. The new strategy provides for improving cyber security practices in the government agencies. To improve incident planning and response, government intends to collaborate with critical national infrastructure providers, and business organizations. The government is also making assessment of the need to develop a Computer Emergency Response Team (CERT).

Growing threats in the cyber space has made it inevitable for government bodies and organizations to initiate proactive steps to strengthen IT infrastructure. There is a growing demand for professionals qualified in computer science degree, IT masters degree and other IT security certifications. The New Zealand government intends to collaborate with industry, universities, and training institutions to meet the growing demand for skilled cyber security professionals.

Employee awareness is crucial to combat sophisticated threats from cyber-attackers. Online computer degree programs, workshops and security awareness training programs may help improve cyber security practices, and create security conscious culture in organizations.

Research and development is crucial to improve defense and response to cyber threats. Online technology degree programs may help professionals in understanding and implementing new security mechanisms. The new cyber security strategy of the government emphasizes on greater cooperation with stakeholders such as industry, academic institutions and other government agencies to develop and improve cyber security response capabilities.

The government also intends to coordinate with other countries to improve the legal framework and enhance cooperation in dealing with cybercrime. Government plans to improve capabilities to deal with organized cybercrime by raising standards to those developed by Council of Europe Convention on Cybercrime.

Security Researchers Warn Against Cyber Threats During Cricket World Cup

Major International sporting events provide opportunity for businesses to increase sales by introducing attractive offers. The offers may be in the form of discounts, complimentary sports apparel and tickets to the sporting event among others. Enthusiastic sports fans are also eager to take advantage of the lucrative offers. However, major sporting events also provide opportunity for cybercriminals to lure the public into revealing confidential information through deceptive offers.

Recently, security researchers have warned users against increased spamming activity during the ongoing cricket world cup in the Indian sub-continent. Scammers may try to manipulate the cricket loving fans of the host nations India, Bangladesh and Sri Lanka as well as other participating countries. India alone has over 61 million Internet users and enthusiastic fans may browse sites, which offer online cricket scores and live online cricket streaming videos. Vinoo Thomas, Technical Product Manager of McAfee Labs has cautioned against spam and phishing e-mails targeting online users. The security expert has also cautioned users against websites, which urge users to download software, to view peer to peer (P2P) base live cricket streaming as some of them may be Trojan programs. Cricket fans who could not view a match due to work reasons may also download online videos for self paced viewing. When unwary cricket fans download the software, the Trojan may install fake security software in their computers. Scammers are also a running spam e-mail campaign that offers attractive hospitality packages and tickets for the World Cup finals.

Attackers may also exploit vulnerabilities on websites to inject fake and malicious links. Regular security evaluation through security professionals such as security auditors and ethical hackers may help in timely detection and mitigation of security flaws.

The International Cricket Council has also alerted fans against falling prey to prize offers and sweepstakes promotion by dubious third parties. Attackers send cleverly crafted e-mails, which appear to come from a seemingly legitimate, but fake source. The e-mails may contain striking offers such as discounts on hotel bookings, free tickets for the World Cup matches on purchasing a product and attractive prizes. Attackers urge users to click on a link or download an attachment. When unwary users click on the link, they may be directed to a fake site, wherein they are asked to enter personal information and payment details such as credit card and debit card numbers.

Over the recent times, mobile phones including iPod and iPhones have increasingly become popular among users. They not only enhance user experience, but also facilitate online learning such as iPod training programs. While, organizations are trying to leverage the growing use of mobile phones by offering live cricket score updates, cybercriminals are busy sending fake lottery winning SMS messages and fake free ticket offers to deceive users.

Users must be wary of downloading software or videos from suspicious sites as such websites may be created for spreading malware and may disappear after a few days. Users must buy cricket match tickets, book hotels and buy products from legitimate and secured websites.

Cyber Security- An Emerging Field of Study

Ever since the start of the web, cyber crime continues to be an issue. What exactly is cyber crime? Perhaps you have gotten a virus, or even gotten hacked? These are very common cyber crimes. Cyber criminals hack into networks, create viruses, and can even steal your financial information. Though we are all aware that this is a possibility when housing our information on computers, we often think that it will never happen to us.

Though cyber crime could potentially be financially devastating to the average person, it is possible to cause catastrophic repercussions by political extremists that can misuse the Internet for acts of cyber terrorism. What exactly is Cyber Terrorism? It’s when a person or persons use the anonymity and global reach of the internet for their own personal gain, such as, terrorist attacks on U.S. information infrastructure in attempts to seal money, identities and classified data. They can also use the internet as a tool to seek out like-minded extremists to aid them try to hack their way into corporate and/or government networks.

Michael Alcorn, Branch Chief in the State Department’s Office of Anti-Terrorism Assistance had this to say about cyber terrorism, “The problem we’re all facing is a global borderless problem, where attacks can occur anywhere in the world and originate from anywhere else in the world.”

Though he said this in 2005, it still rings true today. Attacks could happen at any time, in any location, against any individual or institution. The only solution to combat this is to have individuals who have a cyber security education that are specialized in fighting against cyber terrorism and cyber criminals. These individuals are called cyber security professionals.

What does a cyber security professional do? They coordinate an organization’s information security preparedness, educate users on computer security, respond to sophisticated cyber attacks, gather data and evidence to be used when prosecuting cybercrimes like credit card fraud, auction fraud, intellectual property theft, pedophilia, terrorism, hacking plus they monitor the network for any security breaches. Normally they’re employed by local, state and federal law enforcement agencies. At times cyber security professionals could be called on to engage in computer crime investigations this is known as Cyber Forensics. This is an emerging field, and because of technology advances, this filed will ways be changing along with technology. Cyber security professionals must keep up to date with changes and technology and be lifelong learners within their field.

Cyber Crime Translating Into Entertainment News

It takes congruence to personality for something to amuse oneself. Our subject and source of entertainment news is totally relied on this one factor. Some can get amuse by the passing sceneries while they enjoy a train ride. Other might find luxury of entertainment in a mild bare-footed walk on soft grass. For sports freaks, football news from sports column can be this source. Case may still be similar for others like enjoying a favorite book in secluded corner of Cafe Coffee Day.

Above quoted are the instances of entertainment one can find among wide range of available options. Entertainment comes in many guises. Sometimes this very source of entertainment can be a cause of abnormal setback of a particular society. One name of such a detrimental for of one’s amusement is Cyber Crime. The activities under it are curious and intelligent. From social stand they would be considered seriously obnoxious and dangerous for people who are not cynics. Orissa news or any other state news is of no significance when a system is threatened with so drastic a situation.

In this age of supersonic speed, luxury of time is not available to many. Everything should be as fast as telecast of live football news from the playground. People especially living in metro cities like Delhi, Mumbai etc. are suffering from “fast and easy” syndrome. Mobile Banking, Net banking, ATMs, cashless Shopping and dining are result of this syndrome only.

Consequently this inclination has given way to gifted yet black-minded individuals to make money with benefit of their kind of cynic amusement. They love to shock and stun the world with Computer VIRUS like ILOVEU. Whole system got shut down in an instant as a result of this VIRUS. Millions of dollars went in vain due to crashing of system. Incidents like these are entertainment news for the people who share the same degree of cynicism.

The craze of game like football seems meek and faded when such events take place. Football news get cornered and shadowed by entertainment news like cyber crimes. For them joy of abating routine of high profile organizations like NSE is a reward to them for their unparalleled Intelligence Quotient (IQ). Something as uneventful as Orissa news can be distracting if that state becomes the center of such an event. Such is the glory of this new era crime. There is a system of law enforced on these cyber crimes but the impact of both (cyber crime as well as law) is yet to be witnessed in full-fledged form.

Employ Cyber Security To Protect Your Computer From Hackers

Computer and internet security is a matter of concern to the computer users across the globe. Be it corporate or individual security personal and sensitive information is very important matter. Hackers are always in search for new tools and tricks to invade the computer. Wondering how to protect your computer from the attacks of the hackers? If yes, this article is worth reading. Here we will discuss about the importance of cyber security and how to protect your computer and important information from hackers.

Don’t know what is cyber crime? Well, you certainly have experienced virus, spyware, adware attack on your computer. These are very common cyber crimes. The job of cyber criminals is to hack into networks, and create virus. They can even steal your financial information. As a whole, they create hindrance so that the PC users can’t enjoy hassle-free and smooth computing. How to block the PC users from accessing your computer and important information? Here comes the importance of cyber security.

In most of the cases, it is seen that computers that don’t employ proper security measures get infected by viruses, and other malicious objects used by the hackers. Every computer user should remember that when the computer is connected to the Internet without having proper security measures, it is like the hotcake to the hackers. It is like you are going for a getaway tour without locking up all doors and windows of your home. So, you can easily imagine what could happen.

How to enhance computer security? Either you can consult a PC security support provider or take security measures on your own. There are many online computer services companies that offer excellent tech support to the PC users so that they can remain protected from all viruses and other malicious objects. Services of these companies are highly affordable and one can opt for it whenever required.

On the contrary, if you would like to take security measures on your known, you need to install some important software. Firstly, there should be a powerful antivirus on your computer. Install full version antivirus software and update it on a regular basis. Most of the good antivirus providers offer trial version of their antivirus. This version is not as powerful and effective as the full version. So, it is suggested to go for the full version.

Apart from antivirus, you also need to install an anti-spyware and anti-malware program. This will help to block spyware. Spyware is a program that is used to monitor your internet habits and even the keystrokes. They not only steal your personal and sensitive information but also transmit them to its author.

Cyber Security Some Useful Tips

Cases like credit card numbers being stolen and virus infection are quite common these days. You may have heard about them, or maybe you’ve even been a victim yourself. How to avoid these problems and save yourself from falling prey? Well, that is what we will discuss in this article.

These days, it seems that everything depends on computers and the internet. Be it communication, entertainment, transportation or shopping, medicine, and in other sphere of life, technology plays an imperative role. And this also brings huge opportunity to the hackers. They use various tools and techniques to sneak into the computer of the user and steal personal and sensitive information and damage hardware component. Here comes the importance of cyber security. It involves protecting your important information by preventing, detecting as well as responding to attacks.

There is no dearth of risks, and some of them are truly serious. Malicious objects like viruses erase your entire system, and there are also spyware that steal your credit card information and make unauthorized purchases. There are steps by which you can minimize the chances of falling prey. You can consult a computer repair company for PC security support.

You should understand the risks, and this will help you to protect yourself against them. Let’s take a look at how to block hacker, attacker, or intruders. Those, who seek to exploit weaknesses in software and computer systems of the users’ computer for their own gain, are called as hackers. The number of these cyber criminals is increasing these days and they are applying more and more new tools and techniques to invade the user’s computer.

There are also malicious codes, called malware, are used to attack your computer. Malware could be of diverse types. Sometimes, when you open an email attachment or go to a particular web page, your computer gets infected. There are also some malicious objects that can spread without user intervention and typically start by taking advantage of software vulnerability. Once the victim computer gets infected, the malicious code tries to infect other computers on the network. These codes could be spread via email, websites, or network-based software.

In terms of cyber security, antivirus, antispyware, antimalware, and firewall are the most common name. All these are used to protect the computer of the user and save them from the hackers. There are multitudes of software available on the web which are very useful to protect your computer. There are both free versions and paid versions. It is recommended to install the paid version as they pose all the required features to protect your computer and give you the best of cyber security.

Tips To Ensure Cyber Security

Today we depend on computers and the Internet for everything right from maintaining records, communicating through email, shopping through online stores, paying online through credit cards, entertainment and the list goes on. However information stored on computers is extremely prone to several vulnerable risks such as theft of credit card information, unauthorized purchases from your stolen card, viruses damaging your entire system, hackers breaking into your system and removing or altering files, and so on.

Considering vast amount of personal information stored in our PC’s and computers in offices, it becomes essential to ensure cyber security. Especially cyber spying or cyber espionage has become so common. Hackers obtain personal and sensitive information without the knowledge of the users by using malicious cracking techniques such as Trojan horses and spyware. Although there is no fool proof method to ensure 100 % cyber security but by taking few preventive measures you can prevent most of the risks to a great extent.

Choose password carefully: Generally many people commit the mistake of using password which are based on personal information. The first and foremost thing which you must do is create unique passwords which are not easy to guess. Try and use both lowercase and capital letters as it makes even more difficult to crack the password. Always go for longer passwords as they are far more secure than shorter ones. It is important that you don’t use the same password for all the programs you log into. Else if the hacker guesses the password he can easily log into all your programs.

Use updated anti-virus and Firewalls: Always use the updated anti-virus program. No matter which anti-virus you buy, installing it always enhances your level of protection. Generally all anti-virus perform the same function. So your decision to choose a particular anti-virus can depend upon price, or particular features. Never ever open email attachment which claim to include anti-virus software as these emails are nothing but hoax. In addition, install Firewalls which provide protection to your network system from outside malicious hackers by blocking Internet traffic from uncertain, suspicious locations. Firewalls are extremely important for people who prefer ‘always on’ connections such as DSL modems or cable.

Rootkits and Botnets: Other risks which you should be careful about are rootkits and botnets. A rootkit is a piece of software that gets installed on your system without your knowledge. And botnet is an automated computer program which enables the attacker to gain control on your system by infecting your computer with a virus. Hackers use rootkits and botnets to access and alter confidential information, and attack other computers. The best way to avoid rootkits and botnets is to use updated anti-virus and firewalls. But unfortunately if your computer is infected with rootkit you may not be able to detect it. And even if you do you may not be able to get rid of it. That is why it is advisable to take the help of professional cyber security experts. In fact if you are inclined towards niche technologies, you can also undergo cyber security training or ethical hacking course from a reputed institute.

There are so many security threats so it is always best to keep a back-up of your data right from crucial documents, photos, emails and various other important files. You never know when you need them.

ToysRUs reveals its Cyber Monday 2010 Deals

THE LEADING toys store for kids, video games, dolls, baby & toddler toys and more, ToysRUs has revealed its Cyber Monday deals. According to the ToysRUs, Cyber Monday Deals will start online at 12:01am on November 29. The retailer has said, it will be the biggest Cyber Monday sale in their history.

ToysRUs is offering for the Cyber Monday deals including Free Box of 120ct Crayons ($10.99 value) with $25 Crayola Purchase, buy 1 get 1 50% off all Nerf Toys, buy 1 get 1 50% off Imaginarium Toys, buy 1 get 1 50% off all Dream Dazzlers Dress Up and Playsets, 30% off Club Penguin, 20% off all Little Tikes Products, 20% off all Avigo and Rallye Bikes.

ToysRUs is also offering 20% off all TRON Action Figures, 20% off all Baby Alive Dolls and Accessories, 15% off Bratz, Liv and Taylor Swift Dolls and Playsets, save $10 on any Kinect for Xbox 360 Video Games, save $10 on any Playstation Move Video Games, save $10 on Video Game purchases of $100 or more when customers purchase with their MasterCard Credit Card, 10% off all Air Hogs Remote Control Vehicles and 10% off all Spy Gear and Spy Net Roleplay Toys.

The toy-centric store ToysRUs had announced for its Black Friday 2010 video games such as Nintendo DS Starter Kits for $14.99, Nintendo DSi Holiday Bundles with Free Essential Kit for $149.99, Select Video Game Accessories for 50% off, Selected Video Game Controllers for 40% off, Video Games for PS3, Xbox 360 or Wii (Buy 1 Get 1 for $5.00) for offer, Xbox 360 250GB System with Free $50 Gift Card for $299.99 and XBOX 360 4GB System with Free $50 Gift Card for $199.99.

Cyber Security Experts in Iran Identify New Cyber- Attack

Last July, the discovery of Stuxnet worm, which targeted industrial installations, created alarm among cyber security specialists. The worm attacked several industrial installations across the world. However, many researchers believed that Stuxnet was particularly aimed at disrupting Iran’s nuclear program. Stuxnet caused damaged to some centrifuges at the country’s main nuclear facility in Natanz. While security researchers continue to discuss the repercussions of Stuxnet-like attack, Iran has reported another cyber-attack. Iran has identified a cyber espionage virus. Cyber security specialists have named the virus as ‘Star’.

The virus is reported to be designed to cause damage to government computer systems. The virus was identified before it causes serious damage. Preliminary investigations suggest that virus acts like a regular executable file during the initial stages. IT security professionals are conducting further investigations on the virus.

Sophisticated cyber weapons may cause serious damage to industrial installations. Stuxnet exploits various vulnerabilities and replicates through removable drives, Server Message Block (SMB). The worm exploits vulnerabilities to fingerprint industrial control system, spread in Local Area Network (LAN), copy and execute on remote computers, and by-pass security products. Stuxnet allows execution of malicious code by contacting a remote command and control server. The worm is capable of updating itself through peer-to-peer mechanism.

Cyberspace is now leveraged for information warfare, cyber espionage and other covert attacks. Critical industrial installations and infrastructural facilities face constant threat of cyber-attack. Cyber-attack on critical facilities such as power grids, telecommunications, water supply systems, gas and oil storage, transportation, and banking may lead to chaos and have adverse economic implications.

The threats in the cyberspace are imminent. Organizations must be proactive in safeguarding the IT infrastructure rather than considering IT security as a mere compliance activity. Hiring professionals qualified in masters of security science and penetration testing may help organizations in identifying and remediating security flaws.

Employees must be made aware of different cyber security threats, data security and incident management procedures through training sessions, online degree and e-learning programs. Organizations must ensure adherence to IT security policies through proper monitoring mechanisms. Erring employees must be counseled and advised to create IT security conscious culture in the organization.

IT professionals must constantly upgrade their technical skill sets by undertaking new online university degree courses and security certifications. They may abreast themselves of latest developments in IT security by participating in conferences, seminars and discussion forums.