This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.  > Find out more here

 

All the latest UK technology news, reviews and analysis

LulzSec could spark wave of follow-up hacks on vulnerable firms

by Phil Muncaster

23 Jun 2011

View Comments

  • Tweet this

Security experts are warning that a wave of malicious attacks could hit vulnerable organisations as copycat cyber criminals monitoring the LulzSec hacks try to exploit those whose security has already been found wanting.

Eddy Willems, security evangelist at German vendor G-Data, told V3.co.uk that the black hats will have been watching and learning from the LulzSec hacks, using these to discern which are the more vulnerable organisations.

"If police forces around the world can't cope then we will see a second wave of these kind of attacks and they will be much more problematic because many more people will be carrying them out," he said.

"I'd say to the FBI, CIA, Soca: ‘Please do what you have to do because you can trace these attacks back'."

Willems argued that high-tech crime units and law enforcers across the globe too often have their hands tied by conflicting national legal systems and jurisdictions.

"I've always advocated a worldwide cyber crime unit to handle communication between national cyber crime units and to co-ordinate international laws," he said.

"There is some communication but it's not enough at the moment. Botnet servers are all over the world, not just in one or two countries."

Martin Lee, senior software engineer at Symantec.cloud, added that unlike LulzSec, those who wish to profit financially from hacking do all they can to ensure the attacks don't hit the headlines.

"Professional criminals don't brag, they quietly and efficiently compromise systems, steal resources, and make money," he told V3.co.uk.

"Companies that have high-value information on their systems need to make doubly sure that they know where the information is, who has access to it and in what circumstances. They also need to make sure that the information is wrapped up in layers of protection so that attacks can easily be repulsed and suspicious activity can be immediately detected and investigated."

Robert Rutherford, managing director of IT consultancy QuoStar Solutions, disagreed that professional cyber criminals are likely to go after those firms exposed by LulzSec as having security holes.

However, he said the high-profile activities of LulzSec itself could encourage others to join the growing hacker population.

"To be honest, there isn't a huge amount that can be done out of the ordinary to stop them. All companies need to take IT security extremely seriously," he added.

"This isn't just about big businesses being hacked – the land of the SME is where these guys train and learn their trade. Business leaders and IT teams need to remember this and need to perform proper risk assessment and audits on their environments."

Do you agree

blog comments powered by Disqus

Poll

Business security poll

How concerned are you by the rising tide of cyber threats?

17%

55%

10%

9%

9%

Popular Threads

Powered by Disqus
BlackBerry Q5

BlackBerry Q5 video demo

BlackBerry's latest smartphone is a mid-tier handset that will cost less than the Q10 and Z10

Updating your subscription status Loading

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

newsletter sign-up button

mcafee

7 requirements for hybrid web delivery

It's no longer one or other with web security; you can now have a virtualisation and SaaS hybrid model

navisite

BYOD: the implications for the IT team

BYOD is important for employee satisfaction, but poses challenges in terms of security, productivity loss and costs

Android Developer (Java, Android SDK, Sync Framework, Maven)

Android, Java, SDK, Maven, Sync Framework, Fragments...

Change Analyst/manager-ITIL SC Security Cleared-South East

Change Analyst, ITIL v3, HP Service Manager, SC Security...

ASP.NET Developer

ASP.NET Developer - Applications developer / VB.NET or...

Low Latency C++ Developer (FIX, Multi-threading)

C++ Developer (Low Latency, Multi-threading, FPGA, TCP...

To send to more than one email address, simply separate each address with a comma.