Data Storage Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
News & Information for Data Storage Professionals
Tuesday, February 9th 
Home
Storage Hardware
Storage Software
Storage Networks
Storage Trends
Next-Gen Storage
Data Security
Data Management
DST Press Releases
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Advertisement
Data Security

Forty Percent of Web Browsers Open to Hackers

Forty Percent of Web Browsers Open to Hackers
July 2, 2008 7:21AM

Bookmark and Share
A study from researchers at Google, IBM and the Communications Systems Group in Switzerland found only 60 percent of Web users have safe browsers. The most secure is Mozilla's Firefox, and the least secure is Microsoft's Internet Explorer. The findings are similar to those by Sophos, which found 81 percent of corporate endpoints vulnerable.


Researchers from Google, IBM and the Communications Systems Group in Switzerland released a study Monday that shows only 60 percent of Web users are surfing with patched, updated browsers.

They estimated that only 576 million of 1.4 billion Internet users worldwide used the most secure Relevant Products/Services browsers. The data Relevant Products/Services came from Google's server Relevant Products/Services logs between January 2007 and last month.

Mozilla users are most likely to be using the latest versions of their browsers, with 83 percent of Firefox users patched. By contrast, only 63.3 percent of Safari users and 56.1 percent of Opera users have the latest versions. Microsoft Relevant Products/Services Internet Explorer users ranked at the bottom with only 47.6 percent using the most secure version of IE7.

"We believe the auto-update mechanism as implemented within Firefox to be the most efficient patching mechanism of the Web browsers studied," the researchers wrote.

Confirming the Data

Security-research firm Sophos came to similar conclusions with its Endpoint Assessment Test. The free online scanning service Relevant Products/Services checks for security vulnerabilities. It looks for missing Microsoft security patches, disabled client firewalls, or missing security-software updates.

After five weeks, Sophos compiled the findings, and the results showed that a whopping 81 percent of the corporate endpoints tested had failed one or more of these basic checks.

"Sadly, the Web is becoming more dangerous," said Carole Theriault, a senior security associate at Sophos. In fact, Sophos finds an infected Web page every five seconds. And almost 80 percent of these are legitimate sites.

"Sites become infected due to lax security, either due to poor maintenance or lack of understanding of the threat," Theriault said. "And this does not just affect small mom and pop sites."

Last week Sophos warned about a tennis-related Web site infected with malware, and on Wednesday it warned about Sony PlayStation Web pages.

Remedying the Problem

Web surfers are a major target for attackers. If you use a poorly protected computer and land on a site with malicious code, you seriously increase your chances of getting infected, Theriault said. "Basically, surfing the Web from a PC without the latest antivirus and security patches is about as safe as hanging out in the south pole in your birthday suit," she quipped.

Why is the problem so bad? Because hackers are actively looking to infect users and steal valuable information. Vendors are desperate to give customers a safe browsing experience and issue security patches regularly, but those only work if people download and install them, Theriault said.

Sophos recommends these safeguards:

  • Sign up for notifications from your browser vendor about new security patches and install them right away.

  • Consider turning off scripts so they don't run by default when a Web page loads.

  • Use up-to-date antivirus software and configure your firewall Relevant Products/Services as tightly as you can without destroying the usability of your computer.

    "Don't fall for unsolicited e-mails trying to lure you in with free stuff or great deals -- stick to well-reputed Web sites," Theriault said. "There is no silver bullet here, but these tips will certainly make you a much less attractive and vulnerable target."

  • Advertisement



     Data Security
    1. China Busted Hacker-Training Site
    2. FBI Tackles Haiti-Relief Scams
    3. Patch Tuesday Will Tie MS Record
    4. Google Apps Controls Mobile Devices
    5. Torrent Traps Used To Harvest Logins


    advertisement


     Most Popular Articles
    1. Facebook Users Can Get McAfee Virus Protection
    2. Adobe, Oracle Make Up for Light MS Patch Tuesday
    3. Zuckerberg's Comments Unleash Firestorm of Dissent
    4. Clinton Raises Google Attacks To an International Issue
    5. New Malware Exploits Vulnerability in Internet Explorer


    advertisement


     Random Bytes
    Patch Tuesday Will Tie MS Record Google Apps Controls Mobile Devices
    Cloud-Computing Growth Expected Google Attack Highlights Black Market

    Have an informed opinion on this story?
    Send a Letter to the Editor.
    We want to know what you think.
    Send us your Feedback.

     Related Topics  Latest News & Special Reports

      Google May Make Gmail More Social
      China Busted Hacker-Training Site
      IBM Power7 Server Takes on Big Load
      FBI Tackles Haiti-Relief Scams
      Patch Tuesday Will Tie MS Record

     Technology Marketplace
    Compliance
    Stand out from other IS Professionals and increase your earning potential.®).
     
    Enterprise Hardware
    Now is the best time to buy a new APC Smart-UPS!
    HP ProLiant G6 Servers: Perform like a superstar, Save like an accountant www.hp.com
     
    Enterprise I.T.
    Learn how Microsoft server upgrades can create efficiencies
    Stand out from other IS Professionals and increase your earning potential.®).
     
    Hardware
    Find out why now is the best time to buy a new APC Smart-UPS!
     
    Microsoft/Windows
    Read about how to add efficiencies with Microsoft Virtualization.
     
    Network Security
    AT&T Synaptic Compute as a Service. Boost your power on demand.
     
    Mobile Enterprise Spotlight

    Analysts See iPad Price Drop, with Some Cannibalization
    Just weeks before Apple officially rolls out the iPad, financial analysts are making pricing predictions. But could the analysis itself hinder the initial demand for the pricey tablet computer?

    Bar Codes Go Mobile, Get Hip Again
    For decades, retailers have used patterns of black dots and lines to encode data onto products. Now, bar codes are gaining favor as an easy way for cell-phone users to view ads and other data instantly.

    'Dead Simple, Dirt Cheap' JooJoo Tablet Shipping Soon
    The JooJoo, a web-browsing tablet device that is the subject of a high-profile legal dispute, appears on track to reach buyers at the end of February, but the tablet scene has dramatically changed.

    Advertisement
    Enterprise Software Spotlight

    Google May Add Facebook, Twitter Links to Gmail
    Google will reportedly roll more social-networking features into Gmail, the fastest-growing e-mail service. The new features could save users the trouble of switching to Facebook or Twitter.

    SAP CEO Abruptly Resigns; Co-CEOs Will Take Over
    Business-software maker SAP announced an abrupt strategic shift in the corporate suite with Léo Apotheker resigning as CEO, to be replaced by co-CEOs Bill McDermott (left) and Jim Hagemann Snabe (right).

    Cybersecurity Vendors Look Hot in 2010
    Tech-security companies are poised to become Wall Street darlings this year, thanks in part to Google's tiff with China, which reinforced an already positive outlook for major security vendors.

    Advertisement
    Navigation
    Data Storage Today
    Home/Top News | Storage Hardware | Storage Software | Storage Networks | Storage Trends | Next-Gen Storage | Data Security
    Data Management | DST Press Releases
    Also visit these Enterprise Technology Sites
    Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

    Services:
    FreeNewsFeed | Free Newsletters | Free Whitepapers | XML/RSS Feed

    About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

    Privacy Policy | Terms of Service
    © Copyright 2000-2010 Data Storage Today. All rights reserved. Article rating technology by Blogowogo.