CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 940
Comments: 25
block bottom
spacer spacer
image Press Release: Is Machine-To-Machine (M2M) The Gap In Your Security? image
General News
webitpr writes "(Ian Kilpatrick will be presenting a seminar on this topic at InfoSecurity Europe 2005, at Earls Court, Olympia on Wednesday 27th April at 12.30)

Over the last ten years, major changes have occurred in IT. With the Internet driving the pace, one of the most significant developments has been
the rise of IP to become the dominant protocol. Another key element has been the decentralisation of systems, with the perimeters of organisations
rapidly disappearing. Anywhere, anytime, anyhow access is now becoming increasingly achievable.

This 'deperimeterisation' of the network has significantly changed the security landscape. Organisations now need to move from a reliance on
powerful gateway security to a recognition that applications, departments and network segments need their own security. While this challenge has been
recognised and addressed by many businesses, one key area has been largely overlooked - that of machine-to-machine connections (M2M).

M2M connections are endemic and can range from all the complex communications within a modern aeroplane, through to internal Microsoft
servers talking to each other.

In manufacturing, all processes are increasingly linked automatically. Lathes, for example, are driven by production scheduling systems and robots
are managed by manufacturing systems. In the pharmaceutical industry, production processes are very closely monitored to ensure legal compliance
with FDA and other regulations. In finance, automated linked processes are subject to close regulation; and ATMs communicate directly with their core
corporate systems. In the average organisation, servers talk to other servers all the time without manual intervention.

While these linkages provide major cost benefits, most of these internal appliances are not given the same level of security as outward facing
systems. They typically rely on gateway systems for firewall and anti-virus protection. This was more than adequate in the past but not any longer, as
has become increasingly clear to the many organisations who have had to build patch scheduling (or rush patching) into their timetables.

Unsecured IP connected devices are potentially vulnerable to a range of problems such as network viruses, trojans and hacking. If you have access to
a network, it's easy to find network connected IP addresses and, in the case of servers, to exploit current patch failures. A whole range of devices are
at risk. Security cameras, for example, can be a problem. A recent report on 'The Register' web site* described how a couple of simple web searches threw up over a thousand unprotected surveillance cameras. These cameras were not only
viewable, but also remotely manageable by any external party with a mind to do so.

Other areas at risk include VoIP servers and VoIP devices. Digital telephone switches can also be a problem. The list of 'machines' with a potential security risk is long and includes wireless devices, video conferencing systems, data centre monitoring equipment, internal security cameras, webcams, POS devices and ATM devices. Even routers and switches are potentially vulnerable.

If the security of machinery connected to an IP network is compromised, the cost can be very expensive. Real life examples include a company where
production was lost for days when robots on an IP network became infected. A pharmaceutical company had to take its systems down for two weeks, to
recalibrate them to comply with Food and Drugs Administration (FDA) regulations, after needing to install urgent patches. Another organisation
had company data compromised and lost because an internal server was hacked.

The financial consequences of these problems can be severe and quickly run into hundreds of thousands of pounds. There's the cost of the lost
production, the cost of analysing the problem and rectifying it, as well as the cost of securing the unprotected devices in an emergency situation.
Telephone switch and router problems, though probably less expensive, can still run into tens of thousands of pounds.

Why is this vulnerability so widespread? There are a number of reasons. With gateway security being king, these devices have been hidden inside the network; and with all the major infrastructure changes taking place over recent years,
securing internal devices has mostly been a low priority.
As always, cost has been a major factor. Firewalls used to cost a lot more than they do now, as well as needing considerable resources to deploy them, so the risk/return equation didn't make any sense. Management issues have been another factor. Adding tens or hundreds of additional security devices to the IT
department's management load would have been an expensive nonsense. Finally, patching vulnerabilities has often been dealt with on a tactical basis, so
the workload and expense have not always been planned or costed.

Conclusion
The situation has changed, however, and solutions have emerged to tackle these M2M challenges. Low-cost, easily-deployed miniature firewall/anti virus
products such as Innominate's mGuard are now available and can be installed on a server or in front of a device in minutes. They can
protect key IP devices for a few hundred pounds, as well as being capable of delivering the level of reporting needed for compliance with various
regulations.

These new products can also provide the sort of central configuration and sophisticated management capabilities needed to make administering them (whether in small or larger numbers) relatively stress free. Organisations are increasingly
deploying this type of solution, which is capable of changing the way they cope with the increasing M2M threat to their security.
"
Posted on Thursday, 14 April 2005 @ 12:15:25 UTC by Paul (900 reads)
[ Trackback ]
image

"Press Release: Is Machine-To-Machine (M2M) The Gap In Your Security?" | Login/Create an Account | 1 comment | Search
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register

Re: Is Machine-To-Machine (M2M) The Gap In Your Security? (Score: 1)
by Ikeb (sampade@storm.ca)  on Thursday, 14 April 2005 @ 14:33:01 UTC
(User Info | Send a Message)
Wouldn't some secure VNP pipes be just what the doctor ordered? It appears that security being low priority is indeed the reason this has become a problem.


 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· Microsoft
· HotScripts
· Linux Manuals
· W3 Consortium
· More about General News
· News by Paul


Most read story about General News:
Weekly Spyware Alert: CoolWebSearch

block bottom
Article Rating
spacer
Average Score: 0
Votes: 0

Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer