Video | Agriculture | Confidence | Economy | Energy | Employment | Finance | Media | Property | RBNZ | Science | SOEs | Tax | Technology | Telecoms | Tourism | Transport | Search

 


FireEye Labs Report: 97% of organisations have been breached

EBay Breach Followup - FireEye Labs Report: 97 per cent of organisations have been breached


In the wake of today’s EBay news these findings are especially relevant:

FireEye has just revealed that data from its more than 1600 network appliances deployed in real-world settings and the findings are striking. The most compelling is that nearly all (97 percent) organizations had been breached, meaning at least one attacker had bypassed all layers of their defense-in-depth architecture.

The report is attached and a brief synopsis is below.


SYNOPSIS

Today we are releasing “Cybersecurity’s Maginot Line: A Real-world Assessment of the Defense-in-Depth Model.” The report is a first-of-its kind analysis of real-world data spanning more than 1,217 organizations in 65 countries across more than 20 industries. It reveals a deeply flawed defense-in-depth model, at least as it’s commonly deployed. In short, most of today’s top-selling security tools fail to protect 97 percent of organizations that deploy them.

The only true test of a product is in a real-world setting. Our data comes from organizations testing FireEye network and email appliances, but not yet fully protected by the FireEye platform. Because FireEye sits behind all conventional security defenses, the tests provide a unique vantage point to observe other security layers in action.

In other words, any threats observed by FireEye in these tests have passed through all of an organization’s other security layers.

We call this state of affairs the new Maginot Line. That’s because it reminds us of France’s famed 940-mile string of deep-earth bunker fortresses, anti-tank obstacles, and barbed-wire entanglements built to fend of Germany in the run-up to World War II.

It was expensive and futile. Germany sidestepped the line using a novel blitzkrieg-style attack through Belgium. The French military, which had diverted much of its budget to the line, could not mount an effective defense.

Today, many organizations face a similar problem. They spend billions of dollars every year on defense-in-depth IT security architecture. And attackers are easily stepping around them.

As our report shows, it doesn’t matter what types of signature-based firewall, intrusion prevention system (IPS), Web gateway, sandbox, and endpoint systems make up your Maginot Line. Attackers are circumventing them all.

So what should organizations do? For one, they need a new approach to securing their IT assets. For many, that means reducing waste on redundant, backward-looking technology and redeploying those resources on defenses designed to find and stop today’s advanced attacks.

© Scoop Media

 
 
 
 
 
Business Headlines | Sci-Tech Headlines

 

Scoop Business: RBNZ Starts Talks On Tougher Rules For Property Speculators

The Reserve Bank of New Zealand is stepping up preparations to restrict lending to residential property investors as it watches house prices, particularly in Auckland, continue to rise strongly. More>>

ALSO:

Research: ‘Ageing Well’ Science Challenge Launched

Science and Innovation Minister Steven Joyce today launched the Ageing Well National Science Challenge, confirming initial funding of $14.6 million. More>>

ALSO:

Scoop Business: Govt Resisting Pressure To Pump More Cash Into Solid Energy

Prime Minister John Key says it is “not the government’s preferred option” to make a fresh capital injection into the troubled state-owned coal miner, Solid Energy, but dodged journalists’ questions at his weekly press conference on whether that might prove necessary... More>>

ALSO:

Lagest Ever Privacy Breach Award: NZCU Baywide Accepts “Severe” Censure In Cake Case

NZCU Baywide says that once it was found to have committed a breach of a former staff member’s privacy, it had attempted to resolve the matter... the censure and remedies for its actions taken almost three years ago are “severe” but accepted, and will hopefully draw a line under the matter. More>>

ALSO:

Scoop Business: PayPal Stops Processing Mega Payments; NZX Listing Still On

PayPal has ceased processing payments for Mega, the file storage and encryption firm looking to join the New Zealand stock market via a reverse listing of TRS Investments, amid claims it is not a legitimate cloud storage service. More>>

ALSO:

Housing Policy: Auckland Densification As Popular As Ebola, English Says

Finance Minister Bill English said calls by the Reserve Bank Governor for more densification in Auckland’s housing were “about as popular in parts of Auckland as Ebola” would be. More>>

ALSO:

Get More From Scoop

 
 
Standards New Zealand

Standards New Zealand
 
 
 
 
 
 
 
 
Business
Search Scoop  
 
 
Powered by Vodafone
NZ independent news