Why large format printing has a future

Even as disaster response teams begins to embrace smaller format devices that make operations more ...


Govt will not fight cyber security war alone

The Internet has transformed the way many advanced societies work, live and play. It has ...


Preview IFSEC 2009

IFSEC, the world’s largest annual security event, returns in 2009 to the NEC Birmingham ...


Earthquakes in Asia: Whole Lotta Shakin’

With the world entering a new cycle of vicious earthquakes, businesses in Asia need to ...


Subscribe E News

Print this article

Identification, Infosecurity

Thumb drives not big security concern

As Director of Investigative Response at Verizon Business, Bryan Sartin believes virtually every data compromise can be traced back to something that victim did wrong – either in policy, process or technical implementation.

About the commonly feared security challenge of thumb drives, Sartin says the real threat of these small storage gadgets is much smaller than it is thought to be. “From a forensic point of view, they leave a conspicuous stamp on the system which is very easy to trace,” he says.

While not seeing thumb drive comprise that often, Sartin says partial insider such as vendors and contractors pose real danger to organisations’ networks.

“In many cases, the company would give one single vendor account for many people to use,” he says. “It is therefore very hard to find evidence of intrusion.”

One way to resolve this problem is what Sartin calls ‘cyber trap’, “the perpetrator might act again and they will be caught by the trap.”

Whenever the organisation allows a third party to connect, the network administrator needs to make sure that the party ‘doesn’t have the ability to connect whenever they want to’. “They have to maintain accountability every time someone accesses their data,” he says. “Third parties by default should not be trusted.”

“Don’t let third party connect to your network unless you specifically, explicitly require them to do so,” Sartin concludes.

Print this article

APRIL 2009 ISSUE

Subscribe to the printed version of Asian Security Review

Magazine

Bahrain’s Geographic Security System The GIS-based national

The GIS-based national security implementation which is the first of its kind in the ...


Earthquakes in Asia: Whole Lotta Shakin’

With the world entering a new cycle of vicious earthquakes, businesses in Asia need to ...


Cargo security at the world's busiest airport

What does it take to run security at an airport located at one of the ...


Preview IFSEC 2009

IFSEC, the world’s largest annual security event, returns in 2009 to the NEC Birmingham ...