BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Firewalls Not Preventing Data Breaches? Try a Dose of Least Privilege

Posted April 4, 2012    Peter McCalister

An article was published last month indicating a malware-infected computer at ConnecticutCollege was the cause of the breach of 18,000 social security numbers of teachers, employees, and student workers. According to the report, “a computer in the CCSU business office was infected in December, and sat on the system for eight days before it was detected and removed.” By now we all know that data breaches are bad. We understand the ramifications of lost/manipulated/stolen data. We know they should be avoided at all costs. So why do they keep happening?

Maybe it’s because IT organizations aren’t treating the root cause of the problem. Since we led with the Connecticut College incident, let’s use it as an example. I’m sure there were extensive firewalls protecting the sensitive information of those 18,000 people. I have no doubt that a lot of thought and planning went into the anti-malware software that was supposedly protecting the corporate network. But what happens when that’s not enough? Firewalls and anti-malware software are just Band-Aids when it comes to treating IT security as a whole. While they help by placing a barrier between the outside world and the goings on of the corporate network, they don’t actually treat or solve the cause of why the breaches are occurring in the first place.

Unmanaged and unaudited administrative credentials and root access are at the cause of data breaches. Bottom line. These credentials can be hijacked by malware and allow hacks to occur in otherwise secure corporate networks. To properly treat the problems that cause data breaches, these credentials MUST be managed. Users must have access to tasks necessary for job functionality, but not too many that they can access anything at any time. When this kind of freedom is allowed your users, malware can take hold and your data becomes insecure. Fortunately, BeyondTrust can help. Click here for more information on ways to manage administrative credentials the right way and reduce the threat of malware in your organization.

Leave a Reply

Additional articles

PowerBroker Password Safe Password Age Report

Reshaping Privileged Password Management with Password Safe 5.2

Posted July 21, 2014    Martin Cannard

Today, we’re pleased to unveil the latest edition of our privileged password management solution, PowerBroker Password Safe. I’ll start with a brief intro of what’s new and then tell you a little about the driving factors behind Password Safe development. New features for mitigating password risk and ensuring accountability enterprise-wide Here’s the 10,000-foot overview of…

Tags:
, , ,
PowerBroker for Windows tamper protection

PowerBroker for Windows 6.6 Tamper Protection

Posted July 18, 2014    Morey Haber

I have a bone to pick: Stopping an administrator from performing an action on a system is futile endeavor. As an administrator, there is always a way to circumvent a solution’s from tampered protection. Really! By default, Windows administrators have unrestricted access to the system – and even though an application, hardened configuration, or group policy…

Tags:
, ,
PowerBroker for Windows can be configured to automatically identify the end user’s language preference

Implementing Least Privilege Around the World with PowerBroker for Windows

Posted July 17, 2014    Morey Haber

BeyondTrust recognizes that international, multilingual businesses have unique operating challenges, especially when it comes to implementing enterprise software. PowerBroker for Windows is a least-privilege solution often deployed across thousands of systems spanning multiple geographies and protecting users of diverse backgrounds. Earlier this year, PowerBroker for Windows introduces new data privacy features for EMEA and APAC,…

Tags:
, ,