BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Why Innocent Looking Facebook Photos Can Be Dangerous

Posted July 16, 2012    Peter McCalister

Hacker attacks are far more publicized than insider attacks. In fact, according to the 2011 CyberSecurity Watch Survey conducted by CSO Magazine and Deloitte, 70 percent of insider incidents are handled internally without legal action. This begs the question – how many of those incidents are disclosed to the public? While a majority of U.S. states have enacted security breach notification laws it hasn’t stopped some organizations from covering up insider breaches. And of even more concerning, some businesses have no idea that their intellectual property is being compromised by way of popular social media platforms.

The rapid consumerization of IT coupled with the increasingly popular use of social media platforms to increase brand visibility and socialize CRM is drastically expanding the threat landscape for enterprises. It is becoming apparent that hackers and malicious software developers are targeting social media platforms as channels to commit cybercrimes and pilfer information.

Malicious attackers have a number robust toolkits and clever methods to slip past defenses, including: emails with hidden agendas, USB drives containing malware, insider threats and now the utilization of third party social media sites with posted images, audio and video files to gain access to company networks without detection.

A recent article by Dark Reading highlights how an innocent-looking vacation picture on Facebook could conceivably traffic exfiltrated documents. According to the article, “Security researchers will unveil at Black Hat USA a new method of hiding sensitive information in the encoding of seemingly safe images shared on social media sites to avoid security mechanisms. The method employed by a new tool they developed called SNScat can not only be used to exfiltrate data off networks without detection, but to also run covert botnets through the type of social media network traffic allowed by most businesses today.”

Social media’s infiltration into the enterprise isn’t slowing down and it’s becoming critical that enterprises invest in vulnerability management, mobile device management and privilege access management to keep the pace against the dark side of innovation and malicious attackers.

Leave a Reply

Additional articles

How To Implement The Australian Signals Directorate’s Top 4 Strategies

Posted October 20, 2014    Morey Haber

The Australian Signals Directorate (ASD), also known as the Defence Signals Directorate, has developed a list of strategies to mitigate targeted cyber intrusions. The recommended strategies were developed through ASD’s extensive experience in operational cyber security, including responding to serious security intrusions and performing vulnerability assessments and penetration testing for Australian government agencies. These recommendations…

Tags:
, , , ,
asp-mvc

Exploiting MS14-059 because sometimes XSS is fun, sometimes…

Posted October 17, 2014    BeyondTrust Research Team

This October, Microsoft has provided a security update for System.Web.Mvc.dll which addresses a ‘Security Feature Bypass’. The vulnerability itself is in ASP.NET MVC technology and given its wide adoption we thought we would take a closer look. Referring to the bulletin we can glean a few useful pieces of information: “A cross-site scripting (XSS) vulnerability exists…

Tags:
4bestpracticesaudits-blog

Four Best Practices for Passing Privileged Account Audits

Posted October 16, 2014    Chris Burd

Like most IT organizations, your team may periodically face the “dreaded” task of being audited. Your process for delegating privileged access to desktops, servers, and infrastructure devices is a massive target for the auditor’s microscope. An audit’s findings can have significant implications on technology and business strategy, so it’s critical to make sure you’re prepared…

Tags:
, , , ,