Keylogging attacks on the increase

Survey shows one in five businesses are victims of keylogging

Written by David Friedlos

Nearly one in five organisations has been hit by hackers or keyloggers this year, a rise of five per cent on last year, research shows.

The Web@Work survey of 400 IT decision makers and employees conducted by vendor Websense, found that hackers stealing passwords and confidential information that can then be used to provide full access to corporate systems and files is increasing.

The research has also highlighted a growing threat of bots, software that can be unknowingly installed on a user’s PC and communicates with a command and control centre.

This centre takes unauthorised control of many bot-infested PCs from a single point and can be used for launching distributed denial of service attacks, acting as a spam proxy and hosting malicious content and phishing exploits.

Only 34 per cent of IT decision-makers said they are very or extremely confident that they can prevent bots from infecting employees’ PCs when not connected to the corporate network.

Evaluating how the IT security landscape has changed in the past 12 months, spyware continues to be a problem, with 92 per cent saying the organisation had been infected.

The threat of phishing has stayed relatively constant, with 81 per cent reporting a phishing attack via email or instant messaging (IM).

IT decision makers said the biggest threats to their jobs are system downtime due to viruses, lost or stolen intellectual property and internet security breaches.

‘Although employee awareness of web-based threats such as phishing attacks and keyloggers is improving, the vast majority of employees still do not know that they could fall prey to these tactics in the workplace,' said Dan Hubbard, senior director of security and technology research at Websense.

‘Organisations need to implement a proactive approach to web security which includes both technology to block access to these types of infected websites and applications, as well as rigorous employee internet security education programs.’

Tags:

Further reading

Related articles

Websense targets unknown threats

There are known unknowns and there are unknown unknowns ...   More...

Mafia-style mobs muscle in on malware

McAfee highlights top 10 threats for 2007   More...

Hackers step up website attacks

Security forecast for 2008 makes grim reading   More...

Check Point puts ForceField around browsers

ZoneAlarm plays in the sandbox   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

16 May 2008

2.97 MBXP on OLPC, broken dreams and Yahoo fights back More...

15 May 2008

3.28 MBDark fibre, mobile TV and solar power More...

14 May 2008

2.66 MBOnline inequality, mobile thumbprints and corporate raids More...

Poll

HOME WORKING

HOME WORKING

Do you let any or all of your employees work from home?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

OLPC

OLPC to ship with Windows XP

Microsoft teams up with One Laptop per Child project   More...

The Sims

The Sims goes flat-pack with Ikea

Virtual world gets Swedish wood   More...

Advertisement

Microsoft-Yahoo

Yahoo board fights back at Icahn

Investor accused of 'significant misunderstanding' in Microsoft saga   More...

MySpace

Woman charged over MySpace suicide

Lori Drew indicted on federal charges   More...

Advertisement