Substitute Al-Othman leads Al-Qadsiah to a crucial victory against Al-Khaleej    Ronaldo's double powers Al-Nassr to a 2-0 victory over Damac    Minister Al-Samaani inaugurates technical office to enhance judicial quality in Qassim    Riyadh Metro ticket prices starts at SR4    Saudi Arabia's R&D expenditure hits SR22.61 billion in 2023    Saudi Arabia, Comoros strengthen economic ties with new MoU    Saudi Arabia retains its seat on OPCW Executive Council    Saudi Transport Authority cracks down on foreign trucks violating rules    Saudi Arabia receives extradited citizen wanted for corruption crimes from Russia    Ukraine fights to keep the lights on as Russia hammers power plants    Indian airlines hit by nearly 1,000 hoax bomb threats    Sweden asks China to cooperate over severed cables    Childcare worker who abused more than 60 girls jailed for life    K-Pop group NewJeans split from agency in mistreatment row    Defending the Truth: Saudi Arabia and the 2034 World Cup    Culture minister visits Diriyah Art Futures    GCC Preparatory Ministerial Meeting discusses developments in Gaza and Lebanon    Al Taawoun seals AFC Champions League Two knockout spot with 2-1 win over Al Khaldiya    Best-selling novelist Barbara Taylor Bradford dies    Adele doesn't know when she'll perform again after tearful Vegas goodbye    Order vs. Morality: Lessons from New York's 1977 Blackout    India puts blockbuster Pakistani film on hold    The Vikings and the Islamic world    Filipino pilgrim's incredible evolution from an enemy of Islam to its staunch advocate    Exotic Taif Roses Simulation Performed at Taif Rose Festival    Asian shares mixed Tuesday    Weather Forecast for Tuesday    Saudi Tourism Authority Participates in Arabian Travel Market Exhibition in Dubai    Minister of Industry Announces 50 Investment Opportunities Worth over SAR 96 Billion in Machinery, Equipment Sector    HRH Crown Prince Offers Condolences to Crown Prince of Kuwait on Death of Sheikh Fawaz Salman Abdullah Al-Ali Al-Malek Al-Sabah    HRH Crown Prince Congratulates Santiago Peña on Winning Presidential Election in Paraguay    SDAIA Launches 1st Phase of 'Elevate Program' to Train 1,000 Women on Data, AI    41 Saudi Citizens and 171 Others from Brotherly and Friendly Countries Arrive in Saudi Arabia from Sudan    Saudi Arabia Hosts 1st Meeting of Arab Authorities Controlling Medicines    General Directorate of Narcotics Control Foils Attempt to Smuggle over 5 Million Amphetamine Pills    NAVI Javelins Crowned as Champions of Women's Counter-Strike: Global Offensive (CS:GO) Competitions    Saudi Karate Team Wins Four Medals in World Youth League Championship    Third Edition of FIFA Forward Program Kicks off in Riyadh    Evacuated from Sudan, 187 Nationals from Several Countries Arrive in Jeddah    SPA Documents Thajjud Prayer at Prophet's Mosque in Madinah    SFDA Recommends to Test Blood Sugar at Home Two or Three Hours after Meals    SFDA Offers Various Recommendations for Safe Food Frying    SFDA Provides Five Tips for Using Home Blood Pressure Monitor    SFDA: Instant Soup Contains Large Amounts of Salt    Mawani: New shipping service to connect Jubail Commercial Port to 11 global ports    Custodian of the Two Holy Mosques Delivers Speech to Pilgrims, Citizens, Residents and Muslims around the World    Sheikh Al-Issa in Arafah's Sermon: Allaah Blessed You by Making It Easy for You to Carry out This Obligation. Thus, Ensure Following the Guidance of Your Prophet    Custodian of the Two Holy Mosques addresses citizens and all Muslims on the occasion of the Holy month of Ramadan    







Thank you for reporting!
This image will be automatically disabled when it gets reported by several people.



Virtual Fishbowl Nets Cyber Attacks
Published in The Saudi Gazette on 20 - 03 - 2013

On Monday and Tuesday this week, the Banking Committee for Information Security (BCIS) sponsored a workshop in Riyadh. It was patronized by the Governor of the Saudi Arabian Monetary Agency, Dr. Fahad Almubarak, as well as representatives of SAMA, the Saudi banks and many other interested parties. The objectives of this workshop were to understand the current cyber threats and for experts to suggest recommendations for the mitigation of these attacks.
On the second day of the seminar, Dr. Anup Ghosh, author, founder and CEO of Invincea spoke about protecting organizations from advanced persistent threats (APT). These are cyber threats, sometimes sponsored by governments, which have the goal of gathering sensitive data. In earlier times such espionage required spies on the ground, but now Internet- based resources may be used to infiltrate organizations from a distance.
“The talks on the first day of the seminar, were educating the audience about evolving cyber threats,” Ghosh said. “All the problems that Invincea protects against were addressed. These include advanced persistent threats, targeted attacks against the banks, spear fishing and the fact that you can't keep up with malware using signature based products. All these speakers provided a great introduction for my presentation.”
Invincea offers an innovative solution to cyber threats. It moves the applications that are most likely to unleash a threat, such as the browser, PDF reader and Microsoft Office, into a secure virtual environment, isolated from the rest of the network and its data. Ghosh likened this location to a virtual fishbowl. Corporate staff would use applications such as Internet Explorer or Microsoft Word in a virtual container. If they opened a file or clicked on a link and something nasty got loose - it would be confined to that secure virtual fishbowl. An alert would be activated when the incident happened. The cyber threat would then be securely sucked out of the fishbowl and analyzed. No harm would have been done to the network and the enterprise would continue conducting business as usual.
“Every security product out there usually requires a list of known bad or in certain cases, known good. What that presumes is that you have prior knowledge of your threats in order to detect them,” Ghosh explained. “In any targeted attack on an enterprise, almost by definition the attack won't be known. Such attacks are customized. If a targeted malicious email is sent to an individual, it will have a well-researched subject line and contents, certain to be attractive to that person. The malicious payload in such an email would have been specially written and tested to make sure that antivirus wouldn't pick it up.”
With Invincea, what's ideal as well is that with the threat captured and documented, a proper investigation can begin into where this threat came from and the individuals or organization behind it. According to Ghosh, this will help companies allocate their resources for the best cyber defense. For instance, an organization can learn if the cyber attacks are coming from a nation state targeting the operations of a company or if the competition is attempting to steal technology.
“A lot of companies have an academic awareness of cyber threats because they read about them and learn about them through the media” Ghosh said. “But the fact that it could happen to their company doesn't quite hit home. With Invincea when the user clicks the link, then the infection can be seen and for the first time companies become aware of these elite targeted attacks.”
And forever lost are any illusions an organization might have about its immunity from cyber crime.


Clic here to read the story from its source.