Cyber Insecurity vs Internet Security

Pandora's box has been opened and the explosion ofattacks. Zombie-making virus kits can be purchased on
information both personal and non-personal seems tothe net, requiring little or no technical knowledge and
be limitless and increases exponentially. And accordingwhich provides the breeding ground for future
to the National Opinion Poll taken in January of 2007international cybercriminals and the training ground for
half the UK harbors a "deep mistrust" due to securitycybergangs (terrorists).
concerns. Not only is there a deep public mistrust but,What are we to do? Implementing new laws when it's
the House of Lords Select Committee on Science andalready difficult to pursue and in some cases
Technology are inquiring into the need for personalunenforceable and with cross-border criminal
Internet Security because of the growing use of homeinvestigations not to mention the resources needed are
computers, expansion of broadband, internet bankingvast and costly with little results.
and commerce (Brent MacLean "A new look atHow do we secure the Internet now? One idea is to
Internet Security" Monday September 10, 2007).improve administrative, regulatory, and technical
Every one is talking extensively ( ISP Associations,solutions to produce a safer Net and then apply
Richard Clayton of the Cambridge Security Lab, Johnresources to fortify banks, airports, power plants from
Carr of the Children's Charities Coalition on Internetthe insecure internet we have allowed to develop. It
Safety, as well as Johnathan Zittrain of the Oxfordbegins with securing the end-user and creating an
Internet Institute and many others), gathering evidenceawareness that we are all responsible for the safety
of information and compiling it all for what? Sadly, mostof the Internet and we all need to "Become
businesses and citizens still do not take the threatResponsible Cybercitizens".
posed by cyber-insecurity seriously.We the people have to make an effort to make sure
You would think with dependency of economiesour machines run clean and free of malware (viruses,
relying on certain infrastructures involving the Internetspyware, trojans, etc.). That involves current patches,
and information exchange between key serviceupdates, upgrades, and professional software
providers, that a disruption would certainly result in losstechnologies. It also obligates everyone of us to make
of lives, loss of property, and the collapse of publicsure that we have not been compromised by having
confidence globablly. Today simple domestic hacking isour computers serviced by a security technician and
not the issue that will bring on devastating destructionassured that there is no malware present. There is a
like those designed by terrorist activities directed atservice, the Invisus PC security service, that will
nuclear plants, banking systems, hospitals, air trafficprovide a fully managed computer security service
control as well as domain name servers, theincluding unlimited security technical support plus
possibilities are limitless. However, it is imperative toseveral additional benefits that will earn you the title of
remove these personal and public computers from thea "Responsible Cybercitizen".
arsenal of cyber terrorists as well as cybercriminals.Requiring ISPs to scan data traffic going to and from
With 225 million Internet users in North Americacomputers attached to their networks for unusual
(Nielson-Netratings), the personal computer dominatespatterns of traffic and then deny them Internet access
the Internet and at the same time is the mostuntil it has been determined they are not zombies. We
vulnerable. Millions of PCs are under the control ofcan also ask the ISP to provide remote patches,
"zombie masters". Red Herring, the technical businessupdates and software updates. However, the ISPs will
journal, estimated that in 2005 a 172,000 computersbulk at the cost, liability, autonomy, support, and delivery.
were hijacked and taken over each day and becameOr have our ISPs provide a value-added service
"zombies" and under the control of a hacker. By 2007,similar to subscription-based services offered by the
Secure Computing, which tracks the InternetInvisus PC security service which not only provides for
landscape, identified more than 500,000 new zombiesa hassle-free computing experience but, is a total
per day that were hijacked and under the control ofsecurity package locking down the end-users
"bot" herders. Triple the level only two years earlier.computer for a minimum monthly fee.
The FBI says that because of their wideley distributedIn order to succeed we must meld security and
capabilities, botnets are a growing threat to nationalconvenience. The consumer doesn't want to be
security, the national information infrastructure, and theresponsible for their security. All they want to know is
economy.how to turn their computer on and off. Unfortunately,
The total number of compromised computers on thewe can't have our cake and eat it too. The time has
Internet is not known; however, Vince Cerf, Father ofcome to learn how to maintain a safe and healthy
the Internet, estimates that about 150 million PCscomputer (saving the consumer both time and money)
currently connected to the Internet and are part ofvoid of infections that keep spreading and infecting
botnets. Based on FBI reports and other independentother computers. It's not necessary to be technically
researchers the aforementioned number may besavvy to operate a computer, like your automobile
significantly higher. The typical home computer isthere's no need to be a technically savvy mechanic
attached to "always on" broadband facilities, severelybut, it is important to make sure your car is in good
compromised with malware (viruses, spyware,operating condition not only for its performance but, for
Trojans, keyloggers, etc.), usually without degradationthe safety of others. We have laws to assure us the
of their ordinary capabilities and doing the bidding ofsecurity of cars and their owners are safe. Those
their "zombie master". Hacking, virus dissemination,who are ignorant of how to maintain the safety of an
denial od service (DoS), theft of personal data, IDautomobile are required to perform certain
fraud, keyloggers, spamming, distribution ofresponsibilities to insure the safety of their vehicle for
pornography, spying through webcams, click fraud andothers as well as the owner of the car. To insure the
many other cyber exploits are all now almost whollysafety of others we require a certain level of
orchestrated via zombie networks.education and knowledge of the rules of the road. You
Computers weren't designed for security; they werecan't drive without insurance or a drivers license, which
designed to perform complex work. As complex asmeans that you have undertaken and understand
computers are, each computer has 65,000 open portssome level of instructions.
(doorways) to the Internet; a simple element thatYou may disagree but, unfortunately as impossible as
leaves them vulnerable. You might wonder why anit may be practically, politically, and ethically, to require
individual would want control of a herd of zombies,every consumer... including the ignorant, the poor, and
there are several reasons. For exploits whether it's aeven the wealthy, to be legally responsible for keeping
denial of service, to bring down the servers of banks,their computer in a state of reasonable security, the
major corporations, or a competitor. Inherently,fact is you are guilty until proven innocent. So, the next
whenever a computer says "hello" to anotherbest approach might be to offer to try and educate
computer, that computer must respond with a "hello"them but we probably cannot impose a
back. A "bot herder" with tens of thousands of"computer-driving license". Again, we may be able to
computers under their control has all of them say hellooffer an alternative by requiring the consumer to take
at the same time to your computer or a network ofnecessary steps to assure that their computers are
computers, what do think happens. Most likely theserviced and up-to-date with professional security
responding PC or server is overwhelmed and crashes,software and that they are checked and given a
it simply can't respond to that many hellos. A botnetclean bill of health; free of malware.
can be purchased on the black market to carry out