website design company
123webguru, Cyber criminals are turning their attention to the programs that run many online shops, say experts.

website designHomeSite MapContact usWe are the best website design and development company
Custom web designProfessional , custom , best website web design company

Professional  custom web site design company Ecommerce website design and development
Best in the web
Website design company
We are the Best
Custom website design

website design 123webguru News Desk

BBC News

Online stores come under attack

Cyber criminals are turning their attention to the programs that run many online shops, say experts.

The move to target the databases and programs that power online shops is a significant change in tactics.

In one case, an attacker got hold of a PC maker's entire customer list and sent everyone on it a nasty note.

"It's kind of like an arms race. It's the next logical step to go after the application itself," said Rob Straight from software firm Compuware.

"There are a lot of people that spend their time and energy to think of ways to break into applications maybe for fun and maybe for profit," he said.

Crime spree

Businesses connected to the net, and especially those that run online shops, are used to defeating all kinds of attacks. On a daily basis they have to cope with attempts to exploit known vulnerabilities as well as viruses and worms that try to slip through security software.

Evidence for just how new this is can be seen in the latest list of the Top 20 most vulnerable programs released in early May by the Sans Institute.


You can also check :
website design company Top News
website design company News of the Week

It can be very difficult to defend against these attacks
Donal Casey, Diagonal Security
For the first time this list included such things as media players, anti-virus programs, web browsers and databases.

Vulnerabilities in browsers and media players are proving popular with the malicious hackers, said Gerhard Eschelbeck, chief technology officer at security firm Qualys and a Sans contributor.

"They typically require some interaction by the victim to get exploited, such as browsing a malicious website, or opening a malicious e-mail or media file," he said.

But, he says, attempts to subvert website shopping systems rather than the basic operating systems on PCs and servers are something new.

Many of the programs or applications that net businesses write to power their online shops include fields in which customers can enter text such as a quantity, wrapping instructions or address.

Basket case

Web shops and online banks were seeing far more attempts to inject working computer code into the databases and applications behind the scenes of many websites, said Donal Casey, spokesman for Diagonal Security.

"It can be very difficult to defend against these attacks," he said.

What can make it worse is that once attackers find a vulnerability in one web application, they are likely to try it again and again in all the other places that particular program is used.

Organisations such as the Jericho Forum and the Open Web Application Security Project have sprung up to do a better job of scrutinising these backroom programs and ensuring they are secure.

"You can get unexpected input by users and the application might not be set up to deal with that," said Mr Straight from Compuware. "You could get unpredictable results and or even the failure of the application."

Some attackers try to enter database commands into such fields just to see what happens. In such cases "unpredictable results" could see those commands executed and a database seriously compromised, said Mr Straight.

Attackers could end up with a store's entire customer list, including credit card numbers and bank account details.

Increasingly, said Mr Straight, developers writing web applications were turning to automated tools that check the programs are proof against the most common attacks.

"We can simulate what a hacker would do by bombarding an application with erroneous text strings," said Mr Straight.

"There are real consequences to all this," he said.

Story from BBC NEWS:
http://news.bbc.co.uk/go/pr/fr/-/1/hi/technology/4541119.stm


website design Top News

website design News of the Week

website design All News

 

Website design company


Website design company

123webguru Articles

Various Newsletter Services You Can Opt To
To hold your existing visitors and create the new one as well you need to have your own mailing list, newsletter, discussion list etc. once you get your ...

Effect of graphics
Creating graphics is an effective way to communicate your message to your customers/ potential customers. This creates a long lasting impression in the ...

Pop-Under Windows - The Latest Pop-Window Trend
Although there has been a great deal of controversy over the use of pop-up windows, the fact remains; pop-up windows are highly effective. The latest pop-window ...

Ideal web development team structure
As the website development need is growing, So emerged are the web developers and web development companies. Even small/medium web development companies ...

Organising webpages
As usage of internet technology is expanding, so every business is now thriving for Designing and developing superior website design. Websites and webpages ...

Page layout for website
Page layout is an important constituent of your entire website design. Poor page layout will take away the interest of the visitor viewing your website. ...

Website design company

 

custom
123webguru.com :  Website design company

123webguru News

Toshiba to make Microsoft's Zune
Microsoft says Japanese firm Toshiba will make its Zune portable music player, due out later this year.

Bugged bins to promote recycling
Chips in bins which help councils charge for rubbish collections could be common across the UK within two years.

Stem cell 'wonder cures' warning
Patients should beware of so-called stem cell wonder cures as most have not been properly tested, experts say.

Google to target software market
Search engine Google is entering the software market, in a move that pits it against Microsoft.

Nasa moves shuttle indoors
Nasa decides to haul the Atlantis orbiter indoors to protect it from Tropical Storm Ernesto.

website design News of the Week

Website design company

 

Free Price Quotes



Are you looking for :

Ecommerce website | Real estate website | Database driven website | Web base Application | Full Flash website | Sitemap | Flash application | Logo design | SEO | Website design company | Web programming | Website redesign and redevelopment | Development of new website | Start a new website | Custom website design

123webguru.com, A new web division of Microsec Technologies Ltd.
© 2002-2005
Website design company, All Rights Reserved
Disclaimer | Privacy policy

Website design company