New Report Highlights Most Significant IT Security Risks Facing Enterprises

Qualys Inc., provider of on demand IT security risk and compliance management solutions, recently announced the release of the “Top Cyber Security Risks Report.” This second annual report features new data from HP TippingPoint DVLabs, SANS Institute and Qualys Research Labs, helping companies understand the latest security threats and implement security policies and technologies to protect company data.

“When leading companies in two critical areas of security agree to share their data with the community, they can make a big difference,” said Alan Paller, director of research, SANS Institute. “Qualys' data on patching status for vulnerabilities from more than 13 million scans each week and HP TippingPoint DVLab’s attack information combine to give a valuable and unparalleled look at the conditions facing security managers.”

2010 has brought the use of the Internet for conducting business to an all-time high; however, attacks continue to strike networks more than ever by using sophisticated techniques. The “Top Cyber Security Risks Report” provides data and analysis -- including real-world examples of attacks and recommended ways to mitigate risk -- to fully inform companies about the latest security threats. It includes updated vulnerability trends, an in-depth analysis of a PDF-based exploit, discussion of client versus server side attacks, and information on growing tendencies, including botnets and malicious JavaScript.

The report addresses how these latest trends change the security landscape as the research demonstrates:

  • Increased Consumerization of Enterprise Computing. Some of the most serious security issues this year have stemmed from increased use of consumer technologies in the enterprise, including downloads of applications and use of social media tools on company computers, opening the door for security risks and attacks through web vectors.
  • Prolonged and Persistent Targeting of Web Applications. Web applications continue to pose one of the biggest risks to company networks, often due to vulnerabilities in integration points between products.
  • Increased Organization and Sophistication of Attackers. Attack sophistication has increased across all attack types, from client-side attacks such as malicious JavaScript, to server-side attacks like PHP file attacks. Attackers have become more organized and increasingly subversive and inconspicuous in the way they execute their attacks.
  • The Unrelenting Presence of Legacy Threats. Over the sample period of this report, the number of attacks from well-known malware threats continued to plague computer systems, emphasizing the importance of continued protection against already-known threats.

“We collaborated with HP and SANS to create this report, which includes in-depth information on the latest vulnerabilities and threats, to help organizations implement the processes and solutions to best secure their systems and applications and embrace a proactive approach for security,” said Wolfgang Kandek, CTO, Qualys.

The full report is available at http://dvlabs.tippingpoint.com/toprisks2010.

Featured

  • Improve Incident Response With Intelligent Cloud Video Surveillance

    Video surveillance is a vital part of business security, helping institutions protect against everyday threats for increased employee, customer, and student safety. However, many outdated surveillance solutions lack the ability to offer immediate insights into critical incidents. This slows down investigations and limits how effectively teams can respond to situations, creating greater risks for the organization. Read Now

  • Security Today Announces 2025 CyberSecured Award Winners

    Security Today is pleased to announce the 2025 CyberSecured Awards winners. Sixteen companies are being recognized this year for their network products and other cybersecurity initiatives that secure our world today. Read Now

  • Empowering and Securing a Mobile Workforce

    What happens when technology lets you work anywhere – but exposes you to security threats everywhere? This is the reality of modern work. No longer tethered to desks, work happens everywhere – in the office, from home, on the road, and in countless locations in between. Read Now

  • TSA Introduces New $45 Fee Option for Travelers Without REAL ID Starting February 1

    The Transportation Security Administration (TSA) announced today that it will refer all passengers who do not present an acceptable form of ID and still want to fly an option to pay a $45 fee to use a modernized alternative identity verification system, TSA Confirm.ID, to establish identity at security checkpoints beginning on February 1, 2026. Read Now

  • The Evolution of IP Camera Intelligence

    As the 30th anniversary of the IP camera approaches in 2026, it is worth reflecting on how far we have come. The first network camera, launched in 1996, delivered one frame every 17 seconds—not impressive by today’s standards, but groundbreaking at the time. It did something that no analog system could: transmit video over a standard IP network. Read Now

New Products

  • 4K Video Decoder

    3xLOGIC’s VH-DECODER-4K is perfect for use in organizations of all sizes in diverse vertical sectors such as retail, leisure and hospitality, education and commercial premises.

  • PE80 Series

    PE80 Series by SARGENT / ED4000/PED5000 Series by Corbin Russwin

    ASSA ABLOY, a global leader in access solutions, has announced the launch of two next generation exit devices from long-standing leaders in the premium exit device market: the PE80 Series by SARGENT and the PED4000/PED5000 Series by Corbin Russwin. These new exit devices boast industry-first features that are specifically designed to provide enhanced safety, security and convenience, setting new standards for exit solutions. The SARGENT PE80 and Corbin Russwin PED4000/PED5000 Series exit devices are engineered to meet the ever-evolving needs of modern buildings. Featuring the high strength, security and durability that ASSA ABLOY is known for, the new exit devices deliver several innovative, industry-first features in addition to elegant design finishes for every opening.

  • FEP GameChanger

    FEP GameChanger

    Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction.