Lavasoft Predicts IT Security Hits on Popular Platforms

Well-known anti-spyware pioneer Lavasoft recently announced its list of security predictions for 2011, anticipating the top threats that Internet users should be aware of this coming year as cyber criminals adapt their tactics, finding new ways to con people while they use the Internet.

Expectations for 2011 include not only an increase in malicious Internet attacks, but the online attackers will bolster their tactics using new twists on traditional methods – as well as focusing on newly emerging platforms – according to Lavasoft Malware Labs.

“We expect that traditionally successful and lucrative modes of attack on PCs, such as rogue threats and exploiting application vulnerabilities for programs people use on a daily basis, will see enhanced attacks using more subtle and sophisticated methods. At the same time, emerging operating systems and popular platforms, like smartphones, will likely attract increasing attacks – the more popular the platform becomes, the greater the incentive to attack,” said Andrew Browne, head of Malware Labs at Lavasoft.

The company's analysts anticipate that the following five threat trends will dominate the security landscape in 2011:

      1. Complex targeted attacks on companies and/or critical infrastructure. Stuxnet made headlines this year due to its complexity, highly precise targeting, and the use of multiple zero-day exploits and stolen digital certificates. While Stuxnet's intention to stay below the radar was not realized, we can expect to see further attempts to evade detection and to compromise fewer but higher value targets.

      2. Zero-day application vulnerability exploits. Users understand the importance of applying operating system patches but are less aware of the need to apply security updates to applications; patches fixing application vulnerabilities are typically slow to appear, and it’s not always apparent to the user that an update is available and that action needs to be taken, making it an easier malware target. Adobe's Flash and Reader applications bore the brunt of exploits in 2010 and were quick to be exploited ─ we can expect malware writers to react more quickly to leverage a wider array of application vulnerabilities.

      3. Scareware and rogue (fake) security products. Rogue security software, also known as scareware, take the form of legitimate-looking anti-virus, anti-spyware and anti-malware products and appear to be beneficial from a security perspective; in reality, they provide little or no protection, generate misleading alerts, or attempt to lure users into fraudulent transactions. The money made from this malware model ensures that cyber criminals will not abandon this profitable endeavor.

      4. Mobile malware. Smartphones are becoming more ubiquitous and as more services involving financial transactions are made available to handsets, exploits that leverage vulnerabilities on smartphone operating systems are sure to be targets for cyber criminals. Recent examples of Android malware and proof of concept examples suggesting iPhones are not immune suggest these non-Windows platforms have already attracted the attention of malware writers.

      5. Blackhat SEO. Cyber scammers will continue to poison search engine results using trending headlines and videos to lead to malicious sites in an attempt to distribute rogue (fake) security software and other types of malware.

    To stay safe in 2011, users should update their computer security software and stay aware and be cautious about the types of threats they may encounter online.

    Founded in 1999, Lavasoft is “the original anti-spyware company.” with more than 400 million downloads worldwide for the flagship Ad-Aware product. A private company headquartered in Gothenburg, Sweden, Lavasoft provides security solutions for individual consumers and enterprise clients alike, including anti-spyware, anti-virus, registry optimization, firewall, digital shredding, and encryption.

Featured

  • Maximizing Your Security Budget This Year

    Perimeter Security Standards for Multi-Site Businesses

    When you run or own a business that has multiple locations, it is important to set clear perimeter security standards. By doing this, it allows you to assess and mitigate any potential threats or risks at each site or location efficiently and effectively. Read Now

  • Getting in Someone’s Face

    There was a time, not so long ago, when the tradeshow industry must have thought COVID-19 might wipe out face-to-face meetings. It sure seemed that way about three years ago. Read Now

    • Industry Events
    • ISC West
  • Live From ISC West 2024: Post-Show Recap

    ISC West 2024 is complete. And from start to finish, the entire conference was a huge success with almost 30,000 people in attendance. Read Now

    • Industry Events
    • ISC West
  • ISC West 2024 is a Rousing Success

    The 2024 ISC West security tradeshow marked a pivotal moment in the industry, showcasing cutting-edge technology and innovative solutions to address evolving security challenges. Exhibitors left the event with a profound sense of satisfaction, as they witnessed a high level of engagement from attendees and forged valuable connections with potential clients and partners. Read Now

    • Industry Events
    • ISC West

Featured Cybersecurity

Webinars

New Products

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area. 3

  • PE80 Series

    PE80 Series by SARGENT / ED4000/PED5000 Series by Corbin Russwin

    ASSA ABLOY, a global leader in access solutions, has announced the launch of two next generation exit devices from long-standing leaders in the premium exit device market: the PE80 Series by SARGENT and the PED4000/PED5000 Series by Corbin Russwin. These new exit devices boast industry-first features that are specifically designed to provide enhanced safety, security and convenience, setting new standards for exit solutions. The SARGENT PE80 and Corbin Russwin PED4000/PED5000 Series exit devices are engineered to meet the ever-evolving needs of modern buildings. Featuring the high strength, security and durability that ASSA ABLOY is known for, the new exit devices deliver several innovative, industry-first features in addition to elegant design finishes for every opening. 3

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3