Penetration Testing
Evolution of security threats and exploits... Dec 01 2010 12:10PM
cribbar (crib bar hotmail co uk) (5 replies)
Re: Evolution of security threats and exploits... Dec 10 2010 04:31PM
cribbar (crib bar hotmail co uk)
Re: Evolution of security threats and exploits... Dec 08 2010 03:18PM
Todd Haverkos (infosec haverkos com)
cribbar <crib.bar (at) hotmail.co (dot) uk [email concealed]> writes:

> Could I ask, from the perspective of an internal systems administrator, the
> so called â??good guyâ?, do you hackers / pen testers see any major trends in
> the IT security industry that people with malicious intent are now targeting
> or exploiting these days, as opposed to say, 5 years ago? Has any of the
> main focus of primary attack shifted in the last few years?

Seems like client-side attacks have been quite on the rise recently.
Web exploit packs and crimeware to enable drive by exploitation of
unpatched web browsers and plugins seem to be quite the rage. This is
now over a year old, but activity on this front certainly continues
http://blog.avast.com/2009/08/12/exploit-pack-as-the-way-to-infect/

Web applications, of course remain under constant attack, but that's
been true for the past 5 years.

--
Todd Haverkos, LPT MsCompE
http://haverkos.com/

------------------------------------------------------------------------

This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org
------------------------------------------------------------------------

[ reply ]
Re: Evolution of security threats and exploits... Dec 01 2010 11:01PM
Shain Singh (shain singh gmail com)
Re: Evolution of security threats and exploits... Dec 01 2010 06:59PM
Dan Crowley (dcrowley coresecurity com)
RE: Evolution of security threats and exploits... Dec 01 2010 06:33PM
Jarret Raim (jarret raim RACKSPACE COM)


 

Privacy Statement
Copyright 2010, SecurityFocus