Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Joe Average User Is In Trouble
Scott Granneman, 2003-10-22

Comments Mode:
It's true, but who pays? 2003-10-22
HellCat (3 replies)
It's true, but who pays? 2003-10-22
blacklight
It's true, but who pays? 2003-10-23
CTRL-O
It's true, but who pays? 2003-10-25
Mark Rohrer <mark.e.rohrer@lmco.com>
So, HellCat, tell us how you REALLY feel.

In the end, we all pay. Yeah, pie in the sky, and you're right. Until we, as a professional community, begin to be good ambassadors of AT&T and reach out and help the folks--friends, family, neighbors--we are accomplishing a tremendous disservice in helping to secure our homeland. I've even chastised some homeland security organizations on this very issue.

In the '50s and '60s, when we were under the threat of nuclear annihilation, we religiously practiced Civil Defense drills of "duck and cover." And we were taught "why." The federal government splashed spots on radio and TV programs, ran short newsreels before indoor and outdoor movies, and handed out brochures at various places.

What's happening now? Is the American citizenry--oops, residents--being educated to the 'net dangers facing us as a society? They're our eyes, ears, and nose on the front lines; if we don't teach them, we all will fall prey to what escapes their vigilance. Sure, we may have our systems diligently protected, but what use is that if the 'net has crawled to a slow because of DDoS attacks unknowingly launched from our friends, family, and neighbors systems?

The government needs to start a mass education campaign, and we need to do our part in it to influence the small corners of the world that we live in. Working together, we can greatly diminish the threat and reduce the ramifications. Sure, it's going to cost money, 30 smacks a year for an AV product and signature service that is usually configured to be obtained automatically. Quality firewalls can be had on the cheap, even free for private users; so to IDSs. And if mom & pop shops don't cough up the minimal cost to protect their systems, then they will fall prey to market dynamics and others with more tech savvy will take their place.

For the past couple of years I've hosted a safe computing practices page on my web site, in great part prompted by the International Computer Security Day organization. And I DRIVE home the point how vulnerable systems are without adequate protection--I mince no words to announce, "Be afraid, be very afraid." While I can't be sure they'll implement any of my recommendations, at least I've educated them so that when they do fall prey, they'll have a basic understanding of what they need to do to prevent becoming a victim again.

If we all do our part in raising the education and awareness of those around us, we'll begin to climb the mountain before us in unison and eventually reach the summit. Otherwise we'll continue to gaggle around the bottom wailing our voices to the air only to see an avalanche race down the slopes and swallow many who've not heard our cry.

But if we remain silent, who will hear us? Give Scott two thumbs up for an excellent article. We need more of 'em.

~riv

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/193/23363#23363
Who is going to pay for it? 2003-10-22
Dennis Jugan
Teach a man to fish..... 2003-10-22
Dennis Jugan (1 replies)
Teach a man to fish..... 2003-10-23
HellCat
Joe Average User Is In Trouble 2003-10-22
Anonymous (5 replies)
Joe Average User Is In Trouble 2003-10-23
Anonymous (1 replies)
Joe Average User Is In Trouble 2003-10-24
Anonymous
Joe Average User Is In Trouble 2003-10-24
Anonymous
You're missing the point... 2003-10-24
Anonymous (2 replies)
No you are 2003-10-25
Anonymous (1 replies)
No you are 2003-10-31
Elvinas Piliponis
RPC obsolete? 2003-10-27
Anonymous
Joe Average User Is In Trouble 2003-10-27
Anonymous
Joe Average User Is In Trouble 2003-10-28
Anonymous
Maybe ISPs should take a more active role 2003-10-23
Anonymous (1 replies)
Joe Average User Is In Trouble 2003-10-23
faraonej@bellsouth.net (2 replies)
ISP roles 2003-10-24
Anonymous (2 replies)
ISP roles 2003-10-24
Gravity
ISP roles 2003-10-28
Matris (1 replies)
ISP roles 2003-11-02
z123
Joe Average User Is In Trouble 2003-10-27
chris@remove.starforge.co.uk
The altruism here is inspiring... 2003-10-23
Anonymous (1 replies)
The altruism here is inspiring... 2003-10-24
Wayne Fielder
'3 steps to protect your pc' SIC 2003-10-23
Anonymous (1 replies)
'3 steps to protect your pc' SIC 2003-10-27
Anonymous
Wait, are we sure this is real? 2003-10-23
Ace-2-Grind
Joe Average User Is In Trouble 2003-10-24
Damon McMahon <inst_karma@hotmail.com>
Joe Average User Is In Trouble 2003-10-24
Anonymous
Simple and straightforward..... 2003-10-24
Dennis Jugan
This could of been a decent article.... 2003-10-25
Anonymous (1 replies)
Joe Average User Is In Trouble 2003-10-25
Chuck M.
Joe Average User Is In Trouble 2003-10-28
Home and Small Business Altruist
It's not just Joe Average 2003-10-28
Anonymous
Joe Average User Is In Trouble 2003-10-28
Chris Nehren (apeiron@comcast.net)
The problem is human nature 2003-10-29
blacklight
ISP roles and IS pro roles 2003-10-30
gshollingsworth
slowing of the internet 2003-11-03
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus