Antivirus VBA32 VirusBlokAda / Антивирус VBA32 ВирусБлокАда / PRODUCTS AND UPDATINGS Top 15 Most Common Security Attacks rus Home Feedback Search Sitemap

SEARCHING
PERSONAL AREA
Login:
Password:


NEWS
03.08.2010
Microsoft closed vulnerability in lnk-files
More in detail
09.04.2010
VBA32 has received new gold...
More in detail
01.03.2010
General manager of "VirusBlokAda" Ltd Bagmet Alexander Vladimirovich has been awarded with the order «THE FATHERLAND’S GLORY STAR»
More in detail
23.04.2009
Updatings of Vba32 are accessible now on internal resources byfly.
More in detail
01.04.2009
Action «The minimum amount of friends is five and the license can be only one»
More in detail

 

PRODUCTS AND UPDATINGS Top 15 Most Common Security Attacks

11.12.2009 Top 15 Most Common Security Attacks

The 2009 Verizon Business Supplemental Data Breach Report identified and ranked by frequency the following top 15 types of attacks:

  1. Keylogging and spyware: Malware specifically designed to covertly collect, monitor and log the actions of a system user.
  2. Backdoor or command/control: Tools that provide remote access to or control of infected systems, or both, and are designed to run covertly.
  3. SQL injection: An attack technique used to exploit how Web pages communicate with back-end databases.
  4. Abuse of system access/privileges: Deliberate and malicious abuse of resources, access or privileges granted to an individual by an organization.
  5. Unauthorized access via default credentials: Instances in which an attacker gains access to a system or device protected by standard preset (widely known) user names and passwords.
  6. Violation of acceptable use and other policies: Accidental or purposeful disregard of acceptable use policies.
  7. Unauthorized access via weak or misconfigured access control lists (ACLs): When ACLs are weak or misconfigured, attackers can access resources and perform actions not intended by the victim.
  8. Packet Sniffer: Monitors and captures data traversing a network.
  9. Unauthorized access via stolen credentials: Instances in which an attacker gains access to a protected system or device using valid but stolen credentials.
  10. Pretexting or social engineering: A social engineering technique in which the attacker invents a scenario to persuade, manipulate, or trick the target into performing an action or divulging information.
  11. Authentication bypass: Circumvention of normal authentication mechanisms to gain unauthorized access to a system
  12. Physical theft of asset: Physically stealing an asset.
  13. Brute-force attack: An automated process of iterating through possible username/password combinations until one is successful.
  14. RAM scraper: A fairly new form of malware designed to capture data from volatile memory (RAM) within a system.
  15. Phishing (and endless "ishing" variations): A social engineering technique in which an attacker uses fraudulent electronic communications (usually e-mail) to lure the recipient into divulging information.
 

 

 

CONTACTS

127106 Russia, Moscow, Gostinichnaya str., 10/5
Tel: +7 (495) 221-21-07
E-mail: info@virusu.net

Система электронных платежей      Rambler's Top100   

ChronoPay - Internet Payment Service Provider: accept online payments with credit cards and debit cards  

For home useFor corporate useFor file serversAutomated management and updatingProtection of e-mail systemsProtection of Gateways
AntivirusBeta-versions
BrieflyLicenses and certificatesClientsPartnersFor dealers
Software development
Company newsProducts and updatingsSafety NewsPress-kitSubscription to dispatch
Jobs at VBA32 - ProgrammerJobs at VBA32 - TesterWork for students
1-Month TrialSupport of educationSupport of medicine