WatchGuard Unveils Top 10 Security Predictions for 2012

January 19, 2012 by

10) HTML5 offers five times the ways to hijack your websiteNew web technologies like HTML5 fuel the growth for next year’s web application attacks

Like the web technologies that came before it, HTML5 is generally secure. In fact, it introduces some security benefits that could help developers avoid common web application pitfalls. However, the security of HTML5 applications is dependent on the skill and care with which the developers create them. HTML5 is new and complex. Developers are still getting comfortable with it, which means they are likely to make programming mistakes that could translate into web vulnerabilities. For this reason, WatchGuard predicts that the increased usage of HTML5 will heavily contribute to web applications attacks next year.

9) Location aware malware customizes its attacksSpyware knows where you live

WatchGuard suspects that malware will increasingly leverage geolocation to customize attacks, thus increasing its money making potential. A simple technique already in use is to forward victims in specific locales targeted fraud sites that work best in that region. WatchGuard anticipates hackers will find even more malicious ways to exploit geolocation in malware next year.

8) Attackers launch a digital attack that affects physical infrastructure or equipmentMy power plant got a virus infection

Expect at least one digital attack in 2012 to cause a significant repercussion to a physical infrastructure system.

Attacks on infrastructure, such as power grids, have long been theoretically possible; we had never really seen one happen until Stuxnet came along. Stuxnet actually infected SCADA equipment, and made changes that had real physical results.

Since then, researchers and attackers alike have heavily targeted SCADA systems. Now that they have seen what highly advanced malware can accomplish against industrial control systems, they have gone all in.

7) As the top vector for social engineering and malware, Facebook is forced to increase its securityIf Facebook doesn’t “like” security they’ll surely get “poked”

Two years ago, WatchGuard predicted that social networks would be a dangerous playground for attackers. Last year, WatchGuard predicted that Facebook links would take over where malicious email attachments left off. This year both those predictions continue to prove true. Expect to see more Facebook security updates next year.

In fact, in 2012 WatchGuard forecasts Facebook-based attacks will increase and Facebook will be forced to sit up and take notice. Specifically, Facebook will implement new security solutions on their site to avoid losing fed-up users.

6) Adoption of BYOD and IT self-service results in more data lossBring your own device means clean your own infections

In 2012, WatchGuard anticipates several data loss incidents and breaches as a result of the increased adoption of Bring Your Own Device (BYOD) and self-serve IT.

Proponents of BYOD say it can reduce IT costs, increase productivity, lessen helpdesk load, and just plain make employees happy.

Not only are employees bringing their own devices, but also, they are launching their own network services. New cloud offerings make it possible for non-IT departments to easily contract and launch new technical services, without the help of their own IT department.

While BYOD and IT self-service do offer some clear benefits, they also come at a price – the potential loss of control. Offloading IT services and device purchase decisions to others makes it infinitely harder to implement access controls on such services and devices.

5) Smartphone app stores and marketplaces help proliferate mobile malware in the real worldWho planted digital weeds into my mobile app garden?

In 2012, WatchGuard forecasts that the mobile threat will continue to grow, but with a more specific source – app stores and marketplaces. To avoid mobile malware, be careful of what is downloaded from an app marketplace, and verify that the associated vendor does a solid job validating apps.

During 2011 attackers focused most of their malware delivery efforts on infecting various smartphone providers’ application delivery systems, like Google’s App Marketplace or Apple’s App Store. They have been more successful at infecting some app stores more than others, but have proven that all application repositories can be fallible.

4) Increased reliance on virtualization reawakens need for virtual securityUnprotected virtual machines make bad neighbors

Expect to see a considerable rise in interest for virtualization security solutions among smaller and medium businesses next year, due to their increased reliance on this technology.

As with other new technologies, as virtualization matures, its usage increases among smaller companies and organizations. Many SMB IT professionals still do not fully understand the potential security ramifications of poorly implemented virtual environments. Because of the lack of security know-how and increased reliance on virtualization, risk of data loss dramatically increases.

3) The barrage of noteworthy data breaches continues through 2012Hacktivists and script-kiddies rage against the machine

Whether due to APT attackers, criminal malware authors, or hacktivist groups like Anonymous and LulzSec, WatchGuard saw more headline-grabbing hacks than in any previous year.

It is hard to say if the increase in reported breaches is due to smarter criminals, more attacks, hacktivists, or just new regulations that require businesses to report data loss. In any case, expect this trend to continue in 2012. Now that criminals realize how much they can make by stealing data, and hacktivists realize that network attacks draw attention, WatchGuard suspects that they will both continue to besiege networks for next year.

2) Organized criminals will leverage Advanced Malware techniques in targeted attacks against businessesAdvanced Persistent Threats (APT) trickle down to SMBs and Consumers

Expect the APT trend to continue in 2012, but with a slightly new twist. APTs will trickle down to everyday people.

Last year, WatchGuard predicted the growth of advanced persistent threats (APTs). This prediction seems to have proven true with big breaches like RSA’s SecureID incident and operation ShadyRat, as well as the discovery of Stuxnet’s successor, Duqu. As expected, these APTs of 2011 primarily affected very big organizations, such as governments, industrial control providers, and large enterprises.

In 2012, less sophisticated criminals will start to leverage the advanced techniques they’ve learned about from APTs, to create more advanced malware targeting smaller businesses and even consumers.

1) A major cloud provider will suffer a significant security breachCloud Computing brings chance of malware-storms

In 2012, expect organized criminals to target cloud services, and significantly breach at least one well-known cloud provider. That said, also expect to see smarter, trustworthy cloud providers recognize that risk, and add premium security to their offerings.

While many cloud services offer attractive benefits, they also leverage complex technologies that have security ramifications. Most cloud providers rely on intricate, custom-made web applications, or leverage virtualization to provide scalability and multi-tenancy. These are great technologies. However, they can also pose dire risks when implemented insecurely. Add to the equation the fact that many customers share sensitive data with one popular cloud provider. It is easy to see why a single large cloud provider presents an extremely juicy target to attackers.

Keywords:

Network security, APT, cloud security, BYOD, hacktivists, SCADA, geolocation, Facebook, malware, virtualization, web security

The CRM connector from SL to Microsoft CRM has been released and it is free!

January 19, 2012 by

The CRM connector from SL to Microsoft CRM has been released and it is free so customer and contact information can flow both directions between these products, only available in SL 2011 SP1 and it is free!

Connect your entire organization—and get the competitive edge you need to move forward in an ever-changing world of business.

Microsoft Dynamics

SL brings together people and processes with a solution designed to manage all aspects of your business. People can work productively with a solution that’s simple to learn and use and equips them with tools and information relevant to their jobs. And by combining Microsoft Dynamics SL with Microsoft Dynamics CRM, you can bring together two solutions that deliver one familiar experience, connecting customer information and driving continuing value for your business.

Contact Michael Milligan for more details:

http://www.accu.com/contactus.asp

The Microsoft Dynamics SL 2011 Connector for Microsoft Project Server 2010

January 18, 2012 by

Microsoft Dynamics SL helps companies improve customer service and manage their business through its project-based Enterprise Resource Planning capabilities including accounting, job costing, time collection, billing, financial reporting, resources and budget data, labor costs and more. Microsoft Project helps align work and people with business priorities to effectively manage work from ad-hoc projects to complex programs through capabilities for project and task management, scheduling, resource assignments and team collaboration.

Contact Michael Milligan for more details:

http://www.accu.com/contactus.asp

 

Introducing New AccuNet IT Network Consultant – Jeff Gillivan!

January 18, 2012 by

We are excited to announce the hiring of our latest Network IT Consultant – Jeff Gillivan!  Jeff spent the last 6 years at a local Property Management group as the Systems Administrator for 200 plus onsite and remote computer workstations.  Before that, Jeff was a key trouble shooter for a local Trucking Company’s computer network for 4 years.  Jeff will be a wonderful addition to AccuNet bringing a talented skill set of maintaining all servers, workstations, printers and networking equipment for AccuNet customers.  Jeff’s role will be to support our customer’s networks as well as consult on improvements to keep your network running as best as it can.  In Jeff’s spare time he enjoys rock climbing and camping.

Need Computer Network Help from AccuNet? Dial 614-899-9900 ext. 116

January 18, 2012 by

To all AccuNet Network customers, please call 614-899-9900 ext. 116 for Help Desk Support.  That is the quickest way to reach one of our consultants.  When you dial ext. 116 the phone will ring all 4 of our consultant’s phones.  If there is no answer, all of our consultants are assisting other customers.  Please leave a voice message.  When you leave a message, the Network Services Manager gets a notification by cell phone.  It is critical that you leave a voice mail so that a consultant will call you back to resolve your issue.  Our goal at AccuNet is to have the fastest response time of any IT Help Desk.  We appreciate your trust in us to accomplish this goal.

Microsoft Dynamics ERP Holiday Season User Offer

November 17, 2011 by

Microsoft Dynamics is excited to announce this special “Microsoft Dynamics ERP Holiday Season User Offer”. From November 1, 2011 through the end of the business day December 22, 2011 existing Microsoft Dynamics customers can purchase additional user licenses for up to 20% off of the standard price list for their current Microsoft Dynamics SL system. 

What’s more, you only have to purchase a minimum of 2 licenses to be eligible for the discount and the discount can be applied on up to a total of 20 user license purchases.

Please contact Michael Milligan at 614-899-9900 for more details.

mmilligan@accu.com

 

Dynamics SL Version Schedule (Click on Image to Enlarge)

November 4, 2011 by

 

Microsoft Dynamics SL FRx Discontinuation

November 4, 2011 by

This announcement is to provide advanced notice to Existing Customers with FRx on their accounts that beginning April 1, 2012 they will no longer be allowed to license additional FRx components. Customers with existing licenses for Microsoft FRx prior to April 1, 2012 may continue to use their Microsoft FRx but will no longer be able to purchase additional users.

Contact Michael Milligan if you have any questions.

614-899-9900 ext. 119

Microsoft Dynamics ERP Business Ready Licensing Module Offer

November 4, 2011 by

 Expand the capability of your ERP solution with this special offer. Effective September 1, 2011 through the end of the business day on December 22, 2011, qualifying Microsoft Dynamics GP, Microsoft Dynamics SL and Microsoft Dynamics NAV customers in the U.S. can purchase a la carte user license modules for up to 15% off of Microsoft’s Dynamics standard list price. This offer is subject to the details below.

 

There’s never been a better time to build on your customers Microsoft Dynamics investment. Expanding their solution with these advanced modules is a fast and easy way to deploy a complete solution which helps them tailor their solution to their specific business needs.
Don’t wait—call us at AccuNet now to schedule a personalized business needs assessmentso you can take advantage of this savings offer while it lasts!

Contact Michael Milligan for more details 614-899-9900 ext 119

mmilligan@accu.com

Microsoft Dynamics Webcast: Streamline your processes for the Holidays and Year Round with Microsoft Dynamics SL 2011 (Level 100)

November 4, 2011 by

Event ID: 1032491958

 

Language(s):  English.
Product(s):  Microsoft Dynamics.
Audience(s):  Non-Tech Influencing BDM.
 

Microsoft Dynamics SL continues to invest in the features that help save time, resources and help improve communications.  In this webcast learn about new and enhanced features Quick Send, Doc Share, Upload to SharePoint and other related features.

Presenter:
Jeff Suwyn, Senior Technical Product Manager, Microsoft Dynamics SL, Microsoft Corporation

If you have questions or feedback, contact us.

REGISTER HERE

 

 

Follow

Get every new post delivered to your Inbox.