By Renay San Miguel TechNewsWorld Part of the ECT News Network
07/02/08 11:57 AM PT
Outdated and unpatched browsers are putting 40 percent of Web surfers at risk, according to a recent study by Google, IBM and Switzerland's Communications Systems Group. Most of the surfers at risk are using outdated Internet Explorer versions.
eMarketer Whitepaper: Optimizing the E-Commerce Experience
From the Web to the Contact Center, are you prepared to proactively engage and keep your savvy customers? Read how e-commerce leaders are optimizing their sites with ratings, reviews, live help, Web analytics, mobile and more.
If the food industry ran its business like the Internet browsing software industry, then consumers would be hurling lawsuits like bad tomatoes at the companies that give us Internet Explorer, Firefox and Safari.
The comparison is existent in a wide-ranging new study showing that approximately 40 percent of the Internet surfing public -- 576 million users -- browsed the Web using outdated and/or unpatched software, putting themselves and the computing public at risk.
Researchers examined surfing habits in June 2008 using data provided by Google. Seventy-eight percent of the users were running Microsoft (Nasdaq: MSFT) Internet Explorer, 16 percent used Mozilla Firefox, 3 percent ran Apple (Nasdaq: AAPL) Safari and less than one percent surfed using Opera. Most of the Web surfers at risk are using old, outdated versions of Internet Explorer.
Web-Based Threats Now a Priority
Two experts with computer security companies interviewed by TechNewsWorld seconded most of the study's findings, saying Web-based threats are now the top problem for IT professionals and consumers.
"This is not one problem, this is many, many problems," said David Perry, director of global education for Trend Micro (Nasdaq: TMIC). "We're not just talking one patch. You would need 100 to 150 patches. It's a very complicated landscape."
Web browsers started becoming problematic with the advent of multimedia on Web sites and the rise of Web 2.0 applications, Perry told TechNewsWorld. "[The browsers] are built to automatically execute code they find on the Web page, and people have found a way to make that code do things they want to do," like stealing personal information or setting up a computer as a "zombie," spewing out spam or malicious software code.
"The browser is one of the top attack vectors in use today," Ben Greenbaum, senior research manager at Symantec (Nasdaq: SYMC) told TechNewsWorld. "Almost every major attack involves the browser at some point."
Applications and plug-ins are also targeted, Greenbaum said, since many of those can involved outdated or nonsecure code even if running on an updated browser.
Browser Companies Must Become Security Experts
The solutions for bad browsers must focus on more research and responsibility by both software companies and those who use their products, both Perry and Greenbaum noted.
"The vendors have to get into the security research business," Perry said. "They don't just build a browser nowadays, they have to hire scientists to do the research so that they understand the vulnerabilities they are patching."
The updating process needs to be easier for consumers to understand, Greenbaum commented. "Some browsers have auto-update features; some do not. Some are enabled by default; some are not. The user does not want this to be a concern, but regardless, they still need to be protected.
"The first line of defense should be making sure all known vulnerabilities are addressed. That's partially the user's responsibility, but vendors could do a much better job," he added.
Microsoft to Release Office as a Service in Mid-July July 02, 2008
Equipt, Microsoft's new subscription service that bundles in elements of its Office software suite as well as security applications, will be available in the middle of the month. The service's security offerings will pit it against established subscription heavies like McAfee, with the added draw of Office apps. Still, Equipt will have to contend with free services like Google Docs.
Related Stories
Firefox 3: Good Browsers Come to Those Who Wait June 17, 2008
Mozilla asked the world to help it set a record for downloads Tuesday with the introduction of Firefox 3. The world, apparently, has obliged -- and in the process, it brought Mozilla servers to a crawl. However, with new features such as the Awesome bar and "undo closed tab," the free browser is worth the wait, according to reviewer Walaika Haskins.
Related News Alerts
More by Renay San Miguel
Murdoch Threatens Google Blockade November 09, 2009
News aggregators like Google News can send an incredible amount of Web traffic to online news sites. However, some publishers think such aggregators do more harm than good by republishing bits of their content. In fact, News Corp. Chairman Rupert Murdoch says he may pull his corporation's publications off of Google's radar entirely.
An FBI Cybercrime Agent's Tales From the Trenches November 09, 2009
The stories that FBI Assistant Director of Cybersecurity Shawn Henry can tell are enough to keep any network security administrator up at night. The methods of criminal hackers are becoming disturbingly effective, he says, and changing attitudes on the nature of online privacy are giving rise to additional risks. On the bright side, he also sees a growing degree of cooperation among law enforcement groups.
Cyber-Meltdown: Managing the Message When IT Hits the Fan November 06, 2009
The situation is a perfect nightmare for any megacorporation: Firewalls are breached, mountains of sensitive data are stolen, and the smell of extortion is in the air. Luckily for all involved, the cyberattack that experts tackled at the 20th World Congress of the Information Security Forum was merely a simulation. The exercise's take-aways, however, proved revealing.