Rise in cyber crime, cyber terrorism and cyber espionage tied heavily to data-stealing malware
In its first Focus Report, Trend Micro examines the growth of data-stealing malware, its characteristics and its roots in the underground cyber crime economy.
While the term “data-stealing malware” is a relatively new one, its sole purpose for existence is a familiar story: To steal proprietary information such as online banking credentials, credit card numbers, social security numbers, passwords, and more from compromised networks and PCs in order to fuel an underground cyber crime economy driven by profit-seeking criminal networks that cross geopolitical boundaries.
Trojans: The Rising Star in Data-Stealing
Trojans are the fastest growing category of data-stealing malware, according to data from TrendLabs(SM), Trend Micro’s global network of research, service, and support centers committed to constant threat surveillance and attack prevention. Trojan attacks pose a serious threat to computer security. True to their name, they typically arrive disguised as something benign such as a screen saver, game, or joke. Based on TrendLabs research:
- In 2007, 52 percent of data-stealing malware were Trojans; in 2008, that number increased to 87 percent; as of Q1 2009, 93 percent of data-stealing malware were Trojans.
- Trojans and Trojan spyware are the predominant type of data-stealing malware in all regions monitored by TrendLabs, including Australia, Asia, Africa, South America, North America and Europe.
“As a threat category, data-stealing malware is experiencing tremendous growth because it serves the needs of financially motivated criminals who leverage the Internet for what it does best – provides valuable information,” said Jamz Yaneza, threat research manager for Trend Micro.
The Politics of Transnational Cyber Crime
Politics and cyber crime have finally intersected in news headlines; understandably so: In the U.S. alone, the number of known breaches of government computers with malware more than doubled between 2006 and 2008, according to the Department of Homeland Security.(i)
And, says Trend Micro advanced threat researcher Paul Ferguson, it is even possible that cyber terrorists may have already planted malware within the U.S. electrical grid that would allow them to remotely disrupt service.
Cyber crime has gained significant international mobility. In 2007, Estonian computer networks were crippled when serious distributed denial of service (DDoS) attacks against government and civilian sites were reputedly linked back to Russian operatives. At the time, Russia and Estonia were involved in a dispute over the Estonians’ removal of a Soviet war memorial. The French Embassy’s web site in Beijing was inaccessible for several days after a full-scale cyber attack following President Nicolas Sarkozy’s meeting with Tibetan spiritual leader, the Dalai Lama. Experts now widely believe instead that a Chinese hacking group staged the attack for nationalistic purposes.
“Virtually anyone with a computer and Internet access can wreak havoc. In the U.S., hacker attacks have been documented on county or state government sites,” said Ferguson. “Smaller organizations have a limited IT budget and few IT staff so they hire a third party to build a web site. Over time, the site fails to be maintained or upgraded, exposing vulnerabilities that hacktivists then leverage to express political views.”
Cyber espionage is also grabbing headlines. Every year, corporations suffer billions of dollars in intellectual property losses when trade secrets are illegally copied and sold to competitors on the black market for profit, or used for extortion. Business networks all over the world provide the perfect medium for cybercriminals capable of breaching their defenses.
“Cybercriminals are using malware for financial gain and for geopolitical purposes,” said Ferguson. “We have even seen data-stealing malware attacks against U.S. defense contractors – believed to be Chinese – launched to steal confidential trade secrets. However, it’s hard to connect the dots back to the people really pulling the strings because of the anonymous nature of the Internet.”
Traditional Security is no Longer a Match for Cyber Criminals
For years, security protections have been focused on protecting the endpoints – where most people access data. In today’s multi-threat environment, a new strategy is needed. The Trend Micro(TM) Smart Protection Network enables a multilayered threat prevention approach that is built upon the concept of proactively blocking data-stealing malware in the Internet cloud before they can infiltrate a network.
A correlated approach is used to address the tendency for cybercriminals today to launch multi-pronged, combined attacks composed of a number of different Web threats. Using correlation technology and behavioral analysis, the Smart Protection Network correlates combinations of threat activities to evaluate their potential for danger. It analyzes email, embedded links, file attachments, and hosted web files to identify new IPs, domains, URLs, and files that can be instantly added to reputation databases to quickly block new threats.
By examining the relationships between and across different components, the Smart Protection Network provides a realistic view of potential threats to deliver a holistic, comprehensive view of the threat landscape.
Data Protection Pack for “Insider” Threats
A company’s greatest asset – their employees – can also be their greatest security liability, especially by those who have access to data within a corporate network. Trend Micro offers solutions not just for external threats, but internal threats as well. The Data Protection Pack bundles together Trend Micro(TM) LeakProof Standard, Trend Micro(TM) Email Encryption Gateway and Trend Micro(TM) Message Archiver. The Data Protection Pack secures email and prevents the loss of sensitive data in use, in motion and at rest; it is available for Trend Micro(TM) NeatSuite Advanced and Client Server Messaging customers.
To read the full Data-Stealing Malware Focus Report, visit: http://us.trendmicro.com/imperia/md/content/us/pdf/threats/securitylibrary/dat a_stealing_malware_focus_report_-_june_2009.pdf
(i) Paul Haven, “Cyber-Spy vs. Cyber-Spy,” TechNewsWorld.com, April 12, 2009, http://www.technewsworld.com/story/viruses-malware/66782.html?wlc=1241718857
Source: Trend Micro
Panorama Software debuts NovaView Version 6.0 with new analytical application, data connector and collaboration module
New Paradigms Aimed at Bringing More Users to BI, Aiding Relational Reporting and Easing On-Premise and Cloud Collaboration
Panorama Software, a global leader in proactive Business Intelligence (BI) solutions, fficially announced NovaView Version 6.0, a tightly integrated suite of web-enabled BI applications.
Like past versions, NovaView 6.0 combines the best of query and analysis, formatted reporting, performance dashboards, KPI scorecards, modeling, advanced visualization and automated report distribution. New deployment wizards and applications, as well as a more robust platform designed to bring more users to business intelligence, promise NovaView 6.0 will be Panorama’s biggest release ever.
“We are thrilled to announce a new version of NovaView to the market,” said Eynav Azarya, CEO Panorama Software. “NovaView 6.0 brings new innovations to the world of BI and data analysis as well as new levels of integration with Microsoft’s BI platform. Panorama and Microsoft are tightening the partnership to deliver an end to end enterprise BI solution that combines the best of SQL Server, SharePoint, Office and NovaView into a single powerful and innovative enterprise BI solution”
NovaView Version 6.0 features three key upgrades:
New Flash Based Analysis Application – NovaView’s new Flash Analytics client significantly increases usability for data analysis. NovaView Flash Analytics was originally developed through Panorama and Google’s partnership and included in Google Docs. The solution is currently used by more than 100,000 customers. The new client is now part of the on-premise version of NovaView
In an effort to empower casual information workers, the new solution includes self discovery for easy data navigation and exploration; on-the-spot interactive help; and animation like flashing, linking and expanding that provides hints on where to go next.
Unified Data Connector – For the first time in Panorama history, NovaView supports data stored in any source. The new Relational Data Connector offers users the ability to perform interactive data analysis on relational data just as if it was in OLAP giving relational reporting more power than ever.
The Relational Data Connector maps to any relational data source including RDBMS, Excel, CSV and existing SQL Reporting Services among others, and uses unique algorithms to model data instantly. Data sources can be as simple as a spreadsheet or as complex as SAP ERP tables.
Enhanced Collaboration Features – Panorama has combined on-premise and cloud assets into a new solution called NovaView SharedViews. Now, users can leverage Panorama NovaView for enhanced collaboration with other users inside and outside of the firewall.
With SharedViews, users can build reports in the cloud consisting of fresh data in a controlled, managed and fully interactive environment, collaborating easily with partners and suppliers that don’t have access to data inside the firewall.
Source: Panorama Software
Panda Security launches its Ultra-Light 2010 Consumer Solutions
Panda Antivirus for Netbooks, Panda Antivirus Pro 2010, Panda Internet Security 2010 and Panda Global Protection 2010 will be available for home users and professionals on June 25th
These new solutions are designed to offer maximum protection with minimal impact on PC performance
All products feature an 80 percent performance improvement (consuming just 8 MB of memory) and include innovative cloud technologies based on Collective Intelligence
Panda Security, the Cloud Security Company, launched its new, ultra-light 2010 consumer solutions, which include Panda Antivirus for Netbooks, Panda Antivirus Pro 2010, Panda Internet Security 2010 and Panda Global Protection 2010. All of these products will be available on June 25.
The new consumer products are designed specifically to offer maximum protection with a minimum impact on PC performance. Thanks to Collective Intelligence cloud technologies, first launched by Panda Security two years ago, the new 2010 solutions offer an 80 percent performance improvement with respect to previous versions. Panda’s new retail solutions also deliver 60 percent improved browsing speed and 40 percent improved download speed over previous versions, consuming just 8 MB of memory.
All of Panda Security’s new solutions also incorporate proven USB vaccination technology to prevent virus infections and spreading vectors very commonly used by today’s malware. In addition, Panda’s 2010 solutions incorporate a brand new heuristic engine and generic signatures that, working both locally and with Collective Intelligence scanning-from-the-cloud, provide the highest rate of protection against the newest malware and identity theft trojans.
Panda Antivirus for Netbooks is a brand new, ultra-light consumer solution specifically designed for netbooks, mini laptops and ultra portables, including anti-spyware, anti-phishing, anti-rootkits, firewall and identity protection. The price of a 12-month license is $39.95 for one PC.
Panda Antivirus Pro 2010 offers easy-to-use protection against viruses, spyware and hackers, and also includes a new engine to fight identity theft. Users can chat, share photos and videos, bank and shop online, read their favorite blogs or simply surf the Web, with complete peace of mind thanks to its built-in firewall. This easy-to-use solution is truly install and forget. The price of a 12-month license is $49.95 for up to three PCs and $39.95 for one PC.
Panda Internet Security 2010 is a comprehensive suite for all types of threats including viruses, rootkits, hackers, online fraud, identity theft and all other Internet threats. This solution also offers an online backup system with 2 GB of free space as well as system recovery tools. The anti-spam engine ensures user inboxes remain free from junk mail while the Parental Control feature ensures children can use the Web safely. The price of a 12-month license is $79.95 for up to three PCs and $59.95 for one PC.
Panda Global Protection 2010 is Panda Security’s most complete security solution, protecting users from every type of Internet threat, including viruses, spyware, rootkits, hackers, online fraud and identity theft. In addition to an anti-spam engine and parental control features, users can also back up important files (documents, music, photos, etc.) to a CD/DVD or online (5 GB free space available) and restore them in case of accidental loss or damage. With the integration of Collective Intelligence, memory consumption, browsing and download speed have been improved significantly. The price of a 12-month license is $89.95 for up to three PCs and $69.95 for one PC.
The new products will be available online on at www.pandasecurity.com.
Lightspeed releases the New DepthQ family of Stereoscopic HD Video Software
Lightspeed Design, Inc. announces the release of its new DepthQ(R) family of stereoscopic software for state-of-the-art capture and playback of HD 3D media. DepthQ(R) HD 3D software has been successfully serving hundreds of professional clients in corporate, entertainment, medical and industrial applications since 2002. That software has now evolved into the new DepthQ(R) family of stereoscopic software — DepthQ(R)Capture(TM) and DepthQ(R)Player(TM).
What makes this product the best of its kind? Simply that DepthQ(R) is the only 3D software package capable of low-latency (66ms) real-time monitoring with simultaneous capture, highly efficient GPU image processing and smooth, high-resolution media playback. Lightspeed’s experience in 3D display technology and filmmaking, combined with their deep understanding of stereography and image processing, led them to develop their own toolsets to capture, process, configure, and playback HD 3D imagery with greater flexibility, efficiency, and accuracy. Lightspeed’s unparalleled features set DepthQ(R)Capture(TM) and DepthQ(R)Player(TM) far above the competition.
DepthQ(R)Capture(TM)
DepthQ(R)Capture(TM) is a powerful software solution for the precise capture, recording and monitoring of stereo 3D video from two simultaneous camera inputs (Analog, HD-SDI, HDMI, FireWire or USB) at dual HD resolution. Features include low-latency, real-time monitoring, a camera alignment aid and visual overlays to assist in optimizing your 3D effects for various target playback screens.
DepthQ(R)Player(TM) captures your two independent camera video sources, concatenates them together as an above/below image to preserve sync, processes the result — applying any scaling and compression required — and then serves the final stereo data as a single data stream to any 3D (or 2D) monitoring device at the required resolution, frame rate, and encoding standard for that display.
DepthQ(R)Player(TM)
DepthQ(R)Player(TM) is a feature-packed software solution for the high-quality playback of stereo 3D movies from a standard PC. Easy to use and designed from the ground up as a professional product, DepthQ(R)Player(TM) combines efficient code architecture and superior throughput for high-bandwidth playback of either locally stored or URL-accessible stereoscopic movies, as well as 3D streaming IP video (MPEG2-TS RTP/UDP).
DepthQ(R)Player(TM) delivers the most comfortable-to-view stereo 3D experience possible, and allows cost-effective viewing of high-resolution stereoscopic media in a wide variety of environments — from remote 3D viewing stations, operating rooms and conference rooms to 3D cinemas, museum exhibits, portable theaters, motion simulators, corporate events and trade shows.
Features include:
- Flicker-free 120 Hz stereoscopic 3D video
- Input Formats – above/below, side-by-side, interlaced and more
- Output Formats – Page-flip, DLP checkerboard, dual output, interlace and more
- DepthQ(R) Alignment (real-time X-Y stereoscopic parallax adjustments)
- Time Dependent Event Editor (IN/OUT points, Parallax changes)
- Time Code Capability
- DMX-512 Control of External Devices
- Cg GPU Image Processing (cornerstone, edge sharpening, contrast, brightness, etc.)
- Depth Reference Marks
DepthQ(R)Player(TM) software uses Microsoft Direct Show infrastructure working with codecs like Windows Media Player, MJPEG, MPEG-2, and H.264 and is compatible with NVIDIA GeForce 3D Vision and NVIDIA Quadro.
DepthQ(R)Player(TM) is available in three configurations: Lite, a free-to-download evaluation version incorporating a subtle watermark, with restricted playlength and functionality; Standard, a licensed commercial version at 720P resolution per eye; and Pro, a licensed professional version at full 1080P resolution per eye.
Download DepthQ(R)Player(TM) Lite, test drive it and tell us what you think. Go to http://www.depthq.com/player.html.
For more information, go to http://www.depthq.com/software.html.
Source: Lightspeed Design, Inc.
IBM extends social networking software through cloud computing with LotusLive Connections
LotusLive Wins Enterprise 2.0 Conference Showdown Over Google Apps
IBM announced its newest cloud service — LotusLive Connections — which combines business social networking with collaboration tools. Part of IBM’s cloud service portfolio, LotusLive, LotusLive Connections extends IBM’s reach further into new markets.
As part of the unveiling, LotusLive was voted the winner of The Enterprise 2.0 Cloud Computing Technology Buyers’ Choice Award. IBM’s cloud services won in a side-by-side comparison with Google Apps, EMC and other vendors’ cloud technologies, as voted by the Enterprise 2.0 conference attendees.
“IBM is an established leader in two major trends: cloud computing and social networking for business. At the nexus of these trends is LotusLive Connections,” said Bob Picciano, general manager, IBM Lotus Software. “LotusLive Connections brings companies of all sizes the ability to build, share information and easily work with their extended business network over the Web.”
LotusLive Connections helps individuals, departments and small businesses tap into the intellectual resources and capabilities that previously have only been accessible to large enterprises. Using core elements of IBM’s proven on-premise Lotus Connections social software, LotusLive Connections connects colleagues, partners, suppliers and customers from within and beyond firewalls.
LotusLive Connections simplifies working together, making it easy to identify and work with experts from any company online with the flexibility, convenience and affordable pricing associated with multi-tenant cloud services. Instant messaging, file sharing and activities are all instantly accessible for use with LotusLive networks.
For example, a team planning a project can create a group around the project, including vendors from outside their company. Together they can build a project plan using Activities and post and share associated files. Comments can be made and tasks tracked in the same service. All participants are kept up-to-date without having to hunt through email for the latest documents. Networking, sharing and collaborating are all integrated in LotusLive Connections.
LotusLive Connections will be available on June 30, 2009.
For more information about LotusLive Connections visit www.lotuslive.com/connections.

