Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Security experts: Insider threat looms largest

By Ellen Messmer , Network World , 12/08/2003
  • Share/Email
  • Comment
  • Print

WASHINGTON, D.C. - While the U.S. military is building up defenses to fend off network-based attacks from enemy states and terrorists, some say the more-insidious security problem is the threat of an insider bent on sabotage or stealing data.


Why you shouldn't pooh-pooh the risk
Winn Schwartau explains.

At last week's Forum on Information Warfare, researchers from the FBI and George Washington University emphasized the insider threat during presentations that drew military personnel and academics from around the world. In particular, IT systems administrators increasingly are seen as the most potentially dangerous insider threat - and military concern - because of their power over networks.

In his keynote speech, Lt. Gen. Kenneth Minihan, former head of the National Security Agency (NSA), compared today's systems administrators to the encryption-code clerks of past wars who broke enemy secrets. He said systems administrators deserve greater attention from the military and should be better paid. Some researchers say they have seen the systems administrator go bad and see it as the Achilles' heel of national defense.

FBI and George Washington researchers have studied the case histories of criminal computers use, including interviews with prisoners.

"The systems administrator responsible for designing computer systems has the extraordinary ability to do damage," said Jerrold Post, professor of psychiatry, political psychology and international affairs at George Washington. He cited cases that occurred at Fort Bragg in North Carolina, and in banking and other industries, to underscore the danger posed by IT insiders who exploit power over networks.

Post noted that insiders who commit computer-based crimes, such as fraud, extortion, sabotage and espionage, have a variety of motivations, including revenge and financial gain. He said it is critical to understand the psychology of IT administrators in general to recognize possible danger signs.

IT specialists are "overwhelmingly represented by introverts" who "internalize stress and express themselves only online," he said. A study of IT specialists caught for computer-based crimes reveals them typically to share some character traits.

Post said close analysis of work histories of IT administrators who sabotaged their employers' networks or did other damage reveals that they often first commit less-serious infractions, such as refusing to train their backup. Intervention by management early on could help prevent problems from escalating, because introverted people usually don't seek help.

  • Share/Email
  • Comment
  • Print
Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.

Download the white paper.

Applications: taking back control

Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.

Learn more today.

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed