You are here: silicon.com > Software > Malware

Malware

Worm warning: Beware staff surfing, says IDC

Web use 'bigger threat than email attachments'...

Tags: trojans, malware, worms, email

By Matthew Broersma

Published: 15 September 2006 14:00 GMT

Companies are now more likely to pick up malicious software via employee web surfing than from the more notorious email attachment, according to a study released on Wednesday by IDC Denmark.

Nearly 40 per cent of the 200 Danish companies surveyed said they'd been infected by a virus or worm, despite the fact 75 per cent had implemented a security policy, IDC said. But the malware in question is no longer primarily making its way through email, as in the past.

Per Andersen, IDC Denmark's managing director, said it's a common misconception that email constitutes the biggest security threat from the internet - adding in a statement "the survey shows that up to 30 per cent of companies with 500 or more staff have been infected as a result of internet surfing, while only 20 to 25 per cent of the same companies experienced viruses and worms from emails".

The risk of infection is about five times greater for companies that allow internet usage by staff to go on unhindered and unmonitored, Andersen said.

The problem doesn't go away for companies that ban private internet use, because often such policies aren't enforced, IDC found: about 30 per cent of management at such companies said staff accessed the internet for personal use during working hours.

IDC believes banning personal web use isn't realistic, particularly as a long-term solution. Instead, the company recommends closer monitoring of staff internet use, using tools that give management an overview of time spent and behaviour patterns online.

Andersen said: "It can certainly be done in such a way that it does not constitute outright monitoring of the actions of every member of staff."

Attacks can come from relatively innocuous online sources, according to Andersen. He cited the case of a poker website that placed a Trojan horse on users' PCs when they downloaded the site's help program.

Matthew Broersma writes for ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
Technical Lead - C# - Scrum specialist - City - 60k + Bens

The role itself will involve: - Leading the core development team, and occasional travel to Denmark. Any further knowledge of WCF, WPF, Multi ...

Problem Manager/Service Delivery

Cost awareness * Time Management * Presentation skills * Ability to own, address and resolve problems Behaviour/Attitude * Excellent interpersonal ...

Resource Allocator

Knowledge/Qualifications/Experience Call Management Experience Advanced knowledge of telephone system Basic literacy Geographic understanding of the ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: