Security
and intrusion analysis
This analysis is
intended for companies and institutions who
wish to get their security shielded against
Internet confirmed by third part, and at the
same time tests how the staff is acting in
various situations and different kind of
attacks.
Background and methods
Intrusion attacks with the intention to get
hold of secret information or to take
control over a system is a constantly
expanding curse in IS systems all over the
world. The perpetrators, constantly swelling
in numbers and improving their techniques,
are feeling safe because they mostly run a
very little risk of being revealed.
Companies and institutions with high demands
on security are often equipped with advanced
software protection tools with the latest
technological standard. It is very seldom
you find the weak points in this field;
instead it is almost always the staff that
is the problem. Security risks increase with
an increasing number of personnel,
especially when you take on new people. High
technology IS security systems also tend to
give the staff some overconfidence in the
functionality and effectiveness of these
tools. The most common intrusion attacks
from outside in otherwise secure infra
structures are made possible by incautious
and credulous personnel.
|