Share

Zero-day attack most effective in SA, says Kaspersky

Cape Town - The most effective cyber attack on South African computers is known as a zero-day attack, a security firm has said.

A zero-day attack is one where a vulnerability in software code has been established, but the manufacturer has not yet released an update to prevent the software from being manipulated by hackers.

"The most effective attacks on computers are the ones using zero-day vulnerabilities like targeted APTs (Advanced persistent threats), which are unknown unfixed security weaknesses in devices and operating systems," Mohammad-Amin Hasbini and Ghareeb Saad, GreAt experts at Kaspersky Lab told News24.

In 2013, several zero-day flaws were identified in widely-used software which could allow an attacker to remotely gain access to a computer.

According to FireEye, an Internet Explorer vulnerability allowed an remote user to execute code via a website that could trigger access to an object.

Malware intrusions

A Flash vulnerability allowed remote attackers to cause a denial of service. Flash is widely used in browsers and web pages, though it is gradually being supplanted by HTML5.

Criminal hackers are constantly on the lookout for a small vulnerability in computer systems.

"An attacker only needs to find the weak link in the chain, the chink in the armour. They're not going to go with a sledgehammer after the most secure system in the environment," John Yeo EMEA director at Trustwave told News24.

Trustwave division Spiderlabs specialises in penetration testing or ethical hacking.

Traditional, signature based antivirus is able to detect malware intrusions in a computer system only if the malware has been identified by the company.

Yeo said that in his experience, corporate attacks are morphing into those where specific malware is used only once for a specific purpose.

"Signature-based antivirus hasn't got a hope of being able to detect it [malware] and any organisation that thinks 'I've got antivirus deployed on my mission critical systems and if the worst case scenario happens, I'm going to detect it,' that's not going to happen," he said.

Updated software

Hasbini said that Kaspersky had identified the threat of unknown malware in their new product which uses a Heuristics engine. This detects malware based on how it behaves in the digital environment.

Users can protect themselves from the threat of zero-day attacks by ensuring that software is updated and antivirus software has the latest definitions.

Saad said that educating South Africans about the risk of clicking on potentially malicious websites was key to diminishing cyber attacks.

"In our experience, South African users need to educate themselves more on information security awareness - users should not access malicious websites, reply to scam e-mails or respond to social engineering attempts."


- Follow Duncan on Twitter
We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
19.29
-0.7%
Rand - Pound
23.87
-1.1%
Rand - Euro
20.58
-1.2%
Rand - Aus dollar
12.38
-1.1%
Rand - Yen
0.12
-1.2%
Platinum
943.50
+0.0%
Palladium
1,034.50
-0.1%
Gold
2,391.84
+0.0%
Silver
28.68
+0.0%
Brent Crude
87.29
+0.2%
Top 40
67,314
+0.2%
All Share
73,364
+0.1%
Resource 10
63,285
-0.0%
Industrial 25
98,701
+0.3%
Financial 15
15,499
+0.1%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders