Attacking cybercrime through infrastructure, not individuals
Steve Santorelli
Chief of Staff at Team Cymru | Cybersecurity Leader | Advocate for Collaboration
from a BBC interview that came out today
...Now it is about infrastructure, not individuals.
"It's all part of a realisation among info-security workers and law enforcement that traditional ways of doing investigations have not been working," said Steve Santorelli from Team Cymru, a non-profit group that monitors the net seeking botnets and other criminal resources.
"The more traditional 'identify the bad guys, arrest them and lock them up' has been falling short," he said.
...
"You need to increase the cost of them doing business," said Mr Santorelli. Taking away servers, cutting off access to the armies of compromised PCs all makes it more troubling, and costly, for criminals to operate.
Published Author
8 年?mer is correct here...
I have to say this is a perfect recipe for chasing tails and spreading blame. The notion that we can out-fox the hacker and get everybodies infrastructure on the same page against it is a non-starter. It will introduce systematic vulnerabilities making all as equally hackable. What you need is to increase the cost of selling bad code (vendors) and the cost of not diverting adequate resources to the topic (enterprises). Once security becomes a line item of COGS (cost of goods sold) a self sustaining model will emerge reflecting the true level of security that is balanced with the enterprises risk appetite...
Network Design / Deployment / Support Engineer ?? Innovator ?? Strategist ?? Best Practice Consulting ?? Solution Architect
9 年Many expect the attack to originate outside their network. However, unclean network can be attack from within their network. Clean network should be one of the criteria that customers should look for in hosting their servers. There are tools available to check the security scoring of the network. e.g. https://radar.qrator.net
CEO and Co-Founder at Findings
9 年Couldn't agree more. Corporations collaborating on security is a good way to turn off the oxygen for organised cyber crime
Security Professional at SOUTH CAROLINA DEPARTMENT OF MENTAL HEALTH
9 年Very smart approach to cybercrime prevention. More proaction than reaction.