Marriage and war spawn 10-year virus outbreak

By Liam Tung, ZDNet Australia
Thursday, February 21, 2008 08:30 AM

The most significant changes to IT security have come from sociological shifts such as young virus writers finding love or seeking employment after international wars, says a security veteran.

IT security threats are usually explained as a technical phenomenon, says ex-president of McAfee and now CEO of Websense, Gene Hodges. However Hodges believes this view overlooks important sociological changes that have had an even greater impact on the security industry.

Today, it is widely accepted that cybercrime is financially motivated. While this explains the continued growth of malware to steal information leading to money or spread a botnet's footprint, it fails to account for underlying changes that have caused the financial motivations to emerge in the first place, Hodges told ZDNet Asia sister site ZDNet.com.au.

"Three to four years ago, probably the biggest change in the security industry is that the motivation of the virus writer changed. We think about security as a technological phenomenon but it's really a sociological phenomenon," said Hodges.

The major sociological change, according to Hodges, was that virus writers grew up, found love and got a mortgage.

"The joke we used to tell when I was at McAfee was that the people who write viruses were 14-year-old boys who couldn't get dates... They would sit in their basement and program to show their intelligence and they were brilliant young kids," he said.

"What's happened over the past few years is...they got married and they got a mortgage. So now they're working for a spyware ring to pay that mortgage. I say this flippantly but fundamentally this is what has happened."

International territorial conflicts have also transformed the pool of talent for virus writers.

During the latest Indian and Pakistani border conflict over Kashmir, which flared up in 1999, Hodges said Websense was asked by both governments to develop tools for Web warfare.

"We were talking to both the Pakistani and Indian governments. They had approached us to write war grade viruses," he said.

"You could tell there were large groups working on both sides. Hundreds if not thousands of people were working in cyberwarfare organizations," he added.

"And we didn't do that. Websense doesn't help anybody on the offense. I think everyone in security is committed to the defense," he said.

But according to Hodges, it's what happened after the border skirmish finished that has had the greatest impact on security for the masses. "The people on the Indian side were hired by any number of a myriad of companies in Bangalore or Chennai. But what happened to the Pakistani programmers? If they didn't go to the United States, how did they end up living?"


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Use shades of gray to enhance scale in Excel

Microsoft Office Suite

Excel's palette is generous, but don't throw buckets of pigment all over your spreadsheets just because you can.


Read more »



Ultimate 2012 recovery site: the moon

Blog thumbnail

Have you seen the disaster movie "2012"? A friend from Control Risks and I did, and we reluctantly concluded we wouldn't be able to write off the cost of our..... by Nathaniel Forbes

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web