The deluge of viruses this year means that nearly everyone knows that emails with unsolicited offers of interesting pictures or system updates need to be treated with suspicion. But what about that handy utility you want to run on your office PC -- or that file sharing software you'd rather run from work because it's faster than downloading on your modem at home?
There's a huge range of software -- from useful to dubious -- that you can download free, but some programs come with hidden extras.
Instead of asking users to pay if they like the program, some developers include extra software that tracks the Web sites you visit as a form of free market research. And some spyware tracks considerably more than that. And while spyware has been around for a couple of years, the past six months have seen it spreading.
If you find your system slowing down or your Web browser opening to the wrong search engine, you might have an unwanted visitor, but because these programs aren't viruses, standard anti-virus software usually does little to protect you.
For one thing, there are legal issues with detecting and blocking ad-sponsored software that users have agreed to install (even if they didn't bother to read the license agreement).
For another, there are a lot of programs to track, and many people see it as a trivial problem for home users rather than a serious issue for business.
But even if the spyware infesting business desktops is only ad tracking code, that can still be a huge burden on a company's network resources.
One insurance company that started using Websense to monitors its network found spyware was generating half a million outgoing messages from its desktop in three days.
The company email addresses used to send those messages are likely to end up in spam databases as well, which means more traffic and time wasted.
Having the home page in your Web browser changed can affect your productivity as well as being an inconvenience.
Tracking down and removing spyware from every desktop is going to affect the productivity of your information-technology team as well.
And you can't just assume that spyware is benign, even if it is legitimate commercial software. Keystroke loggers are useful for parents wanting to keep track of what their children do online, but the same software running in your finance department is a major security issue.
Gabe Newell, of Valve Soft-ware, believes that keystroke recording software helped hackers steal source code for the Half Life 2 game recently -- a theft that has meant postponing the release of the game for at least six months.
If customers' information is stolen from your computers, they are going to lose confidence in your business. To add insult to injury, you could find yourself liable under data protection regulations, too.
Commercial espionage may not be common and many incidents can be traced to insiders, but Pete Simpson, manager of Clearswift's ThreatLab, thinks we're going to see more gene hackers.
It is probably organized crime with some big money behind it and the motive is financial gain.
"Clearswift recorded a major rise in spam email selling spy-ware following Microsoft's decision to close MSN's public chat rooms, which could suggest that the hackers had been distributing their code in chat and are looking for new victims to replace their lost audience," Simpson said.
Few companies are protecting themselves against spyware, and most of the tools for detecting and removing it are designed for home users -- and have to be run on every desktop individually.
Anti-virus vendors are starting to take an interest and there may soon be adware and surveillance spyware available.
But rather than tackling spy-ware as a separate security prob-lem, you should look at the implications for your security policy more generally, such as who is entitled to install which software on their PC.
While some spyware is downloaded through Web sites, more arrives in email, so blocking or quarantining incoming executable files will protect you.
It is hard to block most spyware at the firewall because it sends messages back using email and HTTP, traffic you will want to allow through.
Websense is offering a free trial of its monitoring software to see if spyware is clogging up your network.
This checks the destination of all outgoing email, blocks messages to known monitoring sites based on a list updated daily and lets you choose which users are allowed to send email, and to what addresses.
Whatever software you choose, to stop hackers spying on you, you may need to start monitoring your own systems much more closely.
NO HUMAN ERROR: After the incident, the Coast Guard Administration said it would obtain uncrewed aerial vehicles and vessels to boost its detection capacity Authorities would improve border control to prevent unlawful entry into Taiwan’s waters and safeguard national security, the Mainland Affairs Council (MAC) said yesterday after a Chinese man reached the nation’s coast on an inflatable boat, saying he “defected to freedom.” The man was found on a rubber boat when he was about to set foot on Taiwan at the estuary of Houkeng River (後坑溪) near Taiping Borough (太平) in New Taipei City’s Linkou District (林口), authorities said. The Coast Guard Administration’s (CGA) northern branch said it received a report at 6:30am yesterday morning from the New Taipei City Fire Department about a
IN BEIJING’S FAVOR: A China Coast Guard spokesperson said that the Chinese maritime police would continue to carry out law enforcement activities in waters it claims The Philippines withdrew its coast guard vessel from a South China Sea shoal that has recently been at the center of tensions with Beijing. BRP Teresa Magbanua “was compelled to return to port” from Sabina Shoal (Xianbin Shoal, 仙濱暗沙) due to bad weather, depleted supplies and the need to evacuate personnel requiring medical care, the Philippine Coast Guard (PCG) spokesman Jay Tarriela said yesterday in a post on X. The Philippine vessel “will be in tiptop shape to resume her mission” after it has been resupplied and repaired, Philippine Executive Secretary Lucas Bersamin, who heads the nation’s maritime council, said
REGIONAL STABILITY: Taipei thanked the Biden administration for authorizing its 16th sale of military goods and services to uphold Taiwan’s defense and safety The US Department of State has approved the sale of US$228 million of military goods and services to Taiwan, the US Department of Defense said on Monday. The state department “made a determination approving a possible Foreign Military Sale” to the Taipei Economic and Cultural Representative Office in the US for “return, repair and reshipment of spare parts and related equipment,” the defense department’s Defense Security Cooperation Agency said in a news release. Taiwan had requested the purchase of items and services which include the “return, repair and reshipment of classified and unclassified spare parts for aircraft and related equipment; US Government
More than 500 people on Saturday marched in New York in support of Taiwan’s entry to the UN, significantly more people than previous years. The march, coinciding with the ongoing 79th session of the UN General Assembly, comes close on the heels of growing international discourse regarding the meaning of UN Resolution 2758. Resolution 2758, adopted by the UN General Assembly in 1971, recognizes the People’s Republic of China (PRC) as the “only lawful representative of China.” It resulted in the Republic of China (ROC) losing its seat at the UN to the PRC. Taiwan has since been excluded from