Kenyan sites at risk
SECURITY| July 24, 2012, 6:24 p.m.
By Semaj Itosno, Nairobi, Kenya
Use of free software without customization is exposing Kenyan websites to hackers.
A new report by Serianu, an IT security consulting firm, has revealed that more than 80% of local websites are built on open source software such as Wordpress, Joomla, Apache and MySQL whose security codes are available online for free.
According to William Makatiani, the managing director at Serianu Ltd, Government websites and banking institutions remain the most vulnerable targets since most of their website are developed externally but they rarely do a check on their security settings or update them.
“During our research, we came across a credit card shop that was selling credit card data issued by banks located in Kenya,” said Makatiani.
The study was done between the months of January and April this year and lists bank accounts, credit and debit card details as the most looked for data by cyber criminals.
Online fraud has been growing steadily in Kenya and commercial banks are estimated to lose Sh3 billion to cyber criminals annually.
Makatiani said unlike other proprietary software whose codes are only available to the vendor and the client, open source software source code is available to the general public for use and/or modification from its original design free of charge.
This provides an opportunity for cyber criminals to send software that has the ability to access computers and steal vital information such as business strategies or business plans, or confidential information from banks, insurance and telecommunication firms.
MORE SECURITY NEWS
Separating the attack that matters from the noiseIt has almost become the norm for a business to be compromised by a security attack. The emphasis today is thus more on how a business responds to the attack, that is how have they prepared for the breach and how do they communicate it? Read More
Enhancing your security posture to fight new ransomware threatsPetya ransomware is proving to be one of the top cybersecurity stories of 2016. Read More
Arbor stops malware in its tracksThere is always a substantial amount of banking trojan activity taking place, however, recent developments have intensified the threat landscape. Read More
Networks Unlimited certifies Fortinet partners in East AfricaValue-added distributor, Networks Unlimited is intensifying its footprint in East Africa, training its partners and customers in the region to become certified. Read More
Understanding the risk and cost of a DDoS attackThw Arbor Networks white paper, The business value of DDoS protections, says a continuing and growing threat to service availability is distributed denial of service (DDoS) attacks. Read More
Addressing the threat of cyber-crime in the digital eraGlobally-connected cyber-attacks require globally connected and seamlessly integrated cyber defences. Read More
DDoS attacks: An operational risk that should be included in enterprise risk assessmentsToday’s enterprises are increasingly motivated to formalise their IT security and place it firmly within the context of their enterprise risk management and business continuity planning. Read More
Arbor Networks report finds relentless threat environmentArbor Networks Inc., the security division of NETSCOUT (NASDAQ: NTCT), has released its 11th Annual Worldwide Infrastructure Security Report (WISR) offering direct insights from the global operational security community on a comprehensive range of issues. Read More
No More Excuses – Time to Get a Grip on Your Cloud SecurityNewfound optimism for the cloud inevitably means more critical and sensitive data is put into cloud services. And that means security is going to become a massive issue, says Intel. Read More
RSA research reveals blind spots in threat detectionRSA, The Security Division of EMC, has released the results of a new Threat Detection Effectiveness Survey. Read More
FEATURED STORYGovernment should encourage youths in ICT early
Youths should be given more encouragement to develop their ICT skills, an 11-year-old app developer told Kokumo Goodie.
BEST READ NEWS
IN DEPTHIBM Opens First Cloud Data Centre in South Africa
IBM is opening a new IBM Cloud Data Centre in Johannesburg, South Africa. The new cloud center is the result of a close collaboration with Gijima and Vodacom and is designed to support cloud adoption and customer demand across the continent.
COMPANY NEWSResolving the data centre disconnect
The disconnect between virtualised applications and physical storage is costing businesses time and money.Separating the attack that matters from the noise
It has almost become the norm for a business to be compromised by a security attack. The emphasis today is thus more on how a business responds ...MTN Business partners SMEasy to give entrepreneurs access to easy accounting solutions
MTN Business, in partnership with online accounting tool SMEasy, today announced the launch of an agile, fit for purpose business management and easy accounting solution for small ...