On TV.com: MEGAN FOX photos
BNET Business Network:
BNET
TechRepublic
ZDNet

January 24th, 2005

Can IT find something better to do than play 'gotcha?'

Posted by George Ou @ 11:06 pm

Categories: Security

Tags:

Along the theme of a previous blog "Are users really to blame for poor security", the "geniuses" in IT are at it again. They’re spending valuable business resources to craft a fake e-mail virus to "test" which users are going to be fooled into double clicking it. I just wonder what they would actually do with such information. Are they planing to call those users stupid or are they planning on going to HR to demand that someone gets fired? Hey, Ihave an idea, how about if we fire the dope that has nothing better to do than to play some childish game of "gotcha?" There is simply no way an end user should ever be expected to know what they should click or not click — especially if it’s coming from the IT department itself.

As someone who works in IT, I can certainly sympathize with the daily problems that IT departments face. But experience tells me that social engineering almost never yields anything better than a 50 percentsuccess rate — and at a great expense to boot. What does work more than 99 percentof the time is to implement the proper anti-virus defenses at the HTTP, FTP, and SMTP gateway, which I’ve been saying for over three years. From a cost standpoint, it’s much cheaper than putting out the fires daily not to mention the loss in productivity.

What do you think? Do I have a point or am I way off base? Leaveyour comments in our new talkback section.

George Ou is Technical Director of ZDNet. See his full profile and disclosure of his industry affiliations.

  • Talkback
  • Most Recent of 14 Talkback(s)
A gap in the lines of defense
Email message: You have an e-greeting from John Doe, click here to view your greating.

User Clicks and gets a popup from a professional looking web site. YOu must install this application to ... (Read the rest)
Posted by: gsbtech Posted on: 01/26/05 You are currently: a Guest | | Terms of Use
So ... What's your beef?  nicholas.osborn@... | 01/25/05
Where is the contradiction  george_ou | 01/25/05
technology is not keeping up  gsbtech | 01/25/05
Education can't do better than 50%  george_ou | 01/25/05
50% is a good start  gsbtech | 01/25/05
50% is an "F" in terms of security  george_ou | 01/25/05
blogs  gsbtech | 01/25/05
That's why it's labled "Recent blogs"  george_ou | 01/25/05
No doubt.  gsbtech | 01/25/05
What tools are you using?  george_ou | 01/25/05
three simple rools  gsbtech | 01/26/05
step into the real world  gsbtech | 01/25/05
I agree with you  SimonSays | 01/26/05
A gap in the lines of defense  gsbtech | 01/26/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

Click Here
advertisement

Recent Entries

Top Rated

    Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
    advertisement

    Archives

    ZDNet Blogs

    White Papers, Webcasts, and Downloads

    Enterprise Applications

    • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
    • New Online Dashboard
    • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline