Intellinx Monthly Newsletter
October 2008 - Vol 3 | Issue 8  
Welcome to the Intellinx Connect Newsletter!
The Intellinx Connect Newsletter is published monthly to bring you the latest information about insider threat detection and prevention, Intellinx product updates, key security events, articles of interest and more - all conveniently delivered to your inbox.

  Industry News
IT wary of insider attacks as economy slows down
Computerworld Disgruntled employees and ex-workers pose increased threats to corporate systems.

As the faltering economy forces companies to turn to job cuts, wage and bonus freezes, outsourcing and other belt-tightening moves, the insider risks are multiplying, analysts said.

"All of these [cost-cutting measures] increase risk for the company from an insider perspective," said Shelley Kirkpatrick, director of assessment services at Management Concepts Inc., a consulting firm in Vienna, Va. "When there is uncertainty, it creates stress for employees [and] makes the company more vulnerable."

Read the Report

Fraud Risk 'Rises' During Crunch
BBC Fraud in the workplace is likely to accelerate during the global economic downturn, says accountants KPMG.

This is because managers may falsify figures to make performance look better and debt-strapped employees are more likely to commit fraud. Corporate fraud in the UK was £630m in the first six months of 2008, up on recent years. Fraudsters may struggle to get false credit cards in the current climate, making them more likely to target their victim's deposit accounts.

Read the article

  Market Research
The “Big Picture” of Insider IT Sabotage Across U.S. Critical Infrastructures
CERT A study by the U.S. Secret Service and CERT on insider perpetrator behavior can be utilized for improving Intellinx rules effectiveness

A study conducted by the U.S. Secret Service and the Carnegie Mellon University Software Engineering Institute CERT Program analyzed 150 insider cyber crimes across U.S. critical infrastructure sectors. Insider IT sabotage includes incidents in which the insider’s primary goal is to sabotage some aspect of the organization or direct specific harm toward an individual. This report describes seven general observations about insider IT sabotage based on empirical data and study findings. One of the observations is that termination or demotion may cause the insider to take technical actions to set up and carry out an attack, possibly using previously acquired unknown access paths.

Organizations that utilize Intellinx for monitoring and profiling insiders' behavior may utilize the information presented in this research to improve the effectiveness of Intellinx rules. For example, submitting information from the corporate Human Resources system to Intellinx on termination or demotion of employees may initiate a process within Intellinx to automatically refine the thresholds of business rules for generating alerts on the behavior of these specific individuals, which pose a much higher threat.

Read the report

ID Theft Red Flags: Two-Thirds of Institutions Unprepared to Comply
BankInfoSecurity A new study by TowerGroup, a Boston-based financial analyst firm

"Of those institutions asserting that they are fully compliant, I only see about one-third of U.S. financial institutions being ready on November 1," says TowerGroup's George Tubin, Senior Research Director, Delivery Channels and Financial Information Security.

Many institutions already believe they are compliant because they implemented ID theft-prevention measures from previous regulations, according to a new study by TowerGroup, a Boston-based financial analyst firm. These institutions think they merely have to document current procedures to meet the terms of the ID Theft Red Flags Rule. But TowerGroup asserts that these institutions must do far more than "document documentation."

Read the article (requires free registration)


Thanks for taking the time to read our Newsletter!
Any questions, ideas or comments will be welcomed at Intellinx@adventone.com.au

For more information or comments, please contact

Jim Wagstaff
Client Executive
Advent One Pty Ltd

Phones: +61 3 9626 5963 
             +61 418 390 212
Email: jim.wagstaff@adventone.com
Web: http://www.adventone.com.au/compliance.jsp

In This Issue
IT wary of insider attacks as economy slows down
Fraud Risk 'Rises' During Crunch
The “Big Picture” of Insider IT Sabotage Across U.S. Critical Infrastructures
ID Theft Red Flags: Two-Thirds of Institutions Unprepared to Comply

Useful Links
Intellinx Web Site
Intellinx FAQ

Sign Up
Sign Up Not Officially Subscribed? Sign up here

Advent One Pty Ltd
Level 10, IBM Tower
60 City Road
Southbank
Victoria 3006 Australia

Click here to unsubscribe