Home > Ask the Security Experts > Questions & Answers > Should a national cybersecurity strategy include offensive botnets?
Ask The Security Expert: Questions & Answers
EMAIL THIS

Should a national cybersecurity strategy include offensive botnets?

Sherri Davidoff, featured expert EXPERT RESPONSE FROM: Sherri Davidoff, featured expert

Pose a Question
Other Security Categories
Meet all Security Experts
Become an Expert for this site
>
QUESTION POSED ON: 11 April 2009
Recently, some U.S. government officials called for offensive technology, even offensive botnets, in the interest of national cybersecurity strategy and defenses. Is that idea realistic, and what kinds of offensive cybersecurity tactics are the most logical and ethically acceptable?

>
Cane toads were introduced in Australia in 1935 in order to combat the cane beetle and preserve sugar cane crops. Unfortunately, the plan backfired, and cane toads are now more of a nuisance than cane beetles ever were. Offensive botnets are a similarly terrible idea.

Right now all industries, including the military, have very serious security problems. Recently the Department of Defense was infected with a USB virus, the Air Force traffic control system was breached, and attackers broke into the Joint Strike Fighter project network and stole terabytes of sensitive data. Information security is such a new and rapidly changing industry that there are no established, well-tested standards for creating secure infrastructures (as has been established with, say, building codes). Very few organizations have the resources required to launch organized, well-funded, constantly-monitored information security infrastructures. Even those that do still suffer security breaches.

The Internet is an environment no one controls or understands right now. Government entities -- even those that control very powerful tools -- are subject to the same information security problems as everyone else, and there are no easy solutions. To introduce a new, powerful, distributed weapon without the knowledge or resources to fully control it, would be foolish. An offensive botnet itself would be an especially coveted target for attackers. In the current environment, there is a high risk that any offensive cybersecurity technology would be compromised, misused or abused.

A national cybersecurity strategy would be more effectively improved if our government and critical industries were to consistently implement effective security practices, such as routine patching, monitoring and two-factor authentication. Most security breaches result from known flaws or weak account management, and can easily be prevented with careful, routine maintenance and attention. These remedies aren't as exciting as offensive botnets, but safety isn't supposed to be exciting.


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Find Security Solutions for Your Business
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts