This is the latest news on
This is the latest news on IGLOO SECURITY, Inc.
having been reported in press.
This is the latest news on IGLOO SECURITY, Inc. having been reported in press.
Announcement of major security issues of 2012 and security operation trend of 2013 2013.11.26 1491
Announcement of major security issues of 2012 and security operation trend of 2013
- major security issues of 2012 : diversification of security incidents, intellectualization of types of attack, evolution of DDoS attacks, expansion of operation scope as a result of increase in smart public service
- in 2013, simulation exercises and security education will increase to effectively respond to security incidents
December 27th,2012] A leading integrated security management company for next generation, Igloo security (CEO :Lee Deuk-choon, www.igloosec.co.kr) has announced “major security issues of 2012 and security operation trend of 2013” on the basis of years of security experiences and massive threat analysis data.
Igloo security as a leading company in the integrated security management market with some 300 talents and self-developed solutions has provided stable security operation service to a number of public institutions, major companies, financial institutions and educational institutions for a long period of time.
Especially in 2012, numerous national events have taken place including the 18th presidential election, the 19th general election and nuclear security summits which has accordingly raised the increased possibility of threats to security. Security specialist in the country, however, including Igloo Security have done their part in successfully concluding major national events without a hitch through their excellent technology capabilities and in-depth know-how.
Igloo security has selected major security issues of 2012 on the basis of internally summed up statistics and experiences of holding major national events. They were selected on the basis of survey results conducted on security personnel of Igloo Security carrying out actual security operations in major public institutions, financial institutions and large companies and solely focused on domestic security environment.
According to Igloo security, ranging from malicious codes which continuously attack user devices to DDos attacks which do harm to service availability, infringement spectrum has been diversified, which is one of the most conspicuous features out of this year’s security issues. In particular, through physical/ logical net separation, efforts to block expansion of security threats have continued, while a wide variety of infringement attempts including deprivation of authorization using vulnerabilities of web-server and applications existed net boundaries and attempts to dominate and steal information of end-point devices exposed outside have incessantly made.
One of other main issues includes intellectualization of attack methods. Consecutive attacks using average business software like Hangul as an additional path to launch an attack and Zero-day attacks capitalizing on vulnerabilities have increased. Increase in bypass attacks which hide position of attackers through overseas proxy also shows intellectualization of attack methods..
Aggravated DDoS attack is also considered one of the main security issues this year. While ways to infringe on availability through attack on defunct IP addresses have increased, DDoS attacks for political purposes other than pursuing monetary gains have increased as well. In addition, DDOs attacks tend to occur mainly during the nighttime when security status is considered weaker than that of working hours.
Lastly, the possibility of security incidents in the internal network through mobile devices has increased as public service in the public institutions has expanded. As a result, necessity to secure security of a new domain, mobile has been raised and public institutions have been in a hurry to come up with response measures.
Igloo security has predicted security operation trend of 2013 in addition to major security issues this year stated above. Firstly, in 2013 it has expected that simulation exercises to effectively respond to security incidents and education in respect of the latest security threats and related laws/ regulations will increase. In addition, beyond analysis centered on security and network event, growing needs for more comprehensive and conclusive analysis capabilities such as malicious code and web-hacking analysis will occur.
In addition, Igloo Security has forecasted that fixation of customer-tailored response tools and new-found threats to security will be accelerated, while reorganization of emergency response structure and service providence structure as a result of relocation of public institutions to regional areas will take place..
Cho Chang-sub, director of Igloo Security’s service sector was quoted as saying, “Massive data, experience and knowledge of cyber security business accumulated throughout years in public institutions and companies are the core assets of Igloo Security that any other security companies can easily achieve and Igloo Security will continue to come up with counter plans by accurately understanding the latest trend to establish a safe society in the front line of cyber domain.”
※ Summary of main security issues of 2012
1. Diversification of security incidents
2. Intellectualization of attack methods–increase in Web Shell upload attacks and Zero-day attacks(IE, Adobe reader, Oracle JRE, HWP),distribution of malicious code in the type of Key Loger through Hangul update, bypass attacks which hide location of attackers through overseas proxy
3. Advancement of DDos attack–increase in attacks for political purposes using abandoned IP addresses to oppose the government’s policies, DDoS attacks in night-time
4. Expansion of security operation area as a result of increase in public service through mobile devices
※ Summary of 2013 trend of security operation
1. Increase in simulation services to effectively respond to security incidents
2. Increase in security education for employees in respect of already-changed law/system and the latest security threats
3. Requirement for comprehensive and integrated analysis competence including analysis of malicious codes and web-hacking incidents
4. Fixation of customer-tailored response tools and security incidents reflecting new-found threats5. Reorganization of emergency response structure and service support structure as a result of relocation of public institutions to regional areas
|Next||Service contract for system management of National Computing and Information Agency worth KRW 4.9 billion|
|Prev||Positioned to solidify information security consulting|
문의 사항을 남겨주시면 상담을 도와드리겠습니다.
'(주)이글루시큐리티'는 (이하 '회사'는) 고객의 개인정보를 중요시하며, "정보통신망 이용촉진 및 정보보호 등에 관한 법률"을 준수하고 있습니다.
회사는 개인정보취급방침을 통하여 고객이 제공하는 개인정보가 어떠한 용도와 방식으로 이용되고 있으며, 개인정보보호를 위해 어떠한 조치가 취해지고 있는지 알려드립니다.
수집항목 : 이름, 회사명, 이메일, 연락처
회사는 수집한 개인정보를 다음의 목적을 위해 활용합니다.
회사는 개인정보 수집 및 이용목적이 달성된 후에는 예외 없이 해당 정보를 바로 파기합니다.
회사는 원칙적으로 개인정보 수집 및 이용목적이 달성된 후에는 해당 정보를 바로 파기합니다. 방법은 다음과 같습니다.
회사는 이용자의 개인정보를 원칙적으로 외부에 제공하지 않습니다. 다만, 아래의 경우에는 예외로 합니다.
회사는 고객님의 동의없이 고객님의 정보를 외부 업체에 위탁하지 않습니다.
이용자 및 법정 대리인은 언제든지 등록된 자신 혹은 당해 만 14세 미만 아동의 개인정보를 조회하거나 수정할 수 있으며 가입 해지를 요청할 수도 있습니다. 이용자 혹은 만 14세 미만 아동의 개인정보 조회ㆍ수정을 위해서는 ‘개인정보변경’(또는 ‘회원정보수정’ 등)을 가입해 지(동의철회)를 위해서는 “회원탈퇴”를 클릭하여 본인 확인 절차를 거치신 후 직접 열람, 정정 또는 탈퇴할 수 있습니다. 혹은 개인정보관리책임자에게 서면, 전화 또는 이메일로 연락하시면 바로 조치하겠습니다. 귀하가 개인정보의 오류에 대한 정정을 요청하신 경우에는 정정을 완료하기 전까지 당해 개인정보를 이용 또는 제공하지 않습니다. 또한, 잘못된 개인정보를 제3자에게 이미 제공한 경우에는 정정 처리결과를 제3자에게 바로 통지하여 정정이 이루어지도록 하겠습니다. 이용자 혹은 법정 대리인의 요청으로 해지 또는 삭제된 개인정보는 “회사가 수집하는 개인정보의 보유 및 이용 기간”에 명시된 바에 따라 처리하고 그 외의 용도로 열람 또는 이용할 수 없도록 처리하고 있습니다.
쿠키 등 인터넷 서비스 이용 시 자동 생성되는 개인정보를 수집하는 장치를 운영하지 않습니다.
회사는 고객의 개인정보를 보호하고 개인정보와 관련한 불만을 처리하기 위하여 아래와 같이 관련 부서 및 개인정보보호책임자를 지정하고 있습니다.
정부의 정책 또는 보안기술의 변경, 개인정보 위탁업체 등의 변경에 따라 내용의 추가ㆍ삭제 및 수정이 있을 시에는 개정 전에 홈페이지 “소식” 게시판을 통해 고지합니다.
재화나 서비스의 홍보 및 판매 권유, 기타 이와 관련된 목적으로 개인정보를 이용하여 정보주체에게 연락할 수 있습니다.
귀하께서는 회사의 서비스를 이용하시며 발생하는 모든 개인정보보호 관련 민원을 개인정보관리책임자 혹은 담당 부서로 신고하실 수 있습니다.
회사는 이용자들의 신고사항에 대해 신속하게 충분한 답변을 드릴 것입니다.
기타 개인정보침해에 대한 신고나 상담이 필요하신 경우에는 아래 기관에 문의하시기 바랍니다.