Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Protection

Disturbing Pattern in Workplace Social Networking

Social Networking in the Workplace – Workplace Social Networking creating security issues for corporate networks

The use of social networks by workers on the job has increased again, with usage patterns that may create new security issues for corporate networks.

Social Networking in the Workplace – Workplace Social Networking creating security issues for corporate networks

The use of social networks by workers on the job has increased again, with usage patterns that may create new security issues for corporate networks.

Trend Micro’s annual survey on such usage indicates that globally, social networking at the workplace has steadily risen from 19 percent in 2008 to 24 percent in 2010. More alarming is the fact that the users most likely to visit social networking sites do so on laptops (29 percent versus 18 percent for desktops), and laptop users who can connect to the Internet outside of company networks are more likely to share confidential information via instant messages, Web mail and social media than those who are always connected to a company network.

According to Trend Micro’s analysis, workers are likely to succeed in thwarting prohibitions on workplace visits to social networks. A better policy that prohibition, the company argues, is to allow such visits, because they are then more likely to be made over corporate networks that can cope with threats.

There is no question that threats exist and that social networks have become an viable malware distribution platforms. KOOBFACE alone, the “largest Web 2.0 botnet,” controls and commands around 51,000 compromised machines globally.

David Perry, Trend Micro’s global director of education, summed up the situation as follows: “Most companies’ concerns around social networking in the office center around the loss of employee productivity. What they may not realize is that many social networking sites are built on interactive technologies that give cybercriminals endless opportunities to exploit end users, steal personal identities or business data, and corrupt corporate networks with malware.”

Related Reading: New Compliance Tool Helps Companies Utlizing Social Media

Related Reading: Report Shows Heavily Regulated Industries Letting Social Networking Apps Run Rampant

Advertisement. Scroll to continue reading.
Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

Shaun Khalfan has joined payments giant PayPal as SVP, CISO.

UK cybersecurity agency NCSC announced Richard Horne as its new CEO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Data Protection

While quantum-based attacks are still in the future, organizations must think about how to defend data in transit when encryption no longer works.