Enterprises Confront The Ugly Truth Of Hidden Malware In Their Networks

Trend Micro security threat assessments help enterprises discover stealthy malware slipping through their security systems.

July 8, 2009

4 Min Read
NetworkComputing logo in a gray background | NetworkComputing

CUPERTINO, Calif., July 7 /PRNewswire/ -- Enterprises that have invested time, money and resources into implementing top-tier security products for their organizations were confronted with reality when they took advantage of the Trend Micro security threat assessment - a risk-free, 2-week security assessment that allows Trend Micro to monitor an enterprise's security environment and help them discover how, why and where security threats happen.

Not as Secure as They Think

Enterprises that thought they were secure discovered otherwise: The security threat assessment uncovered active malware and threats that had slipped through existing security infrastructures, and were residing undetected on corporate networks and endpoints on 100 percent of all participating companies from North America, Latin America, Europe and Asia Pacific. On average, these companies have over 11,000 employees and include those from the finance, heath care, government, education and manufacturing industries.

"The results garnered from our security threat assessment prove that as threats become more numerous and sophisticated, conventional security technologies such as endpoint antivirus, Web security gateways, email security gateways and IPS solutions are struggling to keep up," said Jai Balasubramaniyan, director of product management and marketing. "The types of malware we found were more than just a nuisance, they were malicious and designed to steal data."

Trend Micro security threat assessment provides an opportunity for participating enterprises to measure the effectiveness of their current security infrastructure. In just two-weeks, Trend Micro can reveal the answer in a customized executive report that identifies any security gaps and pinpoints exactly where the malware resides.Between October 2008 and June 2009, Trend Micro performed over 100 assessments on enterprises worldwide and discovered that:

  • 100 percent of them were infected with active malware.

  • 50 percent had at least one data-stealing malware hidden in their networks.

  • 45 percent had multiple data-stealing malware infections.

  • 72 percent had at least 1 IRC bot.

  • 50 percent had 4 or more IRC bots.

  • 83 percent had at least 1 malware Web download.

  • 60 percent had more than 20 malware Web downloads.

  • 35 percent had at least 1 network worm.(1)

What's Causing These Security Gaps?

While traditional security solutions are critical for a first line of defense, organizations still face a number of security gaps that are continuously exploited by modern-day malware. Today's stealthy malware infiltrate corporate networks for a variety of reasons:

  • Mobile users who go on and off the network with infected devices that compromise corporate networks.

  • Inadequate remote office security, lack of onsite IT personnel, and lax policy enforcement impact security.

  • Increased usage of easily exploited technologies such as P2P, file sharing, streaming media, and instant messaging.

  • Unmanaged and unpatched endpoints such as legacy systems, contractors and guest laptops, USB devices, and other portable and mass storage devices.

Discover How, Why, and Where Threats Occur

Trend Micro security threat assessment utilizes a non-invasive, listen-only appliance that doesn't interfere with network operations.

Trend Micro engineers quickly install the assessment appliance at the network layer on the core switch where it monitors network traffic to detect resident malware activities, such as botnets. The appliance also monitors inbound email and Web traffic to detect potentially infected messages and suspicious Web sites.

Traffic received by the appliance is analyzed using a combination of Trend Micro's scanning engines and technologies and integrates with the Trend Micro Smart Protection Network, a next-generation, cloud-client security architecture that provides a unique approach to blocking viruses, spyware, spam, and Web threats before they reach business networks

At the end of the risk-free, 2-week assessment, Trend Micro will issue an enterprise-specific report that:

  • Examines potential vectors of infection.

  • Identifies malware, information stealers, affected assets, infection sources, and disruptive applications.

  • Pinpoints specific problem areas by IP address

  • Increases visibility into the company's security network for better understanding of how the threats occurred, where they entered the network, and how to fill security gaps.


  Part of Trend Micro(TM) Enterprise Security

Trend Micro security threat assessment is part of Trend Micro Enterprise Security - a tightly integrated offering of content security products, services and solutions which is powered by the Trend Micro(TM) Smart Protection Network(TM). Trend Micro Enterprise Security delivers immediate protection from emerging threats while greatly reducing the cost and complexity of security management.
To learn more about Trend Micro Threat Management Services and to get started with a security threat assessment, contact a Trend Micro Enterprise sales representative or visit us online at http://go.trendmicro.com/thinkagain/form.php.
About Trend Micro:
Trend Micro Incorporated, a global leader in Internet content security, focuses on securing the exchange of digital information for businesses and consumers. A pioneer and industry vanguard, Trend Micro is advancing integrated threat management technology to protect operational continuity, personal information, and property from malware, spam, data leaks and the newest Web threats. Visit TrendWatch at www.trendmicro.com/go/trendwatch to learn more about the latest threats. Trend Micro's flexible solutions, available in multiple form factors, are supported 24/7 by threat intelligence experts around the globe. Many of these solutions are powered by the Trend Micro Smart Protection Network, a next generation cloud-client content security infrastructure designed to protect customers from Web threats. A transnational company, with headquarters in Tokyo, Trend Micro's trusted security solutions are sold through its business partners worldwide. Please visit www.trendmicro.com.
(1) Data based on 60 assessments
Source: Trend Micro Incorporated 

SUBSCRIBE TO OUR NEWSLETTER
Stay informed! Sign up to get expert advice and insight delivered direct to your inbox

You May Also Like


More Insights