Weak link in cybersecurity: The human element
Friday - 7/8/2011, 6:25pm EDT
Andy Purdy, chief cybersecurity strategist at Computer Sciences Corporation
But one vulnerability is about the same today as it was at the down of hacking: the human element. Whether it's because we're in a rush, or we're naive, or we're just plain lazy, attackers know they can use various forms of what's sometimes called social engineering to use an organization's own employees against it.
Witness a test conducted by the Homeland Security Department earlier this year. They covertly scattered USB drives in agency parking lots to see what employees would do if they found them. According to Bloomberg News, 60 percent of the employees who found the drives plugged them into office computers. That figure went up to 90 percent if the drive had an agency logo on it.
Andy Purdy, chief cybersecurity strategist at Computer Sciences Corporation, discusses the USB hack and other ways hackers can find unwitting accomplices among an agency's own workforce.
This story is part of Federal News Radio's daily Cybersecurity Update. For more cybersecurity news, click here.


