{"id":17284,"date":"2019-12-23T10:52:17","date_gmt":"2019-12-23T18:52:17","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2019\/12\/23\/news-11020\/"},"modified":"2019-12-23T10:52:17","modified_gmt":"2019-12-23T18:52:17","slug":"news-11020","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/12\/23\/news-11020\/","title":{"rendered":"Parting thoughts 5: bringing the good news"},"content":{"rendered":"<p><em>At the end of this month, I will step down as Editor of Virus Bulletin. Before doing so, I have been sharing some &#8216;parting thoughts&#8217; in five blog posts, based on my experience working in the IT security industry. This is the final post in the series, the previous ones were: &#8216;<a title=\"Parting thoughts 1: cybersecurity as a social science\" href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-1-cybersecurity-social-science\/\">cybersecurity as a social science<\/a>&#8216;, &#8216;<a title=\"Parting thoughts 2: the need for education in security\" href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-2-need-education-security\/\">the need for education in security<\/a>&#8216;, &#8216;<a title=\"Parting thoughts 3: taking security seriously\" href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-3-taking-security-seriously\/\">taking security seriously<\/a>&#8216; and &#8216;<a title=\"Parting thoughts 4: the big picture\" href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-4-big-picture\/\">the big picture<\/a>&#8216;. <\/em><\/p>\n<p>IT security is about things that break, and thus a lot of security news is bad news. Not all news is bad though: sometimes botnets are taken down, cybercriminals get arrested and security technologies such as HTTPS see ever wider adoption. There is also, however, a more subtle kind of good security news that we often fail to see.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" style=\"display: block; margin-left: auto; margin-right: auto;\" src=\"https:\/\/www.virusbulletin.com\/files\/cache\/4fbbff3d8e468ce28b820ccc01d6a762_f4447.jpg\" alt=\"good-news-cropped.jpg\" width=\"200\" height=\"128\" \/><\/p>\n<p>One example is <em>Android<\/em> malware. As anyone working in security will tell you, there is a lot of it. And a lot of <em>Android<\/em> malware is found on the official <em>Google Play<\/em> store, sometimes exceeding a million downloads.<\/p>\n<p>But if you look deeper, you will notice that most of that malware performs relatively harmless activities such as click-fraud or showing unwanted ads. Experts may argue that it could have done worse things, but it doesn&#8217;t, and that is crucial. Stealing private data, for example, is quite hard for <em>Android <\/em>malware to do because of the <em>Android<\/em> security model and would be a lot easier to detect.<\/p>\n<p>To some extent, the same applies to botnets that mine for cryptocurrencies on <em>Windows<\/em> machines: the fact that they don&#8217;t engage in more harmful activities should be telling. Here, something else plays a role too: many of these botnets reside on older, often unpatched or underpatched devices typically in lower-income countries. Large-sized <em>Windows<\/em> botnets in high-income countries may be a thing of the past and, maybe in the not too distant future this will be the case globally too.<\/p>\n<p>Vulnerabilities often make the news, and here too the news is often good in a subtle way: &#8216;zero-click exploits&#8217; have become quite rare. Most vulnerabilities merely break the security model, but still require a special condition to be met (such as code execution, a man-in-the-middle position or a user opening a link).<\/p>\n<p>Earlier this year I gave a talk on &#8216;Mitigation&#8217;, the main point of which was that we are really bad at stopping attacks, but surprisingly good at mitigating them. We don&#8217;t give ourselves enough credit for this and I believe it would help our understanding of the threat landscape if we did.<\/p>\n<p>\u00a0<\/p>\n<p>outertext<br \/><a href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-5-bringing-good-news\/\" target=\"bwo\" >https:\/\/www.virusbulletin.com\/rss<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/www.virusbulletin.com\/files\/cache\/4fbbff3d8e468ce28b820ccc01d6a762_f4447.jpg\"\/><br \/>                                 In the final of a five-part series of blog posts, departing VB Editor Martijn Grooten argues for more emphasis on the good news in security, especially that which is more subtle.                <\/p>\n<p>                 <a href=\"https:\/\/www.virusbulletin.com\/blog\/2019\/12\/parting-thoughts-5-bringing-good-news\/\">Read more<\/a>                                <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[23177,10378,23176],"tags":[],"class_list":["post-17284","post","type-post","status-publish","format-standard","hentry","category-magazine","category-security","category-virusbulletin"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17284","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=17284"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17284\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=17284"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=17284"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=17284"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}