Web app security still overlooked

Firms at risk from vulnerabilities in their web sites, according to new report

Written by Phil Muncaster

The need for stronger web application security was once again highlighted today by the release of new research that found 90 percent of firms' web sites contain vulnerabilities that could allow external users to disrupt web services or allow unauthorised access.

The Web Application Security Report 2007, by IT security consultancy NTA Monitor, also found that virtually all organisations tested had at least one low-risk issue that could provide attackers with information such as web server software type and make.

The research is the result of a year's work of testing with the firm's customers, according to NTA marketing manager Sarah Turner.

"The implications of these vulnerabilities will vary in criticality depending on the organisations and the type of sites they have," Turner added. "But some of our customers are banks and charities. If you're dealing with bank account details and credit card data [web app] security should be a high priority."

To improve their web application security, the report recommends that firms ensure their web servers are always up to date with patches.

It also advises that organisations make users use their mouse and keyboard when logging in, to mitigate the threat from keyloggers, and implement account lockout mechanisms after a limited number of failed attempts, in order to avoid “brute force” attacks on accounts.

Advertisement

Enjoyed this article? Help spread the word:

Comments

White papers

Related jobs

More Accounting jobs

Spotlight

Management Consultancy Top 75

21st annual survey shows another £1bn on revenues

bryan clark, chief information officer at kpmg europe

Profile: Bryan Clark, chief information officer at KPMG Europe

Getting the right infrastructure is instrumental in consolidating KPMG’s European...

Apprentices, Arnie and Archos in the latest YP

September issue of Young Professional appraises the year for our...

Find your next job

Find your next job

Advertisement

Salary Checker

Newsletters

Sign up here for the very latest news delivered to your inbox. Choose from the following options:

Search white papers

Search white papers

Advertisement

Have your say

Should fair value accounting be suspended in the wake of the market crisis?
Yes, it's a big part of the problem
No, don't shoot the messenger

Job of the week

More finance jobs

Advertisement

Your next job