Risk identification
With the advent of information dematerialization and appropriation of the Internet by all of us, companies and industries face many internet-related risks (pirates, viruses, worms, trojan horses) and expose themselves to four kinds of menaces:
- Altered data: the essential corporate data (accounting, R&D, emails, contacts, etc.) are partially or totally destroyed and compromise the company’s survival.
- Disclosed data: some confidential documents are revealed to unauthorized users. These documents may be made public or sold (industrial espionage).
- Unavailable data: the information system is paralyzed (often with “Denial of Service”-like attacks), slowing the company down in a significant way and creating a business incapacity and a drop of earnings.
- Remote-controlled takeover: the information system may be compromised and remote-controlled without users’ knowledge. Those computers become “zombies” within a “bot network” (generally, a “bot network” consists of several thousands automatically-hacked computers). The main goal with such a network is to set up DoS attacks targeting predefined devices or generating heavy internet slowdown. The company may be held criminally responsible.
Mesca – 2005, September 9 – 4:07pm
French
– 421 reads

