Friend and foe: The little-known pact at the heart of cybersecurity – TechRadar
The cybersecurity industry is founded upon two types of competition: that between security vendors and cybercriminal adversaries, and that between the vendors themselves.
Whats unusual about the situation is the way in which these two battlegrounds are connected; to prevent threat actors from infecting devices with malware and infiltrating business networks, cybersecurity vendors often have to establish a temporary truce.
This balance between competition and collaboration is characterized by Jaya Baloo, CISO at antivirus company Avast, as a friendly rivalry that allows for all the largest market players to work hand-in-hand when it is important to do so.
In conversation with TechRadar Pro at MWC 2022, Baloo spoke to the unconventional relationship between vendors in the sector. She insists the cybersecurity community is focused first and foremost on shielding people against attack, and that turning a profit is a secondary consideration.
I dont really care which antivirus youre using, so long as youre using one, she told us. Were still seeing so many people attacked on so many different devices, so our biggest concern is the people who are completely unprotected.
In the coming years, there is expected to be a blending together of various emerging technologies, which will create the foundation for new digital experiences for consumers and businesses.
At MWC 2022, for example, there was plenty of talk about the interplay between 5G, AI, IoT and edge computing, a heady mixture that will enable use cases ranging from driverless cars to autonomous factories and more.
However, this level of interaction between technologies is bound to create headaches for security professionals, noted Baloo, especially if new products and services are not developed with security front-of-mind.
There is an organic and orgasmic coming together of technologies right now, she said. But this will involve an increase in complexity, and complexity is the enemy of security.
In a scenario such as this, cybersecurity companies stand the best chance of shielding customers from attack if they share intelligence on new vectors, vulnerabilities and cybercriminal groups.
Baloo highlighted the work of the Avast threat intelligence team, which publishes regular reports unpacking its discoveries. One recent report analyzed an increase in phishing attacks on Ukrainian companies in the leadup to the Russian invasion, for example, and the previous instalment covered the spike in DDoS hacktivism.
When the threat intelligence team discovers a new malware strain or route of attack, not only does Avast build protections into its own services where possible, but also offers assistance to the victims and alerts the wider community to its findings, Baloo explained.
We work with all the people youd think wed be competing against. Theres a very healthy level of dialogue across the ecosystem, she told us.
Thats why its so much fun; were collaborating with like-minded people to take down the bad guys. I love our threat intelligence work.
Asked whether there are any instances in which Avast would not share intelligence, say, if withholding information had the potential to confer a competitive advantage, Baloo gave us a disapproving shake of the head. When its information about the bad guys, we share. Its as simple as that.
Last year, the cybersecurity news cycle was dominated by the SolarWinds attack and Log4J vulnerability, both of which highlighted the dangers posed by the software supply chain, a source of risk often overlooked by businesses.
Despite the commotion that surrounded both incidents, Baloo told us she expects to see more of the same in 2022, because the necessary lessons have still not been learned.
Supply chain attacks are not going anywhere, she said. The biggest problem is that we dont fully understand our potential points of weakness.
Weve reached a certain level of maturity in terms of the technologies we use, but dont understand how they interlink to create areas of weakness.
This is an issue that affects open source software to the same extent as proprietary services, notes Baloo. The fact that code is available for anyone to pore over does not necessarily mean someone has done so with the requisite level of scrutiny, as Log4j demonstrated.
However, Baloo is optimistic that regulation requiring companies to maintain greater oversight over their software bill of materials (SBOM) could play a role in minimizing risk for their customers.
In the aftermath of the SolarWinds attack, for example, US President Biden put in place an executive order that led to new guidance that requires software vendors to provide a comprehensive SBOM as part of the government procurement process.
The US stopped short of requiring vendors to provide SBOMs to all customers, but the hope is that the practice will become more mainstream and, at the very least, that new regulation will raise the profile of supply chain-related risk.
Not only are cybersecurity companies tasked with anticipating the kinds of attacks that may threaten customers in the short-term, but they must also look further ahead and further afield.
Another developing field of technology expected to have a significant impact on the cybersecurity landscape is quantum computing, which happens to be an additional area of expertise for Baloo, who advises the World Economic Forum on the issue.
Quantum computers solve problems in an entirely different way to classical machines, exploiting a phenomenon known as superposition (whereby subatomic particles exist in multiple states at once) to perform certain calculations many times faster than is currently possible.
Although the worlds most powerful quantum processors currently offer too few quantum bits (qubits) to establish a meaningful advantage over traditional supercomputers, the maturation of quantum computing will create various problems from a security perspective.
Most significantly, large-scale quantum computers will have enough horsepower to break modern cryptography. It is a mistake, therefore, to assume that information protected by encryption today will remain secure for years to come. State-sponsored threat actors may already be collecting large quantities of encrypted data in the hope of one day being able to access it.
Quantum computing will answer fundamental needle-in-the-haystack scientific questions, noted Baloo. But were screwed as soon as we have a quantum computer capable of breaking current encryption.
To enjoy the benefits of quantum computing, we need a new set of cryptographic algorithms that will be unbreakable even with a quantum computer. As a cybersecurity community, we need to have a forward-looking defence, so were ready for these kinds of challenges.
Again, this is a problem on which security companies will have to collaborate closely in the coming years, both to develop new quantum-safe algorithms and push for regulation that ensures the most vulnerable portions of the economy are quantum ready.
In a scenario in which quantum-secure technologies do not develop apace with quantum computers, the foundations of modern cybersecurity will be compromised.
And the clock is ticking, warned Baloo.
Read the original post:
Friend and foe: The little-known pact at the heart of cybersecurity - TechRadar
- Quantum Technologies Forum navigates present and future of quantum at USC - University of Southern California - November 16th, 2024 [November 16th, 2024]
- New 'gold-plated' superconductor could be the foundation for massively scaled-up quantum computers in the future - Livescience.com - November 16th, 2024 [November 16th, 2024]
- Quantum Technologies Could Have 8 Billion of Impact on UK Transport by 2035 - The Quantum Insider - November 16th, 2024 [November 16th, 2024]
- IBM launches R2 Heron processors that performs 5,000 two-qubit gate operations - Inceptive Mind - November 16th, 2024 [November 16th, 2024]
- Rigetti Computing Reports Third Quarter 2024 Financial Results and Business Updates - GlobeNewswire - November 16th, 2024 [November 16th, 2024]
- Qiskit Fall Fest brings the fun to quantum technology - The Lafayette - November 16th, 2024 [November 16th, 2024]
- Quantum computers touted as AI accelerator at Daesung Haegang Science Forum - The Korea JoongAng Daily - November 16th, 2024 [November 16th, 2024]
- IonQ Strengthens Technical Moat with its Latest Series of Issued Patents - Business Wire - November 16th, 2024 [November 16th, 2024]
- RIKEN, NTT, and Amplify Inc. Introduce General-Purpose Optical Quantum Computer - The Quantum Insider - November 12th, 2024 [November 12th, 2024]
- The Incredible Power of Quantum Memory - WIRED - November 10th, 2024 [November 10th, 2024]
- What Is Quantum AI? Everything to Know About This Far-Out Twist - CNET - November 10th, 2024 [November 10th, 2024]
- IonQ to Increase Performance and Scale of Quantum Computers with Photonic Integrated Circuits in Collaboration with imec - Yahoo Finance - November 10th, 2024 [November 10th, 2024]
- Why IonQ Stock Is Skyrocketing Today - The Motley Fool - November 10th, 2024 [November 10th, 2024]
- Weighty Subject: Is The Universe a Giant Quantum Gravity Computer? - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- Massachusetts is launching a new quantum computing project. An expert explains why that's a big deal not just for the state but the world -... - November 10th, 2024 [November 10th, 2024]
- IonQ Strengthens Quantum Computing Capabilities through Partnerships with imec and NKT Photonics - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- Quantum Computing Inc. 3Q Report: Focus on Loss Reduction While Building Partnerships - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- Chasing Impossible Vortices: Supersolid Discovery and the Future of Quantum Technology - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- IonQ and Ansys Partner to Integrate Quantum Computing for Accelerating CAE Simulations and Also to Use Ansys Tools for Designing Ions Quantum... - November 10th, 2024 [November 10th, 2024]
- IonQ to Increase Performance and Scale of Quantum Computers with Photonic Integrated Circuits in Collaboration with imec - Business Wire - November 10th, 2024 [November 10th, 2024]
- Calling All Gamers: Valens Games Reimagination of Gaming for a World With LLM, AI, and Quantum Computing - HSToday - November 10th, 2024 [November 10th, 2024]
- IBM, Guarding Against Tomorrows Threats Today - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- Yonsei University Establishes South Koreas First 127-Qubit Quantum Computing Center for Industry and Research - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- Building the future of chips in the USA - IBM Research - November 10th, 2024 [November 10th, 2024]
- Chinese superconducting quantum computing power sold to overseas client - Global Times - November 10th, 2024 [November 10th, 2024]
- IonQ's Third-Quarter Results: Revenue Guidance Raised Amid Strategic Acquisitions, Partnerships - The Quantum Insider - November 10th, 2024 [November 10th, 2024]
- ASEAN FinTech funding grew more than 10-fold in past decade, GenAI and Quantum Computing to power new era: FinTech in ASEAN 2024 report - Yahoo... - November 10th, 2024 [November 10th, 2024]
- Ansys and IonQ Are Bringing the Power of Quantum to the $10 Billion Dollar Computer-Aided Engineering Industry - Business Wire - November 8th, 2024 [November 8th, 2024]
- Computer Engineering faculty awarded to advance the compilation process in quantum computing - Rochester Institute of Technology - November 8th, 2024 [November 8th, 2024]
- Ansys and IonQ Are Bringing the Power of Quantum to the $10 Billion Dollar Computer-Aided Engineering Industry - StockTitan - November 8th, 2024 [November 8th, 2024]
- Quantum Machines and Nvidia use machine learning to get closer to an error-corrected quantum computer - TechCrunch - November 4th, 2024 [November 4th, 2024]
- Quantum computers are here but why do we need them and what will they be used for? - Livescience.com - November 2nd, 2024 [November 2nd, 2024]
- Rigetti and Riverlane Achieve Real-Time Quantum Error Correction on 84-Qubit System - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- Quantum Computing Announces Strategic Partnerships and Pre-Orders Ahead of 2025 Foundry Opening - Yahoo Finance - November 2nd, 2024 [November 2nd, 2024]
- Where Will IonQ Be in 3 Years? - The Motley Fool - November 2nd, 2024 [November 2nd, 2024]
- In the Fight Against Noisy Quantum Computing, CVaR Proves a Worthy Opponent - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- Riverlane CEO Asks: What Will We Do With Error-Corrected Quantum Computers? - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- Gulf bets on a quantum computing leap - Arabian Gulf Business Insight - November 2nd, 2024 [November 2nd, 2024]
- Fully Operational Rigetti QPU Included in UKs Recently Opened National Quantum Computer Centre - GlobeNewswire - November 2nd, 2024 [November 2nd, 2024]
- Guest EditorialQuantum Computing: A Beacon of Transformation for the Oil and Gas Industry - Society of Petroleum Engineers (SPE) - November 2nd, 2024 [November 2nd, 2024]
- A Race to The End of Time - Brown Political Review - November 2nd, 2024 [November 2nd, 2024]
- Study observes a phase transition in magic of a quantum system with random circuits - Phys.org - November 2nd, 2024 [November 2nd, 2024]
- Securing tomorrow: What you should know about protecting data in the future - Clemson News - November 2nd, 2024 [November 2nd, 2024]
- Heres the paper no one read before declaring the demise of modern cryptography - Ars Technica - November 2nd, 2024 [November 2nd, 2024]
- Rigetti and Riverlane Progress Towards Fault Tolerant Quantum Computing with Real-Time and Low Latency Error Correction on Rigetti QPU - StockTitan - November 2nd, 2024 [November 2nd, 2024]
- NIST approves 14 new quantum encryption algorithms for standardization - Nextgov/FCW - November 2nd, 2024 [November 2nd, 2024]
- ORCA Computing Unveils The PT-2: Delivering Quantum-Enhanced Generative AI Capabilities - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- UK quantum computer cluster opens on site of Cold War atomic "holy of holies" - The Stack - November 2nd, 2024 [November 2nd, 2024]
- D-Wave Announces Appointment of Two New Board Members - Business Wire - November 2nd, 2024 [November 2nd, 2024]
- IonQs Quantum Surge: Ride the Wave or Cash Out? - MarketBeat - November 2nd, 2024 [November 2nd, 2024]
- D-Wave Deemed Awardable Vendor for US Department of Defense Chief Digital and Artificial Intelligence Offices Tradewinds Solutions Marketplace -... - November 2nd, 2024 [November 2nd, 2024]
- Challenges and opportunities in quantum optimization - Nature.com - November 2nd, 2024 [November 2nd, 2024]
- Quantum Computing, Inc. Announces Strategic Partnerships and Pre-Orders Ahead of 2025 Quantum Photonic Chip Foundry Opening - PR Newswire - November 2nd, 2024 [November 2nd, 2024]
- Bridging Cities with Quantum Links in Pursuit of the Quantum Internet - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- Quantum Computing, Inc. Announces Strategic Partnerships and Pre-Orders Ahead of 2025 Quantum Photonic Chip Foundry Opening - StockTitan - November 2nd, 2024 [November 2nd, 2024]
- UK's Newly Opened National Quantum Computing Centre Designed to Push The Boundaries of What is Possible With Quantum - The Quantum Insider - November 2nd, 2024 [November 2nd, 2024]
- Scientists build the smallest quantum computer in the world it works at room temperature and you can fit it on your desk - Livescience.com - October 24th, 2024 [October 24th, 2024]
- No, China Isnt a Decade Ahead of The U.S. in Quantum Computing (Probably) - The Quantum Insider - October 24th, 2024 [October 24th, 2024]
- Quantum Computing, Inc. to Host Third Quarter 2024 Shareholder Call on Wednesday, November 6, 2024 - StockTitan - October 24th, 2024 [October 24th, 2024]
- Quantum Computing, Inc. to Host Third Quarter 2024 Shareholder Call on Wednesday, November 6, 2024 - Quantisnow - October 24th, 2024 [October 24th, 2024]
- One Skyrmion to Rule Them All: Noise Resilience and Data Storage Solutions for Quantum Computing and Spintronics - The Quantum Insider - October 24th, 2024 [October 24th, 2024]
- Plotting the inevitable rise of quantum computing - Business Weekly - October 24th, 2024 [October 24th, 2024]
- The Netherlands to host an EU quantum computer in Amsterdam - DutchNews.nl - October 24th, 2024 [October 24th, 2024]
- Qubits Manipulated on the Fly - Physics - October 24th, 2024 [October 24th, 2024]
- Quantum Computing, Inc. to Host Third Quarter 2024 Shareholder Call on Wednesday, November 6, 2024 - WV News - October 24th, 2024 [October 24th, 2024]
- Scientists build the smallest quantum computer in the world it works at room temperature and you can fit it on your desk - MSN - October 24th, 2024 [October 24th, 2024]
- Scalable Silicon Spin Qubits Achieve Over 99% Fidelity for Quantum Computing with CMOS Technology - The Quantum Insider - October 24th, 2024 [October 24th, 2024]
- Multiverse Computing Expands to US with New San Francisco Office to Drive Quantum AI Adoption - HPCwire - October 24th, 2024 [October 24th, 2024]
- LUCI in The Surface Codes With Drop Outs: Google Quantum AI Researchers Report Framework Could Help Reduce Errors - The Quantum Insider - October 24th, 2024 [October 24th, 2024]
- Chinese scientists claim they broke RSA encryption with a quantum computer but there's a catch - Livescience.com - October 23rd, 2024 [October 23rd, 2024]
- Riverlanes Quantum Error Correction Report: Defining the Path to Fault-Tolerant Computing and the MegaQuOp Milestone - The Quantum Insider - October 23rd, 2024 [October 23rd, 2024]
- Quantum Computing, Inc. Enters Final Stage of Commissioning Quantum Photonic Chip Foundry in Tempe, Arizona - Yahoo Finance - October 23rd, 2024 [October 23rd, 2024]
- Why experts are warning businesses to prepare for quantum now or face critical cyber risks when it arrives - ITPro - October 23rd, 2024 [October 23rd, 2024]
- Quantum Computers Expected to Be Useful by 2026, Survey - IoT World Today - October 23rd, 2024 [October 23rd, 2024]
- ParTec AG and HZDR to Build AI Supercomputer Supporting Research in AI, Quantum Computing, and HPC - The Quantum Insider - October 23rd, 2024 [October 23rd, 2024]
- Pete Shadbolt on Tackling the Challenges of Quantum Computing & Its Future Impact on Everyday Life - The Quantum Insider - October 23rd, 2024 [October 23rd, 2024]
- How to build a quantum computer that's actually useful - Space Daily - October 23rd, 2024 [October 23rd, 2024]
- Quantum Algorithms for Faster Pattern Matching in Genomics and Text Processing, and Data-Intensive Applications - The Quantum Insider - October 23rd, 2024 [October 23rd, 2024]
- 2025 Tech Trends Report: New Insights on IT Investment in AI, Quantum Computing, and Cybersecurity Published by Info-Tech Research Group - PR Newswire - October 23rd, 2024 [October 23rd, 2024]
- Next Quantum Computer Comes To Netherlands - Mirage News - October 23rd, 2024 [October 23rd, 2024]