Wednesday 23 September 2015

Cloud Computing - Is It Safe?

There are essentially two kinds of computing environments:

On-premises computing is the traditional form of computing in which you or your company own and manage your own systems. All the applications you use, as well as your data files, are in your own computers on your own premises either on individual PCs or on an in-house local area network.

In cloud computing, by contrast, your applications and files are held remotely on the Internet (in cyberspace) in a network of servers which is operated by a third party. You access applications and work on your files from your PC simply by logging on to the network.

Cloud services are provided by cloud-hosting providers, companies such as Google, Amazon, Oracle Cloud, Rackspace, Microsoft Azure, and so on.

There is nothing fundamentally new about the concept of cloud services. If you are using Gmail, Hotmail or yahoo for your emails, you are using cloud services and probably have been for years.

What is relatively new is the types of services that are being offered in a cloud-environment. These now go far beyond email to cover all the IT services that an on-premises computing environment would deliver, such as accounting, marketing, human resources and so on.

Advantages of cloud computing

Cloud computing has several advantages over on-premises computing:

1) You can run an application or access your files from anywhere in the world using any computer.

2) Cloud computing is cheaper.

3) You need less technical knowledge.

4) Cloud computing delivers a better performance.

5) Cloud computing is eminently scalable. Increasing the number of applications you use or the amount of data you store does not require a heavy investment; you only need to advise the cloud-hosting adviser.

Given these advantages it no surprise that over the last few years there has been a widespread rapid adoption of cloud computing. Analysts estimate that the growth rate of all spending on cloud IT will soon be at least four times faster than the growth rate of all spending on on-premises computing.



Indeed, analysts are expecting the annual growth rate of spending on cloud computing to average 23.5% compound from now until 2017. In addition, by that year spending on cloud services will probably account for one-sixth of all spending on IT products, such as applications, system infrastructure software, and basic storage.

Given the rapid growth in cloud computing, the big question, of course, is whether cloud computing is safe. Is it more or less safe than on-premises computing?

The short answer is that cloud computing is not less safe than on-premises computing. However, the threats are somewhat different in nature, though they are converging.

Threats

Generally speaking, there are six major threats to computer security. These are:

Malware - is malicious software such as viruses, trojans, worms, spyware and zombies. Malware is installed on either a PC in your home-office or a cloud-computing server. Where malware gives control of a network of computers to a malicious group (eg, to send spam) it is called a botnet.

Web app attack - is an attack in which web-based applications are targeted. It is one of the most common forms of attack on the Internet.

Brute force attack - works by trying all possible combinations of letters or numbers in order to discover a cipher or secret key. For example, you could crack a password by repeatedly trying to guess it. Modern computing power and speed makes brute force a viable form of attack.

Recon - is reconnaissance activity that is used to choose victims that are both vulnerable and valuable.

Vulnerability scan - is an exploit using a special program to access weaknesses in computers, systems, networks or applications in order to generate information for planning an attack.

App attack - is an attack against an application or service that is not running on the web, ie the program will be on a computer somewhere.

To know Cloud Computing Winter Internship 2015, Please visit http://www.wintertraining.in

Honeypots

A honeypot is a decoy website, network, system or application that has been intentionally designed to be vulnerable to attack. Its purpose is to gather information about attackers and how they work.

Honeypots allow researchers to:

collect data on new and emerging malware and determine trends in threats
identify the sources of attacks including details of their IP addresses
determine how attacks takes place and how best to counteract them
determine attack signatures (pieces of code that are unique to particular pieces of malware) so that anti-virus software can recognise them
develop defences against particular threats
Honeypots have proved to be invaluable in erecting defences against hackers.

The Spring 2014 Cloud Security Report

Alert Logic provides security services for both on-premises and cloud computer systems. The company began issuing cloud security reports in 2012. Its Spring 2014 Cloud Security Report covers the year ending 30th September 2013.

This report is based on a combination of real-world security incidents experienced by Alert Logic's customers and data gathered from a series of honeypots the company set up around the world.

The report throws some interesting light of the security of on-premises and cloud computing relating to the company's customers. Here are some of the highlights:

[1] Computing is shifting more and more from on-premises to cloud-based computing and the kinds of attacks that target on-premises systems are now targeting cloud environments. This is probably due to the increasing value of potential victims in the cloud.

[2] Although attacks on cloud environments are increasing in frequency, the cloud is not inherently less secure than traditional on-premises computing.

[3] The frequency of attacks in both on-premises and cloud computing has increased for most types of threats, though for a few types of threats it has fallen. Here are the main points of comparison between both computing environments:

The most prevalent types of attacks against on-premises customers were malware attacks (including botnets) at 56% during the six months ending 30th September. At only 11%, these attacks were much less frequent among cloud customers. However the number of cloud customers experiencing these attacks is rising quickly, more than doubling in one year.

Attacks using brute force increased from 30% to 44% of cloud customers but remained stable in on-premises environments at a high 49%. Vulnerability scans jumped dramatically in both environments. Brute force attacks and vulnerability scans are now occurring at almost the same rates in on-premises and cloud environments.

Web app attacks are more likely among cloud customers. However these attacks are down year-on-year in both cloud and on-premises computing, as are recons. App attacks increased slightly in both categories of customers.

The most prevalent types of attacks vary between on-premises and cloud environments. In on-premises computing the top three were malware (56% of customers), brute force (49%) and vulnerability scans (40%), while in the cloud the most common incidents were brute force, vulnerability scans and web app attacks, each of which affected 44% of customers.

[4] The incidents involving Alert Logic's cloud-based honeypots varied in different parts of the world. Those hosted in Europe attracted twice as many attacks as honeypots in Asia and four times more than honeypots in the USA. This may be due to malware 'factories' operating in Eastern Europe and Russia testing their efforts locally before deploying them throughout the world.

[5] Chillingly, 14% of the malware collected by honeypots was not detectable by 51% of the world's top antivirus vendors. Even more frightening: this was not because these were brand-new malware; much of the malware that was missed was repackaged variations of older malware and thus should have been detected.

The report concluded with a statement that security in the cloud is a shared responsibility. This is something that individual entrepreneurs as well as small and medium sized enterprises tend to forget.

In cloud computing, the service provider is responsible for the basics, for protecting the computing environment. But the customer is 100% responsible for what happens within that environment and, to ensure security, he or she needs to have some technical knowledge.

Article Source: http://EzineArticles.com/8520494

Monday 21 September 2015

5 Benefits to Be Obtained From Internship Trainings

Read on to know how Winter Internship trainings help students grab better jobs in the field of information technology, CSE Branch Students.
Present software companies are looking for candidates who are professionally trained. Due to this reason, most of the students are opting for industrial training courses. The technical courses are offered on a wide array of subjects such as Cloud Computing, Openstack, Hybrid Cloud Computing, BigData Hadoop, Linux, Python, Redhat, RHCA, RHCE, Cisco, software testing, search engine optimization, web designing, Java, PHP and a lot more. These are the most up-to-the-date subjects that are in wide use today.

Generally, the Winter  industrial trainings are offered for 4 Weeks, 6 Weeks, 2 Month. Within this period they gain in-depth knowledge on the respective subjects opted by them. On completion of the programme, students are offered training certificates. However, not all training centers offer high quality training to the students. For this reason it is important to choose a center that possesses reputation in the market of education.


For the career enthusiasts who are willing to establish a prosperous career in the field of IT, many IT training centers are offering winter training in Jaipur. The training programmes have been designed by following latest study materials. Through such trainings a lot of students have been benefitted and today they are successfully placed at the top IT companies of the world, a statistical report shows.


  1. Development of work attitude:
  2. Professional experience always matters when it comes to a job. 4 Weeks, 6 Weeks, 2 Month Winter Internship programmes are arranged to help students gain a pre-professional experience. This 4 Weeks, 6 Weeks, 2 Month Winter Training 2015 help students to inherit the professional skills required to work in a business organization.
  3. Improve communication skills:
  4. The training helps students to improve their communication skills as they have to communicate with other employees as well as clients on different work related issues.
  5. Understanding a professional environment:
  6. After completing academic level, students are unaware of the nature of work allotted to employees at different IT companies. Through internship trainings, students are made acquainted with the real time work that prevails in a professional environment.
  7. Develops interpersonal skills:
  8. The training programmes help students to develop interpersonal skills. Development of interpersonal skills help students get better jobs in the long run.
  9. Increases workability:
During the period of winter training in Jaipur, Rajasthan, you will learn how to work under strict deadlines, meet targets and coordinate with your team members. This will automatically increase your workability and you will be able to manage workloads easily.


LinuxWorld is a popular training center offering 4 Weeks, 6 Weeks, 2 Month Winter internship courses to the students who aspire to get a lucrative job in IT. The courses are offered online to help working individuals to manage work and study simultaneously.