Risk
10/27/2010
01:09 PM
50%
50%

Americans Maximize Social Network Security

The U.S. leads the world in restricting the personal information that people can access on their Facebook, Twitter, and other pages, reports Unisys study.

Best Mobile Apps For Busy Professionals
(click image for larger view)
Best Mobile Apps For Busy Professionals
Social networking users in the United States, more than any other country, limit the personal information they post, and set privacy settings to restrict who can view their information.

That finding comes from the recently released Unisys Security Index, a bi-annual study conducted since 2007 by market research company Lieberman Research Group, which surveyed 10,575 consumers in 11 countries, including 1,000 in the United States.

In particular, 80% of social networking users in the United States said that they regularly limited their personal information, ahead of Brazil (79%), Germany (71%), Britain (67%), Netherlands (63%), Italy (60%), and Spain (52%).

Why do U.S. residents restrict more of their information? "It could be because we have better reporting on social media issues here, because Facebook is a U.S.-based company," said Patricia Titus, global chief information security officer at Unisys.

The survey also found that 61% of Americans believe that the president should have the authority to take control of, or shut down, portions of the Internet in response to a malicious cybersecurity attack launched by a foreign government.

Looking at all countries studied, Brazil emerged as the country most concerned with overall security, while the Netherlands was least concerned. Across all 11 countries, meanwhile, consumers most worry, security-wise, about bank card fraud.

Interestingly, Americans' computer security worries continue to decline. "The survey showed that there's a downward trend in people's overall view of security," encompassing Internet, personal, national, and financial security, said Titus. Since the bi-annual study began in 2007, she said, "this is the lowest we've seen in terms of people's concern in the four areas."

In particular, while 73% of U.S. respondents said that they regularly update their antivirus software, 34% said they're "not concerned" about viruses or spam. In addition, consumers who were seriously concerned about the security of online banking and shopping dropped from 43% in February 2010 to 34% in August 2010.

But Titus warned that consumers should address some of the security habits revealed by the survey. "It appears that not many people -- only 37% -- use a password on their mobile devices," she said. "That indicates that mobile devices haven't made the leap to the type of protection that we're seeing on other types of devices, like workstations. It's interesting, because you'd think people would be more concerned about the mobile device, because of the processing power that's available to them."

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-1449
Published: 2014-12-25
The Maxthon Cloud Browser application before 4.1.6.2000 for Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses the history API.

CVE-2014-2217
Published: 2014-12-25
Absolute path traversal vulnerability in the RadAsyncUpload control in the RadControls in Telerik UI for ASP.NET AJAX before Q3 2012 SP2 allows remote attackers to write to arbitrary files, and consequently execute arbitrary code, via a full pathname in the UploadID metadata value.

CVE-2014-3971
Published: 2014-12-25
The CmdAuthenticate::_authenticateX509 function in db/commands/authentication_commands.cpp in mongod in MongoDB 2.6.x before 2.6.2 allows remote attackers to cause a denial of service (daemon crash) by attempting authentication with an invalid X.509 client certificate.

CVE-2014-7193
Published: 2014-12-25
The Crumb plugin before 3.0.0 for Node.js does not properly restrict token access in situations where a hapi route handler has CORS enabled, which allows remote attackers to obtain sensitive information, and potentially obtain the ability to spoof requests to non-CORS routes, via a crafted web site ...

CVE-2014-7300
Published: 2014-12-25
GNOME Shell 3.14.x before 3.14.1, when the Screen Lock feature is used, does not limit the aggregate memory consumption of all active PrtSc requests, which allows physically proximate attackers to execute arbitrary commands on an unattended workstation by making many PrtSc requests and leveraging a ...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Join us Wednesday, Dec. 17 at 1 p.m. Eastern Time to hear what employers are really looking for in a chief information security officer -- it may not be what you think.