Most Popular Stories
Events
- Register for IT Roadmap Dallas 2010
September 14 — Dallas Convention Center - Northwestern University Master of Science in Information Systems (MSIS)
- SharePoint Technology Conference
October 20 - 22 — Boston, MA - Register for The Security Standard 2010
September 13 - 14 — New York, NY
Sponsored Links
HOT TOPICS >> Q2 Earnings Roundup | Cloud Computing | Tablets | Security Vulnerabilities and Exploits
INDUSTRY >> Healthcare IT | Government IT | Financial Services IT | Biotech IT | Compliance IT
Free Newsletter
Latest News
Popular Topics
Whitepapers
- Whitepaper: Integrated Analytics and WCM Can Improve Performance & ROI
- Durable Smart Devices for Mobile Field Forces: Selection and Evaluation Criteria
- 5 Must Haves in your Information Management Strategy
- Cloud Computing: How To Make Your Own Silver Lining
- Enterprise Digital Assistant Leverage in the Emerging Mobile Enterprise
- Reporting 2.0 – The next evolutionary step in web based business reporting
We never sell or give away your contact information. Our reader's trust comes first.
Gartner: VMs are less secure than non-virtual counterparts
Citing new research, Gartner announced that 60 percent of virtual servers are less secure than the physical ones that they replace. The situation is expected to remain constant through 2012 before falling to 30 percent in 2015. Gartner warns that one of the causes has to do with the fact that many virtualization deployment projects are happening without the involvement of the information security team, at least not in the initial architecture and planning stages.
Indeed, the issue is not related to virtualization being inherently insecure, says Neil MacDonald, vice president and Gartner fellow. MacDonald noted however that, "most virtualized workloads are being deployed insecurely. The latter is a result of the immaturity of tools and processes and the limited training of staff, resellers and consultants."
As a relatively new platform, the use of a hypervisor represents a new threat vector in which new vulnerabilities have not yet been discovered. To better secure the hypervisor, Gartner recommends that it should be kept as "thin" as possible while at the same time tweaking the configuration to harden it against unauthorized modifications.
In addition, Gartner also suggested that "Virtualization vendors should be required to support measurement of the hypervisor/VMM layer on boot-up to ensure it has not been compromised. Above all, organizations should not rely on host-based security controls to detect a compromise or protect anything running below it."
For more on this story:
- check out this article at Network World
- check out this article at IDG News
Related Articles:
SMBs do better virtualization, says VMware
New IEEE standards to ease virtual networking headaches
VMware unveils Amazon-like cloud offering
Application performance set to be next virtualization headache
Virtual server sprawl can kill cost savings
Related Stories
- Security software market to pass $16.5 billion this year
- Citrix unveils new XenClient bare-metal desktop hypervisor
- New IEEE standards to ease virtual networking headaches
- VMware hypervisor still king of the enterprise
- VMware bug opens the door to guest-to-host exploits
- Virtual server sprawl can kill cost savings
- VMware apologizes for ESX bug
- Microsoft to unveil new licensing policies for virtual machines
- Gartner: Seven cloud-commuting security risks
- Critical VMWare vulnerability discovered
Comments
Post new comment
Home
| Subscribe | Advertise | RSS |
Privacy
| Site MapTHE FIERCEMARKETS NETWORKFierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceVoIP | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2010 FierceMarkets. All rights reserved. |
![]() |







