Workplace smoke ban a 'gift' for hackers
When is a backdoor really a backdoor?
Posted in Software & Security, 15th February 2007 16:46 GMT
Business whitepaper - Virtualization: the four key cost savings
Workplace smoking bans may be good for workers' health, but could open the back door to hackers.
In a recent social engineering test undertaken by UK-based security consultancy NTA Monitor, a tester was able to easily gain access to a corporate building through a back door that was left open for smokers. Once inside, the penetration tester was able to easily bluff his way into a meeting room, claiming the IT department had sent him. Even without a pass, he gained access unchallenged and was then able to connect his laptop to the firm's VoIP network via a telephone connection point.
NTA Monitor technical director Roy Hills comments: "It used to be that companies 'left the back door open' in terms of internet security. Now they are literally leaving their buildings open to accommodate smokers.
"Once inside a corporate building, an attacker can use social methods on employees to gain access to restricted areas and information unless a rigid staff pass system is in place," he added.
Smoking will be banned in all indoor public spaces in the UK in July 2007. In many other European countries, such as Spain, workplace smoking restrictions have already been applied. ®
Business whitepaper - Virtualization: the four key cost savings
An improved architecture for high-efficiency, high-density data centers
Ten cooling solutions to support high-density server deployment [WP42]
The Business Case for Virtualization
Preventive Maintenance Strategy for Data Centers [WP 124]

Global notebook sales finally beat desktops
Dell restructuring puts 2,000 Limerick jobs under threat
PS2 the most played console of 2008
Steve Jobs dismisses death rumours