Internet Security: An Optimist Gropes For Hope presented at 12th USENIX Security Symposium 2003

by William R. Cheswick,

Summary : By all accounts the Internet has grown more dangerous since its inception. Most of the expected attacks have appeared and become commonplace. Increasingly sophisticated malware has learned to hide in the deep bushes of verdant, wild software. Users can't keep up with these dangers, and it is hard enough for the professionals. Yet there are indications that things can get better. Many important Web sites get security right enough to support large business models. Those who run our most secure networks report that they repeatedly pass the pop quizzes of the attack du jour. We can use crypto when we want to, and many do. We can do better, and many of us are starting to.