Friend and foe: The little-known pact at the heart of cybersecurity – TechRadar
The cybersecurity industry is founded upon two types of competition: that between security vendors and cybercriminal adversaries, and that between the vendors themselves.
Whats unusual about the situation is the way in which these two battlegrounds are connected; to prevent threat actors from infecting devices with malware and infiltrating business networks, cybersecurity vendors often have to establish a temporary truce.
This balance between competition and collaboration is characterized by Jaya Baloo, CISO at antivirus company Avast, as a friendly rivalry that allows for all the largest market players to work hand-in-hand when it is important to do so.
In conversation with TechRadar Pro at MWC 2022, Baloo spoke to the unconventional relationship between vendors in the sector. She insists the cybersecurity community is focused first and foremost on shielding people against attack, and that turning a profit is a secondary consideration.
I dont really care which antivirus youre using, so long as youre using one, she told us. Were still seeing so many people attacked on so many different devices, so our biggest concern is the people who are completely unprotected.
In the coming years, there is expected to be a blending together of various emerging technologies, which will create the foundation for new digital experiences for consumers and businesses.
At MWC 2022, for example, there was plenty of talk about the interplay between 5G, AI, IoT and edge computing, a heady mixture that will enable use cases ranging from driverless cars to autonomous factories and more.
However, this level of interaction between technologies is bound to create headaches for security professionals, noted Baloo, especially if new products and services are not developed with security front-of-mind.
There is an organic and orgasmic coming together of technologies right now, she said. But this will involve an increase in complexity, and complexity is the enemy of security.
In a scenario such as this, cybersecurity companies stand the best chance of shielding customers from attack if they share intelligence on new vectors, vulnerabilities and cybercriminal groups.
Baloo highlighted the work of the Avast threat intelligence team, which publishes regular reports unpacking its discoveries. One recent report analyzed an increase in phishing attacks on Ukrainian companies in the leadup to the Russian invasion, for example, and the previous instalment covered the spike in DDoS hacktivism.
When the threat intelligence team discovers a new malware strain or route of attack, not only does Avast build protections into its own services where possible, but also offers assistance to the victims and alerts the wider community to its findings, Baloo explained.
We work with all the people youd think wed be competing against. Theres a very healthy level of dialogue across the ecosystem, she told us.
Thats why its so much fun; were collaborating with like-minded people to take down the bad guys. I love our threat intelligence work.
Asked whether there are any instances in which Avast would not share intelligence, say, if withholding information had the potential to confer a competitive advantage, Baloo gave us a disapproving shake of the head. When its information about the bad guys, we share. Its as simple as that.
Last year, the cybersecurity news cycle was dominated by the SolarWinds attack and Log4J vulnerability, both of which highlighted the dangers posed by the software supply chain, a source of risk often overlooked by businesses.
Despite the commotion that surrounded both incidents, Baloo told us she expects to see more of the same in 2022, because the necessary lessons have still not been learned.
Supply chain attacks are not going anywhere, she said. The biggest problem is that we dont fully understand our potential points of weakness.
Weve reached a certain level of maturity in terms of the technologies we use, but dont understand how they interlink to create areas of weakness.
This is an issue that affects open source software to the same extent as proprietary services, notes Baloo. The fact that code is available for anyone to pore over does not necessarily mean someone has done so with the requisite level of scrutiny, as Log4j demonstrated.
However, Baloo is optimistic that regulation requiring companies to maintain greater oversight over their software bill of materials (SBOM) could play a role in minimizing risk for their customers.
In the aftermath of the SolarWinds attack, for example, US President Biden put in place an executive order that led to new guidance that requires software vendors to provide a comprehensive SBOM as part of the government procurement process.
The US stopped short of requiring vendors to provide SBOMs to all customers, but the hope is that the practice will become more mainstream and, at the very least, that new regulation will raise the profile of supply chain-related risk.
Not only are cybersecurity companies tasked with anticipating the kinds of attacks that may threaten customers in the short-term, but they must also look further ahead and further afield.
Another developing field of technology expected to have a significant impact on the cybersecurity landscape is quantum computing, which happens to be an additional area of expertise for Baloo, who advises the World Economic Forum on the issue.
Quantum computers solve problems in an entirely different way to classical machines, exploiting a phenomenon known as superposition (whereby subatomic particles exist in multiple states at once) to perform certain calculations many times faster than is currently possible.
Although the worlds most powerful quantum processors currently offer too few quantum bits (qubits) to establish a meaningful advantage over traditional supercomputers, the maturation of quantum computing will create various problems from a security perspective.
Most significantly, large-scale quantum computers will have enough horsepower to break modern cryptography. It is a mistake, therefore, to assume that information protected by encryption today will remain secure for years to come. State-sponsored threat actors may already be collecting large quantities of encrypted data in the hope of one day being able to access it.
Quantum computing will answer fundamental needle-in-the-haystack scientific questions, noted Baloo. But were screwed as soon as we have a quantum computer capable of breaking current encryption.
To enjoy the benefits of quantum computing, we need a new set of cryptographic algorithms that will be unbreakable even with a quantum computer. As a cybersecurity community, we need to have a forward-looking defence, so were ready for these kinds of challenges.
Again, this is a problem on which security companies will have to collaborate closely in the coming years, both to develop new quantum-safe algorithms and push for regulation that ensures the most vulnerable portions of the economy are quantum ready.
In a scenario in which quantum-secure technologies do not develop apace with quantum computers, the foundations of modern cybersecurity will be compromised.
And the clock is ticking, warned Baloo.
Read the original post:
Friend and foe: The little-known pact at the heart of cybersecurity - TechRadar
- D-Wave enters agreement to sell up to $400M shares from time to time - Yahoo Finance - June 14th, 2025 [June 14th, 2025]
- IBM is building a large-scale quantum computer that 'would require the memory of more than a quindecillion of the world's most powerful... - June 14th, 2025 [June 14th, 2025]
- Prediction: This Quantum Computing Stock Will Surge in 2025 - The Globe and Mail - June 14th, 2025 [June 14th, 2025]
- IBMs Fault-Tolerant Quantum Computer Breakthrough: Exec More Comfortable Than Ever About 2029 Delivery - TechRepublic - June 14th, 2025 [June 14th, 2025]
- Protection against quantum computing threats now within grasp for companies and institutions - Orange - June 14th, 2025 [June 14th, 2025]
- Planckian Partners With University of Naples to Accelerate Next-Gen Quantum Processor - The Quantum Insider - June 14th, 2025 [June 14th, 2025]
- Bitcoin devs scramble to protect $2.2tn blockchain from looming quantum computer threat - dlnews.com - June 14th, 2025 [June 14th, 2025]
- Quantum Art to Advance Scalable Quantum Computing Through Logical Qubit Compiler and NVIDIA CUDA-Q Integration - The Quantum Insider - June 14th, 2025 [June 14th, 2025]
- Why Shares of D-Wave Quantum Are Sinking This Week - The Motley Fool - June 14th, 2025 [June 14th, 2025]
- Mind-Blowing Quantum Leap: IBMs Groundbreaking Fault-Tolerant PC Set to Revolutionize Tech by 2029Prepare for Unprecedented Computational Power -... - June 14th, 2025 [June 14th, 2025]
- Why it's time to move beyond qubits for assessing quantum progress - Diginomica - June 14th, 2025 [June 14th, 2025]
- Quantum Computers Pose a Grave Risk to The Future. Here's Why. - ScienceAlert - June 10th, 2025 [June 10th, 2025]
- Want to Invest in Quantum Computing? 3 Stocks That Are Great Buys Right Now. - Yahoo Finance - June 10th, 2025 [June 10th, 2025]
- At 40 ISC 2025 Continues to Connect the Dots - HPCwire - June 10th, 2025 [June 10th, 2025]
- Vodafone teams up with Orca for quantum-powered network optimisation - Capacity Media - June 10th, 2025 [June 10th, 2025]
- IonQ goes quantum shopping: Buys Oxford Ionics for $1.075B - Silicon Canals - June 10th, 2025 [June 10th, 2025]
- Infleqtion Selected to Power the UKs Largest Quantum Computing Breakthrough - Business Wire - June 10th, 2025 [June 10th, 2025]
- BTQ Technologies Announces Strategic Partnership with QPerfect to Achieve Quantum Advantage Using Neutral Atom Quantum Processors - WV News - June 10th, 2025 [June 10th, 2025]
- Quantum computers are on the edge of revealing new particle physics - New Scientist - June 10th, 2025 [June 10th, 2025]
- Where Will IonQ Be in 5 Years? - The Motley Fool - June 10th, 2025 [June 10th, 2025]
- IonQ buys Oxford Ionics for $1.075B: 6 things to know about it - Tech Funding News - June 10th, 2025 [June 10th, 2025]
- IBM plans to build first-of-its-kind quantum computer by 2029 after 'solving key bottleneck' - Live Science - June 10th, 2025 [June 10th, 2025]
- IBM aims to build the worlds first large-scale, error-corrected quantum computer by 2028 - MIT Technology Review - June 10th, 2025 [June 10th, 2025]
- IBM announced that it will release a quantum computer that has solved the error problem by 2029. Qua.. - - June 10th, 2025 [June 10th, 2025]
- Vodafone aims to leverage quantum computer to streamline broadband installation routes - Telecompaper - June 10th, 2025 [June 10th, 2025]
- This tiny quantum computer could blow massive data centers out of the water with speed, power, and pure physics - TechRadar - June 1st, 2025 [June 1st, 2025]
- Where Will Rigetti Computing Be in 5 Years? - Yahoo Finance - June 1st, 2025 [June 1st, 2025]
- IonQ vs. Microsoft: Which Quantum Cloud Stock Is the Better Buy Today? - Zacks Investment Research - June 1st, 2025 [June 1st, 2025]
- Q1 2025 Quantum Technology Investment: Whats Driving the Surge in Quantum Investment? - The Quantum Insider - June 1st, 2025 [June 1st, 2025]
- Where Will Rigetti Computing Be in 5 Years? - The Motley Fool - June 1st, 2025 [June 1st, 2025]
- Our Online World Relies on Encryption. What Happens If It Fails? - Boston University - June 1st, 2025 [June 1st, 2025]
- Jim Cramer on D-Wave Quantum (QBTS): Of the Ones That Are Out There, This is the Best - Insider Monkey - June 1st, 2025 [June 1st, 2025]
- It Might Actually Be 20 Times Easier for Quantum Computers to Break Bitcoin, Google Says - Decrypt - June 1st, 2025 [June 1st, 2025]
- Want to Invest in Quantum Computing? 2 Stocks That Are Great Buys Right Now. - The Motley Fool - June 1st, 2025 [June 1st, 2025]
- IonQ vs. Microsoft: Which Quantum Cloud Stock Is the Better Buy Today? - Yahoo Finance - June 1st, 2025 [June 1st, 2025]
- CEOs who aren't yet preparing for the quantum revolution are 'already too late,' IBM exec says - Business Insider - June 1st, 2025 [June 1st, 2025]
- New quantum visualisation techniques could accelerate the arrival of fault-tolerant quantum computers - University of Oxford - June 1st, 2025 [June 1st, 2025]
- Marylands Quantum Capital Ambitions Rely on UMD Physicist Ronald Walsworth - Source of the Spring - June 1st, 2025 [June 1st, 2025]
- We asked an expert about quantum computer threat as Google and BlackRock ring the alarm - Crypto News - June 1st, 2025 [June 1st, 2025]
- Whats Happening With IONQ Stock? - Trefis - June 1st, 2025 [June 1st, 2025]
- New Startup Sygaldry Aims to Rethink AI Infrastructure With Quantum Hardware - The Quantum Insider - June 1st, 2025 [June 1st, 2025]
- Breaking encryption with a quantum computer just got 20 times easier - New Scientist - May 26th, 2025 [May 26th, 2025]
- D-Wave launches the Advantage2 quantum computer with more than 4,400 qubits - SiliconANGLE - May 26th, 2025 [May 26th, 2025]
- Nvidia in Talks to Invest in Quantum Startup PsiQuantum - The Information - May 19th, 2025 [May 19th, 2025]
- Quantum Computers Just Outsmarted Supercomputers Heres What They Solved - SciTechDaily - May 19th, 2025 [May 19th, 2025]
- Should You Buy IonQ Stock to Ride the Quantum Computing Revolution? The Answer May Surprise You - The Motley Fool - May 19th, 2025 [May 19th, 2025]
- D-Wave Quantum Stock Soaring On 509% Revenue Pop And Growth Prospects - Forbes - May 19th, 2025 [May 19th, 2025]
- Quantum Machines Launches Open-Source Framework that Cuts Quantum Computer Calibration From Hours to Minutes - The Quantum Insider - May 19th, 2025 [May 19th, 2025]
- Silicon qubits bring scalable quantum computing closer to reality - The Brighter Side of News - May 19th, 2025 [May 19th, 2025]
- Quantum Computers Are Here, but Are Cybersecurity Professionals Ready? - IoT World Today - May 19th, 2025 [May 19th, 2025]
- Quantum Computing Stock Tumbles After Last Week's 50% SurgeWatch These Key Levels - Investopedia - May 19th, 2025 [May 19th, 2025]
- Nvidia in talks to invest in PsiQuantum - Tom's Hardware - May 19th, 2025 [May 19th, 2025]
- Quantum computing: What is quantum error correction (QEC) and why is it so important? - Live Science - May 19th, 2025 [May 19th, 2025]
- Quantum Computing Roadmaps: A Look at The Maps And Predictions of Major Quantum Players - The Quantum Insider - May 19th, 2025 [May 19th, 2025]
- Quantum Computing Stock Surges as Firm Swings to Profit - Investopedia - May 19th, 2025 [May 19th, 2025]
- $850bn by 2040! Should I buy quantum computing stocks for my Stocks and Shares ISA? - Yahoo - May 19th, 2025 [May 19th, 2025]
- France, Germany, and the Netherlands Launch $33M Trilateral Quantum Initiative - The Quantum Insider - May 19th, 2025 [May 19th, 2025]
- Oxford Quantum Circuits Appoints Former GCHQ Director Sir Jeremy Fleming to Board - HPCwire - May 19th, 2025 [May 19th, 2025]
- Outside the Box: Socratic Machines and Quantum Ghosts - Fair Observer - May 19th, 2025 [May 19th, 2025]
- Preparing for the post-quantum era: a CIOs guide to securing the future of encryption - CyberScoop - May 19th, 2025 [May 19th, 2025]
- Quantum Computing First Quarter 2025 Earnings: EPS Beats Expectations, Revenues Lag - Yahoo Finance - May 19th, 2025 [May 19th, 2025]
- Nvidia in Talks to Invest in Quantum Computing Startup - The Information - May 19th, 2025 [May 19th, 2025]
- IonQ Stock Is Up 294% in the Past Year. Here's My Prediction For What Comes Next - The Motley Fool - May 19th, 2025 [May 19th, 2025]
- Does Billionaire Israel Englander Know Something Wall Street Doesn't? He Sold a Quantum Computing Stock Analysts Say to Buy. - The Motley Fool - May 19th, 2025 [May 19th, 2025]
- From R&D to ROI: The quantum computing revolution starts here - Techcircle - May 19th, 2025 [May 19th, 2025]
- How quantum computers could break RSA encryption and cure Alzheimer's - Interesting Engineering - May 19th, 2025 [May 19th, 2025]
- The race to perfect the quantum computer is on, and UC is helping America hold its lead - University of California - May 15th, 2025 [May 15th, 2025]
- Keysight Quantum Control System Embedded within Fujitsu and RIKENs World-Leading 256-Qubit Quantum Computer - Morningstar - May 15th, 2025 [May 15th, 2025]
- Keysight Technologies, Inc. Quantum Control System Embedded Within Fujitsu and Riken's 256-Qubit Quantum Computer - marketscreener.com - May 15th, 2025 [May 15th, 2025]
- The Worlds First Song Created by Artificial Intelligence Using a Quantum Computer Is HereIt Sounds Nothing Like What You Expect - The Daily Galaxy - May 11th, 2025 [May 11th, 2025]
- Regulation watch: how governments are dealing with the risks of quantum computing - Strategic Risk Global - May 11th, 2025 [May 11th, 2025]
- The age of the hype cycle: why science needs room to breathe - varsity.co.uk - May 11th, 2025 [May 11th, 2025]
- Quantums Double-Edged Sword: Balancing Risk and Readiness - InformationWeek - May 11th, 2025 [May 11th, 2025]
- The Computational Limit of Life May Be Much Higher Than We Thought - Yahoo - May 11th, 2025 [May 11th, 2025]
- BlackRock beefs up quantum compute threat warnings to Bitcoin investors - dlnews.com - May 11th, 2025 [May 11th, 2025]
- From false alarms to real threats: Protecting cryptography against quantum - cio.com - May 11th, 2025 [May 11th, 2025]
- Boosting quantum error correction using AI - Phys.org - May 11th, 2025 [May 11th, 2025]
- Laws governing finance and investment can help to protect society from dangers of quantum computing, study shows - Phys.org - May 11th, 2025 [May 11th, 2025]
- Quantum computing stocks jump after strong results from D-Wave Quantum (QBTS:NYSE) - Seeking Alpha - May 11th, 2025 [May 11th, 2025]
- Listen to the worlds first song made by a quantum computer and AI - The Next Web - May 10th, 2025 [May 10th, 2025]