The Next Hacking Frontier: Private Clouds

Before the Labor Day long-weekend, I would like to conduct some fear mongering. Should I talk about the 9.1 percent unemployment rate? Nope. How about a double-dip recession? Nah. Bank of America going belly-up? No thank you.
Rather, let's talk about security, and more specifically, let's talk about the security ─ or lack thereof ─ in the private clouds you techies have been building.
Yesterday, I met with John Linkous, the chief security and compliance officer of eIQnetworks, an Acton, Massachusetts-based security vendor. While there have been several high-profile cases of public clouds being hacked, private clouds on Wall Street have remained ─ as far as I know ─ unaffected.
When I asked Linkous if he expected this trend to continue for the foreseeable future, he gave me a yes-and-no response. Basically, right now there is no reason for the hacking community to set its sights on Wall Street, because there isn't a Fabergé egg to be found, he says.
Even those cutting-edge hedge funds that have been developing internal cloud solutions haven't been keen on putting important information into those environments. But when you consider the leaps and bounds that have been made toward getting the buy side to be comfortable with the cloud, it's only a matter of time until the industry starts to put sensitive information into such environments.
Linkous used Microsoft's operating system as an example to illustrate his point. Back in 2000, Microsoft dominated the OS scene. Thus, there was more incentive for hackers to find the cracks in Windows. But as Microsoft has lost marketshare to the likes of Apple, it has created greater incentive for the attacking community to turn its attention on Apple's OS.
"I think that there will be a tipping point when enough critical data gets out there that's worth hacking," Linkous says. "Vendors haven't fully addressed those security concerns yet, and there's going to be a plateau when those attacks go like crazy and vendors will be forced to implement appropriate security controls. At the end of the day, what drives business? Security or functionality? It's functionality every time ─ security is an afterthought."
While Linkous has a dog in this fight, there's plenty of reason to believe what he's saying. If elite hackers can tap into the Department of Defense, surely they can get into a $2 billion hedge fund's private cloud.
So please take this thought with you into the three-day weekend: You are not nearly as secure as you think you are.
Have a great Labor Day!
Only users who have a paid subscription or are part of a corporate subscription are able to print or copy content.
To access these options, along with all other subscription benefits, please contact info@waterstechnology.com or view our subscription options here: http://subscriptions.waterstechnology.com/subscribe
You are currently unable to print this content. Please contact info@waterstechnology.com to find out more.
You are currently unable to copy this content. Please contact info@waterstechnology.com to find out more.
Copyright Infopro Digital Limited. All rights reserved.
As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (point 2.4), printing is limited to a single copy.
If you would like to purchase additional rights please email info@waterstechnology.com
Copyright Infopro Digital Limited. All rights reserved.
You may share this content using our article tools. As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (clause 2.4), an Authorised User may only make one copy of the materials for their own personal use. You must also comply with the restrictions in clause 2.5.
If you would like to purchase additional rights please email info@waterstechnology.com
More on Trading Tech
LSEG-AWS extend partnership, Deutsche Bank’s AI plans, GenAI (and regular AI) concerns, and more
The Waters Cooler: Nasdaq and MTFs bicker about data fees, Craig Donohue to take the reins at Cboe, and Clearwater closes its Beacon deal, in this week’s news roundup.
From server farms to actual farms, ‘reuse and recycle’ is a winning strategy
The IMD Wrap: Max looks at the innovative ways that capital markets are applying the principles of “reduce, reuse, and recycle” to promote efficiency and keep datacenters running.
Analysts cast doubt on Deutsche Börse’s tech strategy
Exchange execs countered that the company is having success moving clients from on-prem to SaaS, and expanding in the US.
M&A activity, syndicated loans, a new tariff tool, and more
The Waters Cooler: LSEG and LeveL Markets partner for new order type, QuantHouse gets sold to Baha Tech, and Fitch Ratings has a new interactive tool in this week’s news roundup.
Nasdaq, AWS offer cloud exchange in a box for regional venues
The companies will leverage the experience gained from their relationship to provide an expanded range of services, including cloud and AI capabilities, to other market operators.
Bank of America reduces, reuses, and recycles tech for markets division
Voice of the CTO: When it comes to the old build, buy, or borrow debate, Ashok Krishnan and his team are increasingly leaning into repurposing tech that is tried and true.
Crypto exchange EDX takes its tech into its own hands
The crypto exchange and clearinghouse, founded in 2022 by industry heavyweights, has built out its technology to meet the needs of the institutional market. In the process, it has learned important lessons about partnering with vendors, building in-house, and, ultimately, control.
FCA sets up shop in US, asset managers collab, M&A heats up, and more
The Waters Cooler: Nasdaq and Bruce ATS partner for overnight market data, Osttra gets sold to KKR, and the SEC takes on DOGE in this week’s news roundup.