Corporate Counsel
  • Home
  • News
  • Surveys
  • Resources
  • Lawjobs
  • Advertise
  • Subscribe
  • Bookstore
  • Contact

Topics » IP Insider | Labor & Employment | From the Experts | On the Job | Moves | DC Watch | International

Home > FBI Security Expert Urges Law Firm Caution

Font Size: increase font decrease font

FBI Security Expert Urges Law Firm Caution

By Evan Koblentz Contact All Articles 

Law Technology News

February 1, 2013

  •    
  •    
  •    
  •      
 

A computer security expert from the Federal Bureau of Investigation pulled no punches at LegalTech New York on Thursday. "We have hundreds of law firms that we see increasingly being targeted by hackers," Mary Galligan said.

Galligan, of the agency's New York office, is special agent in charge of cyber and special operations. "The FBI puts great importance on this issue," she said, while filling in for scheduled speaker Ray Kelly, NYPD chief, who was unable to attend the conference.

"We all understand that the cyberthreat is our next great challenge. Cyberintrusions are all over the place, they're dangerous, and they're much more sophisticated" compared to just a few years ago, Galligan said. Her office focuses on five types of behavior: crime syndicates, espionage, hacker activism, state sponsors, and terrorism.

When contacted by a law firm, FBI agents sometimes work with other government units, such as the Department of Homeland Security and the National Security Agency, Galligan explained. Together, but with the FBI leading, agents can perform technical analysis using custom-built software. One such application is BACSS — binary analysis characterization and storage system — which helps investigators determine what happened in an attack. BACSS may become unclassified in the next 6-12 months, Galligan added. "There's the stereotype out there that 'I give the FBI information, they give me nothing back'. I can assure you that's not the case in cyber," she said. "Information sharing in cyberinvestigations is probably more important than any other investigations we do."

Still, "The FBI does not tell people that we've come to your firm. We don't show up in raid jackets. I don't send out the SWAT team. We do not unplug your servers," Galligan continued. "You need to run your business. We'll tell you the impact of certain actions that we want to take."

"The more mobility you have, the more documents you're sending through the internet, the more likely you are to be the victim of a cyberattack, and that's what we're seeing at law firms," Galligan noted. Preventing a successful attack would mean banning thumb drives and disconnecting from the internet — not a likely scenario for most organizations. But having up-to-date network diagrams, physical access logs, and legal notices upon logging in are all helpful methods to prevent them, she said. Firewalls, intrusion detection systems, remote access servers, virtual private networks, and web servers all also should be logged, she added. "We have had significant successes. You don't always get to read about them, but they're out there," Galligan stated.

"The cyberthreat is too big for any of us to fight alone," she said. Meetings between FBI agents and significant law firms began in 2012 and will continue on a regular basis, she said.

Derrick Donnelly, CTO of mobile forensics company BlackBag Technologies Inc., said at LegalTech on Wednesday that there are some signs of increased security on the Apple iPhone and iPad front. Devices running Apple's latest version of the iOS mobile operating system, which is version 6, have not yet been cracked by hackers — neither by malicious hackers nor by so-called "white hat" hackers, Donnelly said. That's a double-edged sword, because it protects users but makes mobile forensics difficult, he said.

Evan Koblentz is a reporter for Law Technology News. Send email or follow him on Twitter.



Subscribe to Law Technology News

You must be signed in to comment on an article

Find similar content

Companies, agencies mentioned

    
  • NYPD
  • Apple
  • BlackBag Technologies
  • Department of Homeland Security
  • Federal Bureau of Investigation
  • National Security Agency

Key categories

    
  • Information Security

Most viewed stories

    
  1. Best Legal Departments 2013
    •      
  2. 6 Things In-House Counsel Must Know About E-Discovery
    •      
  3. 3-D Printing: The Next Big Thing in IP Law?
    •      
  4. Bristol-Myers Squibb: The Caped Crusaders
    •      
  5. U.S. Legal System Ranked as Most Costly
    •      
lawjobs.com

TOP JOBS

MORE JOBS

POST A JOB

From the Law.com Network

Taking the Reins of Legal Department Operations

In-House Law: Now in 3-D!

Simpson Helps Yahoo, Tumblr Connect for $1 Billion Deal

Kasowitz Benson Launches in Los Angeles

Contrite Companies Can Win Forgiveness in Bribery Cases
  •      
    • Subscription Required

Plaintiffs Want to See Toyota's 'Crown Jewels'
  •      
    • Subscription Required

Collaboration Is Key to Defending Cyberattacks

Stanford Law Builds on Role as Legal Tech Incubator

Prolific ADA Plaintiff Faces Nemesis in Harassment Suit

Ullyot Exit Closes Chapter for Facebook

Rothstein Bankruptcy Trustee Files New Reorganization Plan
  •      
    • Subscription Required

Fla. Bar Wants Disbarment for Former Judge
  •      
    • Subscription Required

Appellate Division To Roll Out Electronic Case Filing System

Court Limits Liability for Injury Or Death of One Invited To Help
  •      
    • Subscription Required

The Affordable State-Specific Practice Solution
Available in NY, NJ, PA and CT editions - research, draft and prepare even the most complex cases with ease.

Court Officials Seek to Reform Process of Naming Acting Justices

NYC Defends Police Department's Use of Stop-and-Frisk

Immigrant Investor Program Gets Watchful Eye

Parties Ordered to Hire Neutral Expert to Probe Facebook

Law Schools Are Looking Beyond LSATs, Says Mich. Dean

Is Freezing Your Eggs the Solution?

Water Warriors: Local Governments Bring Pollution Suits
  •      
    • Subscription Required

Sanction Reversed; Filing of Sexually Explicit Chat OKd
  •      
    • Subscription Required

Brooks Looks To Political Ally For Criminal Defense

Attorney Fee Hearing in Waffle House Sex Case Heats Up
  •      
    • Subscription Required

Corporate Bribery Case Part Of National Trend
  •      
    • Subscription Required

Court Continues To Grant Lawyers Fraud Immunity
  •      
    • Subscription Required

  • About |
  • ALM Properties |
  • ALM Reprints |
  • Customer Support |
  • Privacy Policy |
  • Terms & Conditions |
  • ALM User License Agreement
ALM Media