Member Login

E-mail:    Password:  




 TitleDate AddedCompany
whitepaper GuardedID2009-06-01 StrikeForce Technologies
  Keyloggers are a serious security threat that can be extremely harmful to both businesses and consumers. Current mechanisms do not provide adequate protection to the user from these threats. It discusses a solution that helps users mitigate the keylogging threat and show how GuardedID can prevent the information leakage to current as well as future keyloggers. Though PC users are worried about spyware that tracks web site visits, and crashes their PCs, there are more insidious threats out there. A more powerful breed of spyware can log keystrokes (including passwords and credit card numbers) and send that information to criminals. This type of software is called a keylogger.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper Economics of Malware: Epidemic Risks Model, Network Externalities and Incentives2009-05-26 French National Institute for Research in Computer Science and Control
  Malicious softwares or malwares for short have become a major security threat. While originating in criminal behavior, their impact is also influenced by the decisions of legitimate end users. Getting agents in the Internet, and in networks in general, to invest in and deploy security features and protocols is a challenge, in particular because of economic reasons arising from the presence of network externalities. The goal in this paper is to model and quantify the impact of such externalities on the investment in security features in a network. They study a network of interconnected agents, which are subject to epidemic risks such as those caused by propagating viruses and worms.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper Execution Context in Anti-Malware Testing2009-05-16 Eset
  Anti-malware testing methodology remains a contentious area because many testers are insufficiently aware of the complexities of malware and anti-malware technology. This results in the frequent publication of comparative test results that are misleading and often totally invalid because they don't accurately reflect the detection capability of the products under test. Because many tests are based purely on static testing, where products are tested by using them to scan presumed infected objects passively, those products that use more proactive techniques such as active heuristics, emulation and sandboxing are frequently disadvantaged in such tests, even assuming that sample sets are correctly validated.

Tags: Intrusion - Tampering
  
whitepaper Sophos Security Assessment Tools2009-05-01 Sophos
  Put the diagnostic power of these FREE security tools to work in your enterprise today. From endpoint assessment and threat detection to identifying rootkits and unauthorized applications, these complimentary tools from industry leader Sophos will pinpoint any areas of vulnerability that exist on your network. Download and run these four tools today!

Tags: Intrusion - Tampering, Security Administration, Security Administration, Intrusion - Tampering
  
whitepaper McAfee Helps ARC Stay PCI-Compliant While Processing $80 Million in Travel Expenditures Annually2009-05-01 McAfee
  Airlines Reporting Corporation (ARC) provides financial services, data products and services, ticket distribution, original travel solutions, and settlement services to the travel industry. To comply with PCI, the company must prevent credit card information from leaking, either accidentally or maliciously. Three McAfee Network DLP appliances monitor incoming and outgoing data as well as data at rest. McAfee Host DLP monitors and prevents data loss from desktops. McAfee Total Protection for Endpoint - Advanced provides anti-virus, anti-spyware, firewall, email filtering, host intrusion prevention, and network access control.

Tags: Intrusion - Tampering, Intrusion - Tampering
  
whitepaper Can Heuristic Technology Help Your Company Fight Viruses?2009-04-21 MessageLabs, now part of Symantec
  In the face of today's malicious malware, which aims to steal your private corporate information, infect your machines and create countless headaches, making sure your business is secure is essential. Using multiple layers of protection is essential. That's where heuristic technology comes into play. Heuristic technology, like MessageLabs' proprietary technology known as Skeptic™, not only identifies and blocks known threats, but also unknown threats -- stopping threats at the Internet-level, well before they can reach your business and providing you with 100% protection against known and unknown viruses.

Learn more, download this new whitepaper. This report explains:
  • What is Heuristic Technology?
  • How does it work to identify viruses (both known and unknown)?
  • How implementing a layered approach to combating threats is the most effective solution
  • And finally, how MessageLabs Heuristic scanner Skeptic is the most accurate technology, providing 100% SLA around identifying and capturing known and unknown viruses


Tags: Intrusion - Tampering, Security Administration, Security Administration, Intrusion - Tampering
  
whitepaper Understanding and Teaching Heuristics2009-04-17 Eset
  This paper is designed to provide a basic understanding of what heuristics are and how they are used in the anti-malware industry. Topics covered include signature based detection, generic signatures, passive heuristics, and active heuristics or emulation. A very basic compression algorithm is developed and taught so as to enhance understanding of how compression works and why it poses problems for signature based detection. Encryption and polymorphism are also explained in easy to understand terms and examples. It also says that when a virus scanner detects a file that is clean - should not have been detected - this is called a false positive. People have criticized heuristics in antivirus as being prone to false positives.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper From Fun to Profit: The Evolution of Malware2009-04-16 Eset
  Digital threats have evolved from a bizarre hobby for computer geeks into a huge source of profit for organized cyber-crime. From a technical point of view, malware has diversified to enable pursuit of a wide variety of criminal objectives and has increased its capabilities for penetration into victim systems. Recognizing the potential profit, it predicts that malware will continue to be a threat to IT infrastructures for the foreseeable future. Malware will continue to evolve, and malware authors will try to improve the stealth and persistence of their creations. It also says that to a large extent, it was in reaction to this earlier threat that many anti-malware systems started to apply greater attention to the examination of network traffic streams.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper Testing Testing: Anti-Malware Evaluation for the Enterprise2009-04-16 Eset
  Anti-malware software remains an essential defensive component for most enterprises, understandably anxious to get the right balance of affordability and effectiveness. Unfortunately, journalists, consumer groups and security amateurs keep finding ever more creative and inappropriate ways to test detection focused software. This paper, attempts to address a number of core issues such as Reading between the lines of comparative reviews, Anti-virus/malware against the world, Technical aspects of testing, Evaluating the evaluators: sound versus unsound resources and The pros and cons of DIY testing: how practical is it?.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper People Patching: Is User Education of Any Use at All?2009-04-16 Eset
  In general, the anti-malware community splits dramatically into two camps when it comes to the evergreen debate about the effectiveness of user education and security awareness as a protective measure. One camp argues that "If education was of any use, it would have worked by now": the other says that "Education is key" and "one can't fix social problems with technological solutions". There are two extremes of viewpoint held in security, whether from a corporate management point of view, or from the more rarified atmosphere of academia or practical security research. In the red corner, the "Education isn't going to work as a security measure because it never has yet" argument: in the blue corner, the view that education is a key component of security strategy.

Tags: Security Administration, Intrusion - Tampering