ZDNet is available in the following editions:
There is one given in the IT security realm and that is change. The challenges faced by security professionals a decade ago are much different than the challenges we face today. Yesterday's virus is today's custom malware, while denial of service attacks have been replaced with botnets. Many attack vectors of the 21st century are financial in nature. Current FBI estimates indicate that malicious software and attacks targeting identity theft cost American businesses and consumers more than $50 billion a year. This white paper provides a history of earlier attacks and defenses, and points out the directions security professionals need to look to tomorrow.
405 days ago by Global KnowledgeSystem administrators are experiencing escalating frustration over the problems of existing endpoint security solutions, such as bloat, high resource usage, and difficult or poor desktop agent management and deployment.
This free fully-functioning 30-day trial of Sunbelt VIPRE Enterprise is designed to optimize overall performance by melding antivirus and antispyware together into one powerful engine. This combination of technologies gives you high-performance software that doesn't slow down users' PCs, is low on system resources, and makes it easy for you to protect your network.
Test drive VIPRE Enterprise today.
While less visible to users than spam and virus attacks, Spyware constitutes a serious and increasing threat to enterprise networks. Silently installed Spyware can subject the company and employees to invasions of personal privacy, loss of confidential information, performance degradation, network congestion, and reduced productivity. As most corporations understand the threat and concepts of Spyware, this instructive webcast will examine new levels of Spyware sophistication and discuss non-traditional technologies for repelling attempted Spyware attacks into the network. The presenter of this webcast gives the examples of the latest Spyware attacks and how they infect network computers, exposing confidential information.
445 days ago by Finjan SoftwareBy enabling strategic mobile deployments, organizations can realize significant benefits including reduced cost of ownership, easier application development and deployment, simple back-end integration and centralized management and security. This Special Report explains how to adopt a mobile enterprise application platform and highlights how two innovative companies, Delta Technology and Energy & Combustion Services, are deploying mobility initiatives to gain a competitive advantage. It also features research from Gartner Inc. - the Magic Quadrant for Mobile Enterprise Application Platforms, 2008.
459 days ago by Sybase iAnywhereThe emergence of hardware virtualization technology has led to the development of OS independent malware such as the Virtual Machine Based Rootkits (VMBRs). This paper draws attention to a different but related threat that exists on many commodity systems in operation today: The System Management Mode Based Rootkit (SMBR). System Management Mode (SMM) is a relatively obscure mode on Intel processors used for low-level hardware control. It has its own private memory space and execution environment which is generally invisible to code running outside (e.g., the Operating System). Furthermore, SMM code is completely non-preemptible, lacks any concept of privilege level, and is immune to memory protection mechanisms. These features make it a potentially attractive home for stealthy rootkits.
543 days ago by Association for Computing MachineryA new trojan was spotted spreading in the wild, infecting multi-media files on end-user PCs with malicious content. The interesting detail about the malware is that its code embedding functionality is based on the ASF (Advanced Systems Format) format. ASF is Microsoft's proprietary digital audio/digital video container format, especially meant for streaming media. ASF is part of the Windows Media framework. The format does not specify how (i.e. with which codec) the video or audio should be encoded; it just specifies the structure of the video/audio stream. This is similar to the function performed by the QuickTime, AVI, or Ogg container formats.
598 days ago by HISPASEC SYSTEMSMalicious software is rampant on the Internet and is costing billions of dollars each year. Safe and thorough analysis of malware is key to protecting systems and cleaning those that have already been infected. This paper proposes a lightweight hardware-supported virtualization platform that is purpose-built for malware analysis. Hardware virtualization makes the VMM difficult to detect and reduces its size and complexity. They further simplify their VMM by not implementing virtualization features that are unnecessary for malware analysis (e.g., virtual device emulation). Their platform is more amenable to developing and deploying analysis techniques directly in the VMM than Xen or VMWare. This paper discusses their prototype design and implementation. They also discuss the effectiveness of various malware analysis techniques that they have developed to run on their platform.
685 days ago by University of IllinoisThis paper outlines some of the considerations that should be taken into account when tests on anti-spyware products are conducted and reviewed. Tests conforming to the suggestions in this paper are more likely to produce results that are scientifically valid, independently reproducible, and meaningful. It is the hope of the Anti?]Spyware Coalition that this paper will help testers design and perform reliable tests, and help reviewers and users interpret published test results.
714 days ago by ANTI-SPYWARE COALITIONTechnical Engineering Consultants, Inc. (TEC) specializes in engineering consulting, design and construction of offshore oil and gas exploration and production structures. TEC wanted to clean Web traffic of spyware and viruses at the Internet gateway, without sacrificing performance and at a reasonable cost. TEC deployed Content Security Gateway appliances developed by gateway anti-virus pioneers, powered by patent-pending stream-based scanning technology, and certified by ICSA Labs to detect all currently active viruses/malware.
951 days ago by CP SecureRio Blanco County covers an area of 3,228 square miles in northwestern Colorado and includes the two communities of Meeker and Rangely. Rio Blanco County had a severe problem of spyware and viruses brought into the network by the diverse range of people who use the computers in the MAN. The county needed a gateway anti-malware appliance as its first line of defense to stop malware in web and email traffic before they entered the MAN and infected the computers. Rio Blanco County deployed Content Security Gateway appliance, powered by patent-pending stream-based scanning technology, plugs wide open web attack vector at a reasonable price.
988 days ago by CP Secure