Advertisement
Promo

Security threats Toolkit

Story: JPEG exploit could beat antivirus, says expert

  • Previous comment

Posted by: Anonymous (Thursday 30 September 2004, 4:08 PM)

  • Reply

The basic problem is now all worm attacks since MS Blaster have been in one way or another testing various methodologies that can be used to create multiple DDoS//DoS attacks, stealth through network security devices, discover and attack key AV/security vendor appliances or software, conduct external queries, copy key spyware concepts of "blended attacks or drive by downloads so one can conduct extortion attemtps, or ID theft---and it is being done by what I would now term
"virtual attack machines". These are the thousands of infected but dormant pcs (bots)globally that can be literallly turned on or off now at will and where one can purchase on some sites entire lists of "bots".

Even one of the latest worms carried the first ever "sniffer" filter. So in fact the concept of criminally organized and supported cyberwarfare in now upon us.

The leading AV/Security vendors do not have an answer to how to defend against a "virtual attack" ---here is a great comment from a leading AV vendor that seems to be saying the same thing but would never publically admit the concept of a "virtual attack machine" as they have no answer against it either.

“Bot (or zombie) networks create unique problems for organisations and individual PC users as systems can be automatically upgraded with new exploits very quickly, allowing attackers to outpace efforts to patch or download security updates.”

So what is the answer from the AV and Security vendors----is in fact the security paradigm of "defense in depth" actually out dated even though millions have been spent on it and in fact more millions spent on it this year?

Is it not time to recognize the failure and get creative and demand from the security vendors a truly "adaptive or mutating security layer" that follows the concept "from the core to the edge in real time and proactive"---core meaning network services being provided to an end user where ever they are located.

Actually all elements are in fact avialable to put an early warning system immdeiately to incliude a very creative mutating AI, but the leading security vendors simply do not want to use them as mostly come from innovative smaller companies.

From a networker of 15 years that cannot believe security has actually gone backwards not forwards in the last 12 months.

  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

Twitter hack was DNS redirect

Twitter has said an attack on Thursday which took the site offline for many users was the result of a DNS redirect. A group calling itself the Iranian Cyber Army redirected users... More

1 comment

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Win a BlackBerry with Vlingo voice recognition

Win a BlackBerry with Vlingo voice recognition

What is ZDNet UK's usual tagline?

Competition closes - 14 Jan 2010


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters