Advertisement
Promo

Security threats Toolkit

Story: Security experts: Botnets biggest threat on net

  • Previous comment

Posted by: 1000229829 (Sunday 13 April 2008, 5:34 PM)

  • Reply

Protection in depth

We have a database of traffic profiles for each server/client vs the installed applications. Therefore additional traffic and open ports show up using the delta differences between the old profile and the new one.

This gives us a list of suspect machines, we then look at the NAC complicance logs, Altiris Software/Hardware inventory and AV alerts for indications of the source of the differences.

Private message disabled

1000229829

1000229829
n/a
Member since: December 2005

Site Activity Rating:

1

 


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment

South Korea plans to fingerprint visit...

The South Korean authorities could fingerprint and photograph foreign visitors from 2012, the Korea Times reported on Tuesday. Barring diplomats and government operatives, all visitors... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters