The “P” in IPS stands for prevention, but these days it seems more like “porous,” users and experts say.
Intrusion detection systems (IDS) and intrusion prevention systems (IPS), which catch “known” threats, are hard-pressed to keep pace with today’s ever-changing, application-specific exploits, according to experts. Researcher HD Moore and colleague Brian Caswell at next month’s Black [...]
Archive for July, 2006
IDS/IPS: Too Many Holes?
Eighty percent of new malware defeats antivirus
The most popular antivirus applications on the market are rendered useless by around 80 percent of new malware, according to AusCERT.
At a security breakfast hosted by e-mail security firm Messagelabs in Sydney on Wednesday, the general manager of the Australian Computer Emergency Response Team (AusCERT), Graham Ingram, told the audience that popular desktop antivirus applications [...]
Social Engineering Audits | What’s the big deal?
Social engineering is a fairly new concept that has come into play the past couple of years in the financial industry. It is quickly becoming a requirement to do, at minimum, annual checks on your employees to ensure they are not providing private customer information to unknown people. But, what type of testing [...]
Read Full PostCitibank Phish Spoofs 2-Factor Authentication
Security experts have long touted the need for financial Web sites to move beyond mere passwords and implement so-called “two-factor authentication” – the second factor being something the user has in their physical possession like an access card – as the answer to protecting customers from phishing attacks that use phony e-mails and bogus Web [...]
Read Full Post