Jon's Network

Network Security News, Analysis and Ephemera

Jon's Network - Church on Pilatus

Do AV and Heuristics Work?

March 11th, 2009 · No Comments

Another discussion video by Richard Stiennon and friends (Amrit Williams, Martin McKeay and Mike Murray. Someone remarked that heuristics doesn’t work and Alex Eckleberry responded with this interesting post that heuristics do indeed work and most AV companies rely on them to some degree to keep up with the enormous amounts of daily malware. The quip that heuristics don’t work was inline with the groups opinion that AV doesn’t work. Alex’s assertion that heuristics work indicates that he probably thinks AV works. It comes down to semantics in the end. AV does work well for enterprises as long as it is updated and properly configured. This is why you hear Amrit always harping on the fact that you don’t even know how many machines you are trying to protect and what their current status is. Step 1: Asset Inventory.

Tags: Anti-Virus · Endpoint Security

0 responses so far ↓

  • There are no comments yet...Kick things off by filling out the form below.

Leave a Comment