Jon's Network

Network Security News, Analysis and Ephemera

Jon's Network - Murrieta, CA

Endpoint Security

  • Do AV and Heuristics Work?
  • Virustotal Ultrasurf Results
  • Sophos Edges Out Symantec and McAfee
  • BigFix ahead of Sophos
  • Endpoint Master Agent or Interoperability
  • Patchlink Changes Name
  • Malware Cleaning Methods Considered
  • Why Patchlink Needs to Change Their Name
  • Latest entries to this category....

    Do AV and Heuristics Work?

    March 11th, 2009 · No Comments

    Another discussion video by Richard Stiennon and friends (Amrit Williams, Martin McKeay and Mike Murray. Someone remarked that heuristics doesn’t work and Alex Eckleberry responded with this interesting post that heuristics do indeed work and most AV companies rely on them to some degree to keep up with the enormous amounts of daily malware. [...]

    [Read more →]

    Tags: Anti-Virus · Endpoint Security

    Virustotal Ultrasurf Results

    February 26th, 2009 · No Comments

    When you download UltraSurf 9.3, you get a file called u.exe. This file was submitted to Virustotal on 2/26/2009 and the results are here.

    Only 3 out of 38 companies identified Ultrasurf 9.3 as malware. Fortinet, Prevx1 and Quick Heal of India.

    Contrast that with this Virustotal scan of UltraSurf 8.8 from 3/13/2008 [...]

    [Read more →]

    Tags: Anti-Virus · Endpoint Security · Fortinet · Ultrasurf

    Sophos Edges Out Symantec and McAfee

    February 11th, 2009 · No Comments

    Keith Schultz at InfoWorld tested five competing endpoint security suites. Supposedly this was an in-depth test that started last May. Sophos beat the others mainly because of better reporting and management.

    I went into this review without any preconceived notions as to which product would fare the best, and I was [...]

    [Read more →]

    Tags: Anti-Virus · Endpoint Security · McAfee · Sophos · Symantec

    BigFix ahead of Sophos

    March 6th, 2008 · 2 Comments

    I’ve been watching (and selling) Sophos for years. It has become even easier to sell in the past 12 months simply by showing CA or McAfee customers the Sophos management console. Most see pretty quickly how much time it will save them. Sophos’ strategy seems to resonate as well: do more with [...]

    [Read more →]

    Tags: BigFix · Endpoint Security · Sophos

    Endpoint Master Agent or Interoperability

    September 19th, 2007 · 3 Comments

    Because the truth is nobody cares about standards – everyone cares about what you can do with interoperable systems.

    Amrit wrote recently about The Birth of the Endpoint Protection Platform. Fitting for the guy that wrote about the death of AV by the end of 2007 (3 more months to go!). Amrit believes the [...]

    [Read more →]

    Tags: Endpoint Security · Interoperability · Standards

    Patchlink Changes Name

    September 10th, 2007 · 3 Comments

    Patchlink took my advice – sort of. I suggested changing their name to SecureLink after acquiring SecureWave and STAT, but they chose Lumension Security instead.

    Their tagline, “Putting Security in a Positive Light”, is a reference to their endorsement of the positive security model they inherited from SecureWave’s Sanctuary, their “application and device [...]

    [Read more →]

    Tags: Anti-Virus · Endpoint Security · Marketing · Patch Management · Patchlink · Positive Security Model · Proactive Security

    Malware Cleaning Methods Considered

    June 19th, 2007 · No Comments

    Jeff Atwood describes how his PC was overwhelmed by spyware and adware after visiting two reputable gaming sites to download some patches. He had recently reinstalled XP and decided to download the game updates without patching the browser and OS. Just two quick sites would be OK right? Well, one of them [...]

    [Read more →]

    Tags: Endpoint Security · Malware

    Why Patchlink Needs to Change Their Name

    June 17th, 2007 · No Comments

    UPDATE: More on the Patchlink name change here

    Patchlink has announced that they will acquire SecureWave, which adds endpoint security to their recent acquisition of the vulnerability scanner STAT Guardian (now Patchlink Scan), and their existing prowess at automated patch management. Last Fall, I told Patchlink that Bit9 would be a good buy for them, [...]

    [Read more →]

    Tags: Anti-Virus · Endpoint Security · Malware · Marketing · NAC · Patch Management · Patchlink · Positive Security Model · Proactive Security · Security