patches cannot be immediately delivered » Computer internet security  
Computer and internet security news
computer and networking security portal
 
|
|
|
News
|
Advertise
|
|
Products
|
Contact

patches cannot be immediately delivered



Wednesday, May 14, 2008, 11:49
This news item was posted in Vulnerabilities category and has 1 Comment so far.

 Once a user has patched their computer against a particular vulnerability,the computer is then immune to malware that seeks to exploit thatvulnerability. The problem is that patches cannot be immediately delivered:vendors must analyse a vulnerability and develop and extensively test apatch that remedies it — and then push the patch out to users. This is not aspeedy process. The delay between the discovery of a vulnerability and therelease of a patch can often run to more than 50 days22 — and this createsa risk window during which any user running the vulnerable application canbe exploited.The challenge facing security companies is how to close that risk window— and it is a challenge that is far from easy.Anti-virus and anti-spyware vendors face a similar problem to that outlinedabove — they need to analyse hostile code in order to be able to develop,test and distribute a fix. While they are usually able to do this considerablyfaster than application and operating system vendors can release a patchfor a vulnerability, there is nonetheless some delay and, accordingly, still awindow of risk.The heuristic detection (“behaviour analysis”) capabilities built in to manyanti-virus and anti-spyware programs provides some degree of protectionagainst emerging threats, but it is far from complete. Independent testing23has shown heuristic detection methods to be far less effective than thetraditional signature-based detection methods. Technological advancesmay well result in heuristic detection eventually becoming much moreeffective, but at this point in time it is simply too inaccurate to providereliable protection.To be able to provide complete protection against emerging and rapidlyevolving malware, a product needs to be able to close the risk window byblocking exploits and the sources of exploits as soon as they appear. Andthat is exactly what AVG does.

Related posts:

  1. What is zero day attack or exploit
  2. Zero day protection
  3. Attack of the clones or why do so many NAC solutions look alike?
  4. Kaspersky Anti-Virus 6.0
  5. Kaspersky Anti-Virus 6.0
  6. Evaluating patch before installing

Related posts brought to you by Yet Another Related Posts Plugin.






You can leave a response, or trackback from your own site.

1 Response to “patches cannot be immediately delivered”

  1. patches cannot be immediately delivered said on Wednesday, May 14, 2008, 12:35

    [...] Windows Tips and Tricks wrote an interesting post today onHere’s a quick excerptOnce a user has patched their computer against a… [[ This is a content summary only. Visit my website for full links, other content, and more! ]] [...]

Leave a Reply





:::: Recent entries


 
Join My Community at MyBloglog!



My BlogCatalog BlogRank

Computers Blogs - Blog Top Sites