Showing posts with label Real Time Detection. Show all posts
Showing posts with label Real Time Detection. Show all posts

Wednesday, 2 September 2015

Qualcomm Unveils Chip With Smart Malware Detection




Chip manufacturer Qualcomm has clever malware detection announced that is added to the new Snapdragon 820 chip and mobile malware to stop. Snapdragon Smart Protect, as the new feature is called, provides real-time malware detection and uses "machine learning".

The security looks at the behavior of mobile applications in real time and can detect almost immediately and determine whether suspicious behavior of an app or different. Suspicious applications are then divided into different malware levels, ranging from very harmful malware apps to spyware and less dangerous adware apps. Another advantage of Smart Protect is that it primarily acts on the device, rather than in the cloud. Thereby, it can also monitor if the device is online.

Qualcomm Smart Protect must complement existing mobile scanners be seen that use signatures. However, the security feature is able to detect new threats before there is a signature created. Furthermore, the chip giant is working with handset manufacturers and security vendors such as Avast, AVG and Lookout to the possibilities of Smart Protect also make available on mobile scanners. Is expected to Smart Protect along with the Snapdragon 820 next year on home appliances appear.

Friday, 24 July 2015

Microsoft Launches New Security Product In August


Microsoft will next month launch a new security product which sophisticated attacks must stop and previously used deep packet inspection (DPI). Advanced Threat Analytics (ATA), such as the solution is called, uses a combination of behavior analysis by real-time detection.

It focuses on Active Directory-related network traffic and information from Security Information and Event Management (SIEM). On this basis, behavioral profiles of users, machines and other prepared 'resources'. The solution may then detect behavior that is different from these profiles. "After researching many incidents in my previous job, I realized that network logs are not sufficient to find sophisticated attacks," says Microsoft's Idan Plotnik.

He states that the analysis of log files is similar to finding a needle in a haystack. "Even if you find a clue, is figuring out when, how and where something happened almost impossible. With ATA Microsoft therefore taken a different path." Our secret is a combination of DPI, Active Directory information and analysis of specific events "Plotnik says.

Microsoft emphasizes that ATA is a very simple and user-friendly solution, which is used in local businesses. There are no rules, policies or agents required. There only needs to be a port configured to send a copy of all Active Directory-related traffic to the solution. Something that should be arranged within a few hours. A preview version of Microsoft Advanced Threat Analytics can be for some time to download . The full version will be published next month. Price information is not yet available.