Seguridad Mania.com - España y América Latina
Portal sobre tecnologías para la seguridad física
- Destacamos »
- software Anti Blanqueo
MILPITAS, CA -- (Marketwired) -- 08/01/13 -- FireEye®, Inc., the leader in stopping today's new breed of cyber attacks, today released a new report titled, "Hot Knives Through Butter: How Malware Evades Automated File-based Sandboxes," that reveals several techniques used by advanced malware to sidestep signature-based defenses during attacks. Today's sophisticated, polymorphic malware is able to hide, replicate, and disable host protections using a variety of techniques, rendering single-flow, file-based sandbox solutions ineffective.
"In today's threat landscape, traditional sandboxes no longer offer a silver bullet against sophisticated attackers," said Zheng Bu, senior director of research and co-author of the report. "Malware is increasingly able to determine when it is running in a virtual environment and alter its behavior to avoid detection. Effective detection requires analyzing the context of behavior and correlating disparate phases of an attack through multi-flow analysis -- which is how our researchers identified the malware samples outlined in this paper."
The FireEye Labs research team leveraged the company's Multi-Vector Virtual Execution (MVX) engine's signature-less, dynamic, real-time detection capability to identify new evasion techniques.
The FireEye report outlines the methodologies malware authors are using to evade file-based sandboxes, which typically fall into one or more of the following categories:
Understanding the techniques malware authors are using to evade detection from file-based sandboxes will allow security professionals to better identify the potential for an Advanced Persistent Threat (APT) attack.
To download the full report, "Hot Knives Through Butter: Evading Automated File-based Sandboxes," please visit http://www.fireeye.com/resources/pdfs/fireeye-hot-knives-through-butter.pdf
About FireEye, Inc.
FireEye® has invented a purpose-built, virtual machine-based security platform that provides real-time threat protection to enterprises and governments worldwide against the next generation of cyber attacks. These highly sophisticated cyber attacks easily circumvent traditional signature-based defenses, such as next-generation firewalls, IPS, anti-virus, and gateways. The FireEye platform provides real-time, dynamic threat protection without the use of signatures to protect an organization across the primary threat vectors, including Web, email, and files and across the different stages of an attack life cycle. The core of the FireEye platform is a virtual execution engine, complemented by dynamic threat intelligence, to identify and block cyber attacks in real time. FireEye has over 1,000 customers across more than 40 countries, including over one-third of the Fortune 100.
FireEye is a registered trademark of FireEye, Inc. All other brands, products, or service names are or may be trademarks or service marks of their respective owners.
Media Contact
Katherine Nellums
LEWIS PR
+1.415.432.2451
Email Contact
Publicamos interesante Informe de más de 48 págs y varios videos demostrativos sobre los posibles ataques a los robots de montaje de las fábricas. ... Leer más ►
Publicado el 22-Jun-2017 • 10.48hs
Publicado el 20-Jun-2017 • 20.22hs
Dirigido tanto a los principiantes, como a los expertos en seguridad informática y sistemas de control industrial (ICS), este libro ayudará a los lectores a comprender mejor la protección de normas de control interno de las amenazas electrónicas. ... Leer más ►
Publicado el 3-Ene-2012 • 20.16hs
Publicado el 25-Set-2009 • 01.26hs
Publicado el 17-Dic-2008 • 08.32hs
Publicado el 11-Oct-2016 • 12.48hs
Publicado el 15-Mar-2016 • 11.59hs
Publicado el 2-Feb-2017 • 11.38hs
Publicado el 20-Jun-2014 • 17.17hs
Publicado el 31-May-2011 • 05.13hs
Publicado el 25-Set-2008 • 17.54hs
Publicado el 1-Set-2016 • 16.11hs
Publicado el 31-Ago-2016 • 18.53hs
Publicado el 19-Ene-2017 • 15.47hs
Publicado el 4-Jul-2016 • 18.51hs