While many vendors are avidly promoting host-based intrusion prevention systems for enterprise
desktop protection, they don’t agree on what the technology consists of. Some offer traditional network-based IPS tools that are also regularly updated with viruslike signatures to combat the latest attacks. Others prefer advanced firewall techniques either desktop firewalls or memory firewalling. A few vendors focus on hardening the system so attacks can’t make an incursion into the application core or Windows registry. Another camp uses various system-scanning techniques to detect and isolate suspicious behavior.
"The HIPS goal is to allow or deny types of traffic and detect and block system behavior that is anomalous," says Pete Lind, an analyst at security consultancy Spire Security LLC in Malvern, Pa. "The most common activities being monitored are program executions, file system activity, registry reads/writes and network operations." What Is HIPS?
From around the Web
- Windows Vista Service Pack 2 Latest Release Schedule
- Vista SP2: What is inside?
- NetWitness releases free version of security software
- Three Reasons Why Users Won’t Buy Into Security
- Automated security testing & its limitations
- Google Wants to Preinstall Chrome Browser on PCs
- Mozilla warns of Firefox China add on
- Firefox No Longer an Automatic Defense Against Browser Drive Bys
- Google patches Chrome file stealing bug
- Apple plays catch up, adds anti fraud safeguard to Safari
- Researchers find vulnerability in Windows Vista
- How to Use Network Behavior Analysis Tools
- The insider security threat in IT and financial services
- Windows 7 security: An overall improvement?
- Windows 7 UAC could be less of a nag
0 comments for this entry ↓
There are no comments yet for this entry.
You must log in to post a comment.