funsec mailing list archives
Re: Consumer Reports Slammed for Creating 'Test' Viruses
From: Drsolly <drsollyp () drsolly com>
Date: Thu, 17 Aug 2006 23:00:18 +0100 (BST)
On Thu, 17 Aug 2006, Dude VanWinkle wrote:
On 8/17/06, Blue Boar <BlueBoar () thievco com> wrote:OK, so if I write a virus today and test today's signature files... it's not a valid test. However, if I save today's signature files, let *other people* volunteer to write a bunch of viruses, and then test those, it is.Kinda. It depends on what you are testing: whether your AV will put the kibosh on malicious code or whether it will detect Viruses that are "in the wild". You may be a better coder than most virus writers. You could be innovative where some viri authors are just using a util to disguise their code. The only way to check to see if your AV will detect what is out there, is by using what is out there. Of course if you are testing signature turn around, then you have to write your own IMO.
I just explained why that doesn't work either. Also, if an AV company achieves a signature turnaround of one minute, at the expense of QC and false positive testing, then you'd probably rate them as "Very good", whereas the thousands of people plagued by the false alarm would rate them as "Awful". It is really hard to test AV products. I really would refer you to me "Perfect Antivirus", which is guaranteed, if used correctly, to detect all viruses past, present and future 100%, and give zero false alarms. It is also free. Here's how you use it. You devise a product test, including a test protocol and a scoring system. I give you PAV to test. If you wind up saying that PAV is a good product, your test just failed the test. _______________________________________________ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec is a public and open mailing list.
Current thread:
- RE: Consumer Reports Slammed for Creating 'Test' Viruses, (continued)
- RE: Consumer Reports Slammed for Creating 'Test' Viruses Blanchard_Michael (Aug 17)
- RE: Consumer Reports Slammed for Creating 'Test' Viruses Larry Seltzer (Aug 17)
- RE: Consumer Reports Slammed for Creating 'Test' Viruses Michal Zalewski (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Axel Pettinger (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Dude VanWinkle (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Drsolly (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Dude VanWinkle (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Drsolly (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Drsolly (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Valdis . Kletnieks (Aug 17)
- RE: Consumer Reports Slammed for Creating 'Test' Viruses David Harley (Aug 17)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 19)
- Re: Consumer Reports Slammed for Creating 'Test' Viruses Blue Boar (Aug 19)