Full Disclosure mailing list archives

Re: Is Marty Lying?


From: Peter Busser <peter () trusteddebian org>
Date: Mon, 22 Sep 2003 21:23:52 +0200

Hi!

3) Why the fuck do people still thing signature-based IDS is worthwhile?
Give us another solution. Are you saying anomoly based ids signatures are
_worthwhile_?

The problem with IDS systems is the same problem that currently available
virus scanners have: They work reactive and not proactive.

Making machines harder to break into and improve ways to enforce a security
policy (e.g. by using Mandatory Access Control (MAC)) would be one way to
proactively deal with security.

Groetjes,
Peter Busser
-- 
The Adamantix Project
Taking trustworthy software out of the labs, and into the real world
http://www.adamantix.org/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: