funsec mailing list archives

Re: standards status in the industry - opinion?


From: Gadi Evron <ge () linuxbox org>
Date: Sat, 07 Jan 2006 23:32:38 +0200

And, if I get the message you're trying to give us, let's not set our
standards low anywhere else, either.  I'd love to see more effective
heuristic patterning in IDS/AV as well.  That was one of the major
battles with this WMF exploit was dealing with signatures that:

1) were too reactive
2) undercovered (sometimes, knowingly, to avoid FPs)

Well, about the AV I tend to disagree. I believe the AV simply isn't adequate to deal with these sort of threats anymore.

It's a good important part of the solution, it's just not THE solution.

        Gadi.
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: