All the latest UK technology news, reviews and analysis

'Advanced evasion techniques' cause network security rethink

by Phil Muncaster

18 Oct 2010

Be the first to comment

  • Tweet this
network cables

Security vendor Stonesoft claims to have discovered a dangerous new category of threat which could render network security tools useless.

So-called advanced evasion techniques (AETs) use different methods in virtually limitless combinations to avoid detection by 99 per cent of current products on the market, according to the vendor.

AETs can be coupled to an exploit to effectively make that exploit invisible, allowing hackers as much time as they like to test and refine exploits on a target system until they are successful, according to Stonesoft chief executive Ilkka Hiidenheimo.

The use of AETs at a network level could lead to serious data breaches involving the loss of corporate information from mission-critical applications, Stonesoft warned.

"Even our product doesn't offer full protection because we're finding new holes and combinations of evasions all the time," said Hiidenheimo.

"A very clear rethink is needed in network security. All security functionality must be software-based, automated and updatable, because when something is found in the wild you need to make changes very quickly."

Stonesoft has informed CERT-FI in Finland for vulnerability co-ordination purposes, and has had its research validated by third-party testing organisation ICSA Labs.

The company has shared its intelligence with the industry in an attempt to help in the race to find an effective solution.

"The issues identified by Stonesoft affect a range of content inspection technologies," said Jussi Eronen, head of vulnerability co-ordination at CERT-FI.

"Continuous co-operation among CERT-FI, Stonesoft and other network security vendors is essential for remediating the identified vulnerabilities."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

37%

0%

11%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Availability & Capacity Lead

About Us WorldPay provides a globally connected, locally...

Change & Configuration Administrator

About Us WorldPay provides a globally connected, locally...

SQL Server Developer - SSIS - Zurich

SQL Server Developer - Our client, an international...

IT Technical Service Delivery Manager / ITIL / Reigate - 65K

IT Technical Service Delivery Manager / ITIL / Reigate...

To send to more than one email address, simply separate each address with a comma.