All the latest UK technology news, reviews and analysis


Sourcefire anti-malware appliance aims to stop APTs in their tracks

25 Feb 2013
Flame in monitor screen

Security firm Sourcefire has released a dedicated Advanced Malware Protection (AMP) appliance it claims can protect companies from sophisticated network malware.

The AMP appliance is built on the firm's FirePower platform, and is designed to add further continuous file analysis, retrospective security, malware detection and blocking features.

Sourcefire claimed the tool does this by adding forensic fingerprints to files that can be used to track file movements and identify the targets of advanced attacks.

The appliance integrates with Sourcefire's enterprise-class advanced malware analysis and protection FireAmp solution, the firm said.

It's powered by Sourcefire's big data analytics too, and connects companies to Sourcefire's online cloud network.

This network collates and shares information about known malware between the company's clients to offer a fast alert and cyber response service.

Sourcefire claimed the network is connected to millions of end points, making it one of the most comprehensive security information services in the world.

The firm said the combination of services will offer companies unmatched visibility across their network, letting them dynamically see how malware enters, infects and moves thus letting them intelligently respond to the threat.

Sourcefire founder and interim chief executive officer Martin Roesch said the tool will help companies deal with advanced cyber threats like Flame.

"Networks are constantly evolving and expanding and attackers are taking advantage of any gaps to permeate a network and accomplish their mission," said Roesch.

"Thwarting attacks isn't just about blocking but also about using retrospective security to mitigate the impact once an attacker gets in.

"Sourcefire's threat-centric approach to security gives organisations continuous visibility, analysis and control across their environment and along the full attack continuum - before, during and after an attack."

Flame was an advanced cyber spying tool detected targeting Iranian networks in late 2012.

Sourcefire is one of many companies to warn businesses that they must implement more robust network monitoring tools if they want to defend themselves from hackers.

BAE Systems recently told V3 that firms' current lack of knowledge regarding what's going on in their systems is giving hackers an advantage, by letting them shift tactics whenever they are uncovered.

  • Comment  
  • Tweet  
  • Google plus  
  • Facebook  
  • LinkedIn  
  • Stumble Upon  
Alastair Stevenson
About

Alastair has worked as a reporter covering security and mobile issues at V3 since March 2012. Before entering the field of journalism Alastair had worked in numerous industries as both a freelance copy writer and artist.

View Alastair's Google+ profile

More on Security
What do you think?
blog comments powered by Disqus
Poll

IT curriculum poll

With coding now compulsory in schools, how important are digital skills for the next generation of school leavers?
64%
8%
19%
9%

Popular Threads

Powered by Disqus
V3 Security Summit

V3 Security Summit Day 2: Botnet, skills and BYOD intelligence incoming

Keep V3 bookmarked for news updates on all the key security concerns and topics facing businesses

Updating your subscription status Loading
Newsletters

Get the latest news (daily or weekly) direct to your inbox with V3 newsletters.

newsletter sign-up button
hpv3may

Getting started with virtualisation

Virtualisation can help you reduce costs, improve application availability, and simplify IT
management. However, getting started can be challenging

ibmv3may

Converting big data and analytics insights into results

Successful leaders are infusing analytics throughout their organisations to drive smarter decisions, enable faster actions and optimise outcomes

Online Affiliate Manager (Bangkok)

Online Affiliate Manager (Bangkok) Company: Our client...

Solutions Architect - Infrastructure

Job title: Solution Architect - Infrastructure Location...

Software Engineers - L2/L3 SDN, NFV, C++

We have requirment for Software Engineers for one of...

Retail Banking Business Analyst

Retail Banking Business Analyst My client's start...
To send to more than one email address, simply separate each address with a comma.