By Richard Adhikari TechNewsWorld
04/07/08 3:20 PM PT
Finjan announced a new version of its security appliance that monitors inbound and outbound Web traffic, analyzing the code to keep out malware and keeping an eye on system performance. It also monitors secure socket layer traffic to keep crimeware out, keeping it encrypted when it exits the appliance.
Crystal Reports - Discover the Latest Innovations. Download a free trial, view real-time 'behind the scenes' functionality, and learn about new Crystal Reports Server trade in options! Learn more.
Secure Web gateway products vendor Finjan unveiled version 9.0 of its Vital Security Web appliance on Monday at the RSA Security (Nasdaq: RSAS) Conference.
This includes a new active real-time inspection technology that checks both inbound and outbound Web traffic and SSL (secure socket layer) traffic for malicious content to provide enterprises real-time information on system performance and security risk levels.
The active real-time content inspection capability "combines both static and dynamic code analysis technologies, benefiting from the advantages of both while avoiding the limitations of each," Finjan's chief technology officer, Yuval Ben-Itzhak, told TechNewsWorld.
Graphical View
The new technology comes in an integrated dashboard that provides users graphs and graphical views of their system. It lets enterprises manage security policies easily and lets them refine rules quickly.
While this security refinement capability is new in v9.0, it is accessible from both the integrated dashboard and from the application's main management console.
Vital Security v9.0 also includes Web 2.0 and productivity control modules that use URL (universal resource locater) filtering engines from IBM (NYSE: IBM) and Websense.
It helps organizations comply with the Sarbanes-Oxley Act (SOX) through the use of COBIT (Control Objectives for Information and related Technology) practices; PCI DSS (Payment Card Industry Data Security Standard) 1.1; the Graham-Leach-Bliley Act; HIPAA (Health Insurance Portability and Accountability Act) and FISMA (the Federal Information Security Management Act of 2002).
New Stuff in v9.0
Finjan's appliances inspect both inbound and outbound Web traffic as well as SSL traffic to sniff out malicious content.
Version 9.0 has added an external reporting and logging system to provide large enterprises with "a flexible and scalable data analysis platform for internal use, audits and compliance requirements," Werner Hammier, vice president of products at Finjan, told TechNewsWorld. "With version 9.0, our enterprise customers get top-notch security."
The filtering engines "provide categories of domains such as gambling, Web 2.0, and news that let administrators select and control the ones employees are allowed to visit during working hours," Ben-Itzhak said.
Version 9.0 also offers HTTPS/SSL content inspection in real time to prevent crimeware hiding in SSL (secure) traffic. Inspected content remains encrypted when entering and exiting the appliance. Crimeware is a type of malware designed specifically to automate financial crime.
In addition, it supports Cisco's (Nasdaq: CSCO) WCCPv2 standard so it can interoperate with more equipment from Cisco.
The appliance offers users wizards to simplify decision-making for security policies.
Finjan's Solution Examined
Generally, people take a slash-and-burn approach to malware, and the cure may be worse than the disease. "Often the answer is, don't let any executable code through, but that can break all sorts of useful things," Peter Christy, analyst at the Internet Research Group, told TechNewsWorld.
Finjan's approach is more sophisticated: "Finjan treats malware almost as a compilation problem -- they deconstruct the code, build a model of what it looks like internally and what calls come to it, and when it gets something it hasn't seen before, it makes an intelligent decision based on what calls the code makes and the executables it wants to run," Christy said. "I don't think anyone else does that now."
This is increasingly important in the crimeware field because "attackers have gone from people who just want recognition and make trouble to people who want money," Christy explained. "If you get a job in an Eastern European crimeware company, it's like going to work at Google (Nasdaq: GOOG) here."
Finjan "has done a lot to cope with this," and offering real-time analysis is important because "the quicker you can see non-compliant behavior, the better," Christy added.
Live From RSA: Getting Ready for the Security Smackdown April 07, 2008
The halls are just starting to hum at San Francisco's Moscone Center, the venue for this year's RSA Security Conference, which runs through Friday. Among the upcoming highlights: A Security Smackdown to test experts' mettle and several security-related book signings.
Related Stories
The Virtualization Challenge, Part 5: Virtualization and Security March 19, 2008
Guest "break-out" attacks -- where the bad guys break out of a guest virtual machine to attack the hypervisor and gain control of the host -- are a looming threat, according to David M. Lynch, vice president of marketing at Embotics. "The only question is, when, not if, a viable attack will occur."
Related News Alerts
More by Richard Adhikari
Steve Jobs Conquers the Decade - Now What? November 07, 2009
Apple CEO Steve Jobs has been named the chief executive of the decade by Fortune, and it's hard to call that a bad pick, considering the turnaround Apple has undergone since Jobs returned to the helm in the mid-'90s. What's next on the list for a tech leader who's already changed the way we use computers, how we listen to music, and how we use our cellphones?
Verizon Launches a Droid of a Different Color November 06, 2009
Motorola's new handset wasn't the only Droid that Verizon brought to market Friday. HTC's Droid Eris also made its debut. The phone closely resembles the HTC Hero, a handset Sprint started selling last month. The similarity in names for the two Verizon phones is no accident -- Verizon says the name "Droid" will be used as a brand within the carrier's lineup.
There's Something About Droid November 05, 2009
For Verizon, the Droid is an answer to AT&T. For Motorola, it's a path to relevance in the smartphone world. For the Android platform, it's the debut of a brand-new version of the operating system. And for some smartphone shoppers, it could be a tough choice between a Droid and an iPhone.