Welcome!

Wearables Authors: Automic Blog, Pat Romanski, Shelly Palmer, Yeshim Deniz, Elizabeth White

News Feed Item

NSS Labs Tests Show Enterprise End Point Protection Solutions Improving Ability to Block Exploits, Evasions and Phishing Attacks

AUSTIN, TX -- (Marketwire) -- 02/25/13 -- NSS Labs today released three new 2013 Corporate End Point Protection Comparative Analysis Reports, which evaluated 11 enterprise level end point protection (EPP) products to test their effectiveness in blocking exploits and evasions. While only 3 of the 11 vendors -- McAfee, Kaspersky and Microsoft -- scored 100% across all 6 types of evasion testing, the average score across all vendors increased to an average of 87% in 2013 testing, compared to 27% in NSS' 2010 tests. In exploit testing, the top 3 vendors -- McAfee, Kaspersky and Symantec -- all scored over 90%, with an overall group average of 74.5%, also an improvement over 2010 test results.

Read the Reports:
NSS 2013 Corporate End Point Protection Comparative Analysis Report - Exploits
NSS 2013 Corporate End Point Protection Comparative Analysis Report - Evasions
NSS 2013 Corporate End Point Protection Comparative Analysis Report - Phishing

NSS vulnerability research has shown that the number of vulnerabilities disclosed in 2012 jumped 26% after a 5-year decline. Given the growing availability of exploit toolkits that automate the creation of evasions and exploits targeting newly-discovered and existing vulnerabilities, NSS recommends that enterprises -- especially those that have implemented a bring your own device (BYOD) policy -- fully understand the ability of their EPP solutions to adequately protect against key exploits and types of evasions.

NSS's research yielded several key conclusions:

  • Enterprise EPP products differ up to 53% in effectiveness at blocking exploits: Protection levels in the 2013 tests ranged from 97% (McAfee) to 41% (Panda). The top 3 vendors all scored over 91% with half (4) of the remaining 8 vendors scoring in the 70 - 80% range. In 2010 exploit testing, the overall block rate ranged from 20% to 100% with an overall average of 67%.

  • Default vendor settings may favor performance over security: While all of the vendors tested were able to block exploits once malicious files were decompressed, only 3 of the 11 vendors -- ESET, Kaspersky, and Trend Micro -- blocked all of the compressed threats upon download. NSS believes having a default setting that does not inspect compressed downloads is typically a choice of performance over security and that malicious downloads inside of compressed files should be blocked by default.

  • Vendors' anti-evasion protection against encoded payloads and layered evasions has greatly improved since 2010: In 2010, none of the products scored 100% and most scored below 40% in their ability to handle encoded payloads. In 2013 tests, 8 of the 11 vendors scored 100% in these tests -- followed by one vendor scoring 83% and two that only scored 17%. In 2010, even single layers of evasion caused problems for many vendors, but in 2013, all 11 vendors scored 100% even when attempts to use as many as 4 levels of obfuscation were used.

  • Web browsers rather than EPP should be considered the first line of defense against phishing: Modern Web browsers now offer 90% to 94% protection against phishing according to recent NSS tests. Only one of the vendors tested -- Trend Micro -- scored as well or better than current Web browsers did in these latest tests. Organizations should still take time to educate users about phishing and best practices for avoiding phishers' increasingly deceptive attacks.

  • Detection of exploits delivered via HTTP vs. HTTPS can vary as much as 39% in a single product: Only 3 of the 11 vendors blocked the same percentage of exploits when delivered via HTTP and HTTPS. On average, there was a 7% difference in the ability of products across the board to block HTTPS vs. HTTP exploit attacks. NSS believes security product should ideally protect against all exploits for a given vulnerability, regardless of the transport protocol.

  • Enterprise Using Internet Explorer 6 (IE6) may be less protected against exploits: Because some enterprises are still using IE6, NSS ran tests using exploits requiring IE6 and those that did not. For exploits not requiring IE6, the average block rate across all products was 77% with a range of 44% to 98%. For those requiring IE6, the average block rate dropped to 65% with a range of 20% to 100% effectiveness. Enterprises running IE6 should be aware of this discrepancy and evaluate their EPP defenses carefully, given IE6's impact on their attack surface.

Commentary: NSS Labs Research Director Randy Abrams
"The simple detection of malware is insufficient to cope with the multitude of attacks that companies face today; for example, Facebook and Apple have both recently fallen prey to Java exploits that resulted in breaches," said Randy Abrams, Research Director at NSS Labs. "With phishing and targeted drive-by attacks (ambiguously referred to as watering hole attacks) targeting users who may be outside perimeter defenses, endpoint protection products are often the last line of defense and criminals can -- and do -- use obfuscation techniques to evade malware detection. Most Endpoint protection products are dealing well with evasions for the exploits they detect, however there is still a lot of room for improvement in the detection of known exploit attempts and simply detecting exploits alone falls short of the protection needed by today's enterprises."

To read more NSS Labs research and reports, visit www.nsslabs.com.

About NSS Labs, Inc.
NSS Labs, Inc. is the world's leading information security research and advisory company. We deliver a unique mix of test-based research and expert analysis to provide our clients with the information they need to make good security decisions. CIOs, CISOs, and information security professionals from many of the largest and most demanding enterprises rely on NSS Labs' insight, every day. Founded in 1991, the company is located in Austin, Texas. For more information, visit www.nsslabs.com.

© 2013 NSS Labs, Inc. All rights reserved. All brand, product and service names are the trademarks, registered trademarks, or service marks of their respective owners.

Add to Digg Bookmark with del.icio.us Add to Newsvine

Contact:
ReseAnne Sims
Sr. Manager, Public Relations
NSS Labs
Phone: +1 (832) 741-7373
[email protected]

More Stories By Marketwired .

Copyright © 2009 Marketwired. All rights reserved. All the news releases provided by Marketwired are copyrighted. Any forms of copying other than an individual user's personal reference without express written permission is prohibited. Further distribution of these materials is strictly forbidden, including but not limited to, posting, emailing, faxing, archiving in a public database, redistributing via a computer network or in a printed form.

@ThingsExpo Stories
To get the most out of their data, successful companies are not focusing on queries and data lakes, they are actively integrating analytics into their operations with a data-first application development approach. Real-time adjustments to improve revenues, reduce costs, or mitigate risk rely on applications that minimize latency on a variety of data sources. In his session at @BigDataExpo, Jack Norris, Senior Vice President, Data and Applications at MapR Technologies, reviewed best practices to ...
A strange thing is happening along the way to the Internet of Things, namely far too many devices to work with and manage. It has become clear that we'll need much higher efficiency user experiences that can allow us to more easily and scalably work with the thousands of devices that will soon be in each of our lives. Enter the conversational interface revolution, combining bots we can literally talk with, gesture to, and even direct with our thoughts, with embedded artificial intelligence, whic...
Cloud Expo | DXWorld Expo have announced the conference tracks for Cloud Expo 2018. Cloud Expo will be held June 5-7, 2018, at the Javits Center in New York City, and November 6-8, 2018, at the Santa Clara Convention Center, Santa Clara, CA. Digital Transformation (DX) is a major focus with the introduction of DX Expo within the program. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive ov...
Smart cities have the potential to change our lives at so many levels for citizens: less pollution, reduced parking obstacles, better health, education and more energy savings. Real-time data streaming and the Internet of Things (IoT) possess the power to turn this vision into a reality. However, most organizations today are building their data infrastructure to focus solely on addressing immediate business needs vs. a platform capable of quickly adapting emerging technologies to address future ...
With tough new regulations coming to Europe on data privacy in May 2018, Calligo will explain why in reality the effect is global and transforms how you consider critical data. EU GDPR fundamentally rewrites the rules for cloud, Big Data and IoT. In his session at 21st Cloud Expo, Adam Ryan, Vice President and General Manager EMEA at Calligo, examined the regulations and provided insight on how it affects technology, challenges the established rules and will usher in new levels of diligence arou...
In his session at 21st Cloud Expo, Raju Shreewastava, founder of Big Data Trunk, provided a fun and simple way to introduce Machine Leaning to anyone and everyone. He solved a machine learning problem and demonstrated an easy way to be able to do machine learning without even coding. Raju Shreewastava is the founder of Big Data Trunk (www.BigDataTrunk.com), a Big Data Training and consulting firm with offices in the United States. He previously led the data warehouse/business intelligence and B...
"Digital transformation - what we knew about it in the past has been redefined. Automation is going to play such a huge role in that because the culture, the technology, and the business operations are being shifted now," stated Brian Boeggeman, VP of Alliances & Partnerships at Ayehu, in this SYS-CON.tv interview at 21st Cloud Expo, held Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
SYS-CON Events announced today that Synametrics Technologies will exhibit at SYS-CON's 22nd International Cloud Expo®, which will take place on June 5-7, 2018, at the Javits Center in New York, NY. Synametrics Technologies is a privately held company based in Plainsboro, New Jersey that has been providing solutions for the developer community since 1997. Based on the success of its initial product offerings such as WinSQL, Xeams, SynaMan and Syncrify, Synametrics continues to create and hone inn...
"Evatronix provides design services to companies that need to integrate the IoT technology in their products but they don't necessarily have the expertise, knowledge and design team to do so," explained Adam Morawiec, VP of Business Development at Evatronix, in this SYS-CON.tv interview at @ThingsExpo, held Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
The 22nd International Cloud Expo | 1st DXWorld Expo has announced that its Call for Papers is open. Cloud Expo | DXWorld Expo, to be held June 5-7, 2018, at the Javits Center in New York, NY, brings together Cloud Computing, Digital Transformation, Big Data, Internet of Things, DevOps, Machine Learning and WebRTC to one location. With cloud computing driving a higher percentage of enterprise IT budgets every year, it becomes increasingly important to plant your flag in this fast-expanding busin...
In his Opening Keynote at 21st Cloud Expo, John Considine, General Manager of IBM Cloud Infrastructure, led attendees through the exciting evolution of the cloud. He looked at this major disruption from the perspective of technology, business models, and what this means for enterprises of all sizes. John Considine is General Manager of Cloud Infrastructure Services at IBM. In that role he is responsible for leading IBM’s public cloud infrastructure including strategy, development, and offering m...
Nordstrom is transforming the way that they do business and the cloud is the key to enabling speed and hyper personalized customer experiences. In his session at 21st Cloud Expo, Ken Schow, VP of Engineering at Nordstrom, discussed some of the key learnings and common pitfalls of large enterprises moving to the cloud. This includes strategies around choosing a cloud provider(s), architecture, and lessons learned. In addition, he covered some of the best practices for structured team migration an...
No hype cycles or predictions of a gazillion things here. IoT is here. You get it. You know your business and have great ideas for a business transformation strategy. What comes next? Time to make it happen. In his session at @ThingsExpo, Jay Mason, an Associate Partner of Analytics, IoT & Cybersecurity at M&S Consulting, presented a step-by-step plan to develop your technology implementation strategy. He also discussed the evaluation of communication standards and IoT messaging protocols, data...
Recently, REAN Cloud built a digital concierge for a North Carolina hospital that had observed that most patient call button questions were repetitive. In addition, the paper-based process used to measure patient health metrics was laborious, not in real-time and sometimes error-prone. In their session at 21st Cloud Expo, Sean Finnerty, Executive Director, Practice Lead, Health Care & Life Science at REAN Cloud, and Dr. S.P.T. Krishnan, Principal Architect at REAN Cloud, discussed how they built...
SYS-CON Events announced today that Evatronix will exhibit at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Evatronix SA offers comprehensive solutions in the design and implementation of electronic systems, in CAD / CAM deployment, and also is a designer and manufacturer of advanced 3D scanners for professional applications.
22nd International Cloud Expo, taking place June 5-7, 2018, at the Javits Center in New York City, NY, and co-located with the 1st DXWorld Expo will feature technical sessions from a rock star conference faculty and the leading industry players in the world. Cloud computing is now being embraced by a majority of enterprises of all sizes. Yesterday's debate about public vs. private has transformed into the reality of hybrid cloud: a recent survey shows that 74% of enterprises have a hybrid cloud ...
22nd International Cloud Expo, taking place June 5-7, 2018, at the Javits Center in New York City, NY, and co-located with the 1st DXWorld Expo will feature technical sessions from a rock star conference faculty and the leading industry players in the world. Cloud computing is now being embraced by a majority of enterprises of all sizes. Yesterday's debate about public vs. private has transformed into the reality of hybrid cloud: a recent survey shows that 74% of enterprises have a hybrid cloud ...
DevOps at Cloud Expo – being held June 5-7, 2018, at the Javits Center in New York, NY – announces that its Call for Papers is open. Born out of proven success in agile development, cloud computing, and process automation, DevOps is a macro trend you cannot afford to miss. From showcase success stories from early adopters and web-scale businesses, DevOps is expanding to organizations of all sizes, including the world's largest enterprises – and delivering real results. Among the proven benefits,...
@DevOpsSummit at Cloud Expo, taking place June 5-7, 2018, at the Javits Center in New York City, NY, is co-located with 22nd Cloud Expo | 1st DXWorld Expo and will feature technical sessions from a rock star conference faculty and the leading industry players in the world. The widespread success of cloud computing is driving the DevOps revolution in enterprise IT. Now as never before, development teams must communicate and collaborate in a dynamic, 24/7/365 environment. There is no time to wait...
SYS-CON Events announced today that T-Mobile exhibited at SYS-CON's 20th International Cloud Expo®, which will take place on June 6-8, 2017, at the Javits Center in New York City, NY. As America's Un-carrier, T-Mobile US, Inc., is redefining the way consumers and businesses buy wireless services through leading product and service innovation. The Company's advanced nationwide 4G LTE network delivers outstanding wireless experiences to 67.4 million customers who are unwilling to compromise on qua...