'Malware 2.0' raises its ugly head

  • Email a Friend
  • Print Page
'Malware 2.0' raises its ugly head
By Staff Writers
Jul 20, 2007 4:55 PM
Tags: 'Malware | 2.0 | raises | its | ugly | head

Signature-based security unable to cope with 'zero-minute' threats.

Signature-based malware detection techniques are becoming less effective in the face of so-called 'malware 2.0' threats, a security firm claimed today.

"The security space is changing rapidly. We are witnessing a major shift in the anti-malware marketplace moving into a new era of malware 2.0," said Kurt Baumgartner, chief threat officer at PC Tools. 

"We are now dealing with zero-minute, rather than just zero-day, exploits that have the potential to further evade signature detections."

PC Tools said that malware variants are now released at "immense rates", driving up sample volumes and making it almost impossible for researchers to keep on top of updates using manual analysis.

These threats are taking advantage of the non-detection sweet spot where they can freely propagate and infect before anti-malware companies can respond.

PC Tools argues that new compilers and other techniques are being used to make threats more difficult, if not impossible, to detect with traditional signature-based systems.

Rather than the broad sweeping attacks seen in the past, attacks are now focusing on smaller groups of PCs making it less likely to attract the attention of security vendors. As a result, malware is spreading in "epic proportions".

"The real challenge for security vendors is in identifying new ways to detect the behaviour of malware. Signature identification alone is ineffective in protecting consumers," said Baumgartner.

Fran Howarth, a partner at analyst firm Hurwitz and Associates, agreed with the research. 

"Signature-based detection is dead, be it for antivirus, intrusion detection or any other security measures," she told vnunet.com adding that security companies are currently just "playing a constant game of catch up".

The spyware industry is worth billions of dollars, and there are significant incentives for malware authors to develop techniques to avoid detection.

The researchers estimate that one in five users with major antivirus products already installed on their computers are still vulnerable to these new and emerging threats.

Copyright © 2009 vnunet.com


 
Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Comment:
Want to participate in the discussion?
Or log in now to comment
 
 
Top Stories
Conroy opens NBNCo regulation debate
Part two of the regulatory reforms paper.
 
Utilities wise up to smart grids
Power to the people?
 
Sydney Water turned off wrong pipe
Admits error with Macquarie Telecom data centre.
 
Exclusive Data Centre - Sponsored Content by Microsoft

Latest Comments

"I turn bluetooth off on my mobile to save the battery. Looks like now I've got another reason. "
by Slatts Jul 4, 2009 1:09 PM
 
"I'm kind of assuming that the water was used in water cooled condensers for the air-conditioning...."
by Slatts Jul 2, 2009 8:54 PM
 
"Why do we have to listen to Nick Minchin's comments? He is just about irrelevant in his opinions ..."
by ngo Jul 2, 2009 8:35 PM
 
" It's not very surprising that the Chinese junta still wants to impose the 'Green Dam - Youth ..."
by anonymous Jul 2, 2009 3:49 PM
 
"I would suggest for anyone wanting to join in the BOINC projects such as SETI@home, World ..."
by wolfgang8741 Jul 2, 2009 5:37 AM

Polls

What will you do when your iPhone contract comes up for renewal?




   |   View results
Retain my current service provider
  12%
 
Switch to a cheaper plan
  18%
 
Switch to a better network
  17%
 
Switch to whoever offers free tethering
  18%
 
Change handset altogether
  36%
TOTAL VOTES: 193

Vote