SofaWare Home Page    sofaware.infopop.cc    SofaWare Discussion Groups  Hop To Forum Categories  Suggestions    Improve IPS Signature Management

Moderators: Marina, wendy
Go
New
Find
Notify
Tools
Reply
  
-star Rating Rate It!  Login/Join 
Junior Member
Posted
1) Timely add new IPS signatures protective against new remotely exploitable vulnerabilities that can lead to system compromise, especially if exploits are in the wild, no patch correcting the vulnerability is available and successful exploitation does not require interaction other than basic use of the application vulnerable.

2) To conserve IPS new-threat scanning capacity, delete old IPS signatures for vulnerabilities patched long ago that are not of meaningful value in preventing future unknown attacks, especially if the signatures were never targeted at preventing system compromise.

On average, one system compromising exploit without a patch directed at popular applications is discovered in the wild per month; see link below, which lists extremely critical vulnerabilities in popular and other applications. And on average, each month a patch is introduced to stop some such exploit. If SofaWare has not been providing an average of one or more new IPS exploit signatures per month and retiring old IPS exploit signatures at a similar rate, then SofaWare likely has not been properly managing Safe@Office 500 IPS updates. This causes customer concern, wastes customer resources tracking vulnerabilities and may result in a loss of customers for SofaWare.
http://secunia.com/advisories/...ere[]=1&sort_by=date
 
Posts: 16 | Registered: December 26, 2008Reply With QuoteEdit or Delete MessageReport This Post
  Powered by Eve Community  
 

SofaWare Home Page    sofaware.infopop.cc    SofaWare Discussion Groups  Hop To Forum Categories  Suggestions    Improve IPS Signature Management

© Copyright 2006 SofaWare Technologies Ltd.
How To Buy