FYI: Security suites fail exploit tests

By jobeard
Oct 15, 2008
  1. October 13, 2008 (Computerworld) Security software suites don't protect users from real-world exploits, a bug-tracking company charged today after launching 300 test attacks against a dozen programs, including popular software from McAfee Inc., Symantec Corp. and Trend Micro Inc.

    "The Internet security suites are marketing themselves as the one solution users need to be safe online," said Thomas Kristensen, chief technology officer at Secunia Inc., which ran the tests. "In our opinion, that's just not true."

    Secunia sicced hundreds of vulnerability exploits -- some proof-of-concept code that triggered a vulnerability, others that included payloads -- on 12 suites, including Symantec's Norton Internet Security 2009, Microsoft Corp.'s Windows Live OneCare, AVG Technologies' Internet Security 8.0 and McAfee's Internet Security Suite 2009. The attack code was delivered by files of various formats, including Office documents and malformed images, and by malicious Web sites that triggered browser and ActiveX bugs. The target was a Windows XP SP2 machine missing "certain patches and with a number of vulnerable programs," according to Secunia.​

    The link to the full report at the bottom of the article is excellent and reports the
    test methods, products and results for
    McAfee Internet Security Suite 2009
    Norton Internet Security 2009
    • Windows Live OneCare
    ZoneAlarm Security Suite 8
    AVG Internet Security 8.0
    • CA Internet Security Suite 2008
    F-secure Internet Security 2009
    • TrendMicro Internet Security 2008
    BitDefender Internet Security Suite 2009
    Panda Internet Security 2009
    Kaspersky Internet Security 2009
  2. CCT

    CCT TS Evangelist Posts: 2,653   +6

    'missing "certain" patches' indeed!

    That's a setup situation. Why don't these people test using what knowledgeable people use, ie, an AV, a Firewall and an AM ALL RUNNING!

    This is bogus testing, IMHO.
  3. jobeard

    jobeard TS Ambassador Topic Starter Posts: 11,177   +990

    understand -- also didn't declare specifically which updates were intensionally not included.

    HOWEVER, it makes the point the Updates + AV + Firewall ~= security and
    the absence of Updates => poor security.
  4. CCT

    CCT TS Evangelist Posts: 2,653   +6

    Yepper - a point that many should take to heart.
Topic Status:
Not open for further replies.

Similar Topics

Add your comment to this article

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...