Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security

November 28th, 2006, 10:28 GMT · By Bogdan Popa

How to Handle Vulnerabilities

SHARE:

Adjust text size:


What's a zero-day exploit? "Zero-Day exploits are released before, or on the same day the vulnerability - and, sometimes, the vendor patch - are released to the public. The term derives from the number of days between the public advisory and the
release of the exploit," as Wikipedia says.

Symantec provides similar information of the phrase adding that "we have recently seen an increase in the number of zero-day exploits, which indicates that attackers are being more methodical in their discovery and use of software vulnerabilities.

A zero-day exploit occurs when a software flaw is only discovered after it is already being exploited in the wild (and there isn't a patch available from the vendor)."

Most users are trying to combat the security holes and vulnerabilities using security solutions that are meant to assure the protection of the system. But, even with these applications, we're still vulnerable because until the moment the antivirus receives information, the virus can affect us.

"Our strategy is to protect a new vulnerability against any future attacks in the form of broader coverage focusing on the one vulnerability, instead of having to reactively respond to every specific exploit. This approach protects against both known and unknown attempts to exploit that vulnerability.

Users can deploy one signature that protects against many different attacks. To complement intrusion prevention signatures that focus on the network vector, antivirus signatures block the file-based attacks," Mimi Hoang, Symantec employee, sustained.

TELL US WHAT YOU THINK:

1,428 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Symantec's Host Security Metasystem

Symantec Unveils Norton 360 Public Beta

STOP! This Website Can Harm Your Computer!

WinZip 10 Security Flaw

Kaspersky Lab Describes Malware Evolution

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM