On Tue, Mar 29, 2016 at 5:13 PM, Paul Rushing <[email protected]> wrote:

> email is constant cat and mouse game.  It’s the next unknown attack that’s
> always the concern, the one we don’t know to block yet.  Have to try and
> push as much egress filtering / content scanning for data loss prevention
> as feasible.
>


AV is dead, long live AV!

Have you ever submitted a sample of malware to virustotal that has gotten
through all the AV & SPAM filters?  Usually, if it makes it through
relatively good defenses, it takes days for it to be detected by most of
the AV vendors.

Heuristics are more important than file matches nowadays.  Companies like
fireEye make their living on opening up samples in a sandbox, then alerting
after the fact that something got through.
_______________________________________________
General mailing list
[email protected]
http://brlug.net/mailman/listinfo/general_brlug.net

Reply via email to