Appliance automates malware detection

Security firm NetWitness today announced Spectrum, an appliance for enabling automated malware analysis that works in conjunction with the company's traffic-analysis gear used to spot threats and policy violations.

FIGHTING BACK: Is retaliation the answer to cyberattacks?

The Spectrum appliance is intended to sit at the Internet gateway to examine inbound/outbound network traffic and it can find inbound evidence of "an executable and inappropriate file," or outbound botnet activity, according to Eddie Schwartz, NetWitness chief security officer. "It's another application on top of our infrastructure."

While Spectrum doesn't block suspected inbound malware, it can issue a warning to the security manager about suspicious traffic and enables the NetWitness NextGen equipment to keep track of potential malware code and where it's going in real-time, the company says.

"You can get a profile of how malware moved around the organization," says Schwartz.

Spectrum, which starts at $50,000 and is available, is intended to compete with products from Damballa and FireEye.

Read more about wide area network in Network World's Wide Area Network section.

More about: FireEye, ING, LAN, NextGen
References show all

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the Computerworld comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Coverage
Related Whitepapers
Latest Stories
Community Comments
Tags: anti-malware, botnet, FireEye, firewalls, malware, NetWitness, security
Whitepapers
All whitepapers
Sign up now to get free exclusive access to reports, research and invitation only events.
Featured Download
/downloads/product/14/gimp/

GNU Image Manipulation Program (GIMP)

When you think Open Source software, you may think of half-baked programs too hard to use, or perhaps lacking power. Well, think again. This Open ...

Computerworld newsletter

Join the most dedicated community for IT managers, leaders and professionals in Australia