Attacks/Breaches
2/21/2014
03:25 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Proofpoint Adds Next-Generation Predictive Defense To Targeted Attack Protection Solution

Protects users from malware and advanced threats in both URLs and email attachments

SUNNYVALE, Calif. – February 20, 2014. Proofpoint, Inc. (NASDAQ: PFPT), a leading security-as-a-service provider, today announced general availability of the Proofpoint Targeted Attack Protection Winter 2014 release. This next-generation solution includes new predictive defense capabilities, as well as the new Attachment Defense module and updated real-time threat dashboard. Targeted Attack Protection showcases the industry's first dynamic malware analysis capabilities to effectively discover, "sandbox", and block URL-linked threats and e-mail attachments before end-users ever click. In the last 12 months, IT security and operations staff have been waging a losing battle against advanced malware, with more than 76 percent stating they had been impacted by exploits or malware that had evaded their existing Intrusion Detection and Antivirus solutions.i Part of the challenge is that even the most modern multi-vector execution engines and dynamic malware analysis systems only initiate detection after a user clicks on and accesses the malicious content – and provide little subsequent insight into or defense against additional user clicks. The result is high system compromise rates, remediation costs and risk of data loss. Proofpoint's predictive defense capability uses big-data analysis and advanced statistical modeling to proactively perform advanced dynamic malware analysis on potentially suspicious URLs and e-mail attachments before users click links or open attachments. The Targeted Attack Protection solution's real-time dashboard and "follow-me" protection also provide an ongoing view into and defense against these attacks. This reduced time-to-detection and end-to-end insight and protection enables proactive protection of an organization's users, minimizing computer compromises within the enterprise, and reducing incident response time, effort, and costs. "Traditional defense tools are failing to protect enterprises from advanced targeted attacks and the broader problem of advanced malware," wrote Lawrence Orans and Jeremy d'Hoinne, research directors at Gartner who authored the Five Styles of Advanced Threat Defense report August 20, 2013. "One of the biggest challenges for most security teams is incident response. Any solution that can proactively minimize the need for clean-up frees up our teams to deal with the ever increasing volume of tasks," said Jesus Alejandro Cuevas Villegas, information systems manager at Groupo. "Additionally, techniques such as Predictive Defense and cloud-based malware analysis make solutions like Proofpoint much easier for organizations to maintain, justify, and afford given all the processing and capacity planning is managed by Proofpoint." "For the past several months, we've had Predictive Defense running in beta and the results have been very compelling," said David Knight, executive vice president and general manager of Proofpoint Information Security Products Group. "We are seeing on-going longlining campaigns targeting our customers delivering advanced malware either via exploit kits such as Nuclear and Magnitude or as malicious attachments. With Predictive Defense, we are able to effectively identify and block these attacks before users are compromised, even when payload transmissions are encrypted, not after. With these campaigns averaging a 14 percent end-user click-through rate, this represents a major benefit for our customers." Proofpoint's Targeted Attack Protection solution is currently available globally. For more information, please go to proofpoint.com/tap.

Julia Allyn Senior Account Executive Ogilvy Public Relations 1001 Front Street, Second Floor San Francisco, CA 94111 (O) 415.677.2732 (M) 510.701.3456

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-0714
Published: 2015-05-02
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Finesse Server 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCut53595.

CVE-2014-3598
Published: 2015-05-01
The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

CVE-2014-8361
Published: 2015-05-01
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request.

CVE-2015-0237
Published: 2015-05-01
Red Hat Enterprise Virtualization (RHEV) Manager before 3.5.1 ignores the permission to deny snapshot creation during live storage migration between domains, which allows remote authenticated users to cause a denial of service (prevent host start) by creating a long snapshot chain.

CVE-2015-0257
Published: 2015-05-01
Red Hat Enterprise Virtualization (RHEV) Manager before 3.5.1 uses weak permissions on the directories shared by the ovirt-engine-dwhd service and a plugin during service startup, which allows local users to obtain sensitive information by reading files in the directory.

Dark Reading Radio
Archived Dark Reading Radio
Join security and risk expert John Pironti and Dark Reading Editor-in-Chief Tim Wilson for a live online discussion of the sea-changing shift in security strategy and the many ways it is affecting IT and business.