Attacks/Breaches
2/21/2014
03:25 PM
Dark Reading
Dark Reading
Products and Releases
Connect Directly
RSS
E-Mail
50%
50%

Proofpoint Adds Next-Generation Predictive Defense To Targeted Attack Protection Solution

Protects users from malware and advanced threats in both URLs and email attachments

SUNNYVALE, Calif. – February 20, 2014. Proofpoint, Inc. (NASDAQ: PFPT), a leading security-as-a-service provider, today announced general availability of the Proofpoint Targeted Attack Protection Winter 2014 release. This next-generation solution includes new predictive defense capabilities, as well as the new Attachment Defense module and updated real-time threat dashboard. Targeted Attack Protection showcases the industry's first dynamic malware analysis capabilities to effectively discover, "sandbox", and block URL-linked threats and e-mail attachments before end-users ever click. In the last 12 months, IT security and operations staff have been waging a losing battle against advanced malware, with more than 76 percent stating they had been impacted by exploits or malware that had evaded their existing Intrusion Detection and Antivirus solutions.i Part of the challenge is that even the most modern multi-vector execution engines and dynamic malware analysis systems only initiate detection after a user clicks on and accesses the malicious content – and provide little subsequent insight into or defense against additional user clicks. The result is high system compromise rates, remediation costs and risk of data loss. Proofpoint's predictive defense capability uses big-data analysis and advanced statistical modeling to proactively perform advanced dynamic malware analysis on potentially suspicious URLs and e-mail attachments before users click links or open attachments. The Targeted Attack Protection solution's real-time dashboard and "follow-me" protection also provide an ongoing view into and defense against these attacks. This reduced time-to-detection and end-to-end insight and protection enables proactive protection of an organization's users, minimizing computer compromises within the enterprise, and reducing incident response time, effort, and costs. "Traditional defense tools are failing to protect enterprises from advanced targeted attacks and the broader problem of advanced malware," wrote Lawrence Orans and Jeremy d'Hoinne, research directors at Gartner who authored the Five Styles of Advanced Threat Defense report August 20, 2013. "One of the biggest challenges for most security teams is incident response. Any solution that can proactively minimize the need for clean-up frees up our teams to deal with the ever increasing volume of tasks," said Jesus Alejandro Cuevas Villegas, information systems manager at Groupo. "Additionally, techniques such as Predictive Defense and cloud-based malware analysis make solutions like Proofpoint much easier for organizations to maintain, justify, and afford given all the processing and capacity planning is managed by Proofpoint." "For the past several months, we've had Predictive Defense running in beta and the results have been very compelling," said David Knight, executive vice president and general manager of Proofpoint Information Security Products Group. "We are seeing on-going longlining campaigns targeting our customers delivering advanced malware either via exploit kits such as Nuclear and Magnitude or as malicious attachments. With Predictive Defense, we are able to effectively identify and block these attacks before users are compromised, even when payload transmissions are encrypted, not after. With these campaigns averaging a 14 percent end-user click-through rate, this represents a major benefit for our customers." Proofpoint's Targeted Attack Protection solution is currently available globally. For more information, please go to proofpoint.com/tap.

Julia Allyn Senior Account Executive Ogilvy Public Relations 1001 Front Street, Second Floor San Francisco, CA 94111 (O) 415.677.2732 (M) 510.701.3456

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-6306
Published: 2014-08-22
Unspecified vulnerability on IBM Power 7 Systems 740 before 740.70 01Ax740_121, 760 before 760.40 Ax760_078, and 770 before 770.30 01Ax770_062 allows local users to gain Service Processor privileges via unknown vectors.

CVE-2014-0232
Published: 2014-08-22
Multiple cross-site scripting (XSS) vulnerabilities in framework/common/webcommon/includes/messages.ftl in Apache OFBiz 11.04.01 before 11.04.05 and 12.04.01 before 12.04.04 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, which are not properly handled in a (1)...

CVE-2014-3525
Published: 2014-08-22
Unspecified vulnerability in Apache Traffic Server 4.2.1.1 and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks.

CVE-2014-3563
Published: 2014-08-22
Multiple unspecified vulnerabilities in Salt (aka SaltStack) before 2014.1.10 allow local users to have an unspecified impact via vectors related to temporary file creation in (1) seed.py, (2) salt-ssh, or (3) salt-cloud.

CVE-2014-3587
Published: 2014-08-22
Integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5.5.16, allows remote attackers to cause a denial of service (application crash) via a crafted CDF file. NOTE: this vulnerability exists bec...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Three interviews on critical embedded systems and security, recorded at Black Hat 2014 in Las Vegas.