Risk
7/31/2006
07:41 AM
50%
50%

FireEye Unveils NAC

FireEye announced the availability of the FireEye 4200 appliance

MENLO PARK, Calif. -- FireEye, Inc., a pioneer in Network Access Control (NAC) technology, today announced the availability of the FireEye 4200 appliance-the first agentless NAC solution that leverages innovative virtualization technology to stop machines infected with worms and other malicious network-borne malware from accessing and damaging enterprise networks. Simple, yet extremely accurate, the FireEye appliance quarantines systems infected with known or unknown malware. The unique and unprecedented FireEye 4200 technology is the industry's most accurate and easily deployed NAC security appliance available on the market today.

"After looking at competitive NAC solutions, we selected FireEye because of their completely unique approach to securing the internal wireless network," said Fred Archibald, network manager at the department of Electrical Engineering and Computer Sciences at the University of California, Berkeley, a premier FireEye customer. "Other solutions we evaluated were tedious and time-consuming to deploy and manage. FireEye's agentless, easy to configure solution is extremely accurate in stopping attacks, and eliminates client support issues. Based on this, FireEye was the clear choice when selecting our NAC solution."

The FireEye Attack Confirmation Technology (FACT) Engine FireEye 4200 is equipped with the FireEye Attack Confirmation Technology (FACT) engine, which uses patent-pending virtualization technology to assess suspect machine network traffic and then provides conclusive attack confirmation prior to taking any quarantine actions or denying access to the network, thus eliminating the need to resolve false positives. Once a machine has been deemed infected with worms, network-borne malware, or zero-day attacks, it is immediately quarantined, protecting internal network resources from the damage of a serious attack.

"When compared with other products, we found that FireEye has a unique and interesting approach to Network Access Control (NAC) not found in current products on the market today," said Chris Motta, senior director, Information Technology at Redback Networks Inc. (NASDAQ: RBAK), a leading provider of next-generation broadband networking systems and another FireEye inaugural customer. "Where most Network Access Control (NAC) products are often considered 'network bottlenecks,' requiring a large amount of time and energy to maintain, FireEye's Network Access Control (NAC) solution monitors our network, serving as a highly-effective 'trap' for rapidly propagating viruses and worms, without the need for constant maintenance and updating. In addition, FireEye's virtualization technology adds to the product's robust capabilities and is, quite simply, unlike any other Network Access Control (NAC) solution we've reviewed."

FireEye Inc.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2011-4403
Published: 2015-04-24
Multiple cross-site request forgery (CSRF) vulnerabilities in Zen Cart 1.3.9h allow remote attackers to hijack the authentication of administrators for requests that (1) delete a product via a delete_product_confirm action to product.php or (2) disable a product via a setflag action to categories.ph...

CVE-2012-2930
Published: 2015-04-24
Multiple cross-site request forgery (CSRF) vulnerabilities in TinyWebGallery (TWG) before 1.8.8 allow remote attackers to hijack the authentication of administrators for requests that (1) add a user via an adduser action to admin/index.php or (2) conduct static PHP code injection attacks in .htusers...

CVE-2012-2932
Published: 2015-04-24
Multiple cross-site scripting (XSS) vulnerabilities in TinyWebGallery (TWG) before 1.8.8 allow remote attackers to inject arbitrary web script or HTML via the (1) selitems[] parameter in a copy, (2) chmod, or (3) arch action to admin/index.php or (4) searchitem parameter in a search action to admin/...

CVE-2012-5451
Published: 2015-04-24
Multiple stack-based buffer overflows in HttpUtils.dll in TVMOBiLi before 2.1.0.3974 allow remote attackers to cause a denial of service (tvMobiliService service crash) via a long string in a (1) GET or (2) HEAD request to TCP port 30888.

CVE-2015-0297
Published: 2015-04-24
Red Hat JBoss Operations Network 3.3.1 does not properly restrict access to certain APIs, which allows remote attackers to execute arbitrary Java methos via the (1) ServerInvokerServlet or (2) SchedulerService or (3) cause a denial of service (disk consumption) via the ContentManager.

Dark Reading Radio
Archived Dark Reading Radio
Join security and risk expert John Pironti and Dark Reading Editor-in-Chief Tim Wilson for a live online discussion of the sea-changing shift in security strategy and the many ways it is affecting IT and business.