Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

2/21/2014
03:25 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Proofpoint Adds Next-Generation Predictive Defense To Targeted Attack Protection Solution

Protects users from malware and advanced threats in both URLs and email attachments

SUNNYVALE, Calif. – February 20, 2014. Proofpoint, Inc. (NASDAQ: PFPT), a leading security-as-a-service provider, today announced general availability of the Proofpoint Targeted Attack Protection Winter 2014 release. This next-generation solution includes new predictive defense capabilities, as well as the new Attachment Defense module and updated real-time threat dashboard. Targeted Attack Protection showcases the industry's first dynamic malware analysis capabilities to effectively discover, "sandbox", and block URL-linked threats and e-mail attachments before end-users ever click. In the last 12 months, IT security and operations staff have been waging a losing battle against advanced malware, with more than 76 percent stating they had been impacted by exploits or malware that had evaded their existing Intrusion Detection and Antivirus solutions.i Part of the challenge is that even the most modern multi-vector execution engines and dynamic malware analysis systems only initiate detection after a user clicks on and accesses the malicious content – and provide little subsequent insight into or defense against additional user clicks. The result is high system compromise rates, remediation costs and risk of data loss. Proofpoint's predictive defense capability uses big-data analysis and advanced statistical modeling to proactively perform advanced dynamic malware analysis on potentially suspicious URLs and e-mail attachments before users click links or open attachments. The Targeted Attack Protection solution's real-time dashboard and "follow-me" protection also provide an ongoing view into and defense against these attacks. This reduced time-to-detection and end-to-end insight and protection enables proactive protection of an organization's users, minimizing computer compromises within the enterprise, and reducing incident response time, effort, and costs. "Traditional defense tools are failing to protect enterprises from advanced targeted attacks and the broader problem of advanced malware," wrote Lawrence Orans and Jeremy d'Hoinne, research directors at Gartner who authored the Five Styles of Advanced Threat Defense report August 20, 2013. "One of the biggest challenges for most security teams is incident response. Any solution that can proactively minimize the need for clean-up frees up our teams to deal with the ever increasing volume of tasks," said Jesus Alejandro Cuevas Villegas, information systems manager at Groupo. "Additionally, techniques such as Predictive Defense and cloud-based malware analysis make solutions like Proofpoint much easier for organizations to maintain, justify, and afford given all the processing and capacity planning is managed by Proofpoint." "For the past several months, we've had Predictive Defense running in beta and the results have been very compelling," said David Knight, executive vice president and general manager of Proofpoint Information Security Products Group. "We are seeing on-going longlining campaigns targeting our customers delivering advanced malware either via exploit kits such as Nuclear and Magnitude or as malicious attachments. With Predictive Defense, we are able to effectively identify and block these attacks before users are compromised, even when payload transmissions are encrypted, not after. With these campaigns averaging a 14 percent end-user click-through rate, this represents a major benefit for our customers." Proofpoint's Targeted Attack Protection solution is currently available globally. For more information, please go to proofpoint.com/tap.

Julia Allyn Senior Account Executive Ogilvy Public Relations 1001 Front Street, Second Floor San Francisco, CA 94111 (O) 415.677.2732 (M) 510.701.3456

 

Recommended Reading:

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-11583
PUBLISHED: 2020-08-03
A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.
CVE-2020-11584
PUBLISHED: 2020-08-03
A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.
CVE-2020-5770
PUBLISHED: 2020-08-03
Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.01 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
CVE-2020-5771
PUBLISHED: 2020-08-03
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious backup archive.
CVE-2020-5772
PUBLISHED: 2020-08-03
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.