To advertise, contact
Nathalie Akl
+971 4 2108520
nathalie.akl@itp.com
بالعربية
Where am I? Home /


BREAKING NEWS :

Poacher to gamekeeper

By Sathya Ashok on Thursday, September 13, 2007

The goals of the programme are to get any vulnerability information off the hands of potential hackers.

The goals of the programme are to get any vulnerability information off the hands of potential hackers.

An open forum that encourages sharing and partnership among IPS and IDS vendors could help in increasing security knowledge and improving efficiencies of operations worldwide. According to Terri Forslof, manager of security response at 3Com's Tipping Point division, the IPS industry is still some time away from such an open partnership.

"The IPS/IDS industry has still not gotten where the antivirus community is. The latter has become a well-knit group, where information is shared freely about new threats among providers. But there are a lot of people who are working to build a sense of community," says Forslof.

 

Awareness among customers is on the rise. They are beginning to understand the need for multi-layered security to protect their data and information.

While she states that the formation of such a group is at least two years away, Tipping Point's Zero Day Initiative (ZDI) is already taking small steps in the direction by forming specific partnerships with other security vendors.

ZDI was a programme created by Tipping Point, to track unknown vulnerabilities by rewarding security researchers who find them.

"The programme works in tandem with our own internal research team of 30 people. It brings together security researchers globally. The goals of the programme are to get any vulnerability information off the hands of potential hackers and submit it to the right vendor. This helps us in writing filters and enables us to protect our customers from new attack vectors," says Forslof.

Story continues below
advertisement



The ZDI invites security researchers to submit any vulnerabilities that they come across. Tipping Point analyses the submission and picks the ones which fit certain criteria including that they are critical and high impacting. An offer of purchase is then extended to the particular researcher.

"We have around 600 researchers registered with us and contributing vulnerabilities. We have fixed more than 100 issues through the initiative. There are many Middle East researchers as well who are involved in the programme," explains Forslof.

Following purchase, ZDI develops a filter for the threat. The filter is sent as a regular update to subscribed clients.

"Previously, we did not inform the customers on what the vulnerability was or where it was located. However, we are in the process of revamping the process and we will soon be informing our enterprise clients, with whom we have established relationships, of the nature of the vulnerability. This will give them the additional information they would need to choose the right download options," says Forslof.

In addition, ZDI releases information on the vulnerability to a list of security partners, even competitors, one week before the vendor releases the patch, so that they can prepare for the vulnerability.

Forslof adds that inspite of the obvious benefits of the programme there have not as many security vendors joining in as could be ideally expected.

However, with evangelising efforts on the rise among industry experts and with customers demanding more from providers, Forslof expects increasing co-ordination among IPS vendors.

"Awareness among customers is on the rise. They are beginning to understand the need for multi-layered security to protect their data and information. They also know that these many technologies have to work together yet remain autonomous to be able to protect every level of data used in an organisation," she says.


User Comments

All posts are sent to the administrator for review and are published only after approval. ITP.net reserves the right to remove any comment at any time for any reason. Please keep your responses appropriate and on topic.
Name *
( Remmber Me )
Email *
(Your email address will not be published)
City
Country
Subject *
Comment *
Security Code * Code
 


Please click post only once - your comment will not be published immediately.
Subscribe

Network Middle East English edition


The Middle East's leading monthly magazine for network professionals.

Subscription Rates:
FREE for GCC Countries, Egypt, Jordan & Lebanon *

AED 249.00 for International

Subscribe Now »

* Terms & Conditions Apply

Current Issue  |  Media Info  |  Subscribe to other Magazines »

Related Comment

Andrew Seymour
Management change in the IT channel is notoriously more volatile at vendor level than within the partner community.  

Related Feature

Qatar on target

Channel

If the Qatari channel sustains its current level of development then it is poised to pass a notable milestone by the close of... 

Related Feature

The edge of reason

Networks

Vendors are packing more intelligence into the edge switches of LAN infrastructures. But while they have obvious benefits,... 


Competitions

Win Megabytes of memory

Ends On Monday, 15 December 2008

Diskettes are ancient history, and while re-writeable CDs and DVDs offer space and convenience when it comes to data transfers, you can’t beat a high-capacity flash drive for outright ease-of-use.


Advertising Features


Latest Products
Thermaltake V14 Pro

Hardware | Components | December 2008

Ready to take on water cooling kits.

RATING


Patriot SSD Warp 64GB

Hardware | Storage | December 2008

Ready for warp speed.

RATING


Gears of War 2

Games | Console | December 2008

Get ready for an overdose of action.

RATING


Sony VAIO VGN-Z12GN

Hardware | Notebooks | November 2008

Portable and powerful but can you live with it?

RATING


Technology Jobs
IT Support Senior Engineer
Location: Qatar, Qatar
Territory Sales Manager
Location: Dubai, UAE
Graphic Designer
Location: Dubai, UAE
Implementation Engineers
Location: Dubai, UAE

For editorial enquiries contact
Mark Sutton
mark.sutton
@itp.com
To advertise, contact
Ahmad Bashour
+971 4 210 8549
or ahmad.bashour
@itp.com


Arabian Computer News Channel Middle East Channel Middle East - Arabic Charged CommsMEA Network Middle East Windows Middle East Windows Middle East - Arabic ALL ITP TITLES