|
We believe that security is a dynamic process and
IT security team are at the front end playing
the most important role in this process. Our
goal is to provide you the right tool and grow
your capability so that you can secure your
network without relying on outside force. We
build forensic tool for IT security team to
analyze Malware code, generate repair tool on
real time basis right at the place where attack
happens, provide you a proactive and real
time reacting security system. With out
solution, you can defeat single target
attack right at your place.
Computer security has been
shifting. “Show-off” type of multiple targets
computer virus and internet worm outbreak with
big media coverage has being shifting into
organized single target attack (STA) that are
out to steal your assets and ruin your
reputation. STA doesn’t have any latency and
leave security vendors no opportunity to do
anything that used to be “damage happened first
and then clean it up later” approach. The “8
hours later signature” becomes useless once the
damage is done for STA. This security shifting
can cause big damage, most often in hundreds
millions dollars to victim, it also creates a
big demand for new security solution.
FreeSpace Internet
Security (FSIS) takes a new approach to security
problem, shifting along and attacking the root
problem. The following provides a list of
features from FSIS security solution:
-
Empower enterprise
security profession team, equipping them with
transparent security forensic tool and help
them understand each and every piece of
uninvited Malware code coming into their
network;
-
Combine proactive
and real time reacting techniques together. At
the early stage of STA when the attacker
poking around to select STA victim, the
forensic tool helps IT security profession
team to analyze and thoroughly understand the
earlier activities, and prepare for defeating
the attack through its policy based perimeter
defenses based on the knowledge obtained from
forensic analysis. When STA happens, the real
time reacting solution generates defeating
tool and repair tool instantly without any
latency;
-
Most cases of STA,
victim cannot ask for help from outside due to
the nature of business. For example, if a bank
is under a STA, it can cause more damage due
to lost trades if it makes it public. The
internal IT security team has to deal with the
STA alone. FSIS’s solution provides IT
security team the total equipment and
knowledge to deal with STA just by themselves
right at the place where attack happens. There
is no need to involve outside force.
FSIS’s products cover 3
main functional areas:
1.
Forensic Analyzer: dynamic and static
analyze Malware binary code, using "sand-box"
techniques and reverse engineering mechanism,
help IT professional understand the Malware code
and the detail behavior of the Malware;
2.
Detail report: summary report at
higher level about what the Malware does if it
attacks the system, understandable by high level
manager; detail report on every steps the
Malware activities within “sand-box”; reverse
engineering source code of the Malware helps
understand its potential activity such as “time
bomb”; and the Malware code structure;
Repair tool:
automatically generate repair tool in real time
right on the spot where attack happens without
involving outside experts. The repair tool comes
in 2 parts, one is the Malware signature
automatically generated through forensic
analysis; this signature is ready for updating
FSIS’s DualSpaceScan. Customer never needs to
wait for signature from outside. They will do it
in house at their location automatically and
transparently. The second part of repair tool is
the cleaning up tool. For every Malware analyzed
by the forensic system, it will generate a
repair program that will undo the Malware
infection, such as clean up system registry,
remove Malware from system including its drops,
store system settings or host program files if
they have been altered by Malware. |