Home > Security Tips > Threat Monitor > Microsoft: A serious anti-X contender?
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

THREAT MONITOR

Microsoft: A serious anti-X contender?


Jonathan Hassell
06.03.2005
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



What you will learn from this tip: Read more about Microsoft's antimalware initiatives and learn how to stay spyware-free.


Microsoft and anti-X
Microsoft is trying to make waves in the spyware and malware prevention market -- but it has a lot of work to do to get it right.

The software giant's initiatives began with the purchase of New York-based Giant Company Software Inc., the consumer antispyware maker. They continue to collaborate -- now with the recent announcement about the beta launch of Windows OneCare, Microsoft's subscription service to help keep PCs healthy and protected.

According to Ryan Hamlin, general manager of Microsoft's Technology Care and Safety Group, "Windows OneCare is the next major advance in our ongoing efforts to help keep consumers' Windows-based PCs 'healthy' in a way that's simple and as worry-free as possible for them. We're designing the service so it will continually update and evolve over time, helping to ensure that our customers will have the most complete and effective protection and safety services in place every time they turn on their PCs."

Well, that's interesting. I thought the way to do that would be to securely rewrite the Windows codebase and release it for free. Doesn't it seem like this service is about getting consumers to pay to fix Microsoft's own mistakes?

Aside from the irony of the announcement, Microsoft has a lot of work to do if it wants to be successful in the anti-X market.


Microsoft and viruses
All forms of security have to be as seamless and transparent to the user as possible -- and antivirus (AV) software is particularly sensitive to that need. It must know when a user embarks on a particularly malicious path and intercept it, protecting the naÏve while not irritating the experienced user. AV software needs to be very configurable and manageable on a wide range of desktops (perhaps it should be made available through Group Policy) and it needs regular, automatic, effortless updates. The closest product to match this panacea is Computer Associates International Inc.'s eTrust Antivirus, and it's not even near the goal line yet.


Microsoft and spyware
Spyware protection programs have their own challenges. Of course, you need detection technology and those easy updates, but it must also keep tabs on the Web browser, potentially heading off spyware installation attempts. It needs to watch installed programs that may have spyware or adware integrated. Plus, it needs to be manageable across the enterprise. There are several good antispyware products on the market, and Giant's is one of them, but they all lack manageability, which is critical to getting mass adoption within corporate environments.

It may be a while before you're able to standardize on one complete malware solution, but I suspect good things come to those who wait.

Spyware prevention dos and don'ts
If you're careful, you don't have to worry much about spyware and virus problems. Here's a handy checklist to make sure you won't get infected by any spyware in the wild today:

1. Do use Firefox and its built-in pop-up blocker
Don't rely on Internet Explorer as a primary browser. In fact, in about four months of continuous use I've come to prefer Mozilla's Firefox to IE, and I twitch a bit when I'm using a machine without Firefox available.

2. Don't open e-mail messages if you're not sure about the sender
Unless you're positive an e-mail message is really from the person indicated, don't open it. Don't fall for spoofing. And don't feel bad if you can't figure it out -- I received a couple that made me think twice; these crackers are getting good at what they do.

3. Don't download and click on just anything
Refrain from downloading software from unknown sources and don't click on links that go to unsafe sites. These sites may spawn pop-ups that will silently install adware or spyware on your machine, and the security alerts that are supposed to warn you of this installation won't always activate.

4. Do use common sense
Try to think like someone who would want to plant spyware on your machine -- would he or she use this avenue to do so? If in doubt, don't click it.

Follow those steps religiously, and you will have no problems with spyware and viruses, regardless of which product you may eventually choose to use.



More Information


About the author
Jonathan Hassell is author of Hardening Windows (Apress LP), and is a SearchWindowsSecurity.com site expert. Hassell is a systems administrator and IT consultant residing in Raleigh, N.C., who has extensive experience in networking technologies and Internet connectivity. He runs his own Web-hosting business, Enable Hosting. His previous book RADIUS (O'Reilly & Associates), is a guide to the RADIUS authentication protocol and offers suggestions for implementing RADIUS and overall network security.

This tip originally appeared on sister site SearchWindowsSecurity.com.

Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Malware, Viruses, Trojans and Spyware,   Threat Monitor,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Malware, Viruses, Trojans and Spyware
Schneier-Ranum Face-Off: Is antivirus dead?
Modern malware, stealthy botnets, adapt quickly, expert says
Computer worm infections up, scareware antivirus down, Microsoft says
Web-based attacks skyrocket, pirating sites surge, security firms say
Mini guide: How to remove and prevent Trojans, malware and spyware
Kaspersky system analyzes malicious URLs on Twitter for malware
Silon malware intercepts Internet Explorer sessions, steals credentials
Breach forces payroll service provider PayChoice to shut down again
RSA research underscores problem tracking cybercriminals
Conficker analysis finds P2P coding limited, less sophisticated

Threat Monitor
How to detect software tampering
How to prevent phishing attacks with social engineering tests
An enterprise strategy for Web application security threats
How SSL-encrypted Web connections are intercepted
How a corporate Twitter policy can combat social network threats
Cyberwarfare and the enterprise: Is the threat real?
Software security threats and employee awareness training
Newest malware threats
How to defend against rogue DHCP server malware
When BIOS updates become malware attacks

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
bot worm  (SearchSecurity.com)
directory traversal  (SearchSecurity.com)
government Trojan  (SearchSecurity.com)
Kraken  (SearchSecurity.com)
man in the browser  (SearchSecurity.com)
polymorphic malware  (SearchSecurity.com)
RAT (remote access Trojan)  (SearchSecurity.com)
RavMonE virus  (SearchSecurity.com)
RFID virus  (SearchSecurity.com)
Rock Phish  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts