CoreTrace WhiteSpace

The Application Whitelisting and Security Weblog

Beware Waledac Worm and Spam This 4th of July Weekend

Another kind of fireworks display may take place on the Internet this weekend. There is a large malware campaign targeted for this 4th of July weekend, 2009. CNET reports that computers infected by the Waledac worm are a part of a botnet that will begin distributing spam this weekend intending to get users to click on videos that will infect the PC with the malware and add it to the botnet.

The prevalence of this type of problem is more indicative than ever that blacklisting antivirus simply isn’t up to the task of preventing infection of PCs.

Please use the comment form and leave your thoughts!

Endpoint Protection – A Case For a Rational Transition to Whitelisting: Intro

Rational Transition to WhitelistingIn the past couple of months, whitelisting has been in the news through multiple different avenues. We at CoreTrace feel that the raising awareness that blacklist-based antivirus simply can no longer protect PCs is passing a critical point—a point that is going to lead businesses and eventually consumers to a whitelisting model that can prevent infection, not just detect and clean up the infection after the fact. Here is a look at some key news around this area: ( Read More… )

Please use the comment form and leave your thoughts!

Microsoft Morro & CoreTrace’s BOUNCER 5.0: A Tale of Two (Related) Announcements

jumping the sharkThis week, CoreTrace announced the latest version of our award-winning application whitelisting product, BOUNCER. In a seemingly unrelated note, Microsoft officially launched the beta version of its free antivirus offering, Microsoft Security Essentials (MSE, previously code-named “Morro”).

Seemingly unrelated, and yet completely related. ( Read More… )

Please use the comment form and leave your thoughts!

McAfee move validates application whitelisting market

Yesterday, McAfee announced its intent to acquire one of CoreTrace’s fellow application whitelisting brethren, Solidcore. We are happy for our friends at Solidcore, but even happier for the application whitelisting market overall. ( Read More… )

Please use the comment form and leave your thoughts!

Conflicker: The first franchisable botnet?

There was a lot of FUD flying around prior to April Fool’s Day this year regarding Conficker. Researchers had finally been able to discover that on April 1st, 2009 Conficker would update itself and potentially do something devastating. Instead, only a small percentage are updated and those endpoints… serve up scareware? Of all the nefarious activity it could do (e.g., make a Balkan state go dark, DoS US critical infrastructure, etc.) it does something as pedestrian as serve up scareware? ( Read More… )

Please use the comment form and leave your thoughts!