<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CoreTrace WhiteSpace&#187; CoreTrace WhiteSpace</title>
	<atom:link href="http://www.coretraceblogs.com/tag/purification/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.coretraceblogs.com</link>
	<description>The Application Whitelisting and Security Weblog</description>
	<lastBuildDate>Fri, 30 Jul 2010 14:33:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Collaboration with SignaCert: One Potential Avenue In The Purification Process</title>
		<link>http://www.coretraceblogs.com/2009-07/partnership-with-signacert-can-speed-transition-to-clean-systems/</link>
		<comments>http://www.coretraceblogs.com/2009-07/partnership-with-signacert-can-speed-transition-to-clean-systems/#comments</comments>
		<pubDate>Mon, 13 Jul 2009 16:07:44 +0000</pubDate>
		<dc:creator>JT Keating</dc:creator>
				<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[rational transition to whitelisting]]></category>
		<category><![CDATA[whitelisting]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[purification]]></category>
		<category><![CDATA[rational transition]]></category>

		<guid isPermaLink="false">http://www.coretraceblogs.com/?p=164</guid>
		<description><![CDATA[Earlier this week, Toney Jennings wrote about step two in the rational transition to application whitelisting: the ]]></description>
			<content:encoded><![CDATA[<p>Earlier this week, Toney Jennings wrote about step two in the rational transition to application whitelisting: the <strong><a href="http://www.coretraceblogs.com/2009-07/endpoint-protection-a-case-for-a-rational-transition-to-whitelisting-part-2-purify/" target=_blank">purification stage</a></strong>. Today we announced another step in that stage: a collaboration with SignaCert, the provider of the largest known-provenance whitelist repository in the world, SignaCert’s Global Trust Repository (GTR).<span id="more-164"></span></p>
<p>As has been stated in other blog postings, we see an inevitable, protection focused, transition to application whitelisting. We think that the transition will take place in three logical steps. First, adding protection to existing systems. Second, purifying those systems of any remnants of malware over time. Finally, providing a strong change management process that will allow users to be productive and deal with the inevitable changes to approved applications while still ensuring the protection that application whitelisting affords.</p>
<p>In order to protect existing systems against new threats that emerge every day, we believe businesses should implement a solution that automatically creates and then enforces a perfectly tailored whitelist for each computer. We feel the best way to accomplish this goal is through the use of a dynamic whitelist that is created for each individual PC that whitelists all current executables and protects the system from any unauthorized changes to that list. That is how BOUNCER by CoreTrace secures systems in a matter of minutes.</p>
<p> After the systems have been secured, we believe they should undergo an <em>offline</em> purification process that does not burden the resources of the protected computers. CoreTrace is committed to exploring and creating a variety of options that can assist in that purification process. As Toney mentioned in his blog, the process may eventually include some combination of blacklists, whitelists like GTR, and other advanced analytical tools. CoreTrace is working with SignaCert to validate market-driven requirements for the purification stage and to determine how GTR could help BOUNCER customers transition from a protected system to an ultimately clean endpoint.</p>
<p>Of the whitelists that are in the market, we were more comfortable with the quality model of SignaCert&#8217;s GTR than the quantity model of the mega-whitelists that cannot possibly be vetted and are more likely to be poisoned. Moving forward we will be exploring many ways that our companies can work together, not the least of which is raising awareness of application whitelisting as the future of endpoint protection.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.coretraceblogs.com/2009-07/partnership-with-signacert-can-speed-transition-to-clean-systems/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
