ThreatFire...finaly good news (?)

Discussion in 'other anti-malware software' started by ichito, Dec 14, 2011.

Thread Status:
Not open for further replies.
  1. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    I don,t expect it will ever catch up with modern malware.
     
  2. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    @aigle
    do you realy think that TF - or maybe other BB - aren't able to catch modern malware? Of course any anti-malware isn't able to have all necessary signatures, but BB/HIPS works other way...
    It realy looks like this - we haven't any protection (?) o_O
     
  3. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    With djames a former moderator of their forum i have had some discussions on next gen tf. They were thinking of some defence differentiation triggered by the limitations of x64

    Last line of ring0 defense based on program signing and trusted vendors. Basically a white list HIPS whit cloud blacklist.
    A first line behaviour blocker defense with prevx like features like higher sensitivity level based on origin, age and trustwortyness of intruding executable.

    In the latest tf it allready tracks registry and file access, they were thinking to extending this capabilties to a some light virtualisation.

    Pity most of them left. Still fingers crossed
     
    Last edited: Dec 18, 2011
  4. Frank the Perv

    Frank the Perv Banned

    Joined:
    Dec 16, 2005
    Posts:
    881
    Location:
    Virginia, USA

    Agree.
     
  5. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    BB are weaker than classical HIPS. Recently we have seen even the classical HIPS being bypassed by malware, like stuxnet, dll vulnerabilities, malware with digital signatures etc.
     
  6. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    Hmm...there is no way to have 100% protection...any HIPS or BB, any AV or firewall and perhaps any sandbox or virtualiser don't give us absolute sureness. So...we can only "mixing" between some kinds of security apps to get satisfaction and to be hopeful that we will never catch malware.
    It's a little frustrating, but we haven't other exit. BTW...I still think that TF can be a good and efficent security layer...sorry ;)
     
  7. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    :thumb:
    Agreed.
    Nothing is 100% bullet proof. You would be hard pressed to find most wilders members relying on one layer of defense. If TF is willing to improve itself, then we should have an open mind and possibly help it along. Like I tell my kids, Try it, you might like it. ;)
     
  8. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    ThreatFire in level 5 is powerfull:thumb: :thumb:
     
  9. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    Sure is. I hope that they can update it and add some new features.
     
  10. operamail

    operamail Registered Member

    Joined:
    Sep 14, 2011
    Posts:
    254
    Where can I download the newest build? Their website says current version: 4.7.0, release date: November 25, 2009.
     
  11. tgell

    tgell Registered Member

    Joined:
    Nov 12, 2004
    Posts:
    1,097
  12. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
  13. operamail

    operamail Registered Member

    Joined:
    Sep 14, 2011
    Posts:
    254
    Thanks guys for the links.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.