Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all articles
Browse latest Browse all 10484

Next generation endpoint protection?

$
0
0
I do not need a solution (just sharing information)

Hello,

I am a 5 year user of your product.
Since version 11x I was submitting virus samples as your antivirus was always signature based and never cought new viruses based on behavior.

When I read about version 14 and the new "Advanced Machine Learning" I thought that at last you made an antivirus that will catch viruses based on malisious behavior and not only based on Hashes.
All I have encountered since is false positives and a bigger hash database (cloud) which was an improvement.

I have submitted several old metasploit exploits and you made a Hash signature rather than make a behavior signature that will stop each file created the same way that does the same....

And again, I tried a metasploit model, uploaded the file to virus total - symantec again says its safe.
I have sent the file to a test machine with SEP 14mp2 and it executes without any problem.
But hey! It did think that wireshark is a malicious file using the advanced machine learning...

http://www.hackingarticles.in/exploit-windows-10-p...

0

Viewing all articles
Browse latest Browse all 10484

Trending Articles