Welcome!

Java Authors: Michael Sheehan, Maureen O'Gara, Jonny Defh, Suresh Krishna Madhuvarsu, RealWire News Distribution

Related Topics: SYS-CON MEDIA, Security

SYS-CON MEDIA: News Item

PC Protection - Prevention vs. Detection

Shifting to a prevention-based approach to PC Security

"Comodo Internet Security represents a paradigm shift in the way we protect our PCs from security threats such as viruses, trojans and malware of all sorts

Today most security solutions are detection- based and detection can no longer be the first line of defense. Rather, prevention must become the first line of defense in computer security and Comodo Internet Security, comprised of our award-winning Firewall and Antivirus software, was engineered with that capability.

We need to start denying malware access to the CPU and proceed from the position of allowing only trusted applications CPU access.

Comodo can deliver this breakthrough because we leverage our Certification Authority heritage to authenticate trusted applications and executables."

--Melih Abdulhayoglu, CEO and Chief Security Architect of Comodo

Problem Detection-only approaches to malware threats are obsolete. Creators of malware have become generally sophisticated enough to avoid detection by even the most well-known providers of virus-signature/detection based systems, leaving Internet uses highly vulnerable to zero-day and other forms of attacks that completely circumvent these 20-year old approaches.

Shift from a “Detection” to a “Prevention” approach. Comodo Internet Security advances computer security from being a defensive, reactive system to a preventative and proactive solution based on A-VSMART technology architecture. A-VSMART is short for "Anti; Virus, Spyware, Malware, Rootkit and Trojan" and represents new thinking in generally available PC security software.

Comodo’s Prevention-Based A-VSMART Technology Architecture
The key component of this next generation firewall lies in its A-VSMART technology architecture that both proactively monitors internal system applications and processes while also actively monitoring all incoming and outgoing Internet traffic. Specifically, this architecture proactively protects against potential security breaches by: a) enabling tighter control of internet traffic, b) controlling which applications are allowed to gain access to a computer's CPU (central processing unit) and c) limiting critical system access to allow only trusted system modifications. To deliver this high level of protection, Comodo Internet Security’s A-VSMART architecture utilizes key proprietary technologies, combining security features, multi-layer intelligence, application protection and threat containment.

Comodo Internet Security Feature Highlights:

Default Deny Protection - an advanced Host Intrusion Prevention System (HIPS) that proactively monitors systems and system processes to detect and prevent system changes such as rootkit installations, inter-process memory injections, key-loggers and more. HIPS technology is driven by a white list architecture which identifies trusted applications and prevents untrusted applications being installed onto the computer. Comodo has one of the largest white lists in the industry with a database of nearly 2 million safe executables. The integrity of every executable is checked against this database to determine whether or not it is genuine before it is given installation rights. With this system, potentially damaging applications are prevented from being ever being installed. Default Deny Protection stands in stark contrast to the Default Allow method used by other security suites, in which only known malware is blocked from entering a PC.

"Clean PC Mode" Installation - This powerfulnew feature allows Comodo Internet Security to create a profile of all applications on a new computer. This then prevents any unrecognized malware from being installed and maintains the "malware-clean" status of a new computer.

Security rules interface – Comodo Internet Security gives users more control over security settings than ever before. Users can quickly set granular internet access rights and privileges on a global or per application basis using the flexible and easy to understand interface.

Pop-Up alerts - Users are immediately informed with a pop-up alert if the firewall detects a potential security threat. Each alert includes a Security Considerations section which provides clear advice on whether you should allow or block a process.

Event logging – Comodo Internet Security features a vastly improved log management module - allowing users to export records of firewall activity according to several user-defined filters.

Prevention Delivers Better Protection
The culmination of years of development, Comodo Internet Security delivers advanced preventative protection that offers a number of key benefits designed to:

  • Provide outstanding protection against root-kits, inter-process memory injections, key-loggers and more
  • Authenticate the integrity of every program before allowing it access to system resources
  • Alert users every time an unknown or untrusted application attempts to run or install
  • Block Viruses, Trojans and Spyware from accessing system resources
  • Prevent unauthorized modification of critical operating system files and registry entries
  • Give users granular level of control to determine access rights and privileges on a global or per application basis using the flexible and easy to understand interface.

Comodo Internet Security with its Default Deny Prevention (DDP) architecture provides a free, highly effective, efficient and easy-to-use system for worry-free desktop security to manage the variable and fluid threat landscape.

For more information, interested parties can visit http://www.personalfirewall.comodo.com

More Stories By John Teufel

John Teufel works at Comodo Group, a worldwide company promoting a secure and trusted internet. His specialty at Comodo is user outreach for Company's free and paid products. He focuses on seeing what users are looking for in their PC security products, and tries to respond to their security needs. John lives in New York City. He has a lovely little puppy named Milo, an American Staffordshire.