Malware and how to defend against it Tommy

  • Slides: 9
Download presentation
Malware and how to defend against it Tommy Wei

Malware and how to defend against it Tommy Wei

What is Malware? FEAR ME! • Stands for malicious software • It is software

What is Malware? FEAR ME! • Stands for malicious software • It is software • Usually created by computer programmers • Examples of software:

Personal Vigilance • Being careful and pay attention • Popular way of spreading malware

Personal Vigilance • Being careful and pay attention • Popular way of spreading malware is by email • Recognize traps • • Ask you to open attachments Provide passwords or classified information Try to pose as a friend Enticing emails • Certain websites

Disadvantages of Personal Vigilance • Human Error • Business and web security isn’t perfect

Disadvantages of Personal Vigilance • Human Error • Business and web security isn’t perfect

Antivirus Software Packages • The primary component of technological defenses for every computer •

Antivirus Software Packages • The primary component of technological defenses for every computer • Well designed antivirus software include the following characteristics: • • Automatically checks newly downloaded programs for malware Scans computer periodically Is regularly updated Also detect and warn against suspicious websites based on similar technical features

Signature Approach (Virus Dictionary) • Examines files and searches for viruses listed in the

Signature Approach (Virus Dictionary) • Examines files and searches for viruses listed in the virus dictionary • Virus dictionary- a predetermined list of current viruses Let me Is this a check if its virus? here.

Disadvantages • Virus dictionary has to be constantly updated • Can be circumvented by

Disadvantages • Virus dictionary has to be constantly updated • Can be circumvented by encrypting parts of the virus • Changes virus signature • Becomes a polymorphic virus

Heuristics Approach (Suspicious behavior) Hmmm, who are you? • gives your antivirus software some

Heuristics Approach (Suspicious behavior) Hmmm, who are you? • gives your antivirus software some degree of intelligence • Depends on the behavior of the program, deemed suspicious or not You look okay.

Disadvantages • It can be inaccurate at detecting valid viruses • Make mistakes called

Disadvantages • It can be inaccurate at detecting valid viruses • Make mistakes called “false positives” • Requires manual intervention to fix mistakes No, No. I approve of that!