Advertisement
Promo

Security threats Toolkit

Security players form alliance to tackle malware

Vivian Yeo ZDNet Asia

Published: 18 Aug 2009 17:30 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A new security alliance has been established to formalise information sharing on security protection and develop industry standards and best practices.

The Industry Connections Security Group (ICSG) is parked under the IEEE Standards Association and includes mostly security heavyweights and antivirus players. The founding members are AVG Technologies, McAfee, Microsoft, Sophos, Symantec and Trend Micro.

Announcing the group in a blog post on Monday, Mark Harris, vice president of SophosLabs, said security researchers had a tradition of sharing virus samples, but that the sharing arrangements are often "based on individual relationships rather than formal agreements".

The formation of the group makes for a "more organised" security industry in the current landscape, where attacks are increasingly structured and malware samples grow at "astonishing rates", Harris said.

The ICSG currently has a malware working group but intends to add other working groups over time.

According to a presentation document dated 20 July, the group aims to improve the efficiency of collection and processing of the millions of malware file samples handled by security vendors each month by focusing on an XML-based metadata sharing standard. The standard is expected to undergo ratification by the end of this month.

Graham Titterington, principal analyst at Ovum, noted that the announcement of the group was both interesting and confusing. The rationale for the new alliance was the need for a more comprehensive approach to countering malware writers, but the focus of the group appears to be limited, he said.

"[The group addresses] all aspects of malware and its membership includes most of the main antimalware vendors — Kaspersky being the most notable absentee — and so the ICSG represents progress on countering the so-called 'blended threats'," he told ZDNet Asia in an email.

"However, it does not seem to be taking the battle to the criminals or probing the criminals' business networks. The focus is on setting up the infrastructure and protocols to allow rapid information sharing on threats and making the day-to-day operation of the members more efficient."

Titterington added: "I would have expected a body affiliated with the IEEE to be putting more emphasis on the development of improved methods for disrupting criminal activity and on new ways of protecting users."

Credit: New alliance aims to unify malware fight from ZDNet Asia

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:













Video icon

Video

Sentry Posts Blog

Malicious Mobile Apps a Growing Concer...

Malicious Mobile Apps a Growing Concern Author: Eric Everson, MBA, MSIT-SE The phrase “mobile security” does not usually mean much to anyone, until of course they encounter their... More

Post a comment

Malicious Mobile Code: What You Need t...

Malicious Mobile Code: What You Need to Know. Author: Eric Everson, MBA, MSIT-SE The thought of someone hacking into your mobile phone to steal your personal data added to the growing... More

1 comment

Bletchley Park calls for operators for...

The home of World War II codebreaking has called for engineers to operate an electro-mechanical machine developed by mathematician Alan Turing. The Turing Bombe was a brute-force... More

2 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters