CFA/Security-Notes: Difference between revisions

Jump to navigation Jump to search
Line 13: Line 13:


=== Malware Detection ===
=== Malware Detection ===
* Cross-domain barriers - prevent script on webpages from interacting with content from the other domains or windows; protects against malware by helping prevent malicious websites from manipulating flaws in other websites (IE)
* Prevent malware attacks
* Protection from Spyware - notification whenever downloading or installing software (FF2)
** Tell me if a download is suspected malware (FF3)
* Download actions - ability to disable handling and downloading of certain file types (FF brainstorm)
** Using virtual machine techniques (GreenBorder)
* Extension installation - one click to permanently add site to whitelist (FF brainstorm)
** Real-time with behavior-based profiling algorithms (Finjan SecureBrowsing FF extension, Haute Secure)
* Virus/Malware protection - integrate sandboxing feature like Sandboxie; integrate virus scanning and malware protection for retrieved content/files (FF brainstorm)
** Integrate sandboxing feature like Sandboxie; integrate virus scanning and malware protection for retrieved content/files (FF brainstorm)
* Protected Mode - runs in isolation from other applications in the OS.  Restricts exploits and malware from writing to any location beyond Temporary Internet Files without explicit user consent (IE7)
** Protected Mode - runs in isolation from other applications in the OS.  Restricts exploits and malware from writing to any location beyond Temporary Internet Files without explicit user consent (IE7)
* Warn me when sites try to install add-ons (FF)
** Cross-domain barriers - prevent script on webpages from interacting with content from the other domains or windows; protects against malware by helping prevent malicious websites from manipulating flaws in other websites (IE)
* Prevent malware attacks in real-time with behavior-based profiling algorithms (Finjan SecureBrowsing FF extension, Haute Secure)
* Preventative options
* Prevent malware attacks using virtual machine techniques (GreenBorder)
** Ability to disable handling and downloading of certain file types (FF brainstorm)
* Removes spyware (IE extension SpyWall Anti-Spyware)
** Extension installation - one click to permanently add site to whitelist (FF brainstorm)
* Tell me if a download is suspected malware (FF3)
** Removes spyware (IE extension SpyWall Anti-Spyware)
* Notifications
** Notification whenever downloading or installing software (FF2)
** Warn me when sites try to install add-ons (FF)


=== Anti-Phishing ===  
=== Anti-Phishing ===  
455

edits

Navigation menu