Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: PocketPC exploitation |
|---|---|
| Date: | Wed, 28 Sep 2005 11:16:50 -0400 |
Yours in Success,
Jose.
******************************************************************************************** Jose Andre Morales Computer Specialist Master of Science in Computer Science, FIU 2004
********************************************************************************************
From: Ratter <ratter@atlas.cz> Reply-To: Ratter <ratter@atlas.cz> To: Jose Morales <jose@onestopearth.com> CC: vuln-dev@securityfocus.com, bugtraq@securityfocus.com Subject: Re: PocketPC exploitation Date: Fri, 23 Sep 2005 14:34:31 +0200
So the question stands - for what you want to add detection for encrypted/polymorfic/epo/metamorfic/whatever viruses to PPC detectors, when there is _no_ virus, that uses them? Can you see the overhead it would cause? The antivirus size increase? The time increase spent on detection? This really is ridiculous.
When the time comes (and it probably will come), adding advanced detection techniques to given PPC antiviruses is a matter of very little time, because as you say all of these techniques are relatively well elaborated in the PC world. When there will be people out there that will take every ITW virus/worm and modify by few bytes, then the time comes to add more advanced scanning techniques. Now it's simply waste of resources on both sides - antivirus companies and _mainly_ user's devices.
You have very nice equations in the paper, very academic approach, but well, the paper lacks one thing. Real life experience.
-- Best regards, Ratter
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | PHP-Fusion v6.00.109 SQL Injection / admin|users credentials disclosure, retrogod |
|---|---|
| Next by Date: | [Full-disclosure] SquirrelMail Address Add Plugin XSS, Moritz Naumann |
| Previous by Thread: | Re: PocketPC exploitation, Jose Morales |
| Next by Thread: | AV == parasites? (was: PocketPC exploitation), Michael Shigorin |
| Indexes: | [Date] [Thread] [Top] [All Lists] |