Computer virus
Security firms are warning of a new era of malware 2.0

'Malware 2.0' raises its ugly head

Signature-based security unable to cope with 'zero-minute' threats

Written by Ian Williams

Signature-based malware detection techniques are becoming less effective in the face of so-called 'malware 2.0' threats, a security firm claimed today.

"The security space is changing rapidly. We are witnessing a major shift in the anti-malware marketplace moving into a new era of malware 2.0," said Kurt Baumgartner, chief threat officer at PC Tools

"We are now dealing with zero-minute, rather than just zero-day, exploits that have the potential to further evade signature detections."

PC Tools said that malware variants are now released at "immense rates", driving up sample volumes and making it almost impossible for researchers to keep on top of updates using manual analysis.

These threats are taking advantage of the non-detection sweet spot where they can freely propagate and infect before anti-malware companies can respond.

PC Tools argues that new compilers and other techniques are being used to make threats more difficult, if not impossible, to detect with traditional signature-based systems.

Rather than the broad sweeping attacks seen in the past, attacks are now focusing on smaller groups of PCs making it less likely to attract the attention of security vendors. As a result, malware is spreading in "epic proportions".

"The real challenge for security vendors is in identifying new ways to detect the behaviour of malware. Signature identification alone is ineffective in protecting consumers," said Baumgartner.

Fran Howarth, a partner at analyst firm Hurwitz and Associates, agreed with the research. 

"Signature-based detection is dead, be it for antivirus, intrusion detection or any other security measures," she told vnunet.com, adding that security companies are currently just "playing a constant game of catch up".

The spyware industry is worth billions of dollars, and there are significant incentives for malware authors to develop techniques to avoid detection.

The researchers estimate that one in five users with major antivirus products already installed on their computers are still vulnerable to these new and emerging threats.

Tags:

reader comments

related articles

Security exchange trades zero-day flaws

Swiss laboratory launches marketplace for security research 05 Jul 2007

 

Apple iPhone passes security muster

Safe for now, but uncertain future 11 Jul 2007

Phishers casting ever wider nets

114,013 new sites found last week, most using commercially available toolkits 20 Jun 2007

vnunet.com analysis: home PCs still wide open

New targeted attacks also on the rise 03 Jul 2007

Worm 'proves' Macs as vulnerable as PCs

Anonymous hacker boasts of attack that can penetrate fully-patched Macs 18 Jul 2007

Hackers unleash 'insidious' crimeware attack

Trusted websites turned into traps 14 Jan 2008

Storm malware still blowing strong

One year on and no sign of fading away 28 Jan 2008

Virus Top Ten lists 'useless'

They are no measure of a threat, says security vendor 16 Apr 2008

related whitepapers

today's top stories

Coding moves with the times

We examine how software development has evolved to better serve the changing needs of business, and speaks to IT leaders who are delivering significant benefits to their organisations by using the latest programming methods 15 Oct 2008

Agile framework simplifies offshore development

Case study: Getronics business application services 15 Oct 2008

Computing launches all-new IT jobs site

Updated Computingcareers.co.uk provides enhanced feature for jobseekers 14 Oct 2008

Q&A: BT Business head of SaaS, Chris Lindsay

BT's head of software-as-a-service explains the benefits of the on-demand delivery model and how the current economic downturn could force firms to re-evaluate how they buy software 14 Oct 2008

WiMax: Threat or opportunity?

We examine the merits of WiMax and its benefits relative to other wireless technologies in our latest video 13 Oct 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Are you worried about your job prospects in IT over the next 12 months?

Are you worried about your job prospects in IT over the next 12 months?

Will the economic crisis affect your job prospects?

Previous poll results

Latest audio and video articles

Remote workerVideo

WiMax: Threat or opportunity?

We examine the merits of WiMax and its benefits relative to other wireless technologies in our latest video 13 Oct 2008

programming codeVideo

The definitive guide to software development

Five key trends and five best practice tips to help you improve your programming capabilities 09 Oct 2008

Latest in-depth articles

Features

Enter the dragons' den

Getting an innovative IT product off the ground takes cash, commitment and a lot of patience 15 Oct 2008

TimepieceFeatures

Coding moves with the times

We examine how software development has evolved to better serve the changing needs of business, and speaks to IT leaders who are delivering significant benefits to their organisations by using the latest programming methods 15 Oct 2008

Advertisement

Primary Navigation