Subscribe
  • Home
  • /
  • Malware
  • /
  • Imperva reports anti-virus solutions woefully inadequate

Imperva reports anti-virus solutions woefully inadequate

Anti-virus solutions in study unable to detect newly created viruses; security investment misaligned.


Redwood Shores, California, 05 Dec 2012

Imperva (NYSE: IMPV), a pioneer and leader of a new category of business security solutions for critical applications and high-value data in the data centre, today released its November Hacker Intelligence report: "Assessing the Effectiveness of Antivirus Solutions", which collected and analysed more than 80 previously non-catalogued viruses against more than 40 anti-virus solutions. Imperva found that less than 5% of anti-virus solutions in the study were able to initially detect previously non-catalogued viruses, and that many solutions took up to a month or longer following the initial scan to update their signatures.

"Enterprise security has drawn an imaginary line with its anti-virus solutions, but the reality is that every single newly created virus may subvert these solutions," said Amichai Shulman, CTO, Imperva. "We do not believe that enterprises are achieving the value of the investment of billions of dollars in anti-virus solutions, especially when certain freeware solutions in our study outperformed paid solutions."

Imperva utilised various methods for collecting more than 80 viruses. These 82 unreported viruses were tested in a virtual execution environment that ensured they displayed behaviour indicative of viruses and that limited the vulnerability to computing resources.

"Assessing the Effectiveness of Antivirus Solutions" conducted automated data collection runs once a week for six weeks.

The key findings and implications of the report include:

Anti-virus solutions have a difficult time detecting newly created viruses - While anti-virus vendors may constantly work to update their detection mechanisms, the initial rate of detection of new viruses by anti-virus solutions in the study was less than 5%. Anti-virus solutions in the study were unable to provide complete protection since they are unable to keep up with virus propagation on the Internet.

Anti-virus solutions lag in updating signatures - In some cases in the study, it took anti-virus solutions up to four weeks following the initial scan to detect a virus.

Investment in anti-virus is misaligned - In 2011, Gartner reported that consumers spent $4.5 billion on anti-virus while enterprises spent $2.9 billion, a total of $7.4 billion or more than a third of the total of $17.7 billion spent on security software. In addition, certain freeware solutions in the study proved equally or more effective than paid solutions. While Imperva did not find a single anti-virus product that provided complete protection, the solutions that had the best detection rates included two freeware anti-virus products.

Despite the inadequacy of anti-virus solutions, Imperva does not recommend completely eliminating them from an effective security posture. Instead, security teams should focus on detecting abnormal behaviour, such as unusually fast access speeds or large volume of downloads, and adjust their security spend on modern solutions to address today's threats.

To download the full report, please visit: http://www.imperva.com/download.asp?id=324.

Get up-to-date security news at the Imperva Data Security blog: www.blog.imperva.com

Share

Imperva

Imperva is a pioneer and leader of a new category of business security solutions for critical applications and high-value data in the data centre. Imperva's award-winning solutions protect against data theft, insider abuse, and fraud while streamlining regulatory compliance by monitoring and controlling data usage and business transactions across the data centre, from storage in a database or on a file server to consumption through applications. With over 2 000 end-user customers in more than 60 countries, and thousands of organisations protected through cloud-based deployments, securing your business with Imperva puts you in the company of the world's leading organisations. For more information, visit www.imperva.com, follow us on Twitter or visit our blog.

(c) 2012 Imperva, Inc. All rights reserved. Imperva and the Imperva logo are trademarks of Imperva, Inc.

Editorial contacts