Advice you can trust
SEARCH FOR: IN:
Guest  Level 00    Register Log in

News 

[Security]
Monday 23rd October 2006
Sophos backs Microsoft security support 12:03PM, Monday 23rd October 2006
Despite Symantec and McAfee bemoaning Microsoft's closed doors to the kernel of the 64-bit version of Vista, other companies aren't finding it such a barrier.

The security giants say that the kernel, the core software system, of the 64-bit version of Vista has been closed off with Microsoft's PatchGuard security feature, rendering it impossible to tweak third-party security software to work on the platform.

Microsoft has described the comments as 'inaccurate and inflammatory', and has acted to calm concerns, putting into development a new API that will allow security companies the access they need in order to protect the kernel and offer host intrusion detection (HIPS).

Now UK security firm Sophos has heard Microsoft's rallying cry, claiming that it has all the interfaces it needs to secure the 64-bit version of Vista.

'Symantec and McAfee may be struggling with HIPS because they haven't coded their solutions with high-spec Vista in mind,' said Richard Jacobs, CTO of Sophos. 'We've taken a different approach, by
 
 
ADVERTISEMENT
focusing on catching bad behaviour before it has a chance to occur. Additionally, we are building our technology by making use of supported Microsoft interfaces rather than by trying to subvert them. That's why we're ready for 64-bit Vista, and others aren't.'

Sophos isn't saying that McAfee and Symantec are wrong in their description of the barriers PatchGuard creates in accessing the Vista kernel, but rather that its approach to HIPS doesn't need the same low level access. Research group Gartner has also warned against Microsoft's closed kernel, advising businesses to steer clear of 64-bit Vista until Microsoft allows better control of the kernel functionality for security companies.

Even so, Sophos commended Microsoft for its PatchGuard feature. 'PatchGuard is a step in the right direction for customers, and we believe that security vendors should embrace and work with PatchGuard rather than fight it... It's clearly the case that we and other vendors will now have some dependency on Microsoft to deliver kernel interfaces for new security innovations, which could slow us all down,' said Jacobs. 'However this is more than compensated for by the additional security offered by Vista.'

Of course Sophos and Symantec and McAfee are from two very different camps. The latter two, with their massive consumer customer base, feel very threatened by Microsoft's moves in the security space, particularly its OneCare service, and are placing Redmond under close scrutiny to ensure a level playing field for all.

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Related News


SOPHOS Sophos Security Suite SBE - ( v. 2.0 ) - s
Sophos Security Suite provides integrated virus, spyware, adware, spam and hacker protection in one easy-to-use software package for Windows, Macs and Exchange email servers. Providing easy-to-us...
SOPHOS Sophos Security Suite SBE - ( v. 2.0 ) - s
Sophos Security Suite provides integrated virus, spyware, adware, spam and hacker protection in one easy-to-use software package for Windows, Macs and Exchange email servers. Providing easy-to-us...
Sophos Sophos Computer Security SBE 2.0 1 Year 5
Sophos Computer Security SBE 2.0 1 Year 5 User
Sophos Sophos Anti-Virus Small Business Edition 5
200Sbsv1005uken Sophos Anti-Virus Small Business Edition 5 User 1 Year

Compare Broadband
Broadband?
Compare 50+ packages
Enter your postcode below:
Powered by:
Top 10 Broadband
Bookstore Top 5