The name of the base system (platform): | IBM Proventia Desktop Endpoint Security |
Developers: | IBM |
Technology: | Cybersecurity - Information loss preventions |
This software product provides preventive protection of workstations and mobile computers against threats of any kinds, without causing damage to performance of systems. Simplicity of management of the applied technologies of the built-in protection allows to keep the client systems under control, to minimize influence on efficiency and to increase safety of clients. Control of protection of workstations is exercised on a centralized basis through SiteProtector.
Proventia Desktop offers highly effective multilevel protection, integrating advanced technologies of information security:
- personal firewall
- system of prevention of the attacks
- control system of actions of software applications
- system of prevention of the virus attacks
- protection from "buffer overflow
- signature and behavioural antivirus.
Proventia Desktop can be delivered with a signature antivirus and without it if in the company any signature antivirus is already used.
The personal firewall blocks access to different network services and services of desktop computer systems. The protection gear of the personal firewall also prevents the attacks aimed at protocols and services and applied by malefactors in the mercenary purposes.
The system of prevention of the attacks (Host Intrusion Prevention System — HIPS) provides preventive protection by the deep analysis of packets of a broad spectrum of protocols (TCP, UDP, ICMP, IGMP, etc.). Except identification of the known signatures of the attacks, the behavioural and heuristic analysis is applied, the mechanism of contents supervision of packets regarding compliance of RFC is used. In addition, IPS prevents penetration of both the known, and unknown exploits which are maliciously using the known vulnerabilities.
The control system of actions of software applications traces and stops the suspicious transactions of system applications and user programs including connected with the appeal to external network resources.
The system of prevention of the virus attacks (Virus Prevention System — VPS detects and blocks new and unknown viruses, spyware and network "hearts" without use of periodically updated anti-virus base of viruses. VPS applies the patented method of recognition of the hostile code on the characteristic signs inherent in malicious software. Analyzing activity of executable files in isolated virtual environment, a system allows to detect more than 90% of viruses and a set of other new hostile programs of different types. VPS technology, performing functions of means of protecting, supplements traditional antivirus software.
The system of protection against "buffer overflow" (Buffer Overflow Exploit Prevention — BOEP) prevents threats of execution of the malicious code using the attacks like "buffer overflow". Vulnerabilities of "buffer overflow" prevail today and make 86% of the total number of vulnerabilities. Bessignaturny BOEP technology allows to be protected from the vast majority of the known attacks and excludes a possibility of further attempts to use vulnerabilities such.
The signature antivirus based on an anti-virus core of Bitdefender company allows to be protected from the known modifications of viruses and spyware.