Published Vulnerability Analysis
Mu uses the underlying vulnerability trigger pattern (such
as a buffer overflow sequence) to cause the vulnerability itself to be
triggered, rather than simply ‘replaying’ the traffic associated with a particular
exploit payload in its entirety. This approach, coupled with various evasion
techniques validates the signature-based product’s ability to detect and block
root causes instead of symptoms.
Users of the Mu-4000's PVA module demonstrate for themselves
whether a given signature in a networked product device is actually effective
at detecting or blocking specific undesirable traffic, per its claims. PVA module use also enables customers to
become aware of the existence of any traffic that is not blocked by the product
or service under analysis, e.g., brand new vulnerabilities for which no
signature is yet available.
Adaptive Analysis
The Mu-4000 separates the unexpected service level traffic
variations it generates from the channel over which it is delivered in a
technology known as Adaptive Analysis. Adaptive Analysis allows the Mu-4000 to
seamlessly deliver its traffic over any valid transport and authentication
methods supported by the service.
Related Collateral
|