不一定 发表于 2012-1-27 22:27
云雏形的话,应该是赛门铁克或趋势最早。在安全这方面。
我也是乱猜测。
趋势的情况我不清楚,赛门铁克的云雏形似乎是07年,但官方好像没有资料。
而现在可以查到的最早云雏形官方资料,就是panda 06年的集群智能
当然,云的形式是多种多样的,各家的云也不同,所以就不讨论了,改日再聊吧,不大爷,呵呵
Collective Intelligence. The Next Generation.
Today there is over 10 times more malware being distributed than two years ago. The obvious conclusion is that a security solution must detect 10 times more malware to provide adequate protection to users. According to a report prepared by PandaLabs, 72% of companies and 23% of home users are infected even though they have protection installed. In the case of unprotected users, the percentage of infected computers is 33.28%. This data confirms that traditional solutions are no longer enough (you can view the full report in PDF format Collective Intelligence – Panda Labs Report).
While a fullfledged HIPS solution raises the bar substantially by detecting and blocking most of these with proactive technologies, it is still possible for unknown malware to slip through its defenses.
The Collective Intelligence approach is initially released at the end of 2006 in limited pilots with the objective of being able to reliably detect “10 times more than we are currently detecting with 10 times less effort”.
The pillars of this new system are:
Collection of data from the community. The system centrally collects and stores behavioral patterns of programs, file traces, new malware examples, etc. This data comes from Panda users, and from other companies and collaborators. This wide capacity to collect information provides higher visibility of the threats that are active in the Internet.
Automated data processing. The system automatically analyzes and classifies the thousands of new samples received every day. To do this, an expert system correlates the data received from the community with PandaLab’s extensive malware knowledge base. The system automatically returns verdicts (malware or goodware) on the new files received from the community, thereby reducing the tasks that PandaLabs must carry out manually to a minimum.
Release of the knowledge extracted. This knowledge in delivered to users as web services or through signature file updates.We have developed and deployed a few services already that function purely based on the Collective Intelligence platform. These online services are designed to perform indepth audits of machines and detect malware not detected by the installed security solution.
For consumers and stand-alone PCs we have deployed NanoScan which scans a PC for malware actively running and TotalScan which performs a full system scan of the entire PC, including hard drive, memory, email databases, etc.
On the corporate front the requirements for performing and in-depth malware audit are more demanding. Therefore we have created a specific managed service called Malware Radar. Thanks to this service companies can quickly perform complete audits of their entire network endpoints to verify their level of security, pinpoint non-detected infection sources or to unveil executive machines which have been subject to targeted attacks.
You can download a more detailed report on Collective Intelligence. |