Hot Take Comodo is discontinued product its officialy said by Xcitium Staff

yeah Comodo was good
it was developed actively, bug used to be patched ,Features added every year (not just an interface plastic surgery)

to be honest comodo problem was it tried to do a lot of stuff ( it released like gazillion products example comodo time machine etc..)
which made the company loses its focus on it's main product / player

for an instance
comodo website is a mess it's not home user friendly at all
full of deadlinks and misleading / over whelming to users
i talked to melih on comodo forum like a year ago
he told me they will re launch a new website
where comodo is their home user brand and xcituim a business brand
 
CIS is officialy discontinued product,Xcitium officialy said it here are proofs
When I say to Melih at static I outperformed your product then he say he detecting samples which no other vendor detect (So he thinks his dynamic analysis good) but currently most detections comes from dynamic from my side. The good news is it's open source if Xcitium adds this (he can directly add it because open source) as optional Xcitium might be best AV at detection. I don't recommend Comodo anymore because it's discontinued and it might cause false alarms due to this because it's whitelist based, which is correct way (already some guys saying Edge flagged as unknown).
 
When I say to Melih at static I outperformed your product then he say he detecting samples which no other vendor detect (So he thinks his dynamic analysis good) but currently most detections comes from dynamic from my side. The good news is it's open source if Xcitium adds this (he can directly add it because open source) as optional Xcitium might be best AV at detection. I don't recommend Comodo anymore because it's discontinued and it might cause false alarms due to this because it's whitelist based, which is correct way (already some guys saying Edge flagged as unknown).
Majority of threat detection on Xcitium happens on the cloud. The Cloud verdict uses a mixture of static and dynamic analysis, plus human-verified verdicts. This is not open source.

Comodo does not upload new files, it only queries the existing results.
 
Majority of threat detection on Xcitium happens on the cloud. The Cloud verdict uses a mixture of static and dynamic analysis, plus human-verified verdicts. This is not open source.

Comodo does not upload new files, it only queries the existing results.
Yeah I see. They are at the same level compared to other big AV companies (Kaspersky etc.) (the reported files count) but they generally flag as clean even if almost every other AV says malicious. Otherwise they migth have very high detection rate.
 
It would be interesting to find evidence on the Comodo, MT, and Wilderssecurity forums if some users were infected.
From known tests (SE Labs), it follows that Comodo Antivirus at default settings can be compromised in targeted attacks:

View attachment 291481


This probably follows from two settings:
  1. Contained files in Comodo AV can call home (it is blocked in CIS).
  2. Script Analysis settings are not hardened.
but no AV is 100% yet 5 above were 100% & Webroot tied Norton at 98% (& some top tier not listed)
 
what is the best comodo alternative ?
a free 0day / hips / zero trust software ?
comodo has a lot of bugs / vulnerbilities which render it unsecure against targeted attacks
in the old days we Had Online armor / outpost / private firewall /zone alarm

i see a big opportunity for Online armor comeback
Cyberlock + MS Defender with tweaked settings.
 
Just use one of the still maintained Unix distros such as OpenBSD or FreeBSD.

All your security problems are solved and Comodo dissolves into utter irrelevancy.

Usability. You don't get that on Unix so stop complaining "But, but... users want to use stuff."

You get one, or the other. Not both. The "both" model is an anachronism. It is dinosaur thinking so out of touch with reality. But it still exists because it is the easiest way to extract money out of people - and they are suckers that buy into that model, despite the model being completely broken, unsafe, and highly insecure.
 
About internet security gateway they still offer that but the Xcitium Staff member said to me that CIS is full of bugs and that it does not have Valkyrie

It makes a lot of senses. The problem is the code base is really huge but didn't follow the secure coding practices in first place. The cost of patching / fixing bugs would be as high as rewrite the whole engine (or the major part). Some of logic flaws are not only the insecure function calls, but rather the application's design.
 
It makes a lot of senses. The problem is the code base is really huge but didn't follow the secure coding practices in first place. The cost of patching / fixing bugs would be as high as rewrite the whole engine (or the major part). Some of logic flaws are not only the insecure function calls, but rather the application's design.
but how does that fit-in with Xcitium, is it a full re-write... how did Xcitium come to be in its current coding... :unsure:
 
but how does that fit-in with Xcitium

Maybe Xcitium wants full access to source code, so they can create a full Endpoint protection themselves. But the other vendors only sell SDK?

is it a full re-write... how did Xcitium come to be in its current coding... :unsure:

Maybe they read the documentations, adopt the code, then rewrite some parts and improve some parts? Who knows. There are multiple ways to use the old code. Refactoring code, find + fix bugs, ... is not easy. Neither completely write something big. If Xcitium has a group of good devs + testers, they can do both.
 

Recently browsing

Members who viewed this thread in the last 5 minutes

Back
Top