Advice Request Which security suite has the best behavior blocker?

Please provide comments and solutions that are helpful to the author of this topic.

Status
Not open for further replies.

Mahesh Sudula

Level 17
Verified
Top Poster
Well-known
Sep 3, 2017
825
I do like to see a BB test where:
-internet connection is disabled(no cloud signature/reputation lookups)
-all other protection components are disabled but BB
-different types of malwares tested
Internet is required for majority of the malwares to begin the work > Like downloading payloads..
BB depends on the behaviour of sample > This depends on internet connectivity>
Sometimes BB goes well with cloud (not all cases)
 

sepik

Level 11
Verified
Well-known
Aug 21, 2018
505
What is the purpose of BB if it depends on internet connection? Its purpose is to catch unknown threaths.
But yes, you are right about internet connection when for example browser memory modifications are detected.
BB is good for system tampering etc, you dont need i internet connection for that.
 

ichito

Level 11
Verified
Top Poster
Content Creator
Well-known
Dec 12, 2013
542
I don't know who among BB in AV/IS is the best but for me the last 3 BB was standalone apps - DSA, Mamutu and ThreatFire (it's alphabetical order but my favoutite was TF). Each of them didn't need to be connected to the internet but each of them could detect trying of making connection or port listening.
So...test with disabled internet connection make sens for me.
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top