June 13, 2005

Intrusion Protection Systems get hot

Web services and internal threats become a new focus

Taxed with providing an ever-expanding range of complex security functions, IPS vendors are rising to the challenge, transforming their wares to go beyond simply identifying and stopping attacks based on updated threat profiles.

The IPS market is undergoing significant changes as demand for security services grows, said Jim Slaby, network security analyst at Yankee Group. “You see companies integrating IPSes, as well as pushing them to the edge of the network and also back to the center,” Slaby said.

Worldwide revenue for network-based in-line IPSes last year was approximately $128 million, according to a recent report by Infonetics, a research company. The report estimates a market growth rate of approximately 39 percent between 2004 and 2008.

Last week, Imperva released the latest version of SecureSphere Dynamic Profiling Firewall, designed to protect multiple environments and systems, including databases, Web services, and networks. The SecureSphere Firewall protects datacenters against external and internal Web application and Web services attacks, database breaches, and server worm infections.

In addition, Radware introduced a new version of its DefensePro IPS last week, designed to protect against hackers who exploit SSL tunnels to launch DoS and DDoS attacks.

Also last week, SourceFire announced a new version of its SourceFire 3D System IPS, which integrates anomaly detection capabilities into the product. The new version allows IT managers to set thresholds to measure suspicious activities, customize alerts, and automate responses. NitroSecurity recently released NitroSecurity IPS 6.0, which also uses both signature and anomaly

detection techniques to increase the speed of response to any threat. Also among recent releases, StillSecure’s Border Guard IDS/IPS includes enterprise functions to ease the administration of multiple Border Guard nodes.

The product allows companies to install one or more Border Guard nodes and use a new multinode manager to manage and administer each node centrally.

Last month, Top Layer Networks introduced SecureCommand+, which offers centralized IPS management with event correlation and a reporting engine.

In some cases, companies are integrating IPSes into switches. 3Com recently added several switches designed for converged networks with built-in quarantine protection, thanks to the company’s recent acquisition of IPS provider TippingPoint.

In addition to the IPSes, Avinti, a provider of e-mail outbreak protection, introduced iSolation Server 2.0 this month, using VM technology to test e-mail messages and identify viruses for which there are no known patterns or signatures.

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

White Paper

D2D Virtual Tape Library Replication Primer

This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.

Download now »

White Paper

An Alternative to Virtualization for Datacenter Cost Savings

Server virtualization is a popular option for dealing with mounting datacenter costs. Another equally promising approach is the use of an Application Delivery Controller. Citrix NetScaler provides a low-cost way for organizations to reduce their server count and accrue cost savings from a reduction in space, cooling, power and personnel.

Download now »

White Paper

Why Your Firewall, VPN, and IEEE 802.11i Aren't Enough to Protect Your Network

The emergence of WLANs has created a new breed of security threats to enterprise networks.

Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation

Download now »

White Paper

Bringing the Edge to the Data Center

Effectively address data protection challenges, implementing solutions that help store and protect business–critical data while cutting costs and improving efficiency and reliability.

Download now »

Sign up to receive Security Resource Alerts

Subscribe to the Security Central Newsletter

Stay informed of the latest security threats and fixes.

White paper

Log Management: How to Develop the Right Strategy for Business and Compliance

This white paper provides guidance on how to develop a strategic approach to managing and monitoring logs, a key function required for compliance with many regulatory mandates and a critical defense against security threats.

Download now! »

White paper

The Essential Series: Security Information Management

Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM. The series examines different options for implementing SIM and gives you evaluation criteria for selecting the best option for your organization.

Download now! »

White paper

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics. This report provides guidelines for identifying which security solutions to consume as a MSS and defines best practices for choosing and managing MSSPs.

Download now! »
©1994-2009 Infoworld, Inc.