Feeds

Security vendors open another front against spyware

Singing from the same songsheet

SANS - Survey on application security programs

The three biggest anti-virus vendors have teamed up with testing labs to develop standards for spyware detection.

Trend Micro, Symantec and McAfee are joining forces with ICSA Labs and Thompson Cyber Security Labs in a bid to standardise methods for sharing spyware samples and testing anti-spyware products and services.

The effort is aimed at curtailing a possible source of user confusion before it becomes a problem, as well as driving up standards for detection across the anti-spyware industry. Spyware testing, modelled on schemes the anti-virus industry has been running for years, will also make it easier to compare the efficacy of various anti-spyware products, at least in theory. The group’s anti-spyware testing methodology and best practices can be viewed at Spywaretesting.org.

The initiative is one of a number of cross industry efforts aimed at co-ordinating the fight against spyware - the invasive programs that track user's surfing habits or, in the worst cases, steal their personal information, such as credit card or Social Security numbers. Last week Google and others agreed to back a scheme to put pressure on purveyors of unsavoury programs through a name and shame initiative, called StopBadware.org.

Earlier this month, the Anti-Spyware Coalition (ASC), an alliance of software companies, security firms and consumer organisations, agreed on a set of guidelines for detecting invasive finalised spyware. Spywaretesting.org will use the definitions created by the ASC and work closely with its kindred organisation in efforts to develop guidelines for research tools. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Samsung Galaxy S5 fingerprint scanner hacked in just 4 DAYS
Sammy's newbie cooked slower than iPhone, also costs more to build
Snowden-inspired crypto-email service Lavaboom launches
German service pays tribute to Lavabit
Mounties always get their man: Heartbleed 'hacker', 19, CUFFED
Canadian teen accused of raiding tax computers using OpenSSL bug
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
prev story

Whitepapers

Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
SANS - Survey on application security programs
In this whitepaper learn about the state of application security programs and practices of 488 surveyed respondents, and discover how mature and effective these programs are.