EICAR Test File Update · PDF fileEICAR TEST FILE UPDATE WG2 MEETING September 28th 2017 Tonke...

Post on 31-Jan-2018

217 views 2 download

Transcript of EICAR Test File Update · PDF fileEICAR TEST FILE UPDATE WG2 MEETING September 28th 2017 Tonke...

EICAR TEST FILE UPDATE

WG2 MEETING September 28th 2017

Tonke Hanebuth eicar@hanebuth.de th@percomp.de

AGENDA

Einführung

Rückblick

Ziele

Fazit

RÜCKBLICK

CLOUDCAR VS.

ANZEIGE IM PRODUKT

ZIELE

WORKING GROUP

LEGITIMISATION

transparent

public

independent

unbiased

VERBESSERUNG DER

DOKUMENTATION

Lokalisierung

Reduktion auf das Wesentliche

Entwicklung zum Portal

EINHEITLICHE ERKENNUNG

Vendor independent test objects

should be detected if security application is

in defined state

reporting it unambiguously and clearly

by every vendor supporting this test object.

Other vendors may report these objects as

clean.

DETECTION NAMING

EICAR TEST FILE

DETECTION NAMING

EICAR TEST FILE

WEITERE

Varianten

Delivery of Test Files

E-Mail

diverse Protokolle

diverse HTTP(s)-Ports

Workshops

Auditing

CONCLUSIONS

Antivirus bleibt wichtig

Herstellerunabhängiges und

-übergreifendes Testen (***) bleibt

wichtig

THANK YOU!

QUESTIONS?

WG2 MEETING September 28th 2017

Tonke Hanebuth eicar@hanebuth.de th@percomp.de