Global Intelligence Is Driving Holistic Security

Intel moved one step closer to finalising its purchase of security firm McAfee last week, after the European Union gave its approval for the $7.68 billion (£4.81bn) acquisition.

In a statement, the European Commission – the antitrust arm of the EU – said the concessions made by Intel should ensure fair competition in the marketplace, and that the approval of the deal was conditional on Intel following through on those concessions.

The news has led to rumours that Intel is now developing an “IT security game-changer” that will reportedly stop zero-day security attacks.

“Right now, anti-malware depends on signatures, so if you haven’t seen the attack before, it goes right past you unnoticed,” Intel’s chief technology officer Justin Rattner told Computerworld. “We’ve found a new approach that stops the most virulent attacks. It will stop zero-day scenarios. Even if we’ve never seen it, we can stop it dead in its tracks.”

Global intelligence

When eWEEK Europe met with Gert-Jan Schenk, the new president of EMEA for McAfee, who joined the company from Juniper Networks last October, he was not able to comment on the acquisition, as it is not yet closed. However, he did tell us about McAfee’s Global Threat Intelligence (GTI) database, which he claims is at the heart of the company’s – and therefore possibly of Intel’s – long-term strategy.

“The best way to describe it is social media for security,” said Schenk. “It is a database that resides in the cloud, and we get about 4 billion queries a day from users that check all the time whether a website or a file is good or bad. Having that intelligence available in the cloud, to dynamically talk to our endpoints and the network, enables us to identify traffic patterns. If something malicious is going on, you can immediately start blocking that traffic at the endpoint.”

Schenk compared the GTI database to Twitter, in the sense that it can respond to events in real-time. “Look how fast news from Twitter is reaching the world,” he said. “That’s the same thing you want with a security attack – you want an instant response. You don’t want to wait until the next update is ready.”

The GTI database uses algorithms to identify and analyse traffic patterns, enabling security researchers to predict breakouts and block these traffic streams or IP addresses. “It’s not about the boxes or devices, it’s all about the global intelligence that you’re gathering as a security company,” said Schenk.

“Our competitors talk to the different anti-virus programmes on the PCs, because that’s basically what all the AV companies are doing, but we also talk to the network, we talk to the firewalls and to the intrusion prevention systems. This allows us to nip it in the bud, because before a file comes in to an organisation you block it at the entry point. That’s really the biggest differentiator.”

Continued on page 2

Page: 1 2

Sophie Curtis

View Comments

  • Global intelligence? That is a bit rich!!

    Anti virus is a just easy basic stuff now, and old style companies like McAfee are losing out to the greater efficiency of guys like Avast and AVG.

    They are gonna be swallowed up.... and McAfee was first on the block because it was crap.

    Remember last year when McAfee software classified Windows software as a virus and ruined days of work for millions of people?

    Good radiance to them.

Recent Posts

FTX To Repay Creditors In Full, $11 Billion

Good news for creditors. CEO John Ray III says bankrupt crypto exchange FTX will be…

6 hours ago

US Revokes Some Intel, Qualcomm China Export Licences – Report

Chip giants Intel and Qualcomm complain of sales impact after United States revokes some of…

7 hours ago

EU Requests Content Moderation Data From X

Using the Digital Services Act, European Commission asks X (formerly Twitter) for details over reduction…

9 hours ago

Chinese Hack Exposes Ministry Of Defence Payroll Data

Payroll records of nearly all members of the UK's armed forces have been exposed, reportedly…

10 hours ago

Apple ‘Let Loose’ Event Updates iPad Air, iPad Pro, Accessories

Updates arrive for two iPad models (iPad Air and iPad Pro) as well as some…

12 hours ago

TikTok Sues To Halt US Divest Or Ban Law

US government sued by TikTok in bid to block law that will force sale of…

14 hours ago