Wednesday, March 10, 2010
Phone: 866.931.9228 x237
International Phone: +1.778.330.1074 x237

HAT Report

Hidden Abuse and Threats in Your Network

How to protect your users PRE-EMPTIVELY and increase accuracy of your blocking systems.
 
One of the most efficient implementation points for blocking 100% undesirable resources is your resolver; by blocking resolutions to authoritative name server hosts that are miscreant owned and controlled. Server Authority can provide you with an rsync data feed of such hosts to plug into some of leading resolvers and other protection appliances for SMTP, content, HTTP and other protocols.

Note how short the list of name server hosts is - to block a much longer list of domains. But beyond just economy of fewer rules and thus lower CPU load in your protection appliance - blocking by name server host gives you PRE-EMPTIVE BLOCKING of new domains the miscreants register or move.

It is a tremendous advantage in protection to deprive the criminal of the window of time to operate between using the domain in a spam or phishing attack - that usage being detected and the domain being put on a list which propagates to you.... vs BLOCKING the criminal's resource the FIRST TIME he uses it or lures your user to click on it.

Quick Links
Copyright 2009 by MXTools