
Published 26th April 2006
Websense v6.2 security software with enhanced malicious traffic protection on corporate networks provides an easy-to-use, highly effective, proven alternative to Intrusion Detection and Intrusion Prevention services...
SAN DIEGO, April 26, 2006
Websense, Inc. (NASDAQ:WBSN), a global leader in web security and web filtering productivity software, today announced the general availability of Websense® Web Security Suite™ and Websense® Web Security Suite-Lockdown Edition™ version 6.2. New features of Websense Web Security Suite v6.2 further position the software as an innovative web and endpoint security solution.
By offering automatic protection from drive-by spyware and signature-based protection from malicious traffic on corporate networks, Websense Web Security Suite v6.2 allows proactive control over malicious network traffic and management of employee access to web-based threats. Websense is the first company in the web security market to actively seek out and block bot websites, the protocols they employ, and the launch of bots at the desktop.
Websense Web Security Suite v6.2 delivers comprehensive protection by blocking access to websites hosting bot command-and-control centres, eliminating non-HTTP bot network traffic, and blocking the launch and spread of bots and bot networks. Additional key security features of Websense Web Security Suite v6.2 include protection from email-borne worms, enhanced protection against drive-by spyware, management of Skype in enterprise networks, and the ability to manage non-Port 80 HTTP traffic. At the endpoint, Websense Client Policy Manager™ (CPM) and Websense Web Security Suite-Lockdown Edition integrate with Microsoft XP firewall and provide improved support for Cisco’s Network Admissions Control.
In addition to having the most effective mechanism for protecting organisations and employees from spyware, malware and crimeware by preventing access to infected and malicious websites, Websense v6.2 software functions as an easy-to-use, highly effective, proven alternative to Intrusion Detection and Intrusion Prevention (IDS/IPS) services. The software provides the advantages of IDS/IPS without the complexity or advanced IT skills required for deployment and maintenance. Furthermore, by controlling the use or launch of malicious, unwanted, and questionable applications, Websense Web Security Suite-Lockdown Edition serves as an effective and low-risk alternative endpoint security solution to behaviour-based Host Intrusion Prevention Solutions (HIPS).
Malicious Bot Traffic Management
Bot networks have become the predominant feature of the internet threat landscape. Websense Web Security Suite v6.2 provides organisations with enhanced protection for malicious traffic management, which includes protection from bots and bot nets. A bot is a program that secretly installs itself on a computer and allows the hacker to control the system. A bot net is a network of robot computers that may have tens, hundreds, or tens of thousands of bots under its control. That bot net can harness its collective power to launch distributed Denial of Service attacks, act as a spam proxy, and host malicious content and phishing exploits.
Customers can now choose a specific category within the Websense URL, protocol and application databases to set filtering policies to protect their organisation from bot websites, malicious traffic, and unauthorised control of desktops. With comprehensive coverage in URL, protocol and endpoint filtering categories, Websense’s latest software prevents access to websites that distribute bots, protects corporate computers from submitting to bot control, and halts the execution of bots at the desktop.
Managing use of Skype in the Enterprise
Websense Web Security Suite v6.2 can now monitor and block the use of Skype in enterprise networks. Skype is an internet telephony service provider that offers free calling between computers as well as low-cost calling to regular telephones. Skype has become a very popular alternative to traditional phone lines in corporate settings; however, Skype’s standards allow it to traverse corporate firewalls, which can introduce web-based threats and present a back door to hackers trying to infiltrate an organisation. Websense Web Security Suite-Lockdown Edition allows organisations to set policies to manage access to Skype download pages, block Skype communications at the protocol level, and lock down PCs and laptops to stop the launch of the Skype application.
Block non-Port 80 HTTP Traffic
A large amount of spyware, phishing attacks, crimeware, and malicious websites are now crafted to avoid detection by using ports other than Port 80, which is normally set for HTTP traffic. Websense customers can now protect against non-Port 80 HTTP traffic with the latest version of Websense Web Security Suite v6.2. Utilising an enhanced Network Agent, the software can scan customers’ networks for HTTP traffic across every external and internal facing port.
Microsoft XP Desktop Firewall Integration
Through integration with Websense Client Policy Manager and Websense Web Security Suite-Lockdown Edition, Windows Desktop Firewall customers will gain greater return on their investment with application-based controls. Lockdown Edition and Websense CPM are fully integrated with the Microsoft XP SP2 firewall and provides IT managers with the ability to enhance desktop management by enabling simplified configuration and dynamic application firewall rules with grouped categories versus individual applications.
Protection from Email-Borne Worms
Hackers continue to use the internet and all forms of associated internet communication as a means of delivering malcode, viruses and worms. This new feature of Websense Web Security Suite complements existing spam and email security solutions by detecting outbound email communications to a third party machine hosting a SMTP server generated by an email-borne worm on a corporate PC. An alert will be immediately sent to an administrator warning him/her that email worm-infested traffic is being sent.
Enhanced Spyware Protection
Enhanced protection offered in Websense Web Security Suite v6.2 includes blocking access to websites harbouring drive-by spyware. Drive-by spyware is a program that is transparently downloaded without knowledge or consent to an end-user’s computer by simply visiting a website or viewing an HTML email message. Websense offers multiple ways to stop spyware: the software prevents access to spyware websites, blocks the launch of spyware applications, blocks backchannel communications to spyware websites, and manages the use of spyware-enabling applications such as instant messaging and peer-to-peer.
Coupled with Websense Real-Time Security Updates™, Websense customers are immediately protected from accessing sites that host drive-by spyware, keyloggers and other forms of malicious code. As new malicious websites are discovered, real-time database updates are pushed out to customers to ensure the most up-to-date and thorough protection available.
Support for Cisco’s Network Admissions Control
Websense CPM v6.2 end-point security software features enhanced integration support for Cisco’s Network Admissions Control (NAC). Websense’s CPM is innovative security software that extends the power of Websense’s Master Database and filtering expertise to an organisation’s desktops, laptops, and servers. Originally integrated with the Cisco Trust Agent and NAC architecture in October 2005, the newest integration allows for further utilisation of Websense CPM to communicate key security information to the Cisco Trust Agent, such as the presence of spyware and keylogging software on a client attempting to enter the network. Alerts will immediately be distributed to IT managers so that the malicious software can be promptly removed. Additionally, utilising NAC, organisations will be able to determine if Websense CPM is installed, current and operational.
Websense Web Protection Services™
Websense Web Security Suite v6.2 includes the three Websense Web Protection Services, which help organisations protect their websites, brands, and web servers. SiteWatcher™ alerts Websense customers when their websites have been infected with malicious mobile code, allowing them to take immediate action to prevent its spread to customers, prospects, and partners. BrandWatcher™ alerts Websense customers when their websites or brands have been targeted in phishing or malicious keylogging code attacks. Websense provides customers with security intelligence, attack details, and other security-related information, so that organisations can then take action to protect their customers. ThreatWatcher™ provides Websense customers with a “hacker's-eye” view of their web server, regularly scanning for known vulnerabilities and potential threats and reporting on risk levels and recommended actions through a web-based portal. With ThreatWatcher, organisations can prevent attacks on their web servers before they happen.
Websense v6.2 software is currently available for organisations who wish to protect themselves from internet and application security threats. For a free 30-day evaluation of Websense software or for more information on protecting your organisation from a wide range of threats including spyware, virus outbreaks and internal hacking exploits, please visit www.websense.com. Websense Security Labs™ offers free email security updates as new internet threats are discovered and is available at www.websensesecuritylabs.com.