« Game of the week: Stranded | Main | When only the most secure password will do »
Just because you don't know it's there....
There has been a lot of lively discussion on the web in general (and our forums in particular) as to the value of security software. Some people have even suggested that there is no point in installing anti-virus. Before going any further, let me just say I think this is a very, very bad idea.
One discussion I was involved in revolved around the value of a software firewall. I've had several people tell me that the firewall on a router is all the protection they need. Other discussions have been running on LifeHacker and AskMetafilter.
Routers certainly offer valuable protection but only really against inbound threats. If a computer tries to connect to your home network that hasn't been invited it is simply ignored. That protects from threats outside the network.
The problem is that many attacks don't rely on slipping past a firewall. I've been speaking with several security experts recently and they all say that browsers pose a big threat due to malicious (or hacked) websites. Sometimes just accessing the site is enough to get infected. And from that point the malicious software is sending information out of the network. By default most routers will let them do so quite happily.
My router didn't help me when a computer I was using was hit by a virus but luckily I was running a software firewall (ZoneAlarm as it happens) that stopped it in its tracks.
Allysa Myers on the McAfee Avert Labs Blog also points out that it's very hard to tell if a computer has been infected any more. If you want to steal data from people the last thing you want them to know is that you're doing it.
I've seen demonstrations with Sophos of modern viruses and there really is no way of knowing that the computer has become infected.
True there is a performance penalty for running all of this but it is very minor, especially when you consider the alternatives. I also have problems believing people who say they can tell the difference, especially when they are usually the ones with more powerful computers. As suggested in a Windows Secrets article by Fred Langa, people rarely notice a less than 10% drop in performance.
Posted by Tim Smith on May 6, 2008 | Permalink
TrackBack
TrackBack URL for this entry:
http://www.typepad.com/t/trackback/24766/28803868
Listed below are links to weblogs that reference Just because you don't know it's there....:




