<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: It Doesnâ€™t Hurt to Ask</title>
	<atom:link href="http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/feed" rel="self" type="application/rss+xml" />
	<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask</link>
	<description></description>
	<lastBuildDate>Fri, 12 Mar 2010 16:00:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: David</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31984</link>
		<dc:creator>David</dc:creator>
		<pubDate>Tue, 23 Sep 2008 14:01:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31984</guid>
		<description>ESET does use &quot;in-the-cloud&quot; technology, though not in the exact same, limited sense that AV companies tend to use the term right now. Our product range is continuously reviewed and updated. I can&#039;t tell you exactly what changes are in the pipeline (I don&#039;t know all of them), but we won&#039;t be standing still.

David Harley
Malware Intelligence Team</description>
		<content:encoded><![CDATA[<p>ESET does use &#8220;in-the-cloud&#8221; technology, though not in the exact same, limited sense that AV companies tend to use the term right now. Our product range is continuously reviewed and updated. I can&#8217;t tell you exactly what changes are in the pipeline (I don&#8217;t know all of them), but we won&#8217;t be standing still.</p>
<p>David Harley<br />
Malware Intelligence Team</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kresirys</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31901</link>
		<dc:creator>Kresirys</dc:creator>
		<pubDate>Sun, 21 Sep 2008 10:43:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31901</guid>
		<description>Hi,David Harley:
Did you hear about &quot;In-the-cloud&quot; technology?

For example:
Panda&#039;s called &quot;Collective Intelligence&quot;,McAfee&#039;s called &quot;Artemis&quot; and Symantec&#039;s called &quot;Norton Community Watch&quot;.

In the latest AV-Test result,all of above with 2009 products had the better detection rate and faster respond time than 2008s.

Will ESET develop similar technology?

Or just keep using your positive technology for hundred of years?</description>
		<content:encoded><![CDATA[<p>Hi,David Harley:<br />
Did you hear about &#8220;In-the-cloud&#8221; technology?</p>
<p>For example:<br />
Panda&#8217;s called &#8220;Collective Intelligence&#8221;,McAfee&#8217;s called &#8220;Artemis&#8221; and Symantec&#8217;s called &#8220;Norton Community Watch&#8221;.</p>
<p>In the latest AV-Test result,all of above with 2009 products had the better detection rate and faster respond time than 2008s.</p>
<p>Will ESET develop similar technology?</p>
<p>Or just keep using your positive technology for hundred of years?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31814</link>
		<dc:creator>David</dc:creator>
		<pubDate>Fri, 19 Sep 2008 12:03:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31814</guid>
		<description>Hello, Fred. 

I don&#039;t have a number for an ESET office in Norway. I think you need one of the contact points/numbers/email addresses at www.esetscandinavia.com/company/contact/.

David Harley
Malware Intelligence Team</description>
		<content:encoded><![CDATA[<p>Hello, Fred. </p>
<p>I don&#8217;t have a number for an ESET office in Norway. I think you need one of the contact points/numbers/email addresses at <a href="http://www.esetscandinavia.com/company/contact/" rel="nofollow">http://www.esetscandinavia.com/company/contact/</a>.</p>
<p>David Harley<br />
Malware Intelligence Team</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Randy Abrams</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31513</link>
		<dc:creator>Randy Abrams</dc:creator>
		<pubDate>Fri, 12 Sep 2008 10:35:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31513</guid>
		<description>If I relied exclusively upon the response in the IM environment, then the scenarios you present could be effective. There is no silver bullet. Trying to validate transfers in IM or email is just one layer of defense. It can be a highly effective layer, but obviously cannot be assumed to protect 100% of the time. Still, that a solution is not perfect does not render it useless.

In my case, if a link that didn&#039;t make sense in the context of the conversation was sent, in addition to asking if the sender meant to send the link, I would ask why. I would try to understand the context. Then I would also have anti-virus software in place, and if I decided to click the link it would be sand boxed to limit damage.

Randy Abrams
Director of Technical Education</description>
		<content:encoded><![CDATA[<p>If I relied exclusively upon the response in the IM environment, then the scenarios you present could be effective. There is no silver bullet. Trying to validate transfers in IM or email is just one layer of defense. It can be a highly effective layer, but obviously cannot be assumed to protect 100% of the time. Still, that a solution is not perfect does not render it useless.</p>
<p>In my case, if a link that didn&#8217;t make sense in the context of the conversation was sent, in addition to asking if the sender meant to send the link, I would ask why. I would try to understand the context. Then I would also have anti-virus software in place, and if I decided to click the link it would be sand boxed to limit damage.</p>
<p>Randy Abrams<br />
Director of Technical Education</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: AJ</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31512</link>
		<dc:creator>AJ</dc:creator>
		<pubDate>Fri, 12 Sep 2008 10:17:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31512</guid>
		<description>I wonder whether even then you would escape, if the IM bot is clever enough. You&#039;re making two assumptions. One is that your friend isn&#039;t the victim of social engineering and is actually sending you the link to a maliciously compromised site - this would be rather like the typical email borne worms, where the user must download the attachment and run it. In this case the link would come through IM, take the user to a site that they enjoyed the content of, and then asked them if they wanted to send the link to all their online friends.
The second is that that the sending bot could be &#039;smart&#039; enough to reply to your query and say yes.
Of course, there&#039;s also the possibility that your friend is malicious, but just because I&#039;m paranoid doesn&#039;t mean they&#039;re not out to get you ;-)

A</description>
		<content:encoded><![CDATA[<p>I wonder whether even then you would escape, if the IM bot is clever enough. You&#8217;re making two assumptions. One is that your friend isn&#8217;t the victim of social engineering and is actually sending you the link to a maliciously compromised site &#8211; this would be rather like the typical email borne worms, where the user must download the attachment and run it. In this case the link would come through IM, take the user to a site that they enjoyed the content of, and then asked them if they wanted to send the link to all their online friends.<br />
The second is that that the sending bot could be &#8217;smart&#8217; enough to reply to your query and say yes.<br />
Of course, there&#8217;s also the possibility that your friend is malicious, but just because I&#8217;m paranoid doesn&#8217;t mean they&#8217;re not out to get you <img src='https://secure.eset.com/blog/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>A</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Fred EdstrÃ¸m</title>
		<link>http://www.eset.com/blog/2008/08/28/it-doesn%e2%80%99t-hurt-to-ask/comment-page-1#comment-31340</link>
		<dc:creator>Fred EdstrÃ¸m</dc:creator>
		<pubDate>Mon, 08 Sep 2008 13:23:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=148#comment-31340</guid>
		<description>Hello! Have you heard about a keylogger with name Goldeneye. Have some experians with this or maybe Nod32 take care of it? 

Try to reach the Norwegian Nod32 office, but the phone number they had dont work anymore +47 23 17 26 00

Best Regards from

Fred EdstrÃ¸m
Norway</description>
		<content:encoded><![CDATA[<p>Hello! Have you heard about a keylogger with name Goldeneye. Have some experians with this or maybe Nod32 take care of it? </p>
<p>Try to reach the Norwegian Nod32 office, but the phone number they had dont work anymore +47 23 17 26 00</p>
<p>Best Regards from</p>
<p>Fred EdstrÃ¸m<br />
Norway</p>
]]></content:encoded>
	</item>
</channel>
</rss>
