The problem with red/green computer security

news
May 30, 20081 min

Reviewing CheckPoint’s ZoneAlarm ForceField drove home the point, to tester Roger Grimes, that although it and other similar Internet browsing virtualization products try to be helpful, they usually fail quickly under testing and are not highly accurate.

“The problem is that these types of solutions are old news, and their inherent problems and challenges have been acknowledged and argued for decades,” Grimes writes in Red/Green computer security.

For that reasons, and several others he shares, Grimes cannot recommend this class of products at all.

“They are flawed in theory, and in practice real malware affirms the theoretical conclusions. I’m not saying that a highly accurate limited emulation protection environment can’t be created, but I doubt it.”

Related review: ZoneAlarm ForceField: Compromised in 60 seconds.