|
Posted by Sebastian G. on June 27, 2007, 9:50 am
If you were Registered and logged in, you could reply and use other advanced thread options
Barry Margolin wrote:
> Without the AV software, you're hosed forever.
Utter bullshit.
>> Well, do I have to mention that the real solution against viruses is a
>> no-exec policy, thus only running applications from a whitelist? Trivial,
>> practicable, reliable, secure.
>
> But since the OS doesn't do that,
It does. Yours does as well.
> you need other protection.
You mean Windows 2000? Yes, such a functionality can be added by third-party
software.
> As an end user you can't change the OS policy,
Even more bullshit.
> you're stuck with it. You need a solution that works within its limits.
"Solution" and "works" are quite wide terms. Now, virus scanners are neither
- they're measures to limit the damage that stupid users are doing to us. It
doesn't limit the damage they're doing to themselves.
> Should we stop trying to develop cures and vaccines for STDs because the
> real solution is to not have sex with people with STDs?
No, because these cures and vaccines don't hinder the real solution and
don't increase the spread of STD.
> And the "no-exec" policy will only protect you from malware based on
> executing applications. It does nothing to protect you from phishing
> sites.
Nothing protects from phishing sites. It's a PEBKAC.
> And a whitelist only works if you know what programs to allow.
> What about a trojan that looks like a desirable program?
Nothing can protect from trojan horses, however a concept of trust relation
can limit their effect. If this fails, well, then you're hosed, even with
virus scanners.
|