Printer Friendly
The Free Library
19,607,059 articles and books
Member login
User name  
Password 
 
Join us Forgot password?

Barracuda Spam Firewall Moves Beyond Traditional Reputation Analysis With Predictive Sender Profiling.


Behavioral Profiling of Spammers Thwarts Growing Attempts to Obfuscate To make unclear or confuse. See obfuscator and e-mail obfuscator.  Spammer Identities

MOUNTAIN VIEW, Calif. -- Barracuda Networks, Inc., the leading provider of application security appliances, today announced the Predictive Sender Profiling capabilities of the Barracuda barracuda, slender, elongated fish of tropical seas. Barracudas have long snouts and projecting lower jaws armed with large, sharp-edged teeth. They are ferocious, striking at anything that gleams, and are considered excellent game fishes.  Spam Firewall. These capabilities provide industry-leading protection against spammers' latest attempts to evade traditional reputation analysis. Utilizing a network of more than 40,000 customer systems worldwide, Barracuda Networks has the most diverse compilation of email available for profiling the behavior of spammers. Using this data enables the Barracuda Spam Firewall to more easily determine a sender's identity when identity obfuscation ob·fus·cate  
tr.v. ob·fus·cat·ed, ob·fus·cat·ing, ob·fus·cates
1. To make so confused or opaque as to be difficult to perceive or understand: "A great effort was made . . .
 techniques are used.

"While 2006 marked the beginning of an assault on image spam, 2007 is marking yet another trend through spammer identity obfuscation," said Stephen Pao, vice president of product management for Barracuda Networks. "Taking an analogy from the financial industry, where reputation analysis is like a FICO score FICO Score

A standard credit score which makes up a substantial portion of a credit report that credit bureaus sell to lenders so they can asses an applicant's credit risk and whether to extend them credit.
, identity obfuscation, like identity theft, requires profiling against anomalous behavior."

"Reputation is a computationally efficient way to profile spam," said Michael Osterman, president of Osterman Research. "However, we have observed that spoofing, botnets, and other means of hiding behind the reputation of another sender have made this technique less effective than it might otherwise be. As a result, while we believe reputation is very important, other spam prevention techniques that profile sender behavior will be very important moving forward."

Predictive Sender Profiling

Modern spam trends require reputation data be augmented with behavioral profiling techniques. For example, by taking control of networks of computers infected with malware (also called "botnets"), spammers can send email from diverse sources throughout the Internet, thus hiding their own identity from traditional reputation checks that profile sender network addresses. By registering new domains or by redirecting to spam Web domains through reputable blogs, free Web site providers, or URL redirection services, spammers have also learned to hide their identity from traditional reputation checks that profile spam Web domains.

When spammers obfuscate their identities, the Barracuda Spam Firewall can profile behaviors of all senders. Examples include:

* Sending too many emails from a single network address. The Barracuda Spam Firewall prevents spamming behavior from an email server even when it does not have a previously established reputation for doing so.

* Attempting to send to too many invalid recipients. The Barracuda Spam Firewall automatically rejects SMTP (Simple Mail Transfer Protocol) The standard e-mail protocol on the Internet and part of the TCP/IP protocol suite, as defined by IETF RFC 2821. SMTP defines the message format and the message transfer agent (MTA), which stores and forwards the mail.  connection attempts from email senders that attempt to send to too many invalid recipients, a behavior indicative of directory harvest or dictionary attacks.

* Sending email blasts on the first day after registering a domain. Barracuda Central maintains domain reputations and automatically adds newly registered domains to Intent Analysis databases.

* Using free Internet services to redirect to known spam domains. Barracuda Spam Firewalls with Multilevel mul·ti·lev·el  
adj.
Having several levels: a multilevel parking garage.

Adj. 1. multilevel - of a building having more than one level
 Intent Analysis enabled, automatically follow URL redirections from free Internet services and analyze the reputation of the destination Web sites and their associated DNS (Domain Name System) A system for converting host names and domain names into IP addresses on the Internet or on local networks that use the TCP/IP protocol. For example, when a Web site address is given to the DNS either by typing a URL in a browser or behind the  configurations.

"As identity obfuscation continues to proliferate, the stand-alone value of reputation data diminishes," said Pao. "Through Predictive Sender Profiling, we are able to recognize bad sender behavior and implement a broad variety of countermeasures in real-time. With six of the 12 comprehensive defense layers tunable through updates delivered by Barracuda Central, our engineers have the broadest set of weapons available to stop the spam. Combining this set of weapons with the industry's most diverse and active compilation of email, Barracuda Networks can deliver industry-leading spam accuracy even as the spam landscape continues to evolve."

"We have been using our Barracuda Spam Firewall since early 2005, and I can't imagine ever being without it," said Jacob Nyhart, network engineer for South Carolina South Carolina, state of the SE United States. It is bordered by North Carolina (N), the Atlantic Ocean (SE), and Georgia (SW). Facts and Figures


Area, 31,055 sq mi (80,432 sq km). Pop. (2000) 4,012,012, a 15.
 Heart Center. "While spam trends keep changing, our Barracuda Spam Firewall seems to catch them right away and has continued to effectively block more than 98 percent of incoming spam here at SCHC SCHC Society for Chemical Hazard Communication
SCHC South Carolina Honors College (University of South Carolina-Columbia)
SCHC St Christopher's Hospital for Children
SCHC Stichtsche Cricket en Hockeyclub
. We appreciate that Barracuda Central is profiling spammer behavior so that we don't have to."

Barracuda Spam Firewall Reputation Analysis

While the standalone value of reputation data is diminishing, it remains an important baseline for sender profiling. For reputation analysis, the Barracuda Spam Firewall leverages data on both network addresses used to send email and domain names embedded in the Web links of emails gathered by Barracuda Central, an advanced technology operations center where engineers continually monitor the Internet for trends in spam and virus attacks. Both the IP and reputation data combined, enables Barracuda Networks to implement countermeasures to mitigate those threats.

For network addresses used to send email, Barracuda Spam Firewalls download two lists used in its IP Analysis defense layer - a Block list ("blacklist (1) A list of e-mail addresses of known spammers. See spam, spam filter, Blacklist of Internet Advertisers, greylisting and blackholing. Contrast with white list.

(2) A list of Web sites that are considered off limits or dangerous.
") of known spammers and an Allow list ("whitelist") of known senders with good email practices. With these lists, Barracuda Spam Firewalls can efficiently differentiate those emails to be blocked or allowed with minimal processing. Other network addresses in the "grey area" are left for further analysis through nine subsequent spam and virus defense layers.

Domains embedded in Web links of emails are analyzed through the Intent Analysis defense layer of the Barracuda Spam Firewall. Intent Analysis is designed to capture the call to action of a spam email - to click on a Web link, call a phone number, or reply to an email. Even when the network origin of an email cannot be identified, the intent of the email can often reveal the identity of the sender. Barracuda Central maintains the reputation of Internet domains and their associated Domain Name Server (DNS) configuration.

"As a baseline for Predictive Sender Profiling, Barracuda Networks remains committed to delivering state-of-the-art reputation data," continued Pao. "With email sourced from our spam traps throughout the Internet, as well as submissions from thousands of customer systems worldwide spanning small and medium businesses, enterprises, government institutions, and Internet Service Providers across over 80 countries, Barracuda Central has the world's most diverse corpus of email on which to base reputation data."

Pricing and Availability

The Barracuda Spam Firewall Reputation Analysis and Predictive Sender Profiling capabilities are immediately available with Barracuda Spam Firewall firmware releases 3.4.10.100 and 3.4.11.200. All Barracuda Spam Firewall customers with current Energize en·er·gize  
v. en·er·gized, en·er·giz·ing, en·er·giz·es

v.tr.
1. To give energy to; activate or invigorate: "His childhood
 Updates subscriptions may upgrade to the latest firmware releases at no additional charge. For new customers, Reputation Analysis and Predictive Sender Profiling will be included out of the box. Barracuda Spam Firewall pricing varies by model and starts at $1,499 in the U.S. with no per user licensing fees. International pricing varies by region.

About the Barracuda Spam Firewall

The Barracuda Spam Firewall is available in six models and supports from 1,000 to 30,000 active users with no per user licensing fees. Its architecture leverages 12 defense layers: denial of service A condition in which a system can no longer respond to normal requests. See denial of service attack.  and security protection, rate control, IP analysis, sender authentication, recipient verification, virus protection, policy (user-specified rules), Fingerprint Analysis, Intent Analysis, Image Analysis, Bayesian Analysis Bayesian analysis A decision-making analysis that '…permits the calculation of the probability that one treatment is superior based on the observed data and prior beliefs…subjectivity of beliefs is not a liability, but rather explicitly allows , and a Spam Rules Scoring engine. In addition, the entire Barracuda Spam Firewall line features simultaneous inbound and outbound email filtering with the inclusion of sophisticated outbound email filtering techniques, such as rate controls, domain restrictions, user authentication (SASL 1. (language) SASL - St Andrews Static Language.
2. (networking) SASL - Simple Authentication and Security Layer.
), keyword and attachment blocking, dual layer virus blocking, and remote user support for outbound email filtering. The Barracuda Spam Firewall's layered approach minimizes the processing of each email, which yields the performance required to process millions of messages per day. For more information on the Barracuda Spam Firewall, visit http://www.barracuda.com/spam.

About Barracuda Networks, Inc.

Barracuda Networks is the leading provider of application security appliances for comprehensive email, Internet and IM protection. Its products protect over 40,000 customers around the world, including Adaptec, Caltrans, CBS (Cell Broadcast Service) See cell broadcast. , Georgia Institute of Technology Georgia Institute of Technology, in Atlanta, Ga.; coeducational; state supported; chartered 1885, opened 1888. It is a member school in the university system of Georgia. Significant among its facilities and programs are the Frank H. , IBM (International Business Machines Corporation, Armonk, NY, www.ibm.com) The world's largest computer company. IBM's product lines include the S/390 mainframes (zSeries), AS/400 midrange business systems (iSeries), RS/6000 workstations and servers (pSeries), Intel-based servers (xSeries) , NASA NASA: see National Aeronautics and Space Administration.
NASA
 in full National Aeronautics and Space Administration

Independent U.S.
, Pizza Hut, Union Pacific Railroad Union Pacific Railroad, transportation company chartered (1862) by Congress to build part of the nation's first transcontinental railroad line. Under terms of the Pacific Railroads Act, the Union Pacific was authorized to build a line westward from Omaha, Nebr.  Company, and the U.S. Treasury U.S. Treasury

Created in 1798, the United States Department of the Treasury is the government (Cabinet) department responsible for issuing all Treasury bonds, notes and bills. Some of the government branches operating under the U.S. Treasury umbrella include the IRS, U.S.
 Department. The Barracuda Spam Firewall and Barracuda Spam Firewall - Outbound protect organizations against spam, viruses, and violations to e-mail security policy. The Barracuda Web Filter offers comprehensive content filtering and complete network protection against spyware, malware and viruses. The Barracuda IM Firewall is the only all in one gateway solution for IM traffic management and security. The Barracuda Load Balancer offers easy to configure, secure and comprehensive IP network traffic management across multiple servers. Barracuda Networks is a privately held company privately held company

A firm whose shares are held within a relatively small circle of owners and are not traded publicly.
 with headquarters in Mountain View, California For the census-designated place, see Mountain View, Contra Costa County, California. For other places called "Mountain View", see .
Mountain View is a city in Santa Clara County, in the U.S. state of California. The city gets its name from the views of the Santa Cruz Mountains.
. Barracuda Networks has offices in eight international locations and distributors in over 80 countries. More information is available at www.barracuda.com.
COPYRIGHT 2007 Business Wire
No portion of this article can be reproduced without the express written permission from the copyright holder.
Copyright 2007, Gale Group. All rights reserved. Gale Group is a Thomson Corporation Company.

 Reader Opinion

Title:

Comment:



 

Article Details
Printer friendly Cite/link Email Feedback
Publication:Business Wire
Date:Apr 17, 2007
Words:1378
Previous Article:Zoot Enterprises Receives Wachovia's BIG 3 Award.
Next Article:Wasabi Announces IP-SAN & NAS Support for Intel(R) Storage Server SSR212MC2.
Topics:



Related Articles
Can the e-mail spam.
The big squeeze: closing down the junk e-mail pipe.
Choosing the right spam solution.
Top ten facts on spam firewalls.
Using SPAM firewalls.
Fighting spam.
FairUCE.
CipherTrust records 20% rise in July email volume.
Security news and products; Webwasher6.0 proactive anti-malware protection.
MXtreme 6.0.

Terms of use | Copyright © 2012 Farlex, Inc. | Feedback | For webmasters | Submit articles