Quote:
Originally posted by supersonic@16 March 2004 - 21:47
What you are saying is right. Firewalls are not 100% accurate. Same thing applies to Antivirus software.
I think that companies want to show us that their software products work by several means, even if it involves sending small portscan attacks. Companies, such as Symantic and Mcafee will not benifit from invading your whole computer and breaking into it, they can do that even with 999 firewalls installed, but they want to show that their software works by these scans. What makes me suspect is that some companies are only specialized in frre online scanning.
Anyways, it is better than our firewalls are doing it's job. Even if the alert was false, it is better than nothing at all :)
I noticed that viruses and attacks are growing very numeruos two weeks after the windows 2000/nt sourc code was leaked, just saying, it might be not related.
You need to be able to determine false input from your log files.