WASHINGTON, D.C. — The Computer Security Institute conference that kicked off here Monday served as the launch site for a collection of new and upgraded products focusing on security issues that range from network management to anti-fraud services to securing devices on a network.
The conference, in its 32nd year, has drawn 3,000 attendees, according to show organizers. The agenda of keynote and panel discussions includes the evolving responsibilities of CISOs, the latest in security-related legislation and regulatory issues, how neuroscience will affect the future of computing, and even a keynote speech about Washington by New York Times columnist William Safire.
In the conference’s exhibition hall, vendors are demonstrating their latest security offerings, including:
Cloakware
Cloakware upgraded its Cloakware Server Password Manager (CSPM) software for application-to-application authentication. Instead of relying on IDs and passwords that are “hard coded” into applications requiring access to data stored on servers, CSPM allows corporate developers to embed routines into their applications that acquire credentials for access at runtime from a central credential store, says Robert Grapes, senior product manager with Cloakware. More and more, auditors are recommending companies move away from hard-coding passwords in order to stay in compliance with new regulations, Grapes says.
Version 2.0 features password synchronization that automatically changes application passwords on a regular basis – typically every 90 days, says Grapes – to enhance security. It also features new administrator controls and new features for managing the encryption/decryption keys that protect server credentials. The upgrade is priced at $1,000 per ID-and-password combination.
Cloakware also announced an appliance version of its software, called CSPM Express, designed for small and medium-sized businesses. Priced at $100,000, the appliance is designed for companies with 200 servers or less.
StillSecure
StillSecure updated its Safe Access network access software designed to ensure only compliant devices are allowed access to an enterprise’s network. Version 4.0, available now and priced at $50 per IP address, works with 802.1x’s hardware-level policy enforcement for quarantining devices deemed non-compliant, according to company officials. Non-compliant devices can be directed into one of a number of virtual LANs – including guest, departmental, or individual – depending on the device’s level of security, they say. Once quarantined, devices can be put through remediation automatically by leveraging Safe Access’ Enterprise Integration Framework that works with a number of patch managers, or device users can be directed to resources pertaining to self-remediation, they say.
Ipswitch
Network management software maker Ipswitch launched WhatsUp Professional 2006 Premium Edition, aimed at small businesses. The software upgrade features new application management features, adherence to SNMP v.1, v.2, and v.3 specifications for monitoring devices attached to the network, as well as expanded, standards-based reporting, according to company officials.
WhatsUp Professional 2006’s application management features work with Microsoft Exchange- and SQL Server-based programs. The enhanced reporting feature provides HTML-based reporting on all network-based applications and devices and provides statistical and performance measurements, officials say. Other improvements include Web content monitoring, router bandwidth monitoring and trend analysis, additional predefined reports, Web alarms, pager notifications and database tools, they say.
WhatsUp Professional 2006, Premium Edition is available now and is priced between $2,495 and $4,995, depending on the number of network devices managed.
Sana Security
Sana Security announced Primary Response SafeConnect, software designed to protect desktops from spyware, adware, and phishing attacks. The software detects malicious code in three ways; leveraging the included knowledge-based system to search for malware characteristics, using heuristics to detect activity created by Trojans, keyloggers, silent backdoors and rootkits, and protecting from anomaly-based threats by learning normal application file path behaviors, according to company officials. These techniques eliminate the need for scanning or signatures and provide instant protection, they say.
Primary Response SafeConnect is available now as a free beta download. Pricing for the generally available product will be announced early next year, officials say.
M-Systems
M-Systems launched Xkey Shield, software designed to let corporations control the use of removable devices and media on their networks. Priced at $50 and available now, Xkey Shield is desktop and server software that lets network administrators track the usage of and enforce policies regarding removable devices including USB Flash drives, MP3 players, digital cameras, and CD/DVD burners and printers. Enterprises can define which types of these devices are allowed on their network and restrict those that are not, or enforce “read only” mode, company officials say. The software also generates reports on device usage.
Guardium
Guardium announced SQL Guard Database Firewall, designed to prevent unauthorized access to corporate data. This policy-based firewall monitors SQL-level access to databases and represents a key component of enterprises’ layered security strategies, according to company officials. The firewall, which works with databases from Microsoft, IBM, Oracle and Sybase, includes a module for building policies that regulate database access control and enforcement. It includes features such as redundant power supply, RAID storage technology, and the option to be deployed in a dual redundancy fashion with hot stand-by capabilities.
SQL Guard Database Firewall is available now, starting at $50,000.
Lancope
Lancope released an anomaly-detection appliance for routers and switches based on sFlow network monitoring and management technology. StealthWatch Xe for sFlow, available now starting at $29,995, works with products from Foundry Networks, HP, and Extreme Networks and analyzes sFlow records without requiring expensive sensors placed throughout the enterprise, according to company officials. The product inspects network traffic for application-specific policies such as port usage and automatically blocks threats such as zero-day and denial-of-service attacks and worms, as well as policy violations, at the network’s edge, they say.
Cyveillance
Cyveillance will unveil its enhanced online anti-fraud service, which monitors the Internet daily, searching for company-specific threats and fraud. The updated service provides a number of ways to help companies protect their brand and customers online, according to officials with the company. The service’s Abuse Box Integration feature analyzes the contents of a company’s “report suspicious behavior” inbox to verify threats. The service also blocks pharming attacks – where visitors to trusted sites are redirected to bogus Web sites designed to steal customer information – by automatically detecting unauthorized IP address changes. Once a fraudulent site is detected, Cyveillance’s service can quickly take it down, often before visitors are lured to it, officials say. And the service can track fraud and abuse worldwide, in any language, they say.
The enhanced service is available now; pricing varies depending on the scope of services used.




