Not all next-gen endpoint solutions do this. An endpoint application execution control can be much simpler.
1. Choose an existing trust list (over 1000 apps/dlls etc trusted) or build your own in a few minutes.
2. Install file filter driver - as soon as driver is installed on endpoint, instant protection, no scanning of drives, folders etc needed.
3. User runs a trusted app - intercepted at kernel, fingerprinted and matched allowed to run. Imperceptible to user.
4. Malware tries to execute - intercepted at kernel, check to see if on trust list, not on trust list - blocked.
5. Need to add a new trusted application? One click, no rules to amend, no whitelists to push to endpoints. All endpoints inherit new app trust and app can execute across global enterprise.
Comments
Not all next-gen endpoint solutions do this. An endpoint application execution control can be much simpler.
1. Choose an existing trust list (over 1000 apps/dlls etc trusted) or build your own in a few minutes.
2. Install file filter driver - as soon as driver is installed on endpoint, instant protection, no scanning of drives, folders etc needed.
3. User runs a trusted app - intercepted at kernel, fingerprinted and matched allowed to run. Imperceptible to user.
4. Malware tries to execute - intercepted at kernel, check to see if on trust list, not on trust list - blocked.
5. Need to add a new trusted application? One click, no rules to amend, no whitelists to push to endpoints. All endpoints inherit new app trust and app can execute across global enterprise.