- CheckMates
- :
- Products
- :
- Harmony
- :
- Endpoint
- :
- Offline detection in HEP
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Jump to solution
Offline detection in HEP
Can I confirm that an attack that can be detected offline by HEP is when you already know the signature?
1 Solution
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Anti-ransomware, Behavioral Guard, Port protection, Firewall each offer mitigations.
To this end you've not qualified if the client is permanently or temporarily offline.
CCSM R77/R80/ELITE
3 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Detection based on signatures is one but not the only approach that is valid in such as case.
CCSM R77/R80/ELITE
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thank you for your prompt reply. What are other approaches?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Anti-ransomware, Behavioral Guard, Port protection, Firewall each offer mitigations.
To this end you've not qualified if the client is permanently or temporarily offline.
CCSM R77/R80/ELITE
