Latest news
![]() | ![]() |
| Security Gateway 800 | Security Gateway 6000 |
These appliances are based on a custom operating environment, SGOS, that incorporates Blue Coat's Policy Processing Engine - a patent-pending framework for applying security, access, filtering and performance policies for any Web transaction.
"Content filtering is done with our scripting language, Content Policy Language (CPL), or with Visual Policy Manager, which is the graphical interface of the language. Security rules created with this tool are based only on content as the product is an application firewall, not the regular firewall. CPL can be used for creating rules depending on protocols and even methods, for example filtering the HTTP post or FTP put". - Mr. Duflos said and added "I think firewalls are doing a great job securing the networks, but they are not doing a great job to secure the applications".

Screenshot of Visual Policy Manager interface
While talking about port 80 security, Mr. Duflos said: "The time of the network based attacks passed us, because the firewalls are doing a great job. Majority of new security risks are on an application level. Our products take the very open port 80, close it a bit and actively scan it."
In October the SG800 Web Security Appliance, has topped Tolly Group (independent testing and strategic consulting organization) feature comparison among products from Cisco, Inktomi, Microsoft, Network Appliance and Sun. The appliance also received the highest marks in a more in-depth head to head Web performance evaluation that included products from Cisco, Network Appliance and Inktomi. One month earlier, in mid September, the same appliance has received the World-Class Award from Network World magazine, where it has been recognized for its ability to rapidly and intelligently inspect Web-based traffic that is usually passed through firewalls undetected.
Spotlight

The security of WordPress plugins
Posted on 18 June 2013. | Checkmarx’s research lab identified that more than 20% of the 50 most popular WordPress plugins are vulnerable to common Web attacks, such as SQL Injection.

Information security executives need to be strategic thinkers
Posted on 17 June 2013. | George Baker, the Director of Information Security at Exostar, talks about the challenges in working in a dynamic threat landscape, offers tips for aspiring infosec leaders, and more.

Large orgs in denial about own security breaches?
Posted on 14 June 2013. | Over two thirds (66%) of large organizations said they either had not experienced a security incident in the last 12-18 months or were unsure if they had.

Vulnerability scanning with PureCloud
Posted on 12 June 2013. | nCircle PureCloud is a cloud-based network security scanning product built upon the companies' vulnerability and risk management system IP360.

Reactions from the security community to the NSA spying scandal
Posted on 11 June 2013. | Read on for comments on this scandal that Help Net Security received from a variety of security professionals and analysts.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.









