Page 1 of 1

Is something like Prevoty.com redudant if I use ASL

Posted: Mon Sep 09, 2013 2:34 pm
by gaia
I read about Prevoty.com and I am wondering if ASL, when it comes to XSS/Injection protection, offers only the standard WAF protection or does it offer further protection, as Prevoty claims they do.
Rather than simply relying on past malware definitions or heuristics, SmartFilter uses “tokenizers, parsers, and profilers that in unison have the ability to perform syntactic/semantic operations on content,” according to the company. In other words, its algorithms understand how HTML and JavaScript code behaves within application and how that impacts users. When potentially dangerous activity or code is detected, the system prevents it from running and ejects the user responsible.
Thx

Re: Is something like Prevoty.com redudant if I use ASL

Posted: Mon Sep 09, 2013 3:31 pm
by mikeshinn
Short answer, yes its redundant.

As for what our WAF does, it doesnt rely on signatures, and already stops zero days. I have no idea why it seems they asserts that wafs rely on signatures, in general thats just not the case for the industry.