SlideShare a Scribd company logo
The Seculert Attack Detection & Analytics Platform, delivered as a service, identifies attacks that have defeated
perimeter prevention systems based on the evidence the attacker inevitably leaves behind as they execute their
malicious activities. In the course of protecting more than 1.5 million enterprise users, Seculert researchers observe
the performance of all of the leading web gateway solutions. This report summarizes how well these solutions did in
blocking malicious communications generated by attacks that succeeded in penetrating our customer’s networks
during the first 10 months of 2015.
United States
2880 Lakeside Drive, #228
Santa Clara, CA 95054
Tel: +1 408 560 3400
Israel
6 Efal Street, P.O. Box 3970
Petach Tikvah, IL 4952801
Tel: +972 3 919 3366
www.seculert.com
Toll Free (US/Canada): +1 855 732 8537
Tel (UK): +44 203 6444
Fax: +972 3 919 3636
Copyright	
  2015	
  
Web Gateway Performance Report
Fast Facts
! One million client devices
! 200 Billion communications
! 8 Web Gateways - Barracuda, BlueCoat, Fortigate,
Ironport, McAfee Web Gateway, Palo Alto Networks,
Websense, Zscaler
! 10 Months
PERCENTAGE OF DEVICES ALLOWED TO COMMUNICATE OUT
 
Market Leading Gateway Vendors
 
Key Findings
! More than half the gateways studied allowed more than
40% of the attempted malicious communications to
succeed in reaching their associated C&C servers.
! 40% of all attempted malicious communication
succeeded in defeating their associated web gateway.
! Nearly all of the leading web gateways allowed
significant outbound communications attributable to
Dyre and Trojan.Agent.145
! Nearly 2% of all examined devices were infected and all
domains included in the research exhibited evidence of
infection.
! The average number of successful outbound
communications per incident (or infected device) was
more than 100.
! Measured over time, nearly all of the gateways observed
exhibited uneven performance. While most performed
well for weeks or months, eventually all showed
evidence of being “defeated” by the adversary.
0%#
10%#
20%#
30%#
40%#
50%#
60%#
70%#
80%#
90%#
100%#
A# B# C# D# E# F# G# H#
!"!!!!
!50!!
!100!!
!150!!
!200!!
!250!!
!300!!
!350!!
!400!!
E! D! H! A! B! C! F!
COMMUNICATIONS ALLOWED PER INCIDENT
 
SAMPLE GATEWAY PERFORMANCE
 
COMMUNICATIONSALLOWEDOUT
 
0%#
20%#
40%#
60%#
80%#
100%#
120%#
Jan# Feb# Mar# Apr# May# Jun# Jul# Sept# Oct#

More Related Content

PDF
The malware monetization machine
PPTX
Fle f04 mishra-v0.9
PPTX
Hiding In Plain Sight – Protect Against Bad Hashes
PPTX
160415 lan and-wan-ctap
PDF
REVE Antivirus Total Security
PDF
The Men Who Actually Ended Up Selling A programa de facturacion para republic...
PPT
Violeiro Exagerado - Causo Rolando Boldrin
PDF
Dashboard 260 gigs leaked
The malware monetization machine
Fle f04 mishra-v0.9
Hiding In Plain Sight – Protect Against Bad Hashes
160415 lan and-wan-ctap
REVE Antivirus Total Security
The Men Who Actually Ended Up Selling A programa de facturacion para republic...
Violeiro Exagerado - Causo Rolando Boldrin
Dashboard 260 gigs leaked

Similar to Seculert gateway performance report 2015 (20)

PPTX
Enfrentando os Desafios das Ameaças Combinadas.
PPTX
Het ecosysteem als complete bescherming tegen cybercriminaliteit [pvh]
PDF
Wsg datasheet
PDF
Layer one 2011-joe-mccray-you-spent-all-that-money-and-still-got-0wned
PDF
1.3. (In)security Software
PDF
Watch Guard Reputation Enabled Defense (White Paper)Dna
PPTX
Secure Web Gateway Market PPT: Trends and Dynamics, Drivers, Competitive land...
PPTX
FortiMail-Email-Secure-Gateway-May-2018_v1.pptx
PDF
Gartner Buyers Guide Summary
PDF
They Ought to Know Better: Exploiting Security Gateways via Their Web Interfaces
PPT
Security Lifecycle Management Process
PDF
Internet gatekeeper
PDF
Gartner Magic Quadrant for Secure Email Gateways 2014
PPTX
Check Point: Securing Web 2.0
PPT
DEVSECOPS_the_beginning.ppt
PDF
Spo1 r31 spo1-r31
PPTX
Vulnerability Management
PDF
Presentation cisco iron port email & web security
PDF
Advanced security - Seccom Global
PPTX
Radware - WAF (Web Application Firewall)
Enfrentando os Desafios das Ameaças Combinadas.
Het ecosysteem als complete bescherming tegen cybercriminaliteit [pvh]
Wsg datasheet
Layer one 2011-joe-mccray-you-spent-all-that-money-and-still-got-0wned
1.3. (In)security Software
Watch Guard Reputation Enabled Defense (White Paper)Dna
Secure Web Gateway Market PPT: Trends and Dynamics, Drivers, Competitive land...
FortiMail-Email-Secure-Gateway-May-2018_v1.pptx
Gartner Buyers Guide Summary
They Ought to Know Better: Exploiting Security Gateways via Their Web Interfaces
Security Lifecycle Management Process
Internet gatekeeper
Gartner Magic Quadrant for Secure Email Gateways 2014
Check Point: Securing Web 2.0
DEVSECOPS_the_beginning.ppt
Spo1 r31 spo1-r31
Vulnerability Management
Presentation cisco iron port email & web security
Advanced security - Seccom Global
Radware - WAF (Web Application Firewall)
Ad

Recently uploaded (20)

PPTX
OMC Textile Division Presentation 2021.pptx
PDF
2021 HotChips TSMC Packaging Technologies for Chiplets and 3D_0819 publish_pu...
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
PDF
Microsoft Solutions Partner Drive Digital Transformation with D365.pdf
PDF
From MVP to Full-Scale Product A Startup’s Software Journey.pdf
PDF
WOOl fibre morphology and structure.pdf for textiles
PPTX
Chapter 5: Probability Theory and Statistics
PPTX
The various Industrial Revolutions .pptx
PDF
Developing a website for English-speaking practice to English as a foreign la...
PDF
A comparative study of natural language inference in Swahili using monolingua...
PDF
Zenith AI: Advanced Artificial Intelligence
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
A novel scalable deep ensemble learning framework for big data classification...
PDF
Hybrid model detection and classification of lung cancer
PDF
Hindi spoken digit analysis for native and non-native speakers
PPTX
Programs and apps: productivity, graphics, security and other tools
PPTX
MicrosoftCybserSecurityReferenceArchitecture-April-2025.pptx
PDF
Web App vs Mobile App What Should You Build First.pdf
PDF
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
OMC Textile Division Presentation 2021.pptx
2021 HotChips TSMC Packaging Technologies for Chiplets and 3D_0819 publish_pu...
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
Microsoft Solutions Partner Drive Digital Transformation with D365.pdf
From MVP to Full-Scale Product A Startup’s Software Journey.pdf
WOOl fibre morphology and structure.pdf for textiles
Chapter 5: Probability Theory and Statistics
The various Industrial Revolutions .pptx
Developing a website for English-speaking practice to English as a foreign la...
A comparative study of natural language inference in Swahili using monolingua...
Zenith AI: Advanced Artificial Intelligence
gpt5_lecture_notes_comprehensive_20250812015547.pdf
A novel scalable deep ensemble learning framework for big data classification...
Hybrid model detection and classification of lung cancer
Hindi spoken digit analysis for native and non-native speakers
Programs and apps: productivity, graphics, security and other tools
MicrosoftCybserSecurityReferenceArchitecture-April-2025.pptx
Web App vs Mobile App What Should You Build First.pdf
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
Ad

Seculert gateway performance report 2015

  • 1. The Seculert Attack Detection & Analytics Platform, delivered as a service, identifies attacks that have defeated perimeter prevention systems based on the evidence the attacker inevitably leaves behind as they execute their malicious activities. In the course of protecting more than 1.5 million enterprise users, Seculert researchers observe the performance of all of the leading web gateway solutions. This report summarizes how well these solutions did in blocking malicious communications generated by attacks that succeeded in penetrating our customer’s networks during the first 10 months of 2015. United States 2880 Lakeside Drive, #228 Santa Clara, CA 95054 Tel: +1 408 560 3400 Israel 6 Efal Street, P.O. Box 3970 Petach Tikvah, IL 4952801 Tel: +972 3 919 3366 www.seculert.com Toll Free (US/Canada): +1 855 732 8537 Tel (UK): +44 203 6444 Fax: +972 3 919 3636 Copyright  2015   Web Gateway Performance Report Fast Facts ! One million client devices ! 200 Billion communications ! 8 Web Gateways - Barracuda, BlueCoat, Fortigate, Ironport, McAfee Web Gateway, Palo Alto Networks, Websense, Zscaler ! 10 Months PERCENTAGE OF DEVICES ALLOWED TO COMMUNICATE OUT   Market Leading Gateway Vendors   Key Findings ! More than half the gateways studied allowed more than 40% of the attempted malicious communications to succeed in reaching their associated C&C servers. ! 40% of all attempted malicious communication succeeded in defeating their associated web gateway. ! Nearly all of the leading web gateways allowed significant outbound communications attributable to Dyre and Trojan.Agent.145 ! Nearly 2% of all examined devices were infected and all domains included in the research exhibited evidence of infection. ! The average number of successful outbound communications per incident (or infected device) was more than 100. ! Measured over time, nearly all of the gateways observed exhibited uneven performance. While most performed well for weeks or months, eventually all showed evidence of being “defeated” by the adversary. 0%# 10%# 20%# 30%# 40%# 50%# 60%# 70%# 80%# 90%# 100%# A# B# C# D# E# F# G# H# !"!!!! !50!! !100!! !150!! !200!! !250!! !300!! !350!! !400!! E! D! H! A! B! C! F! COMMUNICATIONS ALLOWED PER INCIDENT   SAMPLE GATEWAY PERFORMANCE   COMMUNICATIONSALLOWEDOUT   0%# 20%# 40%# 60%# 80%# 100%# 120%# Jan# Feb# Mar# Apr# May# Jun# Jul# Sept# Oct#