| Ä«½ºÆÛ½ºÅ° SafeStream |
Ä«½ºÆÛ½ºÅ° SafeStreamÀº °¡Àå À§ÇèÇÑ ¹ÙÀÌ·¯½º, Æ®·ÎÀ̸ñ¸¶, ¿ú, ±×¸®°í ±âŸ ºü¸¥ ¼Óµµ·Î ÀüÆÄµÇ´Â ¸Ö¿þ¾î¸¦ Àâ¾Æ³»±â À§ÇØ °í¾ÈÀÌ µÇ¾ú½À´Ï´Ù. Ä«½ºÆÛ½ºÅ° SafeStream µ¥ÀÌÅͺ£À̽º´Â Çϵå¿þ¾îÀÇ ¼Ó·Â Áõ°¡¿¡ »ó´çÈ÷ È¿°úÀûÀÔ´Ï´Ù. º» Á¦Ç°Àº ±âÁ¸ÀÇ ¾ÈƼ ¹ÙÀÌ·¯½º ¼ÒÇÁÆ®¿þ¾î°¡ Áö´Ñ ±¸Á¶, ó¸®, ¸Þ¸ð¸® »ó Á¦ÇÑÀÇ ¹®Á¦·Î ÀÌ¿ëÇÒ ¼ö ¾ø¾ú´ø Ç÷§Æû¿¡¼µµ °í¼º´É ¾ÈƼ ¹ÙÀÌ·¯½º ÇÊÅÍÀÇ µµ±¸È¸¦ °¡´ÉÇÏ°Ô ÇØ ÁÖ¾ú½À´Ï´Ù.
Ä«½ºÆÛ½ºÅ° SafeStream µ¥ÀÌÅͺ£À̽º´Â ÇöÀç ³×Æ®¿öÅ©»ó¿¡ ÆÛÁö°í Àְųª ¿ÜºÎ¿¡¼ Ȱµ¿ ÁßÀÎ ¾Ç¼º Äڵ忡 ´ëÇÑ ±â·ÏÀ» Æ÷ÇÔÇϰí ÀÖ½À´Ï´Ù. ¾Ç¼º ÇÁ·Î±×·¥ÀÇ ¸®½ºÆ®´Â Ä«½ºÆÛ½ºÅ° ·¦ ³×Æ®¿öÅ© ¼¾¼¿Í Ä«½ºÆÛ½ºÅ° ¹ÙÀÌ·¯½º ·¦¿¡ ÀÇÇØ ¼öÁýµÈ µ¥ÀÌÅ͸¦ ¹ÙÅÁÀ¸·Î °è¼ÓÇØ¼ ¾÷µ¥ÀÌÆ® µÇ°í ÀÖ½À´Ï´Ù.
Ä«½ºÆÛ½ºÅ° SafeStreamÀº ½ºÆ®¸²-±â¹Ý ¹ÙÀÌ·¯½º ŽÁö ¼Ö·ç¼ÇÀ» °³¹ßÇϱâ À§Çؼ ´ÙÀ½ ±â´ÉÀ» Æ÷ÇÔÇÑ third-party pattern-matching ¿£ÁøÀ» °°ÀÌ »ç¿ëÇÕ´Ï´Ù.
- ½ºÆ®¸²-±â¹Ý ¾ÈƼ ¹ÙÀÌ·¯½º °Ë»ç
- Çϵå¿þ¾î °¡¼Ó ¼Ö·ç¼Ç°ú °áÇÕ ÇßÀ» ¶§ ´ë´ÜÈ÷ ºü¸¥ 󸮷®
- Á¦ÇÑµÈ Çϵå¿þ¾î ¼º´É(CPU, ¸Þ¸ð¸® µî)À¸·Î °ÔÀÌÆ®¿þÀÌ¿Í ÀåÄ¡¿¡¼ ÀåÄ¡¿Í ¹èÆ÷
- °¡Àå À§ÇèÇÑ ¾Ç¼º¿þ¾î¿Í ¹ÙÀÌ·¯½º Ã⿬¿¡ ´ëÀÀÇÏ´Â È¿À²ÀûÀÎ perimeter¿Í °ÔÀÌÆ®¿þÀÌ ·¹º§ º¸È£
- µ¶¸³µÈ ¼ÒÇÁÆ®¿þ¾î¿Í Çϵå¿þ¾î Ç÷§Æû
- Ä«½ºÆÛ½ºÅ° SafeStreamÀº Á¸ÀçÇÏ´Â ¸ðµç ¾Ç¼º¿¡¾î·ÎºÎÅÍ »ç¿ëÀÚ¸¦ º¸È£Çϱâ À§ÇØ µðÀÚÀÎµÈ °ÍÀÌ ¾Æ´Ï¶ó ¿ÀÈ÷·Á °¡Àå À§ÇèÇÏ°í °ªºñ½Ñ À§Çù¿ä¼Ò·ÎºÎÅÍ °¡´ÉÇÑ ÃÖ»óÀÇ ³×Æ®¿öÅ© º¸È£¸¦ Á¦°øÇϱâ À§ÇØ ¼³Ä¡µÈ °ÍÀÔ´Ï´Ù. ±×·¡¼, ÃÖ»óÀÇ º¸¾ÈÈ ¼º´ÉÀ» ±ÕÇü ÀÖ°Ô Á¦°øÇÕ´Ï´Ù.
KAV SDK ¿Í SafeStream Â÷ÀÌÁ¡
| KAV SDK | Safe Stream | |
| HW platform | x86, ARM | Any |
| SW platform | Linux, FreeSBD, Windows | Any |
| Scanning technique | Proxy-based (file-based) | Stream-based (can also be used for proxy-based) |
| Additional requirements | The ability to extract files from network traffic and proxy (store) them while scanning | Hardware or software-based string/pattern/RegEx matching engine. L7 payload extraction. Unarchivers and decoders for a higher detection level |
| Deliverables | AV database, AV Engine, AV database updater tool | AV database only (SafeStream signatures) |
| AV database | Contains records with signatures and machine instructions, about 9MB in size | A set of signatures that are byte sequences (byte strings), less than 2MB in text format |
| Detection capabilities | All possible malware | The most dangerous and wide-spread malware |


(China)
(Japan)
(Korea)
