Video Screencast Help
Search Video Help Close Back
to help

Links to Details about Risks in Symantec Mobile Security 7.2 Console

Created: 06 Mar 2013 | Updated: 06 Mar 2013
Mick2009's picture
0 Agree
0 Disagree
0 0 Votes
Login to vote

In the Symantec Endpoint Protection Manager (SEPM), the Risk Logs report has a hyperlink that can be clicked, opening a write-up page and letting the admin read about the threats which are being detected by endpoints on the network. (Ways they spread, vulnerabilities involved, etc).  An example:

 

 

In the Symantec Management Console for SMS 7.2, there is a report containing the names of the malicious files detected, but no further information. An example:

 

It would be useful if there were links to write-ups (where available) so that admins can know whether the malware being found in their environment is aimed at financial gain (running up phone bills with premium-rate text messages or calls), hacktools (indicating that their corporate network may be under recon by a potential attacker), spyware, etc.  Knowing the nature of the threats can help the admin best prepare defences.

Note that many detected files will fall under generic, wide-ranging threat families (Android.malapp for example) - such links would still be useful.

Sample write-ups for Android threats:

Android.Opfake.B
http://www.symantec.com/security_response/writeup.jsp?docid=2012-022406-1309-99

Android.Spyagent
http://www.symantec.com/security_response/writeup.jsp?docid=2012-090710-1836-99

Android.Claco
http://www.symantec.com/security_response/writeup.jsp?docid=2013-020415-5600-99