Prezi

Present Remotely

Send the link below via email or IM

Copy

Present to your audience

Start remote presentation

  • Invited audience members will follow you as you navigate and present
  • People invited to a presentation do not need a Prezi account
  • This link expires 10 minutes after you close the presentation
  • A maximum of 30 users can follow your presentation
  • Learn more about this feature in the manual

Do you really want to delete this prezi?

Neither you, nor the coeditors you shared it with will be able to recover it again.

DeleteCancel

Make your likes visible on Facebook?

Connect your Facebook account to Prezi and let your likes appear on your timeline.
You can change this under Settings & Account at any time.

No, thanks

Fast data delivery from clouds - a strong weapon in the anti-virus arms race

presentation for AVAR 2013 conference by Lukas Hasik and Petr Chytil from AVAST Software
by Lukas Hasik on 9 September 2014

Comments (0)

Please log in to add your comment.

Report abuse

Transcript of Fast data delivery from clouds - a strong weapon in the anti-virus arms race

Fast Data Delivery From Clouds
A Strong Weapon
In The Anti-Virus Arms Race

Lukáš Hasik
Petr Chytil

virus lab
cloud
quality
updates
released 3 time a day
only?
continuous updates
How do we generate the data?
full checksum detections
PE specific checksum detections
evo-gen
URL detections
whitelists
}
p
packaging
&
testing
everything is automated
200 M
Not only quantity,
but also
matters.
What is worse than a false positive ?
BSOD
corrupted
package
}
user
lost
broken
engine/antivirus
}
prevention
functional smoke tests
simulate user environment
200 M users
virtual clients
test cycle
release
local cloud
public cloud
?
test
test
Distribution of virus definitions
using a cloud
PULL
PUSH
2 M connections per server
Linux
Java
Comet
Netty
about 40 millions of active clients (in peak)
streaming update packet size 1 – 10KB
update delivery time under 5 minutes
lessons learnt
tests were using the antivirus more extensively than any user would used it
release cycle cannot be faster than a test cycle
don't hurry
local cloud is as important as the public one
See the full transcript