Comodo Personal Firewall

Apr 01, 2006 92 Replies

You don't need to please somebody here. It would be important that there are solutions for home users, because we're all suffering from the network traffic of the zombies. And here is usenet, so a discussion is requested.

Thank you for being the very first security company to get into one at all. I have the feeling that you're reviewing your concepts, and are open for other ideas to improve your products. I didn't know your company before, but this leads me into having the impression of a company one should keep in view. ;-)

Yours, VB.

Beside that after three pints of beer I'm not able to talk about security and cryptography in a sensible way any more ;-)

Yours, VB.

Melih, I'm just curious. If you intend to continue offering this product free, as you've stated, forever, what's your motivation for spending development money (time=money) to improve the product? Where is your return calculated to come from?

Advertizing company's capabilities?

Maybe, at the end of this discussion we will see the very first "Personal Firewall" software, which is implemented sensibly ;-)

There is hope, at least.

Yours, VB.

Good question.

We have many innovative Security/Trust products. By giving good quality security software for free we want to gain user's trust so that they use our other products. some of our business model is similar to adobe, in that they give reader free charge for the writer. We sell Digital Certificates and the more people use our new technologies the more we can sell digital certificates. So our desktop security range will always be free.

Melih

I guess you missed Ad-aware SE, Spybot Search And Destroy, SpywareBlaster, a-squared, Microsoft Defender, Avast Home edition, ....etc?

I suggest that you search for them, once you install them, you would appreciate the effort and the fact that they are ALL free.

Ok, so the investment pays off for your other products, if you build a credible reputation. Well, at least you're not risk averse :).

You are right! I should have said: There isn't enough good and free stuff out there.

thanks Melih

Thanks for pointing this out.

TrustToolbar, as I mentioned in my previous posting is misclassified as a spyware. I challange anyone to show

1)Trusttoolbar to display ads (or ever have) (it never has) 2)or show that it hijacks anything.

I will even offer $10K award to anyone who can show that! (withouth building your own version or hack the current version :-) ) Let me tell you why they classified it as spyware:

1)it changes 404 messages to give you a more meaningful 404 (and guess what Google toolbar does that now 2)it uses Google as its search engine (we make ZERO money from providing TrustToolbar)

TrustToolbar is built to show

formatting link
capability on your browser. What idauthority is a way showing who owns which website and where they are based.

So trigger happy spyware guys, with no proper guidance or standard to follow as to what is spyware has gone ahead and classified it. We make no money from it and going after these guys (spyware guys) of which some of them don't even respond to letters nor do they analyse the product fully to understand it. So we decided to pull that product off the market as it was not worth our efforts as we don't make money from this at all!

Thanks for rais> Nothing good is free. Adware tracker in "trust" toolbar.

formatting link

check out a respectable online magazine who actually used the product and praised the product!

formatting link
Some of these fly by night spyware companies like paretologic has not even bothered to install and check the software but simply copying a mistake by another spyware vendor!

I am angry with these kind of cowboys who give our Industry a bad name!!

Melih

JB wrote:

formatting link

So let's hope, Comodogroup will improve, that "melih" achieves his goal ;-)

Yours, VB.

There is Free Software. And it is not only free as in free beer.

Beside that, maybe Comodo will be the first company, who will bring to the Windows desktop, what people are really needing - they don't need such popups for Adobe Reader doing his updates, they're needing easy access to AN.ON and Tor, they're needing _easy_ OpenPGP compliant encryption.

Beside that, they could need very easy predefined profiles for their host based packet filter and service setup, for example for having a notebook in the local net, and sharing files only locally there, and having the notebook not at home, not sharing files at all. It is not neccessary to deliver an own packet filter, the filtering software in Windows' kernel is enough, but an easy _configuration_ tool would be very valuable.

There I can see much room for improvement - instead of trying to find out, how to really control "outbound traffic", which at last, even if ever achieved, would not bring extra security at all.

Instead of, extra security could achieved by a system, which enforces the user not to have administrative rights, but has an IDS, and if it detects any malware, it suggests to revert to a system state saved before, which was without malware after all what could be detected.

With this exception, the system should not bother the user at all, but protect him, and start communication to her/him only, if really of value for the user.

Yours, VB.

begin irrelevant thread skew....

From, bUgtraq 24/03/06 begin ........

Vulnerabilitiy found in comodo hacker guardian free scan.

formatting link
After trying their service, I have noticed a few bugs in the site that could lead to their free scan service to be used for purposes that it is not intended for. I have created a webpage detailing the problem:

formatting link
As a security company I'm sure they understand the risks that these bugs pose.

I have contacted hacker guardian but have yet to receive a reply.

MacGyveR

--

--------------------------------

formatting link

Check links, vendor fixed problem 27/03/06 far better than some companies ;-)

/irrelevant thread skew.

Thanks Volker that's already been fixed.

Melih

E. wrote:

Volker, I have some "seed money" for a project like that. Of course, I'd want a return on my invested capital :). But clearly, you hit the nail on the head: the solution is a properly configured system.

Of course, Comodo could offer a text box instead of static text, if they're using the IP out of the web page anyways.

And, of course, the authentication via E-Mail address is a little bit ridiculous, because this perfectly works with public inboxes ;-) I just tested out.

Very interesting is, that this service can be abused in a automated way, so automated scans can be done onto arbitrary targets.

"melih", how much bandwidth is there for such tests? Is it enough to abuse it for DoS attacks, too? ;-)

What will happen, if I would start 10.000 scans at the same time?

Yours, VB.

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required