• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

Jeff Bezos wants the bottom half of earners to pay zero income tax—he says nurses making just $75K should save $12K a year

2

Despite a $500 million net worth, Shaq just finished his fourth degree. He warns graduates: 'Your character will take you further than your resume'

3

Bolt CEO says he let go of his entire HR team for creating problems that didn’t exist: ‘Those problems disappeared when I let them go’ 

1

Jeff Bezos wants the bottom half of earners to pay zero income tax—he says nurses making just $75K should save $12K a year

2

Despite a $500 million net worth, Shaq just finished his fourth degree. He warns graduates: 'Your character will take you further than your resume'

3

Bolt CEO says he let go of his entire HR team for creating problems that didn’t exist: ‘Those problems disappeared when I let them go’ 

To catch a cyberthief: How Symantec does it

By
Stephanie N. Mehta
Stephanie N. Mehta
Down Arrow Button Icon
By
Stephanie N. Mehta
Stephanie N. Mehta
Down Arrow Button Icon
September 14, 2009, 6:00 AM ET

As cyber-heists become more daring, security firms have to deploy more resources to stay abreast of the bad guys.

CEO Salem compares cybercrime and security to an arms race. Photo:Symantec

By Julia Ioffe, contributor

Hacking used to be so quaint. In the old days (the early 90s) the villains typically were attention-seeking computer geeks infecting computers with viruses that were a headache for consumers and tech departments to debug.

Today’s cybercriminals are out to inflict real harm: They can be commercial entities breaking into competitors’ records, or international crime rings stealing valuable data like credit card numbers and email passwords.

And because such cyber-heists extremely lucrative – some estimates put the size of this underground economy at $1 trillion –more players are getting into the game, developing increasingly sophisticated ways to crack into computer systems and exploit their ill-gotten gains. Viruses alone can take trillions of forms, and spam, the most popular way of infiltrating computers, accounts for some 90% of all e-mail traffic.

All of which makes it harder for computer security companies to stay one step ahead of these evolving threats. “Clearly, it’s an arms race,” says Enrique Salem, CEO of Symantec, (SYMC) the world’s largest software security company. “They’re always trying to find ways of getting around our technology, so we’ve got to keep innovating” – and getting inside the criminal mind.

Symantec, based in Cupertino, Calif., continues to deploy a set of tried and true tools to keep digital risks at bay: Last year the company generated 1.6 million automated signatures –signatures are virus-specific cures– to block known attacks. Its software also automatically blacklists and filters bad programs and sites. And the company applies advanced behavioral technology to monitor and shut down malicious software just before it’s about to do something really harmful, thereby minimizing the impact on a corporate computer system or even an individual user.

But even this aggressive, multi-pronged approach isn’t enough to stop the bad guys. Blacklists are not fast enough to catch brand-new malware; “white lists” of safe software are too restrictive. And cybercriminals now generate malware automatically so that every visitor to, say, a bad website gets a slightly different version of the bug, making individualized cures highly impractical, if not impossible.

“Most of it is generated by virus-generating software,” says Steve Trilling, a former stand-up comedian and software engineer who runs Symantec’s STAR team, short for Security Technology and Response. “There are now many tens of millions of viruses out there, and you just can’t keep scaling at that rate.”

New protection codenamed “Mr. Clean”

And so last week Symantec launched the latest version of its Norton products with yet another layer of protection called Quorum (known internally as “Mr. Clean”). Quorum works in much the same way that the Zagat’s restaurant guide does, by relying on reputation. If you want to download a program that very few people in the world have, Quorum will recommend you stay away from it but leaves the ultimate choice to the consumer. After all, the program could be a randomly generated virus – or a highly-customized piece of software.

To prevent the program from blocking good software (what’s known as false positives), Quorum checks in with the back end and, if a program checks out, Quorum will not block it and slow the user down.

Symantec is able to calculate reputation with such confidence because, for the past year, 29 million Symantec customers have been using a Quorum prototype and automatically relaying data to the Symantec mother ship, where it is anonymized and crunched.

This provides Symantec with a large database from which to compute a program’s standing – and, with nearly 60 million Symantec customers around the world, that database is going to grow at a fast clip once the software is released on a wider market. And because the calculation is fully automated and based on a massive data base, hackers will have a difficult time distorting the real number of people who have downloaded their software.

This program also takes up less space and so can be run on mobile devices, which have yet to come under extensive attack. (Though the prospect is increasingly likely, industry watchers say, the mobile-device market is still too fragmented to be profitable for security companies; nor do people make many financial transactions on their phones – yet- making cell phones and BlackBerrys less likely to be attacked.)

Thwarting the Cult of the Dead Cow

But even cutting-edge software and a massive global infrastructure staffed by 17,500 employees cannot stop every single threat. To cut down on future breaches Symantec tries to educate school kids on smart web-browsing techniques. And it works with Congress and international governments to create a uniform legal standard to bring cybercriminals to justice. (The famous case of the ILOVEYOU Bug, in 2000, illustrates the need. When Symantec brought forward information pinpointing the Filipino hackers behind the globally infectious virus, all charges were dropped because the Philippines have no laws banning cybercrime.)

But as the cybercrooks get ever smarter, Symantec also is devoting more resources to the digital equivalent of “black ops” – folks who spend their days attending hacker events and trolling the ‘net for secretive chat rooms where the bad guys boast of their conquests and tactics. Every summer, for instance, hackers gather in Las Vegas for the Defcon Conferences – and Symantec goes, too.

One year, as a hacking group named Cult of the Dead Cow presented their new hacking techniques by lobbing informational discs (and hunks of raw meat) into the audience, Symantec reps ran them back to the hotel where a team of Symantec programmers sat churning out signatures, hobbling the tactics almost as soon as they were introduced.

It may sound a bit surreal, but CEO Salem tries to put the war on computer crimes into perspective: “You’re never going to eliminate crime,” he says. “You’re never going to eliminate cybercriminals and that’s going to be an ongoing challenge.” But to paraphrase an old saw: you have to think like a cyber criminal to catch a cybercriminal.

About the Author
By Stephanie N. Mehta
See full bioRight Arrow Button Icon

Latest in

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in

How Grab’s CTO sees the superapp’s push into physical AI and automated driving—and why he uses his competitors’ robots in the office
AITransportation
How Grab’s CTO sees the superapp’s push into physical AI and automated driving—and why he uses his competitors’ robots in the office
By Angelica AngMay 22, 2026
2 hours ago
Trump AI and crpto czar David Sacks sits next to Meta CEO Mark Zuckerberg at a dinner table in the White House as Zuckerberg turns to Sacks and says something.
AIAmerican Politics
Tech billionaires convinced Trump to back off an AI executive order. But much of MAGA favors AI regulation
By Jeremy KahnMay 22, 2026
2 hours ago
James Daunt sits in a booksop, gesturing with both hands and smiling.
AIbooks
Barnes & Noble CEO clarifies the bookseller’s stance on AI-written books after refusing to ban them: ‘This is a straightforward rejection of AI books’
By Sasha RogelbergMay 22, 2026
4 hours ago
A photo taken during the Maroon Bells bicycle ride during Fortune Brainstorm Tech 2019 in Aspen, Colorado. (Photo: Fortune)
InnovationBrainstorm Tech
Fortune Brainstorm Tech 2026 will be brilliant
By Andrew NuscaMay 22, 2026
4 hours ago
Beyond the diploma: Skills that actually get graduates hired
Future of WorkWorkplace Innovation Summit
Beyond the diploma: Skills that actually get graduates hired
By Ashley LutzMay 22, 2026
5 hours ago
satya nadella
AITech
Microsoft reports are exposing AI’s real cost problem: Using the tech is more expensive than paying human employees
By Jake AngeloMay 22, 2026
6 hours ago

Most Popular

Jeff Bezos wants the bottom half of earners to pay zero income tax—he says nurses making just $75K should save $12K a year
Success
Jeff Bezos wants the bottom half of earners to pay zero income tax—he says nurses making just $75K should save $12K a year
By Preston ForeMay 21, 2026
1 day ago
Despite a $500 million net worth, Shaq just finished his fourth degree. He warns graduates: 'Your character will take you further than your resume'
Success
Despite a $500 million net worth, Shaq just finished his fourth degree. He warns graduates: 'Your character will take you further than your resume'
By Preston ForeMay 20, 2026
2 days ago
Bolt CEO says he let go of his entire HR team for creating problems that didn’t exist: ‘Those problems disappeared when I let them go’ 
Workplace Culture
Bolt CEO says he let go of his entire HR team for creating problems that didn’t exist: ‘Those problems disappeared when I let them go’ 
By Preston ForeMay 19, 2026
3 days ago
Pay transparency is exposing a bigger problem: Most companies can't explain why they pay what they pay
Workplace Culture
Pay transparency is exposing a bigger problem: Most companies can't explain why they pay what they pay
By Sydney LakeMay 20, 2026
2 days ago
McKinsey partner says up to 50% of work hours could be transformed within the next 5 years
AI
McKinsey partner says up to 50% of work hours could be transformed within the next 5 years
By Emma BurleighMay 21, 2026
1 day ago
Current price of oil as of May 21, 2026
Personal Finance
Current price of oil as of May 21, 2026
By Joseph HostetlerMay 21, 2026
1 day ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.