Antivirus is 'completely wasted money': Cisco CSO


Recommended Posts

ZDNet Australia

Companies are wasting money on security processes ? such as applying patches and using antivirus software ? which just don't work, according to Cisco's chief security officer John Stewart.

Speaking at the AusCERT 2008 conference in the Gold Coast yesterday, Stewart said the malware industry is moving faster than the security industry, making it impossible for users to remain secure.

"If patching and antivirus is where I spend my money, and I'm still getting infected and I still have to clean up computers and I still need to reload them and still have to recover the user's data and I still have to reinstall it, the entire cost equation of that is a waste.

"It's completely wasted money," Stewart told delegates.

He said infections have become so common that most companies have learned to live with them.

/snip

I must agree to an extent.

It would be much more beneficial for companies to invest in something like DeepFreeze.

I think the best approach to these threats is hybrid solution. No one solution is 100% effective.

However, saying that Antivirus is a waste of money is a very brave and IMHO plain silly thing to say.

He's got a point, but saying it's a waste of money is stupid. I can agree that when a PC is infected, it is in most cases best to reinstall it. But antivirus programs also have an importan proactive role. It stops most viruses from infecting and spreading to other corporate computers etc.

i had a virus on my home laptop a little while back.. it somehow managed to get past norton 2008 with all the updates... i contacted norton and they told me i'd have to pay ?70for them to get rid of it...... i told them where to stuff it and just formatted lol...

its bad that because their system which is meant to prevent viruses failed, that they wanted to charge me so much money!

I have to disagree with the statement, although the context in with which it is made, is certainly true.

If i was spending money on Anti-Virus products and still getting infected then yes that would constitute a waste of money, but at the same time, how many issues has that Anti-Virus product protected against.

You have to ask yourself how the machines are being compromised, is it thorugh Malware installing from websites, is it because of an Operating System vulnerability.

Both of these can be countered, using Proxy Servers to filter out those websites that are known to host malicious code, and educate employees on a secure computing policy, secondly ensure that the operating system has the lastest security patches applied to it.

Of course no process is 100% secure, all we can ever do in this game, is to apply best practice and hope for the best.

LOL That's why I use ClamWin on Windows... That way I don't need to pay for virus scanners... As for other malware, I don't do anything that would cause me to get spyware, adware and such. I'm wary of JS, VBS and BAT files in Windows as well as readme HTML files containing JS, so I don't need to worry about those threats because I can dig through things to be sure that it is 100% safe. In fact, the only reason I have a virus scanner is because I use Frostwire from time to time. Otherwise, I don't have issues with torrenting Linux distros, and therefore I have no real need for a virus scanner.

Norton doesn't count as an AV.

Not in my opinion. There are far superior free Programs such as Avast, and AVG. A friend of mine has never used a AV program and he has never been infected. I just use Avast with the Standard Shield only.

:D Neither should McAfee. It's more like malware the way it takes up CPU cycles and resources.

IMHO It's (1)Avast (2)Kaspersky (3)NOD32.

I agree with that first part of your post, but that second part is flatout absurd!

Sould be (1)Kaspersky, (2)NOD32, (3) Avast

Said by Gary7

"Not in my opinion. There are far superior free Programs such as Avast, and AVG. A friend of mine has never used a AV program and he has never been infected. I just use Avast with the Standard Shield only."

How would your friend know if he's ever been infected or not, if he's never used an AV? Those kind of statements are also flat out absurd!

That it's still possible for viruses to corrupt your system doesn't mean that antivirus products are a waste of money, just as how locking the doors of your home won't prevent all robbery attempts but that doesn't mean locking the doors is a waste of time. It truly wouldn't surprise me if John Stewart lost his job because of his patently stupid remark.

Vista is so secure you won't even need to worry about security as Vista protects you well if you LET it and not change silly system settings.

I have not even installed an AV on permanent time since I see them as waste of time and money. I know I am not infected because I install an AV from time to time to check for viruses. At the moment I am setting up a USB stick system maintenance software that will check for viruses as well as cleaning up junk.

Avast is bad. Even though my friend had it installed he still got infected with a virii. When he switched to AVG, he found two worms and a trojan.

And the exact opposite can and has happened for other people. No AV will catch everything and this applies even more so to free solutions. You get what you pay for.

I've always seen people be infected no matter what AV program they are using, most of the time it comes down to user stupidity. I currently don't use an av program but scan online monthly and I have not had a virus in years.

@ Sharad I've never had a very good experience with AVG on many computers I have used it on it generally doesn't seem to detect nearly as much as Avast! and Avira do, and it gets false positives far too often for my liking. I definitely agree with VRam, no program catches everything, I always have to use a combination of programs or look for manual fixes or specialized programs when I have to clean someones infected computer (And they almost always have an active av running)

Edited by ViperAFK

I will agree partially with the idea that most antivirus programs are a waste of money (I go for the free ones, which can be just as effective), however, claiming that installing patches is ineffective is downright idiotic.

OTOH I'm utterly unimpressed with the state of all antivirus programs. Most of 'em these days are just a tad too paranoid, flagging completely inoffensive items as malware.

I agree with that first part of your post, but that second part is flatout absurd!

Sould be (1)Kaspersky, (2)NOD32, (3) Avast

Said by Gary7

"Not in my opinion. There are far superior free Programs such as Avast, and AVG. A friend of mine has never used a AV program and he has never been infected. I just use Avast with the Standard Shield only."

How would your friend know if he's ever been infected or not, if he's never used an AV? Those kind of statements are also flat out absurd!

No they are not absurd. I guess you have never heard of on-line scanning. Check it out most AV companies have one. That is how he would know!

Well, he is right about the Anti-virus industry not being able to keep up, since Viruses constantly appear, change and evolve.

The problem with his statement is, tons of people don't get infected with the latest and best virus attacks out there, but they pick up all the

trash littering the Internet. You have all these dodgy sites with tons of spyware/malware, you have dodgy files from P2P Software and and whatnot.

All this trash can still effective ruin your Computer and make you waste a lot of time trying to salvage everything, so I still believe a decent Virus scanner is a must to have.

Just too bad so many people tend to use these free alternatives which usually doesn't even find half of what a quality brand would - So they are lured into a false sense of security. The same with On-line scanners, they are pretty much useless in my book, since the most important aspect of Anti-Virus is the proactive defence - Stopping the virus before it enters your PC. As soon as a Virus or Infection has hit your PC, it usually takes a lot more than a simple Virus scan to remove it effectively.

I remember one of my friends always touted what a safe surfer he was, how he never have had a virus. We tried a few On-line scanners which found nothing, totally clean. So I installed a Trial version of NOD32 and it actually found 4 infections, where he was only able to get rid of 3 - We also found out, one of his frequently visited websites had a virus embedded in some flash ad, which he would never really know about if the software hadn't told him.

So he decided to reinstall Windows and start to use Anti-Virus software.

With a bit of knowledge and a decent Anti-virus, It's not wasted money, it can actually save you some time and worry.

Whilst he does have a point, it is a bold claim to make.

You have to think of where does most malware come from. It's from people accepting every single activex control they see, opening every file/running every executable they can get their hands on etc. Yep, people's stupidity. Don't do that, and there is a much much smaller chance you will get malware. Sure it doesn't mean you won't get any, just means the chances of you getting one is a lot less.

Programs like DeepFreeze help a lot too, though can be a pain sometimes but then thats the price of security nowdays.

One word: Linux

Too many companies use Windows for no good reason and it's sad that they don't have better advisers.

I love Linux as much as the next guy... Ok... Perhaps a bit more than the next guy. ;)

But to say that many companies use Windows for "no good reason" overlooks the darn "legacy apps" issue. Some apps (even obscure ones) require Windows to run (not Linux/wine).

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Amazon Prime Day 2026: Best Dolby soundbar deals from Sony, Samsung, JBL, Polk, and more by Sayan Sen Yesterday we covered the JBL BAR 800 which is a 5.1.2 Dolby Atmos/Vision soundbar. The unit is on sale for its lowest ever price of just $800 making it a solid offer. However, there are many more options to choose from and in this article, we have made a compilation of the best deals including from Sony, Polk, Yamaha, Denon, Samsung and more. Sony's BAR models are currently at their lowest prices which makes them solid offerings. The company's BRAVIA Theatre Bar lineup is designed to suit different home cinema needs. The Bar 5 is an entry-level 3.1-channel soundbar with a wireless subwoofer, supporting Dolby Atmos®, DTS:X, S-Force PRO Front Surround, and Vertical Surround Engine for immersive audio with clear dialogue. The Bar 6 upgrades to a 3.1.2-channel configuration by adding dedicated up-firing speakers for more convincing overhead Atmos effects while retaining the wireless subwoofer. At the premium end, the Bar 7, Bar 8, and flagship Bar 9 are single-soundbar solutions featuring Sony’s 360 Spatial Sound Mapping technology, which creates phantom speakers for a wider surround field. Bar 7 includes nine speaker units, Bar 8 increases this to eleven, and Bar 9 offers thirteen speaker driver units promising the most expansive soundstage and acoustic performance. All models should integrate seamlessly with compatible BRAVIA TVs and support the BRAVIA Connect app for setup and control. Get them at the links below: Sony BRAVIA Theater Bar 9 Soundbar (HT-A9000): $998.00 (Amazon US) (Was: $1498) Sony BRAVIA Theater Bar 8 Soundbar (HT-A9000): $798.00 (Amazon US) (Was: $998) Sony BRAVIA Theater Bar 7 Soundbar (HT-A7100): $618.00 (Amazon US) (Was: $768) Sony BRAVIA Theater System 6: $548.00 | Sony BRAVIA Theater Bar 6: $448.00 Sony BRAVIA Theater Bar 5 (HT-B500): $278.00 (Amazon US) (Was: $348) Sony HT-S400 2.1 soundbar: $198.00 (Amazon US) (Was: $248) Aside from those, we also have more discounts including from Samsung, Polk Audio, and more: Samsung Q-Series Soundbar HW-QS90H 7.1.2: $797.99 (Amazon US) (Was: $998) Polk Audio Signa S4: $336.00 (Amazon US) (Was: $449) Hisense AX3120Q: $229.00 (Amazon US) (Was: $259) Check out more soundbar deals that you may like at this link. Good to know This Amazon deal is U.S. specific, and not available in other regions unless specified. We only use first-party seller links (at the time of article publishing); ensure that you purchase from a first-party seller link only. Check out Today's Deals on Amazon | or our recent tech deals. Become a Prime member (for Students or SNAP) via Neowin Get Prime Access - Prime for half price (for qualifying Medicaid, EBT, SNAP) Subscribe to Prime Video, Audible Plus, Music Unlimited or Kindle Unlimited via Neowin As an Amazon Associate, we earn from qualifying purchases.
    • Stellarium 26.2 by Razvan Serea Stellarium is a free open source planetarium for your computer. It shows a realistic sky in 3D, just like what you see with the naked eye, binoculars or a telescope. It is being used in planetarium projectors. Just set your coordinates and go. Stellarium key features: Realistic simulation of the sky, sunrise and sunset Default catalogue of over 600,000 stars Downloadable additional catalogues for up to 210 million stars Catalog data for all New General Catalogue (NGC) objects Images of almost all Messier objects and the Milky Way Artistic illustrations for all 88 modern constellations More than a dozen different cultures with their constellations Solar and lunar eclipse simulation Photorealistic landscapes (more are available on the website) Scripting support with ECMAScript (a few demo scripts are included) Extendable with plug-ins: 8 plug-ins installed by default, including: artificial satellites plug-in (updated from an on-line TLE database) ocular simulation plug-in (shows how objects look like in a given ocular) Solar System editor plug-in (imports comet and asteroid data from the MPC) telescope control plug-in (Meade LX200 and Celestron NexStar compatible) The major changes of this version: Added new sky culture Added new plugin: Planes Many improvements in plugins Many improvements in Core and GUI Many updates in sky cultures. [full release notes] Download: Stellarium 26.2 (64-bit) | 456.0 MB (Open Source) View: Stellarium Home Page | Other Operating Systems | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • NASA: This asteroid may not kill us but it probably won't be far off either by Sayan Sen Image by Zelch Csaba via Pexels New observations by NASA's James Webb Space Telescope have eliminated the last remaining impact threat posed by asteroid 2024 YR4, ruling out the possibility that the near-Earth object could strike the Moon in December 2032. NASA said observations collected by Webb on February 18 and 26, 2026, enabled scientists to refine the asteroid's orbit enough to "rule out a chance of lunar impact on Dec. 22, 2032." Instead, asteroid 2024 YR4 is now expected to pass the Moon at a distance of about 13,200 miles (21,200 km). The agency stressed that the update "reflects improved precision in our understanding of where the asteroid is expected to be in 2032 rather than a shift in its orbital path." The announcement closes a remarkable chapter in planetary defence that began in late 2024, when the approximately 60-metre-wide asteroid briefly became the most closely watched near-Earth object in the world. Discovered on December 27, 2024, by the ATLAS telescope in Chile, 2024 YR4 initially appeared to have a small chance of colliding with Earth on December 22, 2032. As astronomers gathered more observations, the impact probability briefly climbed to around 3%—the highest ever recorded for an asteroid of its size—before steadily falling as its orbit became better understood. By early 2025, international observations had ruled out any significant risk to Earth. However, astronomers were left with another possibility: a roughly 4% chance that the asteroid could instead strike the Moon. "The probability that asteroid 2024 YR4 will strike the Moon on 22 December 2032 is now approximately 4%," the European Space Agency (ESA) had said last year, noting that "there is a 96% chance that the asteroid will not impact the Moon." ESA said such an impact, while unlikely, would have presented an extraordinary scientific opportunity. "It is a very rare event for an asteroid this large to impact the Moon – and it is rarer still that we know about it in advance. The impact would likely be visible from Earth, and so scientists will be very excited by the prospect of observing and analysing it," said Richard Moissl, Head of ESA's Planetary Defence Office. "It would certainly leave a new crater on the surface. However, we wouldn't be able to accurately predict in advance how much material would be thrown into space, or whether any would reach Earth," he added. The asteroid also exposed an important blind spot in planetary defence. Because 2024 YR4 approached Earth from the direction of the Sun, it remained hidden from ground-based telescopes until after its closest approach. "We looked into how Neomir would have performed in this situation, and the simulations surprised even us," Moissl said. "Neomir would have detected asteroid 2024 YR4 about a month earlier than ground-based telescopes did. This would have given astronomers more time to study the asteroid's trajectory and allowed them to much sooner rule out any chance of Earth impact in 2032." He added, "As an infrared telescope, like Webb, Neomir would have also immediately given us a much better estimate for the asteroid's size, which is very important for assessing the significance of the hazard." The latest NASA observations underscore the value of space-based infrared telescopes in tracking faint asteroids. According to NASA, Webb made "among the faintest ever observations of an asteroid," extending the object's observational record by nearly eight months at a time when it had become too faint for other telescopes. That additional data allowed scientists to eliminate the remaining uncertainty surrounding its 2032 flyby. Although asteroid 2024 YR4 is now confirmed to pose no threat to either Earth or the Moon, scientists say its discovery remains one of the most significant real-world tests of the international planetary defence system, demonstrating how continued observations can rapidly transform an object once considered hazardous into one whose future path is known with high confidence. Source: NASA, ESA This article was generated with some help from AI and reviewed by an editor. Under Section 107 of the Copyright Act 1976, this material is used for the purpose of news reporting. Fair use is a use permitted by copyright statute that might otherwise be infringing.
  • Recent Achievements

    • Conversation Starter
      Admir earned a badge
      Conversation Starter
    • First Post
      The_Focal_Point earned a badge
      First Post
    • Apprentice
      daryld went up a rank
      Apprentice
    • Contributor
      Carltonbar went up a rank
      Contributor
    • One Month Later
      The_Focal_Point earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      418
    2. 2
      +Edouard
      170
    3. 3
      PsYcHoKiLLa
      130
    4. 4
      Xenon
      69
    5. 5
      neufuse
      69
  • Tell a friend

    Love Neowin? Tell a friend!