Vulnerability Research for Security Product Vendors

 Vendors use the VRS to supplement their internal research efforts, to improve the breadth and timeliness of their product updates, and to lower their internal research costs.

The VRS program deliverables are detailed engineering reports providing the ultimate in protocol-level detail and analysis, flow diagrams, fully decoded packet traces, source-level analysis or commented disassembly (where applicable), packet captures, and sample exploit code. Each report is delivered within hours of the emergence of a new issue and subsequently refreshed with additional data, and provides all the engineering details required to permit a vendor to rapidly script a VA probe, IDS signature, or IPS filter of high quality (e.g. a signature which is able to detect all possible attempts to exercise the given vulnerability, rather than simply matching the known exploits).

TELUS also provides security product vendors with additional research feeds including a threat alert feed with the industry's fastest response time, spyware data feeds, technical data feeds including IPS filters and VA probes, and a feed of full shellcode exploits (available to qualified parties only).

TELUS's VRS services are comprehensive in their coverage of security vulnerabilities in products and technologies from all major software and networking technology vendors, including Microsoft, Linux, Oracle, Cisco, IBM, etc.

The TELUS team also performs a wide range of project work, including fully outsourced development of IPS filters and VA probes with real-time delivery commitments, product security testing, signature backlog projects, and custom security product engineering.

Email to a Friend? Was this page helpful?

For information or to order

Call your TELUS account executive
Request a quote or callback