McAfee Deep Defender

McAfee Deep Defender

Stopping stealth attacks with endpoint security beyond the OS

Next Steps:

Overview

McAfee Deep Defender is a next generation of hardware-assisted endpoint security, enabled by McAfee DeepSAFE technology, operating beyond the operating system, designed to detect, block and remediate advanced, hidden attacks. McAfee Deep Defender is reinventing the industry approach to security and is the first product built on the McAfee DeepSAFE Technology co-developed with Intel.

Operates beyond the operating system — First-of-its-kind integration with Intel resides between the memory and OS to perform real-time memory and CPU monitoring.

Kernel mode protection — Real-time, kernel-level behavioral monitoring exposes and removes unknown threats, including kernel-mode rootkits, to preempt zero-day malware.

Faster-time-to-protection — Stop low-level stealth attacks as they occur before they cause any damage or steal data.

Comprehensive Security Beyond the Operating System

Features & Benefits

Stop unknown stealth attacks

Prevent stealth attacks from compromising your endpoints and stealing confidential data with real-time kernel memory protection operating beyond the operating system.

Utilize real-time memory and CPU monitoring

Leverage McAfee DeepSAFE technology, a memory software layer executing in VMX-root mode, to provide real-time kernel memory and CPU event protection with minimal performance impact.

Get true zero-day protection

Identify malicious behavior and provide true zero-day protection. McAfee Deep Defender requires no prior knowledge of the rootkit to detect its existence.

Deploy quickly and manage easily

Use McAfee ePolicy Orchestrator (ePO) software to remotely deploy and manage McAfee Deep Defender alongside your existing McAfee endpoint security solutions, lowering management overhead and costs.

System Requirements

These are minimum system requirements only. Actual requirements will vary depending on the nature of your environment.

  • Supports Intel® Core™ i3, i5, and i7 processors
  • Supports Windows 7 (32-bit and 64-bit)
  • 2 GB RAM (32-bit) or 4 GB RAM (64-bit)
  • Managed by McAfee ePolicy Orchestrator (ePO) 4.5 or higher
  • McAfee Agent 4.6
  • Intel Virtualization Technology (VT) enabled in BIOS
  • Internationalized and localized for deployment worldwide
  • Tested for compatibility with the following McAfee products:
    • VirusScan Enterprise 8.7 or higher
    • Application Control 5.0
    • Endpoint Encryption for PC 5, 5.2.6, 5.2.9, and 6.1
    • Host Data Loss Prevention 9.0 or higher
    • Host Intrusion Prevention for Server 8.0 or higher
    • Network Access Control 3.2

Demos / Tutorials

Demos

McAfee Deep Defender is reinventing the industry approach to security and is the first product built on the McAfee DeepSAFE Technology co-developed with Intel.

News / Events

News

Events

No results found

On Demand

No results found

Resources

Data Sheets

McAfee Deep Defender

For a technical summary on the McAfee product listed above, please view the product data sheet.

Technology Blueprints

White Papers

Community

Forums

No results found

Blogs

  • But I Love My iPad: Consumerization and Security at TAGITM 2012
    Brian Contos - May 23, 2012
    I recently spoke on the topic of the Consumerization of IT and Security at the Texas Association of Governmental Information Technology Managers (TAGITM) event in San Antonio, Texas. This event is made up of executives in IT and security throughout the public sector. My presentation was titled:  But I Love My iPad. The primary focus Read more...
  • Gift of Malware: Who’s to Blame?
    Kim Singletary - May 21, 2012
    I was talking to a healthcare organization recently that was in utter disappointment over their new CAT scan machine. When deployed, the machine was already infected with malware, and the bug spread to other systems in the organization. Pre-installed malware is never something you expect to deal with in a new machine, but it can Read more...
  • Targeting ZeroAccess Rootkit’s Achilles’ Heel
    Aditya Kapoor - April 30, 2012
    Proliferation ZeroAccess is one of the most talked and blogged,[1][2] about rootkits in recent times. It is also one of the most complex and highly prevalent rootkits we have encountered, and it is continuing to evolve. The ZeroAccess rootkit is distributed via both social engineering as well as by exploitation. A recent blog post by our colleagues at McAfee describes some Read more...
  • Darkmegi: This Is Not the Rootkit You’re Looking For
    Craig Schmugar - April 16, 2012
    Darkmegi was in the news a couple of months back; it was the first known threat to be delivered through the Microsoft vulnerability CVE-2012-0003 (MIDI Remote Code Execution Vulnerability) exploitation. More recently Darkmegi has been seen in CVE-2011-3544 (Java Runtime Remote Code Execution) drive-by attacks as part of the Gong Da Pack exploit kit. Darkmegi uses Read more...
  • Signed Malware: You Can Run, But You Can’t Hide
    Craig Schmugar - March 23, 2012
    It’s been more than a year since McAfee became an Intel company, and the team and I have been privileged to be a part of designing and developing our DeepSAFE technology, as well as Deep Defender, the first available product that leverages this advancement. Recent threats in the news validate what we’ve been working on, Read more...