McAfee SiteAdvisor

Last updated
McAfee SiteAdvisor
Developer(s) McAfee
Initial releaseApril 2006
Operating system Cross-platform
Website siteadvisor.com archive

The McAfee SiteAdvisor, later renamed as the McAfee WebAdvisor, is a service that reports on the safety of web sites by crawling the web and testing the sites it finds for malware and spam. A browser extension can show these ratings on hyperlinks such as on web search results. [1] [2] Users could formerly submit reviews of sites. [3]

Contents

The service was originally developed by SiteAdvisor, Inc, an MIT startup [4] first introduced at CodeCon on February 10, 2006, [5] and later acquired by McAfee [6] on April 5, 2006. Since its founding, it has received criticism for its improper rating of some sites, and more importantly the length of time it takes to resolve complaints.

Usage

Prior to mid-October 2014, the functionality of SiteAdvisor could be accessed by submitting a URL to the website at https://www.siteadvisor.com/sites/, but can now also be accessed through a downloadable Browser Plugin. [7] [ citation needed ]

Sites are rated in levels of Safe (green tick), Suspicious (yellow exclamation mark) and Unsafe (red "X").

Additional features include:

Products and services

A paid version of McAfee SiteAdvisor, McAfee SiteAdvisor LIVE, is included in McAfee Total Protection and has extra features:

In addition to selling to the end consumers, in 2017, McAfee also sold their McAfee Secure program to the web site owners, which supposedly runs daily security checks and gives passing sites a "McAfee Secure" badge. [8] Now as in 2024 McAfee Secure program is called TrustedSite Certification. [9]

As of December 2010, McAfee Secure marketing materials say there are 350 million installs of McAfee SiteAdvisor, and a likely much larger viewer base with search engine agreements such as that with Yahoo.

A URL shortening service which advertised itself as "secure" was operated until mid-2018. Its defining feature was that it would deny redirecting to sites classified by SiteAdvisor as insecure, to provide users receiving a "mcaf.ee" URL with the confidence that they would not land on a malicious site. [10]

Games and quizzes

In March 2006, McAfee launched a JavaScript-based quiz which has users pick between sites rated as safe and unsafe. [11]

A flash-based memory training game called "WebQuest" was launched around 2007. [12]

Studies and research

SiteAdvisor has published various reports regarding online threats such as typosquatting, where mistyped domains may lead to sites ranging from harmless pay-per-click and domain parking sites to pornographic and malware sites. [13]

Criticism

False negatives

The very nature of SiteAdvisor and the long periods between site crawls mean that even if the SiteAdvisor tests were 100% accurate a Green rating offers no guarantee of safety. Malicious code and browser exploits often spread fast over large numbers of websites, [14] meaning a Green rating may not be up to date and may provide a false sense of security.

TrustedSource

McAfee SiteAdvisor now makes use of the TrustedSource website reputation organisation, to act as something like a 'cloud' intelligence software to get the most up-to-date information on websites as possible, very similar to McAfee's Active Protection (Artemis) system.[ citation needed ] The details of this system are not known.

Awards

See also

Related Research Articles

Adware, often called advertising-supported software by its developers, is software that generates revenue by automatically displaying online advertisements in the user interface or on a screen presented during the installation process.

<span class="mw-page-title-main">HTTPS</span> Extension of the HTTP communications protocol to support TLS encryption

Hypertext Transfer Protocol Secure (HTTPS) is an extension of the Hypertext Transfer Protocol (HTTP). It uses encryption for secure communication over a computer network, and is widely used on the Internet. In HTTPS, the communication protocol is encrypted using Transport Layer Security (TLS) or, formerly, Secure Sockets Layer (SSL). The protocol is therefore also referred to as HTTP over TLS, or HTTP over SSL.

<span class="mw-page-title-main">Spybot – Search & Destroy</span> Spyware removal software

Spybot – Search & Destroy (S&D) is a spyware and adware removal computer program compatible with Microsoft Windows. Dating back to the first Adwares in 2000, Spybot scans the computer hard disk and/or RAM for malicious software.

Norton Internet Security, developed by Symantec Corporation, is a discontinued computer program that provides malware protection and removal during a subscription period. It uses signatures and heuristics to identify viruses. Other features include a personal firewall, email spam filtering, and phishing protection. With the release of the 2015 line in summer 2014, Symantec officially retired Norton Internet Security after 14 years as the chief Norton product. It was superseded by Norton Security, a rechristened adaptation of the original Norton 360 security suite. The suite was once again rebranded to Norton 360 in 2019.

Anti-phishing software consists of computer programs that attempt to identify phishing content contained in websites, e-mail, or other forms used to accessing data and block the content, usually with a warning to the user. It is often integrated with web browsers and email clients as a toolbar that displays the real domain name for the website the viewer is visiting, in an attempt to prevent fraudulent websites from masquerading as other legitimate websites.

<span class="mw-page-title-main">Internet Explorer 6</span> Web browser for Windows released in 2001

Microsoft Internet Explorer 6 (IE6) is a web browser developed by Microsoft for Windows operating systems. Released on August 24, 2001, it is the sixth, and by now discontinued, version of Internet Explorer and the successor to Internet Explorer 5. It does not support earlier versions.

<span class="mw-page-title-main">WinFixer</span> Rogue security software

WinFixer was a family of scareware rogue security programs developed by Winsoftware which claimed to repair computer system problems on Microsoft Windows computers if a user purchased the full version of the software. The software was mainly installed without the user's consent. McAfee claimed that "the primary function of the free version appears to be to alarm the user into paying for registration, at least partially based on false or erroneous detections." The program prompted the user to purchase a paid copy of the program.

<span class="mw-page-title-main">StopBadware</span> Anti-malware nonprofit organization

StopBadware was an anti-malware nonprofit organization focused on making the Web safer through the prevention, mitigation, and remediation of badware websites. It is the successor to StopBadware.org, a project started in 2006 at the Berkman Center for Internet and Society at Harvard University. It spun off to become a standalone organization, and dropped the ".org" in its name, in January 2010.

Secure Computing Corporation (SCC) was a public company that developed and sold computer security appliances and hosted services to protect users and data. McAfee acquired the company in 2008.

<span class="mw-page-title-main">Kaspersky Internet Security</span> Internet security suite developed by Kaspersky Lab

Kaspersky Internet Security is a internet security suite developed by Kaspersky Lab compatible with Microsoft Windows and Mac OS X. Kaspersky Internet Security offers protection from malware, as well as email spam, phishing and hacking attempts, and data leaks. Kaspersky Lab Diagnostics results are distributed to relevant developers through the MIT License.

The Russian Business Network is a multi-faceted cybercrime organization, specializing in and in some cases monopolizing personal identity theft for resale. It is the originator of the PHP-based malware kit MPack and an alleged operator of the now defunct Storm botnet.

<span class="mw-page-title-main">MacSweeper</span> Rogue security software

MacSweeper is a rogue application that misleads users by exaggerating reports about spyware, adware or viruses on their computer. It is the first known "rogue" application for the Mac OS X operating system. The software was discovered by F-Secure, a Finland-based computer security software company, on January 17, 2008.

<span class="mw-page-title-main">VirusTotal</span> Cybersecurity website owned by Chronicle

VirusTotal is a website created by the Spanish security company Hispasec Sistemas. Launched in June 2004, it was acquired by Google in September 2012. The company's ownership switched in January 2018 to Chronicle, a subsidiary of Google.

<span class="mw-page-title-main">WOT Services</span> Website reputation service

WOT Services is the developer of MyWOT, an online reputation and Internet safety service which shows indicators of trust about existing websites. The confidence level is based both on user ratings and on third-party malware, phishing, scam and spam blacklists. The service also provides crowdsourced reviews, about to what extent websites are trustworthy, and respect user privacy, vendor reliability and child safety.

Typosquatting, also called URL hijacking, a sting site, a cousin domain, or a fake URL, is a form of cybersquatting, and possibly brandjacking which relies on mistakes such as typos made by Internet users when inputting a website address into a web browser. A user accidentally entering an incorrect website address may be led to any URL, including an alternative website owned by a cybersquatter.

<span class="mw-page-title-main">Norton Safe Web</span> Software service by Symantec Corporation

Norton Safe Web is a service developed by Symantec Corporation that is designed to help users identify malicious websites. Safe Web delivers information about websites based on automated analysis and user feedback.

<span class="mw-page-title-main">Comodo Dragon</span> Web browser based on the Chromium web browser

Comodo Dragon is a freeware web browser. It is based on Chromium and is produced by Comodo Group. Sporting a similar interface to Google Chrome, Dragon does not implement Chrome's user tracking and some other potentially privacy-compromising features, replacing them with its own user tracking implementations, and provides additional security measures, such as indicating the authenticity and relative strength of a website's Secure Sockets Layer (SSL) certificate.

LizaMoon is a piece of malware that infected thousands of websites beginning in September, 2010. It is an SQL injection attack that spreads scareware encouraging users to install needless and rogue "anti-virus software". Although it does not use new infection techniques, it was initially thought to be notable based on the scale and speed at which it spread, and that it affected some of Apple's iTunes service. LizaMoon was initially reported to the general public by Websense Security Lab.

Browser security is the application of Internet security to web browsers in order to protect networked data and computer systems from breaches of privacy or malware. Security exploits of browsers often use JavaScript, sometimes with cross-site scripting (XSS) with a secondary payload using Adobe Flash. Security exploits can also take advantage of vulnerabilities that are commonly exploited in all browsers.

SmartScreen is a cloud-based anti-phishing and anti-malware component included in several Microsoft products:

References

  1. Vamosi, Robert (2007-02-16). "SiteAdvisor review: SiteAdvisor". CNET. Retrieved 21 January 2022.
  2. "SiteAdvisor for Chrome - Chrome Web Store". 16 March 2010. Archived from the original on 27 September 2011. Retrieved 14 February 2022.
  3. Google.com on SiteAdvisor as of December 2014Current site (December 2021) lacks user reviews entirely.
  4. "McAfee acquires MIT startup SiteAdvisor at Digital..."
  5. "CodeCon 2006 Program". Archived from the original on 2008-04-30.
  6. Dixon, Chris (2006-09-05). "Taking SiteAdvisor to the Next Level". Archived from the original on 2006-05-23. Retrieved 2006-09-05.
  7. "Internet Archive Wayback Machine from Oct 12, 2014 shows "View Report Now" option". Archived from the original on October 12, 2014.{{cite web}}: Cite uses generic title (help)
  8. "How It Works". siteadvisor.com. Archived from the original on 30 January 2017. Retrieved 21 January 2022.
  9. Abdulla, Namo (Jul 7, 2021). "TrustedSite Replaces McAfee SECURE Seal on Shopping Sites".
  10. Before shutdown: web.archive.org/web/20180604130133/mcaf.ee. After shutdown: web.archive.org/web/20180705034928/mcaf.ee/ (URLs not parsed due to filtering of URL shortener domains)
  11. SiteAdvisor - Spyware Quiz - March 2006
  12. "McAfee SiteAdvisor WebQuest". www.siteadvisor.com. Archived from the original on 2 March 2007. Retrieved 5 February 2022.
  13. Keats, Shane (November 2007). "What's In A Name: The State of Typo-Squatting 2007". McAfee, Inc. Archived from the original on 2010-12-06.
  14. "PC-pwning infection hits 30,000 legit websites". The Register . Retrieved 2009-07-18.
  15. "SiteAdvisor's entry in Time's 50 coolest websites of 2005". 2006-08-03. Archived from the original on August 19, 2006. Retrieved 2006-10-13.
  16. "SiteAdvisor's entry in Popular Science's Best of What's New 2006" . Retrieved 2007-04-20.
  17. "PC World's list of "The 100 Best Products of 2007"" . Retrieved 2007-05-23.