Jeff, From the many articles I have read on this, the attack on Google was a classic case of an advanced persistent threat in which an unknown vulnerability in IE6 was used to give the attackers access to the users Gmail account. So there is a bit of exageration on the websense side. Now on to the question. Yes, our DB does have "known malware sites" category that you can block. Using the threat prevention capabilities, you can then apply threat prevention to the allowed web traffic. Relative to the specific dynamic threat feature, we can arrange for a call with prod mgmt if you think it is warranted. Matt
... View more