Categories
Uncategorized

Cisco sets a foundation for AI network infrastructure

Cisco sets a foundation for AI network infrastructure

Cisco is taking the wraps off new high-end programmable Silicon One processors aimed at underpinning large-scale Artificial Intelligence (AI)/Machine Learning (ML) infrastructure for enterprises and hyperscalers.

The company has added the 5nm 51.2Tbps Silicon One G200 and 25.6Tbps G202 to its now 13-member Silicon One family that can be customized for routing or switching  from a single chipset, eliminating the need for different silicon architectures for each network function. This is accomplished with a common operating system, P4 programmable forwarding code, and an SDK.

The new devices, positioned at the top of the Silicon One family, bring networking enhancements that make them ideal for demanding AI/ML deployments or other highly distributed applications, according to Rakesh Chopra, a Cisco Fellow in the vendor’s Common Hardware Group.

“We are going through this huge shift in the industry where we used to build these sorts of reasonably small high-performance compute clusters that seemed large at the time but nothing compared to the absolutely huge deployments required for AI/ML,” Chopra said. AI/ML models have grown from needing a few GPUs to needing tens of thousands linked in parallel and in series. “The number of GPUs and the scale of the network is unheard of.”

The new Silcon One enhancements include a P4-programmable parallel-packet processor capable of launching more than 435 billion lookups per second.

“We have a fully shared packet buffer where every port has full access to the packet buffer regardless of what’s going on,” Chopra said. This is in contrast with allocating buffers to individual input and output ports, which means the buffer you get depends on which port the packets go to. “That means that you’re less capable of writing through traffic bursts and more likely to drop a packet, which really decreases AI/ML performance,” he said.

In addition, each Silicon One device can support 512 Ethernet ports letting customers build a 32K 400G GPU AI/ML cluster requiring 40% fewer switches than other silicon devices needed to support that cluster, Chopra said.

Core to the Silicon One system is its support for enhanced Ethernet features such as improved flow control, congestion awareness, and  avoidance.

The system also includes advanced load-balancing capabilities and “packet-spraying” that spreads traffic across multiple GPUs or switches to avoid congestion and improve latency. Hardware-based link-failure recovery also helps ensure the network operates at peak efficiency, the company stated.

Combining these enhanced Ethernet technologies and taking them a step further ultimately lets customers set up what Cisco calls a Scheduled Fabric. 

In a Scheduled Fabric, the physical components—chips, optics, switches—are tied together like one big modular chassis and communicate with each other to provide optimal scheduling behavior, Chopra said. “Ultimately what it translates to is much higher bandwidth throughput, especially for flows like AI/ML, which lets you get much lower job-completion time, which means that your GPUs run much more efficiently.”

With Silicon One devices and software, customers can deploy as many or as few of these features as they need, Chopra said.

Cisco is part of a growing AI networking market that includes Broadcom, Marvell, Arista and others that is expected to hit $10B by 2027, up from the $2B it is worth today, according to a recent blog from the 650 Group.

“AI networks have already been thriving for the past two years. In fact, we have been tracking AI/ML networking for nearly two years and see AI/ML as a massive opportunity for networking and one of the main drivers for data-center networking growth in our forecasts,” the 650 blog stated. “The key to AI/ML’s impact on networking is the tremendous amount of bandwidth AI models need to train, new workloads, and the powerful inference solutions that appear in the market. In addition, many verticals will go through multiple digitization efforts because of AI during the next 10 years.”

The Cisco Silicon One G200 and G202 are being tested by unidentified customers now and are available on a sampled basis, according to Chopra.  

Copyright © 2023 eLinks sarl. All rights reserved.

Categories
news

A ransomware attack is hitting schools, businesses and government agencies. Here’s what you should know

A ransomware attack is hitting schools, businesses and government agencies. Here’s what you should know

A growing number of businesses, universities and government agencies have been targeted in a global cyberattack by Russian cybercriminals and are now working to understand how much data was compromised.

While the scope of the attack is not yet fully known, officials at the US Cybersecurity and Infrastructure Security Agency (CISA) said Thursday that “several federal agencies… have experienced intrusions” and suggested a number of businesses could be impacted as well.

Separately, state agencies said late Thursday that millions of people in Louisiana and Oregon had their data compromised in a security breach. The states did not blame anyone in particular for the hack but federal officials have attributed a broader hacking campaign using the same software vulnerability to a Russian ransomware gang that calls itself Clop.

 

“Nobody knows the full extent of this, and that’s the way these cyber compromises work,” Robert Cattanach, a partner specializing in cybersecurity at the law firm Dorsey & Whitney and a former trial lawyer for the Department of Justice, told CNN Friday. “Once you’re compromised, there begins an arduous process of ‘how far in did they get in?’ and ‘what did they take?’ That’s typically weeks, and sometimes months.”

Here’s what we know so far.

Who has been impacted?

The cyberattack has targeted federal and state agencies.

The Department of Energy said it “took immediate steps” to mitigate the impact of the hack after learning that records from two department “entities” had been compromised. No other federal agencies have confirmed being impacted.

It’s also impacted state governments in Minnesota and Illinois. And on Thursday, state agencies said 3.5 million Oregonians with driver’s licenses or state ID cards had been impacted by a breach as well as anyone with that documentation in Louisiana.

The sprawling attack is hitting private companies, too.

Clop previously claimed credit for a hack that compromised employee data at the BBC and British Airways. The companies have confirmed suffering a cybersecurity incident, which came via a breach of a human resources firm used by both.

According to Brett Callow, threat analyst at cybersecurity firm Emsisoft, the hackers have also listed Aon and The Boston Globe as victims. “By my count, there are now 63 known/confirmed victims plus an unspecified number of USG agencies,” Callow tweeted. (Aon told CNN that it’s investigating an incident impacting its clients. Representatives for The Boston Globe did not immediately respond to a request for comment.)

The hacking campaign has also spread to academia. Johns Hopkins University in Baltimore and the university’s renowned health system said in a statement that “sensitive personal and financial information,” including health billing records may have been stolen in the hack.

Meanwhile, Georgia’s state-wide university system – which spans the 40,000-student University of Georgia along with over a dozen other state colleges and universities – confirmed it was investigating the “scope and severity” of the hack.

What do we know about the group behind cybersecurity attack?

Clop is a Russian ransomware gang known for demanding multimillion dollar payments from victims before publishing data it claims to have hacked.

Clop previously said it has “information on hundreds of companies,” according to a dark web posting seen by CNN, and asked for victims to contact them about paying a ransom. It later began listing more alleged victims from the hack on their extortion site on the dark web.

Some cybersecurity experts have suggested to CNN that the ransomware group’s decision to ask victims to contact it rather than the other way around shows the gang is “overwhelmed” with the sheer number of companies and organizations impacted by its latest cyberattack.

As of Thursday, instead of listing federal agencies on the dark web list, the hackers wrote in all caps, “If you are a government, city or police service do not worry, we erased all your data. You do not need to contact us. We have no interest to expose such information.”

What happened?

The hackers exploited a vulnerability in MOVEit, a software widely used by companies and agencies to transfer data.

Progress Software, the US firm that makes the software, told CNN on Thursday that a new vulnerability in the software had been discovered “that could be exploited by a bad actor.”

Progress has been warning customers for weeks about security flaws discovered in the software. It released a security advisory in early June that said a vulnerability could let hackers obtain unauthorized access to systems.

What can I do about it?

As always, experts say, consumers should maintain the usual cybersecurity precautions: choosing strong passwords, enabling two-factor authentication and keeping an eye on credit scores, account activity and possible phishing efforts.

But much of the responsibility now lies on businesses and federal agencies rather than individuals, according to Cattanach.

“[The hackers] really aren’t in the business of trying to monetize data on individuals,” he said. “Their focus is two things: holding up for ransom, or extortion, the entities that they’ve been able to compromise, and then just frankly casting doubt in the federal government as to the security of its many federal systems.”

CISA ordered all federal civilian agencies to update the MOVEit software in light of the hack last week. Progress, meanwhile, has released two software patches to remedy the issue and published remediation steps for impacted entities.

However, MOVEit’s vulnerability makes it a target for other bad actors looking to wreak havoc — and experts say other groups may now have access to software code needed to conduct attacks.

Allan Liska, a ransomware expert at cybersecurity firm Recorded Future, told CNN last week: “Unfortunately, the sensitive nature of the data often stored on MOVEit servers means there will likely be real consequences stemming from the [data theft] but it will be months before we understand the full fallout from this attack.”

Copyright © 2023 eLinks sarl. All rights reserved.

Categories
news

••• News Release Fortinet Global Report Finds 75% of OT Organizations Experienced at Least One Intrusion in the Last Year

John Maddison, EVP of Products and CMO at Fortinet

“Fortinet is uniquely equipped to deliver industry-leading secure networking solutions that are integrated across SD-WAN, SASE, SD-Branch, ZTNA, and beyond. This allows us to support our partners and their customers in their journey to converging networking and security. What this means for our MSSP partners is the creation of new revenue streams and the opportunity to help customers securely and seamlessly reduce complexity, improve digital experience, and maximize ROI.”

News Summary

Fortinet® (NASDAQ: FTNT), the global cybersecurity leader driving the convergence of networking and security, today announced that 11 new managed security service providers (MSSPs) have adopted Fortinet Secure SD-WAN to help drive better business outcomes and experiences for their customers. Kyndryl; 11:11 Systems; Claro Empresas; Globe Business; InfiniVAN, Inc.; KT Corporation; Neurosoft S.A.; Sify Technologies; SPTel; solutions by stc; and Tata Teleservices join a growing list of service providers across the globe utilizing Fortinet Secure SD-WAN as the foundation for new and differentiated connectivity services without compromising on security.

As MSSPs seek new solutions to stay competitive in the rapidly evolving networking market, Fortinet Secure SD-WAN serves as the foundation for organizations to seamlessly adopt advanced networking technologies including Secure Access Service Edge (SASE), SD-Branch, and Zero Trust Network Access (ZTNA).

Fortinet Secure SD-WAN Helps MSSPs Grow Their Business

The managed SD-WAN market is expected to grow to $8.8 billion in 2026, a compound annual growth rate (CAGR) of 20.2 percent, according to Gartner1.

Service providers are turning to Fortinet secure networking solutions to help capitalize on new business opportunities and address customer needs.

Fortinet secure networking solutions converge networking and security capabilities and are built to be easily expanded across SD-WAN, SASE, SD-Branch, and ZTNA. Fortinet is the only vendor that integrates and manages all functions with a single operating system, FortiOS. This integration across solutions is why MSSPs are partnering with Fortinet to deliver leading managed services.

Fortinet has been recognized by customers and third parties alike for its secure networking solutions.

Fortinet was recently named a Leader in the 2022 Gartner® Magic Quadrant™ for SD-WAN2. Fortinet was also named a Gartner Peer Insights™ Customers’ Choice for SD-WAN3 based on user reviews of our Fortinet Secure SD-WAN solution, and was listed as a Representative Vendor in the 2022 Gartner® Market Guide for Single-Vendor SASE4.

Additionally, a recent commissioned study conducted by Forrester Consulting on behalf of Fortinet analyzed the value that Fortinet Secure SD-WAN can provide to large enterprise customers. The independent Total Economic Impact™ study found that organizations that deployed Fortinet Secure SD-WAN achieved a 300% return on investment over three years with payback in eight months and a 65% reduction in the number of network disruptions, among other benefits.

Here’s what MSSPs who have recently launched managed services using Fortinet’s secure networking solutions have to say:

“As a global leader in managing and modernizing mission-critical information systems for enterprises, selecting the best technology services and partners is imperative for Kyndryl to enable our customers to migrate to the next-generation of networks. Kyndryl’s Fortinet-based managed SD-WAN and SASE services provide consistent connectivity and security and an optimized user experience for the hybrid workforce and cloud environments that are top priorities for organizations today. Kyndryl Consult’s end-to-end advisory services allow our customers to seamlessly realize the full benefits of these network and security technologies, including deployment, management, and integration across their entire IT infrastructure.”
– Paul Savill, Global Practice Leader, Network & Edge, Kyndryl (United States)

“Keeping organizations connected to their mission-critical apps and data continues to grow more complicated as the global work-from-anywhere model becomes the norm. 11:11 Systems helps its customers stay connected through a powerful and secure managed connectivity offering that includes Fortinet Secure SD-WAN. We partner with Fortinet to deliver streamlined application routing, secure connectivity, and a lower total cost of ownership to customers.”
– Justin Giardina, Chief Technology Officer, 11:11 Systems (United States)

“At Claro Empresas, we reinforce the commitment to bring companies the best solutions with increasingly simple and reliable services. Fortinet Secure SD-WAN enables us to provide Honduran companies with a comprehensive solution that will allow them to gain availability, versatility, and security while improving their connectivity services.”
– Rolando Padilla, Corporate Market Manager of Claro Empresas (Honduras)

“Globe Business continues to drive innovation with a digital-first mindset through a collaborative partnership with Fortinet, a leader in secure networking. Beyond expanding our SD-WAN portfolio, this partnership builds a strong foundation for innovation that addresses the critical needs of enterprises in the Philippines, by taking a next-generation approach and converged cybersecurity and networking strategy.”
– Chris Cheng, Vice President for Connectivity and Digital Products for Globe Business, Enterprise Group (Philippines)

“In addition to delivering its high-grade fiber internet connectivity to its clients and partners as a growing telecommunications company in the Philippines, InfiniVAN is committed to providing secured accessibility and connectivity for its customers. Fortinet has never failed in supporting InfiniVAN with cybersecurity intelligence for advanced digital services and solutions. With InfiniVAN expanding telco operations, including network advancement, expansion, and implementation, the need for a cybersecurity solution that meets InfiniVAN’s requirements is a crucial need. Fortinet Secure SD-WAN enables InfiniVAN to innovate its evolving telecommunications services and its growing network operations in the Philippines and across ASEAN countries.”
– Shigeki Nakahara, President, InfiniVAN, Inc.& (Philippines)

“KT Corporation and Fortinet have forged a strategic partnership, uniting the strengths of both companies to deliver cutting-edge solutions to the SD-WAN market. Through this collaboration, we integrate Fortinet’s Secure SD-WAN solution with our extensive network coverage to revitalize the domestic data service market and gain a competitive edge. Fortinet’s innovation in combining sophisticated security and connectivity into a single solution makes them an ideal partner to drive our business ventures. As the largest domestic wired and wireless telecommunications provider in South Korea, we recognize the significant value of partnering with a global leader in the security industry. We anticipate that this collaboration will deliver tangible business results and contribute to our sustained growth.”
– Woon-kyung Kang, Team Leader of Data infra DX new business at KT Corporation (South Korea)

“Neurosoft saw impressive results by providing fully managed, state-of-the-art ICT and cyber services with 24×7 support based on Fortinet’s Secure SD-WAN and FortiSASE solutions. Our customers across sectors such as financial services, telecom, transportation, oil and gas, energy, and retail are using our Business Managed Connectivity Service for their digital transformation strategy. Backed by the power of Fortinet’s Secure SD-WAN and SASE solutions, our customers are able to use our connectivity services to move beyond the day-to-day network infrastructure management to focus on broader business goals and transition from CapEx to OpEx.”
– Nodas Paschalidis, CEO at Neurosoft S.A. (Greece)

“Sify’s SD-WAN services are a major draw in the Indian Enterprise market due to a strong suite of services that maximize value for our customers. Being a leader in the managed network services space, Sify benefits from complementary solutions that easily integrate with our ecosystem that also add value to our customers’ digital journeys. Fortinet’s integrated networking and cybersecurity offerings, including Fortinet Secure SD-WAN, combined with common management and analytics platforms across our SD-WAN, switching and wireless portfolio help us offer seamless solutions to our customers”.
– Harsha Ram, Head – Network Business, Sify Technologies (India)

“SPTel is re-imagining cybersecurity by providing virtualized, on-demand, managed security services to enable companies and their decision-makers to react quickly to a changing threat landscape. We are extending cyber-secure networks with the same level of corporate-grade support and security to those working from home, enabled by our partnership with Fortinet. Customers can benefit from the enhanced performance for their business collaboration tools with a business-class digital network that delivers <1ms network (2-way) latency, bandwidth upgrade in minutes, and cybersecurity on demand.”
– Teh Yeok Peng, VP, Managed Services & Customer Solutions, SPTel (Singapore)

“Our SD-WAN solutions were designed to cater to the enterprise sector, including the government, banking, retail, and financial verticals, and we are proud to partner with Fortinet to deploy this service for our customers. Fortinet’s Secure SD-WAN solution has allowed us to combine networking, security, quality of service, and wide area network management capabilities into one efficient service. Following the deployment, we witnessed remarkable growth in revenue and an improved onboarding experience that further reflects the fruitful partnership we have formed with Fortinet.”
– Meshari Al Hamad, General Manager of Sales & Account Management, solutions by stc (Kuwait)

“Tata Tele Business Services (TTBS) has collaborated with Fortinet to empower Indian enterprises with a secure and reliable connectivity solution that delivers exceptional end-user experiences. By incorporating Fortinet Secure SD-WAN into our portfolio of Core Connectivity, Business Communication, Cloud and SaaS, TTBS has strengthened the ability to meet the increasing demand for integrated and automated security solutions. SD-WAN supports enterprises in their digital transformation efforts by offering unmatched flexibility, scalability, and next-generation security features, along with valuable business intelligence capabilities. TTBS is committed to democratizing smart digital solutions by making them accessible at affordable price-points to all businesses, particularly small and medium enterprises (SMEs), and empower them to ‘Do Big’ in their respective business segments.”
– Vishal Rally, Senior Vice-President, Product Commercial and Marketing, Tata Teleservices (India)

Join Fortinet at Fast & Secure Event for MSSPs

Fortinet will be further showcasing the importance of SD-WAN and SASE for MSSP partners at Fast & Secure, the company’s flagship event for service providers. The 16th annual event— taking place from June 7 to 9, 2023, in Madrid, Spain—aims to help service providers remain competitive in a quickly evolving market.

Fortinet’s Filippo Cassini, Global Technical Officer, SVP of Engineering, Head of Pre-Sales, will be discussing how service providers can play a key role in SASE adoption.

Visit the Fast & Secure website to learn more about the cybersecurity threats, trends, and challenges that impact service providers and their customers.

Additional Resources

Categories
news

Cisco Shows Breakthrough Innovation Towards AI-First Security Cloud

News Summary:  

  • Cisco launches new security service edge (SSE) solution to enable superior hybrid work experiences and dramatically simplify access across any location, any device, and any application
  • Cisco is previewing the first generative AI capabilities in the Security Cloud to simplify security operations and increase efficiency
  • New innovations across Firewall, Multicloud, and Application Security further deliver on Cisco’s Security Cloud platform vision

CISCO LIVE, LAS VEGAS, June 6, 2023 — Cisco (CSCO), the leader in enterprise networking and security, is delivering on its promise of the AI-driven Cisco Security Cloud to simplify cybersecurity and empower people to do their best work from anywhere regardless of the increasingly sophisticated threat landscape. Cisco is investing in cutting-edge innovations in artificial intelligence and machine learning that will empower security teams by simplifying operations and increasing efficacy. 

Secure Connectivity to All Applications and Resources, Anywhere 

Today’s IT environment has dramatically shifted. Cloud adoption is accelerating. Remote and hybrid users are now the majority.  Most organizations rely on a complex web of point products that weren’t designed to support today’s highly distributed environment. Users are forced to navigate inconsistent access experiences and reauthenticate throughout the day—disrupting productivity. With Cisco Secure Access, Cisco’s new SSE solution, decisions about how users connect to applications are handled behind the scenes, so they get to what they want more quickly.  The result is users who are more secure with less hassle. 

“With Cisco Secure Access, we are removing the burden from the user and providing a superior experience with frictionless access to all applications—not just some—to enable secure, hybrid work,” said Jeetu Patel, Executive Vice President and General Manager of Security and Collaboration at Cisco. “Our unmatched visibility of the network gives us an advantage that no other company has—and we truly believe that where security meets the network, Cisco is the best in the world.” 

Highlights of Cisco Secure Access include:  

  • Common Access Experience: Delivers a single, easy way to access all applications and resources (not just some) by intelligently and securely steering traffic to private and public destinations without end-user intervention. 
  • Single, Cloud-Managed Console: Simplifies security operations by converging multiple functions into one easy to use solution that protects all traffic. Instead of managing a broad set of tools, administrators, and analysts can go to one place to see all traffic, set all policy, and analyze security risks. This translates into efficiency gains, cost reductions, and a flexible IT environment. 
  • Faster Detection and Response: Provides analysis to speed up investigations and is backed by Cisco Talos AI-driven threat intelligence to detect and block more threats. 

Cisco is collaborating with leading mobile device vendors to create the safest and best user experience no matter where users work. Cisco collaborated with Apple to incorporate Zero Trust Access (ZTA) capabilities powered by Cisco Secure Access into a native experience on iOS and macOS, making secure access to applications pervasive while making it simpler for IT and more secure for everyone. 

“At Apple, we believe deeply in providing privacy and security that is built in from the ground up,” said Susan Prescott, Apple’s Vice President of Enterprise & Education Marketing. “Later this year, iPhone, iPad, and Mac will have native support for network relays. Together with Cisco Secure Access, enterprises will have a secure and seamless remote access solution, to do their best work from anywhere, on the best devices for business.”

Cisco Secure Access is taking a hybrid Points of Presence (POP) approach with Cisco Data Centers and public cloud providers to rapidly extend global reach for our customers. As part of the Cisco Security Cloud, it leverages capabilities from the rest of the Cisco security and networking portfolio, including embedded network visibility from Cisco ThousandEyes, and can be easily integrated with solutions from third-party vendors. Cisco Secure Access will be in limited availability starting in July 2023 and will be Generally Available in October 2023. 

“Organizations are deploying SSE for a variety of reasons, but improving security outcomes is arguably at the top of the list. Achieving this requires an emphasis on users to create a frictionless experience and simplifying security team processes to improve efficiency and ensure consistency,” said John Grady, Principal Analyst Enterprise Strategy Group. “Security teams making plans for SSE should prioritize integrated solutions that focus on simplicity, scale, and user experience.” 

“At WWT our goal is to provide security solutions and services that help our customers achieve their business goals. As a Cisco partner, we are really excited about the direction Cisco is taking with the launch of their Cisco Secure Access solution,” said Neil Anderson, Area Vice President, Cloud & Infrastructure Solutions at WWT. “With Cisco Secure Access our customers gain a simplified way of accessing both private, cloud, and SaaS applications private and internet resources, while transparently securing against threats and boosting user productivity while reducing frustration.” 

Generative AI to Improve Threat Response & Simplify Security Policy Management 

Further delivering on its strategic vision, Cisco is previewing the first generative AI capabilities in the Security Cloud. Today, most organizations have a patchwork of security products, forcing teams to set and maintain extremely complex security policies as well as track and remediate threats across numerous solutions.  

  • Reduce Policy Complexity: The Cisco Security Cloud will leverage a generative AI-powered Policy Assistant that enables Security and IT administrators to describe granular security policies and evaluate how to best implement them across different aspects of their security infrastructure. For the first implementation, customers will be able to reason with Cisco’s AI Assistant to evaluate and produce more efficient firewall policies. It will leverage customers’ existing rulesets in Cisco Secure Firewall Management Center to drive unmatched efficiency without sacrificing granular control and will be available later this year. 
  • Quickly Detect and Remediate Threats: Cisco’s SOC Assistant will support the Security Operations Center (SOC) to detect and respond to threats faster. When an incident occurs, the assistant will contextualize events across email, the web, endpoints, and the network to tell the SOC analyst exactly what happened and the impact. Analysts can then interact and reason with the assistant to determine the best remediation approach leveraging an extensive knowledgebase of potential actions while also taking into account the analysts input. Cisco first shared the concept at RSA Conference 2023 and is excited to share that the event summarization feature will be available by the end of calendar 2023 with the remaining capabilities in the first half of calendar 2024. 

Network Security Bolstered for Hybrid Work 

The world is hybrid, and users require seamless connected experiences at the office and on the road.  

As the demands of the firewall as the foundation of the security stack continue to expand, the new Cisco Secure Firewall 4200 Series raises the bar for performance and flexibility with cryptographic acceleration, clustering and modularity.  

Running the new 7.4 version of the operating system, Secure Firewall 4200 features: 

  • AI and ML-based encrypted threat blocking without decryption.  
  • An evolution of Zero Trust Network Access (ZTNA) with complete threat inspection and policy for each individual application.  
  • Simplified branch routing that brings security, control, and visibility to traffic from remote offices to applications in hybrid datacenters.  

Cisco Secure Firewall 4200 Series appliance will be generally available in September 2023 supporting the 7.4 version of the operating system. The 7.4 OS will be generally available for the rest of the Secure Firewall appliance family in December 2023.  

Cisco is also proud to announce Cisco Multicloud Defense following its recent acquisition of Valtix. Multicloud Defense extends the traditional firewall concept into a service-oriented, multicloud world.   SecOps teams can now manage security across AWS, GCP, Azure, and OCI with a single policy, in real-time, from a single SaaS platform. In addition, teams can rapidly spin up security for any cloud environment, leading to increased security and efficiency. Cisco Multicloud Defense is available today.  

Cloud Application Security 

Cisco is delivering an integrated approach to secure cloud native applications from code to cloud with new capabilities in Panoptica, Cisco’s cloud native application security solution. Adding to the Cloud Workload Protection (CWPP) that Panoptica currently provides, Cloud Security Posture Management (CSPM) will be available starting Fall 2023 to deliver continuous cloud security compliance and monitoring at scale, giving customers visibility into their entire inventory of cloud assets, including Kubernetes clusters. In addition, a new attack path engine that uses graph-based technology to deliver advanced attack path analysis will help security teams quickly identify and remediate potential risks across cloud infrastructures. Further, Panoptica’s integration with Cisco’s Full Stack Observability portfolio provides real-time visibility to prioritize business risks. These integrated capabilities will help security and developer teams alike gain the visibility, control and actionable intelligence required to protect dynamic cloud applications and infrastructure.   

To learn more, visit Cisco.com/go/security.    

Additional Resources: 

About Cisco   

Cisco (NASDAQ: CSCO) is the worldwide technology leader that securely connects everything to make anything possible. Our purpose is to power an inclusive future for all by helping our customers reimagine their applications, power hybrid work, secure their enterprise, transform their infrastructure, and meet their sustainability goals. Discover more on The Newsroom and follow us on Twitter at @Cisco


Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. A listing of Cisco’s trademarks can be found at www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. 

Categories
news

Bitdefender Unveils GravityZone Security for Mobile, Delivering Superior Mobile Threat Detection to Enterprises

29 MAY 2023

Bitdefender Unveils GravityZone Security for Mobile, Delivering Superior Mobile Threat Detection to Enterprises

BUCHAREST, Romania and SANTA CLARA, Calif. – Bitdefender, a global cybersecurity leader, today unveiled GravityZone Security for Mobile, designed to provide organizations with advanced Mobile Threat Detection (MTD) and security for Android, iOS and Chromebook devices, including Chrome extensions. The new offering helps enterprises, managed service providers (MSPs) and their customers gain deep visibility into their mobile footprint to prevent, protect, detect and respond to cyberattacks targeting mobile devices, applications, and operating systems.

With more than 6.8 billion smartphones in use around the world, attackers have ample opportunities to exploit vulnerabilities and target unsuspecting users. Enterprise organizations across all industries are under increasing pressure to adopt mobile security capabilities as mobile threats, particularly phishing, ransomware, and zero-day attacks grow. According to the 2023 “Market Guide for Mobile Threat Defense” report by Gartner®, “By 2025, more than half of organizations in regulated industries will have a security solution for both iOS and Android devices.” The report states, “Most importantly, we do have evidence that some of the largest recent attacks included at least one step that involved mobile devices.” ¹

“Enterprises continue to rely on a remote and dispersed workforce who use personal devices to connect to company networks and resources which has opened up an often-vulnerable attack surface,” said Andrei Florescu, deputy general manager and senior vice president of products, Bitdefender Business Solutions Group. “Cybercriminals increasingly target mobile devices as an entry point for attacks. It is critical for organizations to have an advanced mobile threat detection solution as part of their broader endpoint security strategy. GravityZone Security for Mobile is another example of how we are delivering trusted threat prevention, protection, detection, and response across all platforms to help organizations secure data and strengthen their cyber resilience.”   

Bitdefender GravityZone Security for Mobile provides advanced MTD and protection against mobile attack vectors. Leveraging Bitdefender’s industry-leading antimalware and advanced threat intelligence solutions, GravityZone Security for Mobile enables organizations to vet applications, monitor device status, protect against malicious apps, phishing attacks and more to strengthen their overall cybersecurity posture.
 

Key Features and Benefits

·        Powerful Security for Mobile Devices – GravityZone Security for Mobile leverages powerful antimalware technologies, driven by real-time threat intelligence and machine learning technologies on and off the device, to detect malicious applications, known and unknown threats. Organizations can vet mobile applications and monitor mobile endpoints to ensure they meet compliance with designated security policies. On-device anti-phishing technologies protect against phishing attacks without causing slowdowns, and web access controls prevent employees from visiting compromised or malicious websites.

·        Network Protection – Detect network-based threats and map to the tactics and techniques used in MITRE ATT&CK® security evaluations. GravityZone Security for Mobile enables organizations to prevent, detect and respond to network-borne threats to the mobile channel such as reconnaissance attempts (where an attacker covertly gathers information about an organization’s information systems), weak security connections, and man-in-the-middle attacks, where attackers attempt to intercept multi-factor authentication codes sent to mobile devices.

·        Device Assessment and Protection – Stay ahead of mobile device vulnerabilities. GravityZone Security for Mobile provides device monitoring for vulnerabilities, missing encryption, jailbreaking, root access, and outdated devices that are no longer receiving the latest security updates.

·        Integration with Existing Mobile and Enterprise Security Solutions – GravityZone Security for Mobile integrates with the unified Bitdefender GravityZone console, enabling customers to extend security beyond traditional endpoints while enjoying centralized management from a single platform. GravityZone Security for Mobile is complementary to an organizations’ existing Mobile Device Management (MDM), Enterprise Mobility Management (EMM), Unified Endpoint Management, and Security Information and Event Management (SIEM) solutions, providing strong protection and easy deployment across all mobile endpoints.

·        100% Cloud-Based – GravityZone Security for Mobile provides cloud-based, easy-to-manage security for any type of mobile workforce. Zero-touch enrollment enables mass deployments of mobile devices without end-user intervention, making employees’ mobile devices more secure by default.

·        Deep Visibility for Regulatory Compliance – Organizations in regulated industries must understand the privacy and security posture of employees’ mobile devices and the applications running on them. GravityZone Security for Mobile provides real-time visibility for application vetting, identifying abnormal behavior in apps, application version control, user warnings for denied applications, and risky actions such as isolating applications, disabling WiFi/Bluetooth, or disabling or uninstalling extensions.

 

Availability

GravityZone Security for Mobile is available now for Bitdefender GravityZone cloud solutions, including GravityZone Cloud MSP Security, or Bitdefender Managed Detection and Response (MDR) service. For more information or to purchase, visit Bitdefender.com.
 

1Gartner, Market Guide for Mobile Threat Defense, 10 January 2023 

Gartner® is a registered trademark and service mark of Gartner, Inc. and/or its affiliates in the U.S. and internationally and are used herein with permission. All rights reserved.