Operations

4/16/2018
09:20 AM
Dark Reading
Dark Reading
Products and Releases
50%
50%

BluVector, Endace Announce Partnership at RSA to Provide Attack Detection, Analytics and Response Solution

LONDON -- April 16, 2018 – AI-driven network security company BluVector and high-speed network recording, playback and analytics hosting company Endace today announced a partnership to host BluVector® Cortex™ advanced threat detection on Endace’s EndaceProbe Analytics Platform. The two companies will showcase the combined solution at RSA Conference in San Francisco at BluVector’s Booth 1615, South Expo.

The solution gives both network operations (NetOps) and security operations (SecOps) highly effective AI-based threat detection alongside the definitive packet-level evidence they need to make better-informed and more confident decisions to resolve issues quickly.

“The sophistication and evolution of today’s cyber adversaries continues to accelerate, as does the number of successful intrusions. This makes network security even more important in today’s connected world,” said Stuart Wilson, CEO, Endace. “But an intrusion doesn’t have to lead to a major breach or cyber incident. The partnership between BluVector and Endace combines state-of-the-art threat detection with the accurate packet-level evidence needed to investigate, respond to and neutralise cyber intruders quickly and efficiently.”

The combined solution collects information from thousands of disparate data sources, then analyzes and prioritises the data and events. The resulting information becomes instantly available to SecOps teams, delivering the contextual data they need to quickly understand the threat and its severity. Endace’s powerful API integration with BluVector streamlines investigations, allowing analysts to swiftly click from an alert directly to the related packet history to see precisely what transpired.

Customers can deploy BluVector Cortex directly onto EndaceProbes, a hosting platform for analytics applications. This eases installation and maintenance for customers by allowing them to deploy a common hardware platform that combines full packet capture with the ability to host BluVector’s advanced threat detection solution alongside other network security and performance analytics solutions.

“Information security teams must increase their visibility and analytics capabilities to detect intruders faster and respond to them quickly and efficiently to avoid high-impact cyber incidents,” said Kris Lovejoy, CEO of BluVector. “Our partnership with Endace brings together the best in the ability to flag, record and replay attacks so IT and security teams have sufficient quality information about the incident, the data and systems affected, and the company’s relative exposure to respond accurately. And they have all this capability on a single platform.”

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Microsoft, Mastercard Aim to Change Identity Management
Kelly Sheridan, Staff Editor, Dark Reading,  12/3/2018
Windows 10 Security Questions Prove Easy for Attackers to Exploit
Kelly Sheridan, Staff Editor, Dark Reading,  12/5/2018
Starwood Breach Reaction Focuses on 4-Year Dwell
Curtis Franklin Jr., Senior Editor at Dark Reading,  12/5/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: I guess this answers the question: who's watching the watchers?
Current Issue
10 Best Practices That Could Reshape Your IT Security Department
This Dark Reading Tech Digest, explores ten best practices that could reshape IT security departments.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-19980
PUBLISHED: 2018-12-08
Anker Nebula Capsule Pro NBUI_M1_V2.1.9 devices allow attackers to cause a denial of service (reboot of the underlying Android 7.1.2 operating system) via a crafted application that sends data to WifiService.
CVE-2018-19961
PUBLISHED: 2018-12-08
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
CVE-2018-19962
PUBLISHED: 2018-12-08
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones.
CVE-2018-19963
PUBLISHED: 2018-12-08
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
CVE-2018-19964
PUBLISHED: 2018-12-08
An issue was discovered in Xen 4.11.x allowing x86 guest OS users to cause a denial of service (host OS hang) because the p2m lock remains unavailable indefinitely in certain error conditions.