Operations

4/16/2018
09:20 AM
Dark Reading
Dark Reading
Products and Releases
50%
50%

BluVector, Endace Announce Partnership at RSA to Provide Attack Detection, Analytics and Response Solution

LONDON -- April 16, 2018 – AI-driven network security company BluVector and high-speed network recording, playback and analytics hosting company Endace today announced a partnership to host BluVector® Cortex™ advanced threat detection on Endace’s EndaceProbe Analytics Platform. The two companies will showcase the combined solution at RSA Conference in San Francisco at BluVector’s Booth 1615, South Expo.

The solution gives both network operations (NetOps) and security operations (SecOps) highly effective AI-based threat detection alongside the definitive packet-level evidence they need to make better-informed and more confident decisions to resolve issues quickly.

“The sophistication and evolution of today’s cyber adversaries continues to accelerate, as does the number of successful intrusions. This makes network security even more important in today’s connected world,” said Stuart Wilson, CEO, Endace. “But an intrusion doesn’t have to lead to a major breach or cyber incident. The partnership between BluVector and Endace combines state-of-the-art threat detection with the accurate packet-level evidence needed to investigate, respond to and neutralise cyber intruders quickly and efficiently.”

The combined solution collects information from thousands of disparate data sources, then analyzes and prioritises the data and events. The resulting information becomes instantly available to SecOps teams, delivering the contextual data they need to quickly understand the threat and its severity. Endace’s powerful API integration with BluVector streamlines investigations, allowing analysts to swiftly click from an alert directly to the related packet history to see precisely what transpired.

Customers can deploy BluVector Cortex directly onto EndaceProbes, a hosting platform for analytics applications. This eases installation and maintenance for customers by allowing them to deploy a common hardware platform that combines full packet capture with the ability to host BluVector’s advanced threat detection solution alongside other network security and performance analytics solutions.

“Information security teams must increase their visibility and analytics capabilities to detect intruders faster and respond to them quickly and efficiently to avoid high-impact cyber incidents,” said Kris Lovejoy, CEO of BluVector. “Our partnership with Endace brings together the best in the ability to flag, record and replay attacks so IT and security teams have sufficient quality information about the incident, the data and systems affected, and the company’s relative exposure to respond accurately. And they have all this capability on a single platform.”

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Crowdsourced vs. Traditional Pen Testing
Alex Haynes, Chief Information Security Officer, CDL,  3/19/2019
New Mirai Version Targets Business IoT Devices
Dark Reading Staff 3/19/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Reading Schneier's Friday Squid Blog again?
Current Issue
5 Emerging Cyber Threats to Watch for in 2019
Online attackers are constantly developing new, innovative ways to break into the enterprise. This Dark Reading Tech Digest gives an in-depth look at five emerging attack trends and exploits your security team should look out for, along with helpful recommendations on how you can prevent your organization from falling victim.
Flash Poll
The State of Cyber Security Incident Response
The State of Cyber Security Incident Response
Organizations are responding to new threats with new processes for detecting and mitigating them. Here's a look at how the discipline of incident response is evolving.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-6149
PUBLISHED: 2019-03-18
An unquoted search path vulnerability was identified in Lenovo Dynamic Power Reduction Utility prior to version 2.2.2.0 that could allow a malicious user with local access to execute code with administrative privileges.
CVE-2018-15509
PUBLISHED: 2019-03-18
Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control (issue 2 of 2).
CVE-2018-20806
PUBLISHED: 2019-03-17
Phamm (aka PHP LDAP Virtual Hosting Manager) 0.6.8 allows XSS via the login page (the /public/main.php action parameter).
CVE-2019-5616
PUBLISHED: 2019-03-15
CircuitWerkes Sicon-8, a hardware device used for managing electrical devices, ships with a web-based front-end controller and implements an authentication mechanism in JavaScript that is run in the context of a user's web browser.
CVE-2018-17882
PUBLISHED: 2019-03-15
An Integer overflow vulnerability exists in the batchTransfer function of a smart contract implementation for CryptoBotsBattle (CBTB), an Ethereum token. This vulnerability could be used by an attacker to create an arbitrary amount of tokens for any user.