THANK YOU FOR SUBSCRIBING
Enterprise Security Magazine | Tuesday, November 02, 2021
The new cloud native detection and response is based on thousands of real-world attacks detected in the field on cloud-native systems, such as Linux, Containers, Serverless, and Kubernetes workloads, and uses constantly updated, real-time behavioral indications.
FREMONT, CA: The threat aspect for cloud-native applications is always changing. Malicious actors are improving their strategies to construct more sophisticated and targeted attacks faster than corporations can keep up with, which is why cybersecurity is vital. Aqua Security, the leading pure-play cloud-native security provider, has amplified its game with robust cloud-native detection and response (CNDR) capabilities in the industry. To recognize zero-day attacks from low-level eBPF events, CNDR employs a growing set of more than 80 behavioral indications, which are revealed by the open-source project Tracee. Aqua is a vendor that can both identify and granularly prevent malicious behavior from spreading without interrupting the production environment, owing to the new detection capabilities and Aqua’s unique runtime security controls.
Newly Identified Behavioral Indicators
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
CNDR is based on thousands of real-world attacks detected in the field on cloud-native systems, such as Linux, Containers, Serverless, and Kubernetes workloads, and uses constantly updated, real-time behavioral indications. For instance, a rootkit strategy involving the loading of a malicious kernel, the execution of fileless malware, the use of a reverse shell, and so on. Aqua’s threat information comprises IP and DNS reputation intel and a malware database, providing CNDR and Aqua’s customers with the most comprehensive threat intelligence feed for Cloud-Native Application security.
“The cloud native threat landscape is constantly evolving. Adversaries are advancing their techniques to craft more sophisticated and targeted attacks at a rate faster than enterprises can track, which makes the cloud native cyber research performed by Team Nautilus so important,” said Amir Jerbi, Co-founder and CTO, Aqua Security. “By incorporating the output of this research and intelligence with industry-leading detection capabilities and surgical runtime policies, Aqua delivers the industry’s most comprehensive protection for cloud native environments.”
Developed on eBPF-based Open Source Technology
Aqua CNDR is based on the open-source Tracee project, which uses Linux eBPF technology to detect suspicious app behavior in real-time. Tracee takes advantage of eBPF characteristics that prevent evaders and exploits from circumventing the system, assuring reliable identification of suspicious behavior. Tracee has evolved from an open-source system tracing tool to a full DevOps runtime security solution that includes a powerful eBPF engine, easy deployment, and a list of behavioral indicators to identify harmful patterns and assaults from eBPF events since its inception in 2019.
A Pioneer in Cloud Native Detection and Response
The addition of CNDR is a watershed moment for the industry and Aqua Security, which already has the most comprehensive and integrated Cloud-Native Application Protection Platform (CNAPP) on the market. While a few solutions use eBPF for observability and monitoring, they lack a comprehensive set of constantly updated behavioral intelligence tailored to novel assaults in cloud-native systems. Aqua’s granular, highly focused runtime controls go beyond detection to stop the observed assaults.
More in News