openPR Logo
Press release

Vistar Communications

Bill Conner, President and CEO at SonicWall

Bill Conner, President and CEO at SonicWall

SonicWall, the trusted security partner protecting more than 1 million networks worldwide, reveals that a new Capture Cloud engine has discovered hundreds of new malware variants not seen before by sandboxing technology. Through the use of previously unannounced patent-pending technology, SonicWall Capture Labs security researchers engineered an advanced method for identifying and mitigating threats through deep memory inspection — all in real time.

“Threat actors have been so far ahead of the game they’ve been able to create highly evasive malware without the greater industry even knowing,” said SonicWall President and CEO Bill Conner. “This new real-time deep memory inspection technology, coupled with more than a decade of machine-learning experience, will help level the playing field and eliminate some of the most challenging attack vectors. The new engine is the latest addition to our Capture Cloud Platform that reinforces our leadership position.”

The new SonicWall Capture Cloud Real-Time Deep Memory Inspection (RTDMITM) technology and engine has been operational for months and is discovering hundreds of malware strands not detected by sandboxing technology.

“This is a revolution in engineering, execution and innovation,” said General Michael Hayden, Principal at the Chertoff Group, a global advisory firm focused on security and risk management. “To introduce this technology in the relatively early stages of these advanced attacks is a huge win for the security industry, as well as the public and private sectors.”

SonicWall is unveiling this new technology to strengthen the company’s automated real-time breach detection and prevention platform. SonicWall RTDMI is a patent-pending technology and process utilized by the SonicWall Capture Cloud to identify and mitigate even the most insidious modern threats, including future Meltdown exploits. The new RTDMI technology:

• Proactively detects and blocks unknown mass-market malware via deep memory inspection in real time
• Detects and blocks malware that does not exhibit any malicious behavior and hides its weaponry via custom encryption
• Forces malware to “reveal” its weaponry into memory
• Identifies and mitigates sophisticated attacks where weaponry is exposed for less than 100 nanoseconds

Mitigating Meltdown
On Jan. 3, a new processor vulnerability, known as Meltdown, was published by Google’s Project Zero security team. A successful exploit of this vulnerability could allow an attacker to access sensitive information (e.g., passwords, high value crypto keys, login cookies, VPN credentials) inside protected memory regions on modern processors.

SonicWall Capture Labs threat researchers have validated SonicWall RTDMI technology is also effective against future exploits built on the Meltdown vulnerability, via the engine’s real-time analysis of instruction and memory usage.

How SonicWall Real-Time Deep Memory Inspection Works
SonicWall deployed the RTDMI engine into the SonicWall Capture Cloud Platform and is leveraging the technology to support SonicWall’s layered security platform, which includes next-generation firewalls, wireless network security, email security, secure mobile and remote access offerings, as well as cloud and IoT solutions.

SonicWall’s RTDMI technology detects and blocks malware that does not exhibit any malicious behavior and hides its weaponry via encryption. By forcing malware to reveal its weaponry into memory, the RTDMI engine proactively detects and blocks mass-market, zero-day threats and unknown malware.

Sandbox engines execute files in a virtual environment, log the resulting activity, and then, after execution, look for and attempt to correlate malicious behavior. The correlation and scoring of these activities and behaviors are prone to both false positives and false negatives.

Modern malware writers implement advanced techniques, including custom encryption, obfuscation and packing, as well as acting benign within sandbox environments, to allow malicious behavior to remain hidden. These techniques often hide the most sophisticated weaponry, which is only exposed when run dynamically and, in most cases, is impossible to analyze in real-time using static detection techniques.

SonicWall Capture Labs researchers leveraged a variety of deep-learning techniques to analyze code blocks of hundreds of terabytes of malware and related high-quality metadata of extracted features, and those combined insights resulted in the RTDMI solution.

“Sandbox techniques are often ineffective when analyzing the most modern malware. SonicWall’s RTDMI technology is very fast and very precise, and can mitigate sophisticated attacks where the malware’s most protected weaponry is exposed for less than 100 nanoseconds,” said John Gmuender, SonicWall CTO.

The Evolution of DPI
In 2004, SonicWall Capture Labs researchers pioneered the use of machine learning for threat analysis, and those insights and innovations led to the patented Reassembly Free Deep Packet Inspection technology scanning files for threats without requiring reassembly — on the fly blocking in real-time — resulting in a low-latency, high-throughput solution without memory constraints. Today, SonicWall’s machine-learning technology powers the protection provided by the Capture Cloud Platform.

“More than a decade ago we pioneered the use of reassembly-free, deep-packet inspection for the security industry, which changed the speed and effectiveness for inspecting and mitigating advanced cyber threats in real-time,” said Gmuender. “Coupled with our deep experience in machine learning and artificial intelligence, our advances in cloud technology allow us to quickly extend this value to our partners and customers. And we will continue to do so with future innovation in threat detection and prevention. Combining our deep security domain expertise with our experience and innovation in AI, we are continuing to take the offensive in the cyber arms race.”

About SonicWall
SonicWall has been fighting the cyber-criminal industry for over 26 years, defending small, medium-size businesses and enterprises worldwide. Backed by research from SonicWall Capture Labs, our award-winning real-time breach detection and prevention solutions, coupled with the formidable resources of over 21,000 loyal channel partners around the globe, are the backbone, securing more than a million business and mobile networks and their emails, applications and data.

This combination of products and partners has enabled an automated real-time breach detection and prevention solution tuned to the specific needs of the more than 500,000 organizations in over 150 countries. These businesses can run more effectively and fear less about security.

SonicWall
Building 9
Dubai Internet City
Dubai, UAE

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Vistar Communications here

News-ID: 940402 • Views:

More Releases for Capture

Document Capture Software Market Report with Emerging Trends, Highlights and Cha …
Document capture software isa process ofscanning and uploading paper documents to an electronic repository.It is automatically identifies document types such as purchase orders, invoices, checks, packing slips, bills of lading, purchase requisition forms, business-specific documents, and receipts. In addition, document capture software has several advantages such as it helps manufacturers to maximizes asset utilization, improve product quality, reduce time to market, and eliminates paper records.. Adoption of document capture software
Automatic Identification & Data Capture Market Size
As per the research conducted by GME, the Global Automatic Identification & Data Capture Market will grow with a CAGR value of 14.5 percent from 2021 to 2026. The automatic identification and data capture (AIDC) system is employed across different verticals to automatically identify products and capture the desired data and process it into the computer system. The AIDC market is largely driven by increasing usage of AIDC system in
Lead Capture Phone Answering Service
Upclose & Virtual, a Virtual Assistant Service provider in Australia, provides a useful service to their small business clients - the company answers incoming phone calls from present and potential customers and manages all of the business's management jobs so owners can concentrate on growing and develop their companies. Upclose & Virtual's small business clients which are usually working in customer-facing conditions and cannot always be achieved at a brick-and-mortar office.
Automated parcel capture at UPS
VITRONIC Auto-ID systems increase the package sorting capacity of UPS at Cologne/Bonn Airport Wiesbaden / Cologne-Bonn, 24th May 2012 – The machine vision experts VITRONIC are glad to announce a large order from UPS. At Cologne/Bonn Airport, 200 VICAMssi2 high-performance line scan cameras will capture parcels and envelopes for efficient sortation. The background to this large order is the planned increase of the sortation capacity at this UPS site from 110.000 to
Capture from Webcamera HD digital picture
For Immediate Release Contact: Ronny Ronald, , ronnypalyama@aim.com, http://ronnyronald.newweblab.com RP. Product Inc. releases Excellent MPEG4 System Bogor, West Java, Indonesia, 3 January 2011 - RP. Product Inc. has published new application - Capture from Webcamera HD digital picture. New professional surveillance software works with any webcam, IP cameras, and major capture cards. Security software has become so complicated that the typical businessman who has been busy minding his office instead of pouring over electronics
Capture and supervise with face detector
For Immediate Release Contact: Ronny Ronald, , ronnypalyama@aim.com, http://ronnyronald.newweblab.com RP. Product Inc. announces Beauty DVR Centre Bogor, West Java, Indonesia, 29 December 2010 - RP. Product Inc. has released new product - Capture and supervise with face detector. This invention has web interface with the same look and controls on the local and distant workstations. Customers see MPEG coded picture and have full management of the software using network that surveillance workstation can be