Mario Vuksan CEO PROPRIETARY INFORMATION THREAT ANALYSIS LABS HAVE NEVER BEEN WORKING HARDER #SINET...

Post on 04-Jan-2016

221 views 5 download

Tags:

Transcript of Mario Vuksan CEO PROPRIETARY INFORMATION THREAT ANALYSIS LABS HAVE NEVER BEEN WORKING HARDER #SINET...

Mario VuksanCEO

PROPRIETARY INFORMATION

THREAT ANALYSIS LABS HAVE NEVER

BEEN WORKING HARDER

#SINET Connection

Processed by a typical AV lab

10%

NOT processed by a typical AV

lab90%

New and suspicious files daily

2006

2008

2010

2012

020,00040,00060,00080,000

100,000120,000140,000160,000

New samples processed daily

#SINET Connection

PROPRIETARY INFORMATION

SUCCESS AT THE END

POINT

#SINET Connection

#SINET Connection

Known Whitelist

60%Mali-cious (Black-

list)10%

Un-known30%

According to AV Vendors All threat vectors

Known (Whitelist)

15%Malicious (Blacklist

)5%

Unknown 80%

#SINET Connection

SCAN A FILE, IGNORE THE PAYLOAD

MUST: DETAILED INSPECTION OF ALL

FILES

#SINET Connection

#SINET Connection

REDUCE RISK

Inspect in detail all content entering your environment

INCREASE SECURITY

Go beyond honeypots and dynamic analysis solutions

Go from inspecting 5% of the content to 100%

INSPECT EVERYTHING IN DETAIL

Don’t rely only on signatures, honey pots and mouse traps

Demand new solutions that are not afraid of BIG DATA

REVERSINGLABS SOLUTION

#SINET Connection

#SINET Connection

HELPING COMERCIAL AND GOVERNMENT LABS TO PROCESS PBs OF DATA

Static analysis engineFast, Detailed, SafePolymorphic Windows & Linux binariesMobile, Firmware, PDF, Flash, Office

Big data custom database solutionScalable to 100B+ recordsExtreme query speed (< 10ms)Massive file threat reputation dataAd hoc queries for powerful machine learning

AUTOMATED DEEP BINARY

ANALYSIS

#SINET Connection

#SINET Connection

ONE AUTOMATED SOLUTION

Static analysisMassive reputationComplex data classificationAutomated alerting and blocking100% inspection

INSTALL AND FORGET OPERATION

v

WHAT’S INSIDE MATTERS

DEEP BINARY ANALYSIS FOR ALL FILES