Network and Security Virtualization 09月29日
私有云横向安全新方案
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

随着网络攻击日益频繁和复杂,数据泄露的平均成本高达435万美元。生成式AI的兴起将进一步加剧这一威胁。传统的安全解决方案在横向安全方面已显不足,因为它们存在交通管制、成本高昂、无法保护所有工作负载等问题,并且对虚拟机到虚拟机的流量视而不见。VMware的横向安全解决方案应运而生,它分布式、嵌入虚拟机管理程序,可无缝扩展。该方案提供分布式L7状态防火墙、高级威胁防护,以及适用于零信任和合规性计划的全面可见性。其组件在L2-L7层协同工作,简化并增强威胁检测和预防。基础是分段,可通过AI驱动规则推荐或使用API定义的应用标签进行意图政策,轻松实现。但仅靠微分段不足以抵御高级威胁。因此,提供复杂的先进威胁检测和预防工具,如网络沙盒、分布式IDS/IPS、网络流量分析和网络检测与响应(NTA/NDR),以检测可疑文件、防止已知漏洞被利用、并检查所有对话以检测可疑行为。此外,VMware最近推出的Project Cypress集成了生成式AI,作为安全团队调查威胁时的副驾驶,简化威胁优先级排序,加速修复,缩短响应时间。

🔒 横向安全日益重要:随着网络攻击频率和复杂性的增加,传统的边界防护已不足够,攻击者更倾向于通过内部网络横向移动,因此保护私有云内部网络至关重要。

🛡️ VMware横向安全解决方案:VMware提供了一套分布式的、嵌入虚拟机管理程序的横向安全解决方案,无缝扩展,包含L7状态防火墙、高级威胁防护和全面可见性,组件协同工作,提供统一、简单的安全体验。

🚫 传统方案局限:传统安全方案存在交通管制、成本高昂、无法保护所有工作负载、对虚拟机流量不可见等问题,且难以运营,并主要限于分段,无法应对复杂的威胁如勒索软件。

🎯 微分段与高级威胁防护:方案不仅提供基于AI的分段能力,还通过网络沙盒、分布式IDS/IPS、NTA/NDR等工具,利用AI/ML技术检测可疑文件、阻止已知漏洞利用,并检查所有网络对话,以防御已知和未知威胁。

🤖 Project Cypress与AI赋能:VMware通过Project Cypress将生成式AI集成到横向安全解决方案中,作为安全团队的副驾驶,利用AI简化威胁优先级排序,加速修复流程,提升响应速度,增强组织安全能力。

Cyber attacks are growing in frequency and complexity. And at an average cost of $4.35M1, data breaches are no joke. With Generative AI, this threat will grow even further—equipping even an unsophisticated attacker with the means to become a sophisticated hacker.

Reality is, you can’t get away with just protecting your perimeter anymore. Today, the most common type of attack vectors—lateral movement, vulnerability exploits and zero day attacks — are all matters of lateral security. And with the majority of your traffic going east-west, protecting the inside of your network is beyond critical.

Traditional security solutions aren’t enough when it comes to lateral security: implemented with multiple appliances, they lead to traffic hairpinning, create bottlenecks, are cost-prohibitive, and only protect a subset of workloads. To make matters worse, they’re blind to VM-to-VM traffic, since traditional methods of using network taps only see traffic between physical hosts. And you can’t protect what you can’t see. 

To protect the inside of your private cloud, you need a comprehensive lateral security solution that gives you complete visibility and security.

VMware’s Lateral Security answers that call; it is distributed, built into the hypervisor, and scales seamlessly to meet your evolving needs. We offer a distributed L7 stateful firewall with advanced threat prevention for zero-trust and compliance initiatives and security intelligence for comprehensive visibility that scales to meet your lateral security needs. Each component of our solution stack works with each other across L2-L7 to simplify and enhance threat detection and prevention. Say goodbye to stitching too many products and trying to make them work together; now you can achieve true operational simplicity with a single, integrated security stack. And—you can manage it all from a centralized point of management. 


The foundation of our solution is segmentation, which is easy to operationalize with tools such as security intelligence that offer AI-driven rule recommendations or with API’s using intent-based policies defined using application tags, making segmentation a powerful tool to combat lateral movement of threats. 

But micro-segmentation alone isn’t enough to protect from advanced threats. Attackers often use social engineering techniques, such as phishing, to gain initial access and move laterally once compromised. To address this, we provide sophisticated advanced threat detection and prevention tools to protect from malicious threat actors. Our network sandbox looks deep inside every artifact and uses advanced AI/ML to detect suspicious files and prevent them from executing. Distributed IDS/IPS will inspect every flow on each host to prevent exploitation of known vulnerabilities. Finally, with Network Traffic Analytics and Network Detection and Response (NTA/NDR) capabilities, we ensure every conversation is inspected to detect suspicious behavior. Comprehensively, these advanced threat prevention capabilities offered by VMware Lateral security protect your private cloud from both known and unknown threats such as vulnerability exploits and zero day attacks. See it in action:

Many of the other industry solutions out there for securing east – west traffic rely on software agents to deliver lateral security. These solutions are high in investment and low in reward. Agent based solutions are hard to operationalize, rely on the host operating system security capabilities such as ip tables, and compete with the workload for CPU resources. These solutions are predominantly limited to segmentation and can’t provide you the depth of features you need to protect from sophisticated threats such as ransomware attacks. VMware Lateral Security is the only scalable software defined distributed security solution that is built into the hypervisor and can detect and protect from advanced threats, offering comprehensive protection for your private cloud. 

With the growing prevalence of Generative AI and large language models (LLMs), it begs the question: is AI friend or foe for security? Well, it depends on how you use it. We sought out a way to use Gen AI to make our solutions better and faster, making your security stronger and easier to deploy. 

We recently introduced Project Cypress, which integrates generative AI into our lateral security solution, which enables you to increase the productivity of your security teams by acting as a co-pilot when investigating threats. With Project Cypress, we are using Gen AI to simplify threat prioritization and accelerate remediation to speed up your time to respond. 

Check out how we’re taking VMware Lateral Security solution to the next level with Gen AI:

We are providing a full stack distributed lateral security solution to protect your environments with zero appliances, zero tickets, and zero taps—offering the best zero trust security solution for your virtualized environment and VCF powered private cloud.

Learn more about how VMware can enhance your organization’s security here

 

Footnotes

(1) 2023 IBM cost of Data Breach Report

The post Next-Level Lateral Security for Your Private Cloud appeared first on Network and Security Virtualization.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

横向安全 私有云 VMware 生成式AI 网络安全 零信任 微分段 威胁检测 高级威胁防护
相关文章