{"id":32625,"date":"2018-07-20T12:14:13","date_gmt":"2018-07-20T04:14:13","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=32625"},"modified":"2018-07-20T12:14:13","modified_gmt":"2018-07-20T04:14:13","slug":"sophos-advances-server-protection-with-predictive-deep-learning-technology","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2018\/07\/20\/sophos-advances-server-protection-with-predictive-deep-learning-technology\/","title":{"rendered":"Sophos advances server protection with predictive deep learning technology"},"content":{"rendered":"<p><strong><a href=\"http:\/\/www.sophos.com\/\">Sophos<\/a> has announced <a href=\"https:\/\/www.sophos.com\/en-us\/products\/server-security.aspx\">Sophos Intercept X for Server<\/a>, a next-generation server protection with predictive deep learning technology that provides constantly evolving security against cyber threats. Sophos\u2019 deep learning neural networks are trained on hundreds of millions of samples to look for suspicious attributes of malicious code and prevent never-before-seen malware attacks.<span class=\"Apple-converted-space\">\u00a0<\/span><\/strong><\/p>\n<div id=\"attachment_32626\" style=\"width: 650px\" class=\"wp-caption aligncenter\"><a href=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2018\/07\/Server-technology-pixabay.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32626\" class=\"size-full wp-image-32626\" src=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2018\/07\/Server-technology-pixabay.jpg\" alt=\"\" width=\"640\" height=\"480\" srcset=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2018\/07\/Server-technology-pixabay.jpg 640w, http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2018\/07\/Server-technology-pixabay-300x225.jpg 300w\" sizes=\"auto, (max-width: 640px) 100vw, 640px\" \/><\/a><p id=\"caption-attachment-32626\" class=\"wp-caption-text\"><em>IMAGE CREDIT: PIXABAY.COM<\/em><\/p><\/div>\n<p><a href=\"https:\/\/www.sophos.com\/en-us\/labs.aspx\">SophosLabs<\/a> research indicates that 75 per cent of malware found in an organisation is unique to that organisation, indicating the majority of malware is previously unknown.<span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n<p>A recent Sophos survey reveals that two-thirds of IT managers worldwide do not understand what <a href=\"https:\/\/www.sophos.com\/en-us\/medialibrary\/Gated-Assets\/white-papers\/endpoint-survey-report.pdf?la=en\">anti-exploit technology<\/a> is, leaving their organisations vulnerable to data breaches. Once inside a network, cybercriminals can use persistent and lateral moves to target and takeover servers to access the high-value data stored there, such as personally-identifiable information (PII), banking, tax, payroll and other financial records, proprietary intellectual properties, shared applications \u2013 all of which can be sold on the Dark Web or used for other types of attacks and monetary gain. Servers can also suffer collateral damage from ransomware and run-of-the-mill cyberattacks. Attacks reaching servers can be more devastating to a business than attacks on endpoints, due to the critical data they hold.<\/p>\n<p><b>New features in Sophos Intercept X for Server<span class=\"Apple-converted-space\">\u00a0<\/span><\/b><\/p>\n<p><b>Deep Learning Neural Network<span class=\"Apple-converted-space\">\u00a0<\/span><\/b><\/p>\n<ul>\n<li>Leverages the deep neural network from Intercept X to detect new and previously unseen malware and unwanted applications<\/li>\n<li>Once deployed, the model constantly updates and identifies critical attributes resulting in more accurate decisions between benign and malware payloads<span class=\"Apple-converted-space\">\u00a0<\/span><\/li>\n<\/ul>\n<p><b>Active Adversary Mitigation<\/b><\/p>\n<ul>\n<li>Blocks determined cybercriminals and persistent techniques commonly used to evade traditional anti-virus protection<\/li>\n<li>Credential Theft Protection prevents theft of authentication passwords from memory, registries and local storage<\/li>\n<li>Code Cave Utilisation detects the presence of malicious code deployed into legitimate applications<\/li>\n<\/ul>\n<p><b>Exploit Protection<\/b><\/p>\n<ul>\n<li>Prevents an attacker from leveraging known vulnerabilities<\/li>\n<li>Protects against browser, plugin or java-based exploit kits even if servers are not full patched<\/li>\n<\/ul>\n<p><b>Master Boot-Record Protection<\/b><\/p>\n<ul>\n<li>WipeGuard expands upon Intercept X anti-ransomware technology and prevents ransomware variants or malicious code that target the Master Boot-Record<\/li>\n<\/ul>\n<p><b>Root Cause Analysis<\/b><\/p>\n<ul>\n<li>Detection and incident response technology provides forensic detail of how the attack got in, where it went, and what it touched<\/li>\n<li>Provides recommendations on what to do next after an analysis of the attack<\/li>\n<\/ul>\n<p><b>Cloud Workload Discovery for Server<\/b><\/p>\n<ul>\n<li>Discovers and protects servers running on the <a href=\"https:\/\/www.sophos.com\/en-us\/solutions\/public-cloud.aspx\">public cloud<\/a>, including Microsoft Azure and Amazon Web Services<\/li>\n<li>Prevents risk exposure from rogue IT or forgotten assets<span class=\"Apple-converted-space\">\u00a0<\/span><\/li>\n<\/ul>\n<p>Sumit Bansal, Senior Director of ASEAN and Korea at Sophos said, \u201cCompanies hold their most critical data on servers and cybercriminals understood this. If a server is under attack and becomes unavailable, the whole organisation may be impacted. Once breached, cyberattacks are capable of getting deep into the network and do some serious damage such as exfiltrate data and use stolen information for spear-phishing campaigns, or even resell them at a high cost on the Dark Web or to a private network of buyers.\u201d<\/p>\n<p>Attackers also use breached servers as proxies to redirect traffic to malicious websites and are now installing <a href=\"https:\/\/news.sophos.com\/en-us\/2016\/09\/08\/new-sophoslabs-research-cryptomining-malware-on-nas-servers-worldwide\/\">cryptominers<\/a> on server farms and cloud accounts, so they can generate crypto-currencies by stealing a company\u2019s CPU, RAM, electricity, and other resources. The motives of cybercriminals based on how servers are utilised, what is stored there and what can be leveraged for multiple crimes underscores the need for predictive, server-designed security with advanced anti-exploit technology that helps protect even unpatched systems.<\/p>\n<p>Bansal added, \u201cServers are critical infrastructure, but they are often overlooked in the endpoint strategy of many companies. Server-specific protection is necessary to a successful layered security strategy to reduce the risk of a data breach. Combined with Sophos\u2019 Synchronised Security intelligence sharing and easy management from our <a href=\"https:\/\/www.sophos.com\/en-us\/products\/sophos-central.aspx\">Sophos Central<\/a> dashboard, Intercept X for Server is a powerful addition that helps defend businesses from becoming the next victim.\u201d<span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n<p><span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n<p>The need for server protection exists in organisations of all sizes, with smaller businesses being potentially at more risk than larger, better resourced enterprises as Frank Dickson, research vice president, Security Products with IDC commented, \u201cThe small- and mid-sized markets (SMBs) face challenges for server protection as they need the same level of protection as their enterprise counterparts, yet protection must be in an extremely easy to use offering. Additionally, sadly, SMBs are too often tempted to use underpowered, inappropriate PC endpoint offerings to protect servers as a way to save cost, forcing SMB server security vendors to provide compelling, affordable offerings that are also appropriate for a smaller or understaffed IT department.\u201d<\/p>\n<p>Regarding Sophos\u2019 approach directly, Dickson continued, \u201cSophos addresses the ease-of-use factor by integrating their products on Sophos Central, so there\u2019s one dashboard for Partners and customers to manage each security layer regardless of being on premise or in the cloud. The new Intercept X for Server significantly advances server protection with deep learning, anti-exploit and other key technology elements. The anti-exploit technology has a client right on the server, a necessary requirement based on the manner in which hackers leverage server vulnerabilities to breach systems. Given the readily available and inexpensive exploit kits for sale on the Dark Web, even cybercriminals with little expertise can launch powerful attacks, making sophisticated, server specific protection a fundamental requirement.\u201d<span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n<p>Simon Barnes, principal consultant at Riverlite in St. Neots, Cambridgeshire, UK, and a partner of Sophos, said, \u201cSophos understands that servers need their own set of security criteria, like the lockdown feature in the current server solution, and the new ability to discover cloud workloads. Many of Riverlite\u2019s clients, companies with under-staffed IT personnel, require us to keep cloud deployments secure and free from disruption. Having assets in the cloud or migrating and using public clouds can be daunting to any business. It is important that Managed Service Providers (MSPs) have the right security in place to protect these \u2018invisible\u2019 servers, which are easily forgotten from an overall security strategy. This type of exposure weakens a company\u2019s security posture. If any unprotected server is attacked it can wreak havoc on an entire business. We\u2019re looking forward to upgrading and adding Intercept X for Server to our customers\u2019 security portfolios.\u201d <span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sophos has announced Sophos Intercept X for Server, a next-generation server protection with predictive deep learning technology that provides constantly evolving security against cyber threats. Sophos\u2019 deep learning neural networks are trained on hundreds of millions of samples to look for suspicious attributes of malicious code and prevent never-before-seen malware attacks.\u00a0 SophosLabs research indicates that [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":32626,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[4967,286,1437,206],"class_list":["post-32625","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-deep-learning","tag-it-security","tag-servers","tag-sophos"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/32625","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=32625"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/32625\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/32626"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=32625"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=32625"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=32625"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}