Industry

Bitdefender Applies PHASR to Linux Security, From Attack Surface Reduction to Threat Response

TECHWORLD ·

[Photo: Bitdefender]

✦ AI Summary

Bitdefender strengthened GravityZone-based security features for the Linux environment.

The offerings include anti-malware, EDR, Network Attack Defense, application control, PHASR, and container protection.

Bitdefender expanded the scope of PHASR to Linux and is strengthening a framework that links detection and response.

Bitdefender strengthened its security configuration for Linux, which is widely used across enterprise servers, data centers, cloud environments, and container environments. It also reflected the growing diversity of attack methods targeting Linux. Attack types cited include abuse of legitimate system tools based on LOTL(Living off the Land) and exploitation of network vulnerabilities.

Bitdefender configured Linux security features based on GravityZone. The offerings include anti-malware, EDR, Network Attack Defense, application control, PHASR, and container protection. These functions are provided in an integrated, single security framework.

Bitdefender applied PHASR(Proactive Hardening and Attack Surface Reduction) to the Linux environment. Through this, the company aims to strengthen a security framework that connects prevention, threat detection, and response.

PHASR is a preventive technology that analyzes the use of legitimate system tools and applications and restricts behaviors that are unnecessary for actual work but can be abused in attacks. Attacks that exploit legitimate programs and administrative tools are difficult to address by blocking malicious files alone, so separating the execution scope needed for work from unnecessary behavior and restricting the latter is presented as a response method. This approach is one pillar of the security process.

Bitdefender has expanded PHASR support to the Linux environment. The company is focusing on reducing the paths attackers can use themselves, while also detecting attacks after they occur.

After the preventive stage through PHASR, GravityZone EDR takes charge of threat detection and response. GravityZone EDR analyzes process and behavioral data on endpoints to detect suspicious activity and support the security team’s incident investigation and response. Network Attack Defense protects against attack paths that enter endpoints, including network-based attacks and exploits.

The scope of security data analysis is expanding beyond endpoints. Accordingly, GravityZone XDR links security data collected across multiple areas to support organization-wide threat visibility.

MDR(Managed Detection and Response) is a managed security service in which security specialists provide threat monitoring and response. In this way, the trend of strengthening both cross-domain data integration and operational response continues.

Bitdefender Korea plans to address the security needs of domestic companies, including Linux servers, cloud, and container environments, based on GravityZone EDR, XDR, MDR, and PHASR. A Bitdefender official said Linux has become a core part of enterprise infrastructure and that Linux environments are becoming major targets for attackers, adding that Linux security needs an integrated approach that goes beyond malware detection to include proactive attack surface reduction, threat detection, and rapid response to breaches.

Bitdefender Korea said it plans to strengthen support for protecting a wide range of IT environments for domestic companies, including Linux, based on its GravityZone EDR/XDR/MDR security lineup, and outlined a direction to expand its business in the domestic endpoint security market on that basis.

Source: TECHWORLD · Kim Gyeong-ju
Original: https://www.epnc.co.kr/news/articleView.html?idxno=407156

References

This article was produced with the help of an automated content generation algorithm.


Source: TECHWORLD

View original

This article was summarized and organized by BizCrush based on the original article from TECHWORLD. For exact quotations and full details, please refer to the original article.