Piolink: “CTEM and Web Application Firewalls Will Help Counter AI Hacking”
IT DAILY ·
✦ AI Summary
After recent financial-sector breaches, concerns about AI-based attacks have grown, and ARTEX, an autonomous penetration-testing tool using an LLM, was mentioned.
Piolink announced a layered defense system that combines CTEM, web application firewalls, and 24/7 security monitoring to counter AI-based cyberattacks.
CTEM is implemented through BlueHUNTER, while the Webfront-K web application firewall and 24/7 security monitoring handle attack response and detection and response.
Recent financial-sector breaches have heightened concerns about AI-based attacks. In the wake of a series of incidents, an autonomous penetration-testing tool called ARTEX, which uses an LLM, has drawn attention.
The attacker is believed to have automated the penetration attempt process through ARTEX. The attacker is also believed to have mounted simultaneous attacks on multiple systems within a limited time.
On the 8th, Piolink unveiled a response strategy aimed at countering AI-based cyberattacks. The company emphasized a layered defense system that combines CTEM, web application firewalls, and 24/7 security monitoring as a countermeasure against AI-based attacks.
The layered defense system consists of CTEM, a web application firewall, and 24/7 security monitoring. As a security management framework, CTEM identifies attack surfaces exposed to the outside, verifies attack feasibility, and determines response priorities.
Piolink's BlueHUNTER implements CTEM by combining attack surface management capabilities with AI-based penetration verification capabilities. BlueHUNTER discovers and analyzes internet-exposed assets, discovers and analyzes vulnerabilities, designs attack scenarios with AI, and verifies exploitability.
Defense at the web and API stages where actual attacks enter is handled by the Webfront-K web application firewall. ARTEX's web application and API attack methods access target services in the form of HTTP requests, and Piolink provides Webfront-K signatures for responding to ARTEX-related attacks. Webfront-K is implemented by blocking attack requests that match the provided information.
In an environment where AI-based attacks are repeated, security operations capabilities that analyze and respond to attack indicators are considered a key factor. Piolink collects and analyzes security equipment logs and events through its 24/7 security operations center, and provides cyber threat detection and response services.
Piolink CEO Cho Young-cheol said that, as AI accelerates the speed of vulnerability discovery and penetration, the need for a system that continuously monitors and responds to threats is growing. He added that Piolink has AI-based CTEM, a web application firewall equipped with intelligent web and API security functions, and specialized security monitoring services as means to address this, and said the company plans to support customers in responding to cyberthreats and ensuring business continuity.
Source: IT DAILY · Kim Ho-jun
Original: https://www.itdaily.kr/news/articleView.html?idxno=242093
References
This article was produced with the help of an automated content generation algorithm.
Source: IT DAILY
View originalThis article was summarized and organized by BizCrush based on the original article from IT DAILY. For exact quotations and full details, please refer to the original article.