Core Security, maker of penetration testers used by “red teams” to identify security vulnerabilities, today announced beta availability of a fully automated testing solution with the ability to continuously test and measure the overall security standing of an enterprise.
Focus on data, not hardware
The company claims that the new product, Dubbed CORE INSIGHT Enterprise, represents a whole new class of security testing and measurement solutions. It differs from conventional solutions in that it focuses on data, not hardware. Rather than identifying which servers need to be protected, users begin by defining their sensitive assets (databases housing sensitive information, data formats such as social security numbers, etc.), on a global basis if necessary. CORE INSIGHT then searches the infrastructure for exploitable pathways to that data in real time.
According to CORE, moving the focus from protecting servers to protecting data may also lead to more cost-effective security efforts which more directly address business risks.
Confirmed exploitability
CORE INSIGHT’s approach also differs from conventional approaches in that it actually penetrates vulnerabilities, rather than operating on the basis of simulations or by aggregating historic log data. Demonstrating actual exposures eliminates the potential for false positives and allows organizations to proactively identify available paths to protected information spanning multiple layers of IT infrastructure.
The INSIGHT Enterprise Beta Program is now available to select organizations interested in implementing a prototype version of the security testing and measurement solution in appliance form.
More from Michael Stevens
- PCI Compliance Is No Slam Dunk
- Security Concerns Primary Roadblock to Corporate Adoption of Web 2.0
- Study: 8 of 10 Web Apps Would Fail a PCI Audit
- New U.S. Cybersecurity Strategy Revealed
- Cyber Security Risks Report Contains Few Surprises
- Former MIS Head Indicted for Cybercrime
- U.S. and Europe Lag Asia in IT Security Spending Outlook, Maturity
- SMBs Embrace Social Media and Pay the Price
Latest News
- Russia-Linked APT29 Uses New Malware in Embassy Attacks
- Meta Awards $27,000 Bounty for 2FA Bypass Vulnerability
- The Effect of Cybersecurity Layoffs on Cybersecurity Recruitment
- Critical Vulnerability Impacts Over 120 Lexmark Printers
- BIND Updates Patch High-Severity, Remotely Exploitable DoS Flaws
- Industry Reactions to Hive Ransomware Takedown: Feedback Friday
- Microsoft Urges Customers to Patch Exchange Servers
- Iranian APT Leaks Data From Saudi Arabia Government Under New Persona
