惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Privacy & Cybersecurity Law Blog
V
V2EX
月光博客
月光博客
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
The Register - Security
The Register - Security
MongoDB | Blog
MongoDB | Blog
P
Privacy International News Feed
The Last Watchdog
The Last Watchdog
Security Archives - TechRepublic
Security Archives - TechRepublic
美团技术团队
Stack Overflow Blog
Stack Overflow Blog
博客园 - 司徒正美
博客园 - 三生石上(FineUI控件)
V
Visual Studio Blog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
K
Kaspersky official blog
S
Secure Thoughts
T
Tenable Blog
Security Latest
Security Latest
The Cloudflare Blog
S
Security @ Cisco Blogs
H
Heimdal Security Blog
aimingoo的专栏
aimingoo的专栏
TaoSecurity Blog
TaoSecurity Blog
Blog — PlanetScale
Blog — PlanetScale
Microsoft Security Blog
Microsoft Security Blog
Schneier on Security
Schneier on Security
Webroot Blog
Webroot Blog
G
Google Developers Blog
www.infosecurity-magazine.com
www.infosecurity-magazine.com
Scott Helme
Scott Helme
IT之家
IT之家
Latest news
Latest news
The Hacker News
The Hacker News
C
Check Point Blog
T
The Exploit Database - CXSecurity.com
H
Hackread – Cybersecurity News, Data Breaches, AI and More
腾讯CDC
C
CERT Recently Published Vulnerability Notes
NISL@THU
NISL@THU
N
News | PayPal Newsroom
Forbes - Security
Forbes - Security
P
Palo Alto Networks Blog
S
Security Affairs
S
Securelist
Google Online Security Blog
Google Online Security Blog
WordPress大学
WordPress大学
Last Week in AI
Last Week in AI
C
Cybersecurity and Infrastructure Security Agency CISA
A
About on SuperTechFans

Network and Security Virtualization

Lateral Security for the Private Cloud – Leveraging the Power of Seamless Integration Tackling the 5Cs of Enterprise Security with the Advent of AI – Spotlight on Cloud and Automation Efficiency Cybersecurity, Cloud and AI: Top-of-mind themes heading into 2024 Optimizing NSX Performance Based on Workload and ROI Generative AI Meets Cybersecurity: Use Cases for Lateral Security and the SOC Migration Coordinator – Selecting the migration mode VPC: The Secure Bridge Between Application and Infrastructure Teams NSX V2T Layer 2 Bridging with NSX-T Projects VMware NSX Bare Metal Edge Performance
Next-Level Lateral Security for Your Private Cloud
Umesh Mahajan · 2023-12-22 · via Network and Security Virtualization

Cyber attacks are growing in frequency and complexity. And at an average cost of $4.35M1, data breaches are no joke. With Generative AI, this threat will grow even further—equipping even an unsophisticated attacker with the means to become a sophisticated hacker.

Reality is, you can’t get away with just protecting your perimeter anymore. Today, the most common type of attack vectors—lateral movement, vulnerability exploits and zero day attacks — are all matters of lateral security. And with the majority of your traffic going east-west, protecting the inside of your network is beyond critical.

Traditional security solutions aren’t enough when it comes to lateral security: implemented with multiple appliances, they lead to traffic hairpinning, create bottlenecks, are cost-prohibitive, and only protect a subset of workloads. To make matters worse, they’re blind to VM-to-VM traffic, since traditional methods of using network taps only see traffic between physical hosts. And you can’t protect what you can’t see. 

To protect the inside of your private cloud, you need a comprehensive lateral security solution that gives you complete visibility and security.

VMware’s Lateral Security answers that call; it is distributed, built into the hypervisor, and scales seamlessly to meet your evolving needs. We offer a distributed L7 stateful firewall with advanced threat prevention for zero-trust and compliance initiatives and security intelligence for comprehensive visibility that scales to meet your lateral security needs. Each component of our solution stack works with each other across L2-L7 to simplify and enhance threat detection and prevention. Say goodbye to stitching too many products and trying to make them work together; now you can achieve true operational simplicity with a single, integrated security stack. And—you can manage it all from a centralized point of management. 


The foundation of our solution is segmentation, which is easy to operationalize with tools such as security intelligence that offer AI-driven rule recommendations or with API’s using intent-based policies defined using application tags, making segmentation a powerful tool to combat lateral movement of threats. 

But micro-segmentation alone isn’t enough to protect from advanced threats. Attackers often use social engineering techniques, such as phishing, to gain initial access and move laterally once compromised. To address this, we provide sophisticated advanced threat detection and prevention tools to protect from malicious threat actors. Our network sandbox looks deep inside every artifact and uses advanced AI/ML to detect suspicious files and prevent them from executing. Distributed IDS/IPS will inspect every flow on each host to prevent exploitation of known vulnerabilities. Finally, with Network Traffic Analytics and Network Detection and Response (NTA/NDR) capabilities, we ensure every conversation is inspected to detect suspicious behavior. Comprehensively, these advanced threat prevention capabilities offered by VMware Lateral security protect your private cloud from both known and unknown threats such as vulnerability exploits and zero day attacks. See it in action:

Many of the other industry solutions out there for securing east – west traffic rely on software agents to deliver lateral security. These solutions are high in investment and low in reward. Agent based solutions are hard to operationalize, rely on the host operating system security capabilities such as ip tables, and compete with the workload for CPU resources. These solutions are predominantly limited to segmentation and can’t provide you the depth of features you need to protect from sophisticated threats such as ransomware attacks. VMware Lateral Security is the only scalable software defined distributed security solution that is built into the hypervisor and can detect and protect from advanced threats, offering comprehensive protection for your private cloud. 

With the growing prevalence of Generative AI and large language models (LLMs), it begs the question: is AI friend or foe for security? Well, it depends on how you use it. We sought out a way to use Gen AI to make our solutions better and faster, making your security stronger and easier to deploy. 

We recently introduced Project Cypress, which integrates generative AI into our lateral security solution, which enables you to increase the productivity of your security teams by acting as a co-pilot when investigating threats. With Project Cypress, we are using Gen AI to simplify threat prioritization and accelerate remediation to speed up your time to respond. 

Check out how we’re taking VMware Lateral Security solution to the next level with Gen AI:

We are providing a full stack distributed lateral security solution to protect your environments with zero appliances, zero tickets, and zero taps—offering the best zero trust security solution for your virtualized environment and VCF powered private cloud.

Learn more about how VMware can enhance your organization’s security here

Footnotes

(1) 2023 IBM cost of Data Breach Report