TopSpin Security introduced Tuesday enterprise internet of things (IoT) security solution based on deception technology, now available in the latest version of the DECOYnet intelligent deception solution.
Deception offers a unique solution to protecting IoT environments. One of the main problems with IoT security is devices’ minimal computing resources, which make the use of antivirus, encryption and other forms of protection within IoTs extremely challenging.
IoT security poses a growing concern for organizations worldwide. Approximately 3.9 billion connected things were in use in 2014. Gartner expects this figure to rise to at least 25 billion by 2020.
TopSpin’s approach overcomes the limitations for IoT security. The company’s unique traffic and security analysis engine enables it to discover various types of IoT systems in the enterprise. Leveraging the ability to create the industry’s most diverse set of deception traps, TopSpin can emulate enterprises’ unique IoT systems for attackers to find, resulting in a tripped alarm and alerts to IT.
DECOYnet offers comprehensive security for the enterprise IoT environment powered by deception technology. Supported systems include printers, cameras/DVRs, TVs, access control systems to doors/gates, employee attendance systems, VoIP devices, industrial control systems, central cooling/heating systems, routers/switches and more.
Other deception solutions have a limited set of applications they can support, for example only SCADA-related such as water pumps, sensors, and antennas systems. DECOYnet offers flexible solution for creating the broadest set of traps and decoys most relevant to individual organizations’ IoT security needs.
DECOYnet is a deception solution that offers a built-in traffic and security analysis engine – enabling highly accurate placement of mini-traps and decoys, an additional security layer through analysis and threat detection, and adaptive and flexible deception that evolves with changing network conditions.
With DECOYnet, TopSpin continues to perfect its asset profiling capabilities, uniquely mapping the network by every asset and subnet to build a comprehensive deception layer for each individual network. By constantly breathing the network traffic, DECOYnet actively adapts to dynamic network conditions, including new assets and IoT devices introduced, so the deception layer is always optimized.
DECOYnet enhances organizations’ threat intelligence by combining data from decoys, traps, and internal and egress traffic monitors; and correlating it into single, actionable incidents. It also interacts with third-party security tools, enriching SIEM/SOC systems to help organizations build a comprehensive threat map.
Constantly breathing traffic to detect suspicious activities and assess threats before they become critical, the solution allows security teams to stay on top of complex security issues.
With DECOYnet, TopSpin continues to perfect its asset profiling capabilities, uniquely mapping the network by every asset and subnet to build a comprehensive deception layer for each individual network. By constantly breathing the network traffic, DECOYnet actively adapts to dynamic network conditions, including new assets introduced, so the deception layer is always optimized.
The solution also offers new, active deception components, including beacon-traps – mechanisms built into documents and emails which send a signal when the file is opened, and data-traps (such as passwords and URLs) that once tapped are immediately traced by the traffic analysis engine. DECOYnet’s new mini-traps and decoy types add to the diversity of deception it offers. As proven in the recent research, diversity of traps and decoys greatly adds to deception’s effectiveness.
DECOYnet’s enhanced UI provides clear graphic representation to simplify the deployment of advanced deception-based security over tens of thousands of assets. Using intuitive configuration, administrators can set up hundreds of decoys and mini-traps within minutes. Then, using DECOYnet’s detailed deception coverage, they can see exactly how the deception layer is spread out across the network.
DECOYnet tracks and records all network communication channels according to their functionality class – updaters, common tools, shadow IT, SSL channels and home-grown apps – to provide rich, detailed forensics data over its management console.
“Today we are becoming more dependent on IoT devices, including in the enterprise, but IoT security measures are lagging behind, creating a gaping hole in security,” said Rami Mizrahi, TopSpin’s vice president of R&D. “TopSpin has the unique advantage of knowing exactly what is on the network and changing at all times, along with our ability to create the industry’s most diverse set of traps to emulate many enterprise scenarios. We are laser focused on customer needs – we don’t just say ‘We secure IoT,’ but rather focus on the devices that our customers rely on to perform their daily tasks.”