WALTHAM, Mass.—July 29, 2014—Bit9® + Carbon Black®, the leader in endpoint threat prevention, detection and response, today announced a new, unified Threat Intelligence Cloud service that combines Attack Classification data from leading third-party providers with the Carbon Black Software Reputation Service (SRS) and Advanced Threat Indicators (ATI) to help enterprises avoid the potentially devastating effects of advanced threats and targeted attacks.
The Threat Intelligence Cloud is an integral component of the Bit9 + Carbon Black endpoint security solution, which features “always-on” and continuously-recording sensors that maintain the relationships of every file execution, file modification, registry modification, network connection and executed binary. The Bit9 Security Platform and Carbon Black automatically correlate their data with threat intelligence from the Threat Intelligence Cloud to detect advanced attacks without relying on signatures, prioritize response in seconds, and prevent advanced attacks using proactive and customizable techniques.
The three key elements of the Threat Intelligence Cloud service are:
o abuse.ch: Tracks command-and-control servers for Zeus, SpyEye and Palevo malware while combining domain name blocklists.
o iSIGHT Partners: Comprehensive cyber intelligence feed connecting security technology and operations to the business.
o Malware Domain List: Tracks domains used by malware
o National Vulnerability Database: Flags executed applications vulnerable to one or more Common Vulnerabilities and Exposures (CVE).
o ThreatConnect: A threat intelligence platform that bridges incident response, defense, and threat analysis, and is the only platform that allows organizations to collaborate internally and with their partners and industry leaders to aggregate, analyze, and act upon relevant threat data.
o Tor: A list of active Tor Node IP addresses.
“Bit9 + Carbon Black customers are able to take full advantage of the most comprehensive threat intelligence available on the market,” said Brian Hazzard, vice president of product management for Bit9 + Carbon Black. “With enterprises already in a continuous state of compromise, they need immediate context about the files, network connections, and behaviors they’re investigating to proactively prevent, detect and respond to advanced attacks infiltrating their organization. That is exactly the type of actionable intelligence our Threat Intelligence Cloud delivers.”
About Bit9 + Carbon Black
Bit9 + Carbon Black offers the most complete solution against the advanced threats that target your organization’s endpoints and servers. This makes it easier for you to see—and immediately stop—those threats.
Carbon Black’s lightweight endpoint sensor, which can be rapidly deployed with no configuration to enable detection and response in seconds, combined with Bit9’s industry-leading prevention technology, delivers four key benefits:
Thousands of organizations worldwide—from 25 Fortune 100 companies to small businesses—use Bit9 + Carbon Black to increase security, reduce operational costs and improve compliance. Leading managed security service providers (MSSP) and incident response (IR) companies have made Bit9 + Carbon Black a core component of their detection and response services. With Bit9 + Carbon Black, you can arm your endpoints against advanced threats. For more information, visit www.bit9.com.
Bit9 is a registered trademark of Bit9, Inc. All other company or product names may be the trademarks of their respective owners.