회사소개

제품

안내

고객지원

Company

Product

Information

Support

Thông tin về công ty

Sản phẩm

Thông tin

Hỗ trợ chung

Notice

Title Date
NPCore participated in 'ISEC 2017' ... 'ZombieZERO EDR for Server' was debuted and demonstrated
[Picture : NPCore participated in 'ISEC 2017' held in COEX from Sep. 5th ~ 6th to show 'ZombieZERO EDR for Server', new product for server security. NPCore's sales manager Lee, Gun-Woong was watching the demo video and explaining new products to VIPs composed of gov. officials.]
Recently in Korea, there was the biggest security incident that the servers of Korean hosting company were attacked by the variant Ransomware. So the sense of crisis for Ransomware has raised and security measures and security awareness of gov. agencies and enterprises have been further strengthened. As a result, NPCore(CEO Han, S.C.) first introduced its new server security product, 'ZombieZERO EDR for Server' at the '11th International Security Conference (ISEC 2017)' held on Sep. 5 ~ 6. The 11th annual ISEC is the largest cyber security conference event in Korea. In this event, NPCore showed and demonstrated 'ZombieZERO EDR for Server', which is the Whitelist-based APT / Ransomware response solution installed on the server and is aimed at the security manager of gov. agencies and enterprise along with Nicstech, Secucen and CoreInfra. NPCore is specialized in defense solution against unknown APT and Ransomware and provides two-level defense on network and endpoint based on behavior. Existing security solutions (signature-based Anti-virus) cannot respond against APT (targeting malware) and new / variant Ransomware such as WannaCry and Petya, and traditional Sandbox technology is vulnerable to malware bypassing virtual machine, new and variant Ransomware and attack through encryption section (SSL communication). To overcome these limitations, the importance of EDR (End Point Detection & Response) technology has been highlighted. In line with this, NPCore released 3 security products for endpoints (▲ ZombieZERO EDR for APT- Endpoint Security against APT, ▲ ZombieZERO EDR for Ransomware- Endpoint Security against Ransomware, ▲ ZombieZERO SECaaS (Security as a Service)- Cloud type Security) And NPCore recently released 'ZombieZERO EDR for Server' due to the biggest recent server's security incident and built it up in the OO Broadcasting Station. ZombieZERO EDR for Server is installed on the Windows server and blocks the execution of new/variant malwares in real time through the whitelist-based execution holding function. And it analyzes/detects known and unknown malwares through the central analyzer (ZombieZERO Inspector) to make the system execute only secure file. [Operation sequence of 'Zombie Zero EDR for Server'] 1) Server access → Blocking execution of processes not registered on the whitelist. 2) EXE file analysis :  Malicious file is blacklisted and isolated. / Normal file is added to Whitelist. 3) If the analysis result proved to be normal, the file is executed normally and you can check it. / If malicious file, the EXE file is blocked by EDR.
[Picture: NPCore's director Kim, Mu-Jeong was giving a speech on 'APT and Ransomware Defense System centered on endpoint utilizing advantage of Sandbox' at conference room A of COEX on Sep. 5.]
On the first day of the conference, NPCore's director Kim, Mu-Jeong gave a speech on 'APT and Ransomware Defense System centered on endpoint utilizing advantage of Sandbox'. Mr. Kim proposed the direction of Ransomware blocking technology and proceeded real time Q & A via Facebook. After the speech, many people came to the exhibition booth and asked many additional questions. WannaCry Ransomware blocking demo video and demonstration were also conducted at the booth and led the response. NPCore, CEO Han, Seung-chul said, "Many people from various companies including gov. agencies, military, media companies, and SI companies consulted and asked for a follow-up visit and proposal. So we were able to confirm positive responses to EDR products and achieve business results more than expected."
2017.09.10

NPCore participated in the 'ISEC 2016' and demonstrated the APT defense solution

Author
admin
Date
2016-09-02 00:00
Views
291
NPCore participated in the 'ISEC 2016' and demonstrated the APT defense solution
NPCore participated in 'The 10th ISEC 2016' (Information Security Conference) held in COEX on Aug. 30  and unveiled the APT and ransomware 2 level defense solution 'ZombieZERO' and demonstrated the solution.

As the crisis about cyber attack is increasing due to Interpark's personal data exfiltration and growth of ransomware damage, security consciousness of public agency and enterprise is strengthened. So many industry insiders attended NPCore's latest solution demonstration.

20160902000964_0.jpg



Han, NPCore's CEO said that if the existing Anti-Virus SW based on detection/analysis/treatment of pattern is attacked by new malware, posterior measures are possible after Zero-day(demaged interval), it's the limitaion of Anti-Virus SW, while ZombieZERO can detect/analyze/treat new malware's attacks in real time based on pattern and behavior.

APT two level defense solution, ZombieZERO is installed on I/O driver level of a high technical difficulty, so prevents the conflict with external programs, and doesn't affect to program operation, and ensures system stability. For competitors, they run the solutions by use separately, so customer should purchase each of them, but 'Zombie ZERO' operates with only one equipment, so it has a competitiveness in terms of management efficiency and cost saving.
Especially, Zombie ZERO has price competitiveness of 30% in comparison with foreign products and 15% roughly in comparison with domestic products, so the demand is increasing trend. It has also competitivenesses such as cutomizing and A/S, CC certification of NIS, Korean support compared to foreign products, so it's expected that Zombie ZERO's market share wil be expanded.

On August 31, the last day of the conference, NPCore's officer, Kwon delivered a speech about 'Ransomware response and methods through behavior-based detection'. There was explanation about the hottest issue, ransomware's block function and real time Q&A using Facebook. After the speech, he showed ransomware block video and demonstration at the exhibition booth, and led to the hot reaction from visitors.

Besides ZombieZERO, at the booth, NPCore introduced three newly launched solutions such as ▲ 'ZombieZERO Virtual Appliance' to implement ZombieZERO Inspector's function by equipping with only SW version  ▲ 'TERRACE MAIL Security' - Integrated mail security product for proactive response to email APT attacks  ▲ 'RansomZERO' combining 3 defense techlologies such as behavior-based detection/defense technology and real time backup technology. They led the attention of visitors.

Meanwhile, during '10th International Cyber Security Conference', more than 300 people from government agencies and companies visited NPCore's booth, and NPCore concretely consulted more than 40 companies including more than 30 government agencies about ZombieZERO, and scored big business performance.