iTWire - Sysdig blocks cryptojacking in the cloud with 99% precision using machine learning

2022-08-13 01:31:02 By : Ms. Hannah He

COMPANY NEWS: Sysdig, the unified container and cloud security leader, today announced machine learning-powered cloud detection and response (CDR) to combat cryptojacking. The company’s threat engine and detection algorithms block cryptojacking in the cloud with 99% precision.

Cryptojacking is the unauthorized use of someone else's compute resources to mine cryptocurrency.

According to the Google Cloud Threat Horizons Report, 86% of compromised Google Cloud instances were used for cryptocurrency mining.

Cryptojackers use low-and-slow attack techniques to mask what they are doing so those impacted do not realise until they receive their cloud bill.

The longer cryptojacking goes undetected, the greater the financial impact. While the average increase in a monthly bill varies by report, it is not uncommon for cryptojackers to run up a US$100,000 - US$500,000 ($140,000 - $540,000) bill in a single month. Time is of the essence.

While the cloud and on-premises security challenges seem similar, the attack patterns and detection techniques are fundamentally different and require different approaches. Traditional tools lack the visibility into container environments and breadth of coverage needed to identify threats and anomalies at runtime. A multi-layered approach that includes curated rules and machine learning is better suited to address the complex threats in cloud environments. To detect threats like cryptojacking, teams need machine learning algorithms that are trained and tuned to recognize cryptocurrency mining patterns immediately to avoid unexpected cloud fees, which can have a significant financial impact

Sysdig machine learning-powered cloud detection and response Block cryptominers with 99% precision: Sysdig Secure machine learning is trained to automatically detect cryptominers. Even as new cryptojackers come into play, highly precise and continually evolving algorithms keep the model up-to-date and drastically reduce false positives.

Prevent unexpected costs: Early detection is the only way to avoid hefty cryptojacking bills and reputation damage due to an attack. Sysdig is able to detect behaviour patterns even if the cryptominer slowly ramps up use of cloud resources.

Strengthen security with a multi-layered approach to cloud detection and response: Effective protection in today’s threat landscape requires multiple protection layers. Sysdig threat detection uses machine learning to complement a rules-based approach based on Falco. Easily customisable out-of-the-box policies curated by the Sysdig Threat Research Team maximise coverage. Adding defence techniques, such as profiling, comprehensive indicators of compromise (IOCs), and Drift Control further strengthen security.

“Machine learning is not a silver bullet for detecting threats. Many vendors throw around ‘ML’ quite loosely for solutions that are not true machine learning,” said Sysdig vice president of engineering Omer Azaria.

“Cryptojacking is a specific use case where machine learning provides effective detection. Sysdig developed an ML algorithm that is specifically tuned to detect cryptojacking before your cloud bill skyrockets.”

Availability Sysdig Secure customers have access to the machine learning-powered threat detection now and for new customers, it is included in Sysdig Secure at no additional cost.

About Sysdig Sysdig is driving the standard for cloud and container security. The company pioneered cloud-native runtime threat detection and response by creating Falco and Sysdig as open source standards and key building blocks of the Sysdig platform. With the platform, teams can find and prioritise software vulnerabilities, detect and respond to threats, and manage cloud configurations, permissions, and compliance. From containers and Kubernetes to cloud services, teams get a single view of risk from source to run, with no blind spots, no guesswork, no black boxes. The largest and most innovative companies around the world rely on Sysdig.

PROMOTE YOUR WEBINAR ON ITWIRE It's all about Webinars. Marketing budgets are now focused on Webinars combined with Lead Generation. If you wish to promote a Webinar we recommend at least a 3 to 4 week campaign prior to your event. The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://itwire.com/itwire-update.html and Promotional News & Editorial. Plus a video interview of the key speaker on iTWire TV https://www.youtube.com/c/iTWireTV/videos which will be used in Promotional Posts on the iTWire Home Page. Now we are coming out of Lockdown iTWire will be focussed to assisting with your webinars and campaigns and assistance via part payments and extended terms, a Webinar Business Booster Pack and other supportive programs. We can also create your adverts and written content plus coordinate your video interview. We look forward to discussing your campaign goals with you. Please click the button below. MORE INFO HERE!

Be sad to see the little fella go. He’s been so awesome. I reckon there’s at least 10,000 other people[…]

oh my goodness---we hope you will consider updating the photo used for this to reflect infant safe sleep. A loose[…]

A 60GB 5G plan would suit me nicely. Just because you have 5G doesn't mean you use more data, it[…]

No VoLTE or VoWiFi unfortunately. Optus resellers have cheaper offers for more data, and where I live it has more[…]

Another shill scaremongering in a way calculated to drum up business for themselves.ssh is not insecure, but if you connect[…]