Jon Peppler, Menlo Security Channels Menlo Securit Isolation Platform Isolation: The Internet and Email are Evil and The Alerts Have Made Us Numb Jon Peppler, Menlo Security Channels
The Risks Facing Your Enterprise Phishing Malware 46% of cyberattacks and resulting data breaches started with a spear phishing email of the Top 1 Million websites contain risky content or connect to 3rd party services Ransomware Credential Theft Data Breaches 93% Of the 1 million sites, 355,804 were either running vulnerable software or accessing background domains running vulnerable software; 166,853 fell into known-bad categories, while 31,938 experienced a recent security incident. 63% 89% of phishing emails delivered ransomware (Q4 2016) of data breaches used weak, default or stolen passwords of data breaches were motivated financially or by espionage © 2017 Menlo Security, Inc. Sources: Verizon; Menlo Security; PhishMe
Reactive, layered defenses stop Anti-Spam Sandboxing Access Security Next Generation Firewall Site Categorization Anti-Phishing Content Analysis Anti-Fraud DNS Security Web Application Firewall Next Generation Antivirus DDoS Prevention Reactive, layered defenses stop of threats, generate thousands of alerts daily
And….. still gets through. Anti-Spam Sandboxing Access Security Next Generation Firewall Site Categorization Anti-Phishing Content Analysis Anti-Fraud DNS Security Web Application Firewall Next Generation Antivirus DDoS Prevention And….. still gets through.
Today’s Advanced Protection Can't Block Malware in Active Content Anti-Spam Sandboxing Access Security Next Generation Firewall Site Categorization Anti-Phishing Content Analysis Anti-Fraud DNS Security Web Application Firewall Next Generation Antivirus DDoS Prevention BEACONS ADS TRACKERS ANALYTICS 3RD PARTY AFFILIATES CDNs
Phishing sites leverage popular hosting services Attackers Use Trusted Sites for Phishing Anti-Spam Sandboxing Access Security Next Generation Firewall Site Categorization Anti-Phishing Content Analysis Anti-Fraud DNS Security Web Application Firewall Next Generation Antivirus DDoS Prevention Business and Economy 11679 Phishing sites leverage popular hosting services
Malicious sites can be registered in trusted category Site Categories Can and Do Change Category over 90 Day Period Anti-Spam Sandboxing Access Security Next Generation Firewall Site Categorization Anti-Phishing Content Analysis Anti-Fraud DNS Security Web Application Firewall Next Generation Antivirus DDoS Prevention News and Media Malware Sites 9/26 10/01 10/06 10/11 10/16 10/21 Malicious sites can be registered in trusted category
My Browser Downloaded What?
User experience preserved, transparent technology.
Menlo Security Isolation Platform Policy Configuration & Reporting ACR ACR PHISHING ISOLATION WEB ISOLATION DOCUMENT ISOLATION Integration Menlo Security Isolation Platform Security Infrastructure Global Enterprise Cloud
The Menlo Approach cloud
A Seamless, Preserved Experience
Isolation Engine & ACR web Menlo Security Isolation Platform INFECTED WEBSITES Menlo Security Isolation Platform WEAPONIZED DOCS FETCH EXECUTE FETCH EXECUTE MALICIOUS EMAIL Dispose after every session PHISHING Corporate and Personal Devices
Web Isolation Menlo Security Isolation Platform web <body> <script> DOM Tree <body> DOM Tree Rendered Output (Flash) <video> MP4 ADAPTIVE CLIENTLESS RENDERING HTTP REQUESTS Rendered Output news.com MP4 UNSAFE HTML, JAVASCRIPT AND FLASH Isolated Browser RENDERING UPDATES, PROPRIETARY ENCODING Endpoint Browser
Menlo Security Isolation Platform Phishing Isolation web INFECTED WEBSITES WEAPONIZED DOCUMENTS 1 Eliminates drive-by exploits by isolating all email links Menlo Security Isolation Platform FETCH EXECUTE FETCH EXECUTE MS EXCHANGE web PHISHING MALICIOIUS EMAIL OFFICE 365 User 2 By opening all email links in safe isolation sessions, MSIP protects every user against targeted spear-phishing and drive-by exploits, thus eliminating “patient-zero” infections 3 Enables teachable moments
Document Isolation Menlo Security Isolation Platform Web Docs & Email Attachments Native User Experience web RENDERING INFO ONLY, 100% MALWARE FREE Documents rendered in Disposable Virtual Containers ADAPTIVE CLIENTLESS RENDERING (ACR) Documents converted into HTML5 with no active content Optional download of safe (view-only) or original document Any Device Any OS Any browser
The Menlo Approach cloud Adaptive Clientless Rendering
Summary Safety through Isolation 100% safety via isolation Seamless end-user experience Cloud simplicity and scale