Developers: | Garda Technology |
Date of the premiere of the system: | 2022/11/15 |
Technology: | Data Mining, Information Security Management (SIEM) |
The main articles are:
Garda Stalker is a flexible and convenient service for providing information about signs and indicators of malicious activity based on data from open and own sources of the Garda Technologies analytical center. The product was created to improve the effectiveness of cyber incident investigation and help teams of situational information security centers. It is used to identify and prevent malicious activity, enrich data on cyber threats with context, and assess the degree of malware of detected events.
2022: Launch of Garda Stalker cyber threat data enrichment service
On November 15, 2022, Garda Technologies announced the launch of the Garda Stalker cyber threat data enrichment service. The product is intended for SOC teams and information security incident investigators. Access to information about signs and indicators of malicious activity will be provided by subscription. The service data is updated regularly.
The constantly updated database of signature analysis is replenished thanks to its own network of traps, data on identified threats from other Garda Technology products, as well as from open sources processed and ranked by the analytical center.
The service provides users with information to reduce the number of additional false positives, recommends the frequency of updates for various categories of threats. Garda Stalker categorizes data on the degree of criticality of threats and allows you to see the context of the incident in retrospect. The information is presented both in the form of common data exchange formats and in a human-readable format, integrates with SIEM, Firewall, IRP (SOAR).
Enriched data on cyber threats were created for use in conjunction with intranet detection systems attacks , Garda Monitor"", protection against DDoS attacks "" Perimeter but the company is interested in making data on current cyber attacks available to everyone. Therefore, it was decided to open access to data as an independent service "Garda Stalker," said Garda Technologies Product Director, Pavel Kuznetsov.
|