Intelligent CISO Issue 34 | Page 6

Stratus Award recognises McAfee UCE for lowering cost and complexity of cybersecurity
T with a 2020 Stratus Award for McAfee MVISION
Kaspersky experts connect SolarWinds attack with Kazuar backdoor ireEye , Microsoft and
F
news

Stratus Award recognises McAfee UCE for lowering cost and complexity of cybersecurity

he Business Intelligence Group has awarded McAfee

T with a 2020 Stratus Award for McAfee MVISION

Unified Cloud Edge ( UCE ) in its annual business award programme under the ‘ Best Cloud Security Service ’ category . The organisation sought to identify the companies , products and people that are offering unique solutions that take advantage of cloud technologies , recognising McAfee for simplifying the adoption of Secure Access Service Edge ( SASE ) architecture with MVISION UCE .
“ We have seen the diffusion of data rise dramatically in 2020 with no sign of slowing down as workforces are highly dispersed and data is accessed across countless devices – a harmful reality undermining cybersecurity for many unprepared enterprises around the globe ,” said Shishir Singh , Chief Product Officer , McAfee . “ We are honoured to see MVISION UCE recognised and our commitment to tackling the everevolving threat landscape validated with this award .”
McAfee MVISION UCE converges industry best Cloud Access Security Broker ( CASB ), Cloud Secure Web Gateway ( SWG ) and Data Loss Prevention ( DLP ) with unified cloud management to deliver a direct to web and cloud architecture via the Secure Access Service Edge ( SASE ) framework .
MVISION UCE enables a work-from-anywhere workforce with maximum business agility while reducing the costs and complexity . Built with a cloud-first mindset , MVISION UCE includes an industry first – the integration of remote-browser isolation ( RBI ) technology – offering enterprises the ability to protect themselves against increasing and costly ransomware and phishing threats .

Kaspersky experts connect SolarWinds attack with Kazuar backdoor ireEye , Microsoft and

F

SolarWinds recently announced the discovery of a large , sophisticated supply chain attack that deployed a new , previously unknown malware called ‘ Sunburst ’ used against SolarWinds ’ Orion IT customers .
Kaspersky ’ s experts found various specific code similarities between Sunburst and known versions of Kazuar backdoors – the type of malware that provides remote access to a victim ’ s machine . The latest findings provide insights that can help the researchers move forward in the investigation of the attack .
While studying the Sunburst backdoor , Kaspersky ’ s experts discovered a number of features that overlap with a previously identified Kazuar , a backdoor written using the . NET framework , first reported by Palo Alto in 2017 and used in the cyberespionage attacks across the globe . Multiple similarities in code suggest a connection between Kazuar and Sunburst , albeit of undetermined nature .
The overlapped features between Sunburst and Kazuar include the victim UID generation algorithm , the sleeping algorithm and the extensive usage of the FNV-1a hash . According to the experts , these code fragments are not 100 % identical , suggesting Kazuar and Sunburst may be related , though the nature of this relation is still not entirely clear .
After the Sunburst malware was first deployed in February 2020 , Kazuar continued to evolve and later 2020 variants are even more similar in some respect to Sunburst .
While the similarities between Kazuar and Sunburst are notable , there could be a lot of reasons for their existence , including Sunburst being developed by the same group as Kazuar .
6 www . intelligentciso . com