´ÓRSAC2022´´ÐÂɳºÐ¿´ÔÆÔÉú°²È«ÈüµÀµÄ·¢Õ¹
°ä²¼¹¦·ò 2022-06-02Ò»ÄêÒ»¶ÈµÄRSA´ó»á
½«ÓÚ½ñÄê6ÔÂ6ÈÕÕýʽ½øÐÐ
ÆäÖУ¬´´ÐÂɳºÐ´óÈü
(Innovation Sandbox)
×÷Ϊ¡°°²È«È¦µÄ°Â˹¿¨¡±
ÿÄ걸ÊÜÖõÄ¿£¬
³ÉΪȫÇòÍøÂ簲ȫÐÐÒµ
¼¼Êõ´´ÐºÍͶ×ʵķçÏò±ê

Ŀǰ£¬´´ÐÂɳºÐ´óÈüµÄ¾öÈüÈëΧÃûµ¥ÒѾ³ö¯£¬±ðÀëÊÇAraali Networks¡¢BastionZero¡¢Cado Security¡¢Cycode¡¢Dasera¡¢Lightspin¡¢Neosec¡¢Sevco Security¡¢Talon Cyber SecurityºÍTorqÊ®¼ÒÓÅÁ¼²Ý´´ÆóÒµ£¬ÖØÒªÉæ¼°ÔÆÔÉú°²È«¡¢½ÓÈ밲ȫ¡¢Èí¼þ¹©¸øÁ´°²È«¡¢Êý¾ÝÖÎÀí¡¢API°²È«ºÍ°²È«ÔËÓª¶à¸öÈüµÀ¡£¡£Õâ10¼Ò²Ý´´¹«Ë¾½«ÓÚ6ÔÂ6ÈÕ£¬ÏòÈ«Çò¹ÛÖÚչʾËûÃÇÔÚÍøÂ簲ȫÐÐÒµÉϵļ¼Êõ´´Ð£¬½ÇÖð×îºóÓ®¼Ò£¬Ò²½«´øÀ´ÐÂÒ»ÂֵĻðÈÈÈüµÀ¡£¡£
Å̵㴴ÐÂɳºÐÖ®ÔÆÔÉú°²È«ÈüµÀÆóÒµ
×ÜÀÀ½ñÄêÈëΧ¾öÈüµÄÊ®¼Ò²Ý´´ÆóÒµ£¬ÓÐËļҲÎÈüÆóҵѡÔñÁËÔÆÔÉú°²È«Ï¸·ÖÁìÓò£¬ÕâÔÚÀú½ìRSAC´´ÐÂɳºÐ´óÈüÖбÈÁ¦ÉÙ¼û£¬¿É¼ûÔÆÔÉú°²È«ÈüµÀµÄÈȶÈ×ã¹»¸ßÕÇ¡£¡£ÏÂÃæÎÒÃǾÍÀ´Å̵㱾´ÎÈëΧ¾öÈüµÄ4¸öÔÆÔÉú°²È«·½Ïò´´ÐÂÆóÒµ¡£¡£
1¡¢Araali Networks£º£º£ºÔÆÔÉú»·¾³ÏµÄÍþв·ÀÓù

Araali NetworksÌṩÁËÒ»¿îÃæÏòÔÆÔÉú»·¾³µÄÍþв¼ì²â΢·çÏÕ»º½âµÄ¼¼Êõ¿ò¼Ü£¬Äܹ»¼ø±ðÀûÓ÷ì϶¡¢½Ó¼ûȨÏÞ¡¢ÔÆ»·¾³ÅäÖõȶàά¶È·çÏÕ£¬²¢Ìṩµ¯ÐÔ²¹¶¡¶Ô·çÏÕ½øÐлº½âºÍÐÞ¸´£¬´Ó¶øÓÐЧ·ÀÓù¶ñÒâ´úÂë¡¢ÀÕË÷²¡¶¾¡¢Ä¾ÂíºóÃŵȼ¿Á©¶ÔÔÆÔÉú»·¾³µÄÍþв¡£¡£Araali NetworksµÄÖØÒª¼¼ÊõÌØÉ«ÊÇʹÓÃÁËeBPF¼¼Êõ¶Ôk8sÔËÐÐʱµÄ½Ó¼û½ÚÖÆÕ½Êõ½øÐо«ÃÜÖÎÀí£¬½µµÍ×ÊÔ´Õ¼Óã¬ÌáÉýʵʱ´ëÖÃЧÄÜ¡£¡£
2¡¢Cado Security£º£º£ºÔÆÔÉú»·¾³ÏµÄÊÂÎñȡ֤ºÍÏìÓ¦

Cado Security ÌṩÁËÒ»¿î½Ð×öCado ResponseµÄÔÆ»·¾³µ÷²éȡ֤ƽ̨²úÆ·£¬Ê¹°²È«ÍŶӿÉÄÜÒÔÔÆµÄËÙ¶ÈÏìÓ¦Íþв¡£¡£Í¨¹ýÔÚÔÆºÍÈÝÆ÷»·¾³ÖÐ×Ô¶¯Ö´ÐÐÊý¾Ý²¶»ñºÍ´¦Öã¬Cado ResponseÄܹ»Ìṩȡ֤¼¶´ËÍâ¾ßÌåÐÅÏ¢ºÍ²¼¾°ÐÅÏ¢£¬´Ó¶ø½â³ýÔÆÖÐÍøÂ簲ȫÊÂÎñ·ÖÎöµÄ¸´ÔÓÐÔ¡£¡£Cado ResponseÊÇÎÞ´úÀíģʽ£¬Ö§³ÖÔÆÔÉú»·¾³×Ô¶¯»¯²¿Êð£¬Ö§³Öͨ¹ý¿ç¶àÔÆ»·¾³£¨Ô̺¬Ðé¹¹»ú¡¢Kubernetes»·¾³£©¡¢ÈÝÆ÷»·¾³¡¢ÎÞ·þÎñÆ÷»·¾³ºÍ±¾µØÏµÍ³»·¾³½øÐÐÊÂÎñÏìÓ¦ºÍ×Ô¶¯»¯µ÷²éȡ֤¡£¡£Cado SecurityµÄÊ×´´ÈËÒ²ÊdzÛÃûµÄÍþвµý±¨Æ½Ì¨ThreatCrowdµÄ¹¹½¨Õߣ¬ÔÚÍþвµý±¨ÍøÂçºÍ×êÑз½ÏòÉÏÓµÓзá˶µÄ¶Ñ¼¯£¬Òò¶ø×³´óµÄµý±¨ÍøÂçºÍÊÂÎñ±ê×¢ÄÜÁ¦³ÉΪCado Response²úÆ·µÄÒ»´óÁÁµã¡£¡£
3¡¢Lightspin£º£º£º»ùÓڸߵÍÎÄ·ÖÎöµÄÔÆÔÉúÀûÓ÷¨Ê½±£»£»¤Æ½Ì¨

LightspinÍÆ³öÁËÔÆÔÉúÀûÓ÷¨Ê½±£»£»¤Æ½Ì¨ (CNAPP)£¬´ÓÈëÇÖÕßµÄÊÓ½ÇÀ´¶Ô´ýÔÆ»·¾³£¬Á½¸öÖØÒªÌØÉ«Êǹ¥»÷õè¾¶·ÖÎöºÍÍþв¿ÉÊÓ»¯¡£¡£Lightspin ƽ̨֧³Ö DevOps£¬Í¨¹ý°²È«×óÒÆ£¬ÊµÏÖIaC£¨»ù´¡ÉèÊ©¼´´úÂ룩°²È«£¬²¢ºÏÓÃÓÚÔÆÔÉú°²È«µÄËùÓн׶Ρ£¡£¸Ãƽ̨Äܹ»¼ø±ðÔÆÔÉú»·¾³ÖеĹ¥»÷õè¾¶£¬²¢»ùÓڸߵÍÎĶԹ¥»÷õè¾¶½øÐзÖÎö£¬´Ó¶ø±êʶ¹¥»÷õè¾¶Öи澯µÄÓÅÏȼ¶¡£¡£LightspinÔÚ2021ÄêµÄ RSA´ó»áÉÏÒѾո¶ͷ½Ç£¬»ñµÃÁËCDM Global InfosecÐû¸æµÄSaaS/ÔÆ°²È«Èȵ㹫˾½±¡£¡£
4¡¢Sevco Security£º£º£ºÃæÏòÔÆÔÉúºÍ±¾µØ»·¾³µÄÎÞÊý¾ÝÈںϻï²úÖÎÀíÆ½Ì¨

Sevco SecurityÌṩÁËÒ»Ì׿ÉÄÜ»ùÓÚÔÆÔÉú»·¾³²¿ÊðµÄ×ʲúÖÇÄÜÖÎÀíÆ½Ì¨£¬¿Éͨ¹ýAPI¶Ô½Ó·ÖÆçÊý¾ÝÔ´µÄ×ʲúÇåµ¥¶ÔÔÆÔÉúºÍ±¾µØ»·¾³µÄ¶àÔ´×ʲúÖÎÀíÈí¼þµÄÊý¾Ý½øÐÐÈںϣ¬³ÉÁ¢¸üÈ«ÃæµÄ×ʲú¿â£¬ÒÔ¼ø±ðÆóÒµÍøÂçÖеĴàÈõ×ʲú£¬´Ó¶øÊµÊ±¸ú×Ù×ʲú¿âÖÐ×ʲú״̬±ä¶¯Çé¿ö¡£¡£Sevco SecurityµÄÖØÒªÍŶӳÉÔ±À´×ÔCarbon Black£¬ÔÚÖ÷»ú°²È«ºÍÖÕ¶Ë×ʲúÖÎÀí·½ÏòÉÏÓм«¶È·á˶µÄ¶Ñ¼¯ºÍʵ¼Ê¾Ñé¡£¡£Ä¿Ç°ÒѾ¶Ô½ÓÁËAutomox¡¢CrowdStrike¡¢Lansweeper¡¢MalwareBytes Nebula¡¢Microsoft AD 5¸ö³§É̵Ä×ʲúÊý¾Ý£¬Ö§³Ö¶ÔÎÞÊý¾ÝÔ´×ʲúµÄ½»²æ²éÎʺͼìË÷¡£¡£
ÔÆÔÉú°²È«½«ÓÐÂÈȵãÈüµÀ
ËļÒÈëΧ´´ÐÂɳºÐ¾öÈüµÄÔÆÔÉú°²È«ÈüµÀÆóÒµ£¬Æä²úÆ·¸²¸ÇÁËÔÆÔÉú°²È«µÄ¸÷¸ö·½Ã棬Ô̺¬ÁËÔÆÔÉú»·¾³ÏµÄ×ʲúÖÎÀí¡¢Íþв¼ì²â¡¢È¡Ö¤ÏìÓ¦ºÍÕû¸öÐÔÃüÖÜÆÚµÄ°²È«·À»¤ºÍ¹¥»÷Á´¿ÉÊÓ»¯£¬ÈçÏÂͼËùʾ£º£º£º

ͨ¹ý¶ÔÈëΧ³§É̵ķÖÎöÄܹ»·¢ÏÖ£¬ÔÆÔÉú°²È«ÒѾ³ÉΪ±±ÃÀµØÓòµÄÈȵãÈüµÀ£¬²¢ÇÒ¹Ø×¢¶È³ÖÐøÔö¸ß¡£¡£
Ëæ×ÅÔÆÍÆËãµÄ¿í·º·¢Õ¹ºÍÀûÓã¬ÎÒ¹úµÄÔÆÔÉú°²È«Ò²½«ÓÀ´È«ÃæµÄ·¢×÷Ôö³¤¡£¡£¾Ý2021ÄêµÄÖйúÔÆÔÉúÐÐÒµ×êÑл㱨ָ³ö£¬³¬¹ý60%µÄÔÆÔÉúÓû§ÒѾÔÚ³ö²ú»·¾³ÖÐÀûÓÃÁËÈÝÆ÷¼¼Êõ£¬½ü30%µÄÓû§ÕýÔÚ²âÆÀ»òÕýÔÚ˼¿¼Ê¹ÓÃÈÝÆ÷¼¼Êõ¡£¡£
ÈÝÆ÷¼¼ÊõÊÇÔÆÔÉúϵͳµ×²ã¼¼Êõ£¬Òò¶øÈÝÆ÷°²È«Ò²ÊÇÔÆÔÉú°²È«µÄ»ùʯ¡£¡£ÈÝÆ÷±àÅż¼Êõ¡¢Î¢·þÎñ¼¼ÊõºÍ΢¸ôÀë¼¼ÊõµÄ·¢Õ¹£¬Ò²ÎªÈÝÆ÷¼¼Êõ´´ÖÆÁËÃÀÂúµÄÉú̬»·¾³ºÍ¼¼Êõϵͳ£¬Ö§³ÖÁËÈÝÆ÷¼¼ÊõµÄ¿í·ºÀûÓú͵ü´ú·¢Õ¹¡£¡£
Ëæ×ÅÒµÎñÐèÒªÓë¼¼ÊõÐèÒªµÄË«ÂÖÇý¶¯£¬ÈÝÆ÷°²È«¼¼Êõ½«»áÓëÔÆÔÉú¼Ü¹¹Ò»Â·ÐͬÉîÈëÑݽø£¬²¢²»ÐÝÍØÕ¹ÆäÀûÓó¡¾°£¬ÎªÔËÓªÉÌ¡¢ÄÜÔ´¡¢½ðÈÚ¡¢»¥ÁªÍøµÈÐÐÒµÓû§´´ÖƳö¸ü¶à¼ÛÖµ¡£¡£

×÷Ϊ¹úÄÚ½ÏÔç²Î¼ÓÔÆÔÉú°²È«³§ÉÌÖ®Ò»£¬OG¶«·½Ìü¼¯ÍÅÔÚµ±¾Ö¡¢ÔËÓªÉÌ¡¢ÄÜÔ´¡¢½ðÈÚµÈÐÐÒµ¶Ñ¼¯ÁËÖÚ¶àÏîĿʵս¾Ñ飬¾ß±¸ÆëÈ«µÄÔÆÔÉú°²È«²úÆ·Á´Ìõ¡£¡£²úÆ·ÒÔÔÆÔÉúÐÔÃüÖÜÆÚΪÖ÷Ì⣬ÒÔ°²È«×óÒÆÎªË¼Ï룬½«°²È«ÄÜÁ¦È«ÃæÈÚÈëµ½DevOpsϵͳÖУ¬¹¹½¨ÃæÏòDevSecOpsÈ«ÐÔÃüÖÜÆÚ°²È«·À»¤ÏµÍ³£¬ÖúÁ¦·ÖÆçÒµÒµÓû§¹æ»®µÄ¼±¾çÂ䵨£¬Ô®ÊÖÓû§½â¾ö»ù´¡ÉèÊ©ÔÆ»¯¹ý³ÌÖÐÒµÎñÃæ¶ÔµÄÏÖʵÎÊÌâ¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ