Skip to content

Penta Security’s Cloudbric Managed Rules – API Protection Validated for Top-Tier Performance

SEOUL, SOUTH KOREA, September 17, 2024 /EINPresswire.com/ — Penta Security, a leading cyber security company and provider of web application security in the Asia-Pacific region, announced that Penta Security’s latest Cloudbric Managed Rules, API Protection, showed outstanding performance in the comparative test audited by The Tolly Group.

The Tolly Group is an independent 3rd-party IT testing, validation, and analysis organization, renowned for its global standards and credibility in testing various network equipment and IT solutions.

According to the report published by The Tolly Group on September 13th 2024, Cloudbric Managed Rules for AWS WAF-API Protection, along with two other API security-related managed rule groups, were tested against a total of 1,081 attack payloads categorized under “OWASP Top 10 API Security Risk.” The purpose of the test was to compare the performance of the managed rule groups by measuring their detection rates, under the supervision of Kevin Tolly, Founder of The Tolly Group. Cloudbric Managed Rules for AWS WAF – API Protection demonstrated a 97.31% detection rate, proving its outstanding, top-tier performance.

Kevin Tolly said, “API Security has been a major focus for many cybersecurity vendors in recent years. To respond to ever-evolving cyber attacks, it is important to stay consistent with the current cybersecurity trends.” He added, “The detection rate of Cloudbric Managed Rules for AWS WAF – API Security shows that Penta Security is well-prepared to respond to the attacks of OWASP Top 10 API Security Risks, and that the company pays close attention to users’ needs and convenience, providing a solid security solution for those without security expertise.”

Penta Security currently provides six types of Cloudbric Managed Rules on the AWS Marketplace, each specializing in a specific area of security, all of which have passed the Foundational Technical Review (FTR) by AWS, validating their performance and functionality. In addition to the Cloudbric Managed Rules, Penta Security offers Cloudbric WMS (WAF Managed Service), an AWS WAF managed service enhances the efficiency and security of AWS WAF by providing optimized WAF security rules in accordance with the unique environment of the user. Cloudbric WMS is also scheduled to launch as a subscription-based SaaS model of Cloudbric WMS on AWS Marketplace by the end of this year.

About Penta Security
Penta Security takes a holistic approach to cover all the bases for information security. The company has worked and is constantly working to ensure the safety of its customers behind the scenes through the wide range of IT-security offerings. As a result, with its headquarters in Korea, the company has expanded globally as a market share leader in the Asia-Pacific region.

As one of the first to make headway into information security in Korea, Penta Security has developed a wide range of fundamental technologies. Linking science, engineering, and management together to expand our technological capacity, we then make our critical decisions from a technological standpoint.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Penta Security Applauded by Frost & Sullivan for Its Comprehensive Web Security Solution and Market-leading Position

Accessibility and scalability offered by Penta Security’s WAF allow it to stand out among local customers in South Korea compared to international industry participants that do not support domestic cloud environments. 

Frost & Sullivan recently assessed the web application firewall industry and, based on its analysis, recognizes Penta Security Inc. with the 2024 South Korean Company of the Year Award. The company offers web and data security products and services. Unlike standard intrusion prevention systems or next-generation firewall solutions (an alternative for web firewalls that lack comprehensiveness), Penta Security’s WAPPLES, including WAPPLES SA, and Cloudbric WAF+ include API, SSL, and L7 security protections. Penta Security’s WAPPLES differentiates its WAF from other industry participants through its patented logic-based detection Contents Classification and Evaluation Processing (COCEP™) engine. Unlike WAFs based on signature-matching detection, Penta Security’s WAPPLES does not rely on signature updates and lengthy learning periods. It allows the company to conduct security patching and fix vulnerabilities without delay.

Penta Security balances providing application security with performance as a cybersecurity leader in the South Korean WAF space. Its WAF fits different deployments, such as WAPPLES, the on-premises appliances, WAPPLES SA, the software appliances for Cloud, and cloud-based Cloudbric WAF+, differentiating it in the industry. WAPPLES also supports public and local Asia-Pacific cloud environments. Penta Security outshines competitors due to its ability to understand and meet local customer needs with offerings that exemplify best practices implementation. The company’s advanced API security functions (XML, JSON, YAML, GraphQL protection rules), advanced threat IP and bot reputation check functions, and additional add-ons respond to countless web threats based on malicious IPs.

Ying Ting Neoh, industry analyst at Frost & Sullivan, observed, “Penta Security demonstrates leadership focus and visionary strategy in leveraging WAF industry megatrends in South Korea through its integrations with in-house and third-party security solutions and its commitment to technological innovations that offer customers a comprehensive suite of application security portfolios.”

Penta Security provides round-the-clock support backed by over 200 employees to resolve customer difficulties and service failures through its online communication systems. Besides offering local customers access to advanced technologies, world-class experience, and support, Penta Security’s extensive connections, channel partners, and collaborators expand its reach so it can globally engage with customers. The company makes its application security solutions accessible to different customer segments while aligning them with local customer needs. This further strengthens the company’s leadership position in South Korea’s WAF industry. It successfully maintains its position in the South Korean WAF space, over a 50% market share, due to its broad portfolio and ability to retain optimal network performance after introducing WAPPLES to customers’ environments.

“Owing to steady business performance in recent years, Penta Security has positioned itself as an industry leader in South Korea. The company’s visionary strategy is based on its commitment to implementing best practices and leveraging the cloud industry’s rapid growth to develop cloud-based WAF, a valuable addition to its application security portfolio and growth pipeline,” added Neoh. With its strong overall performance, Penta Security earns Frost & Sullivan’s 2024 South Korean Company of the Year Award in the WAF industry.

Each year, Frost & Sullivan presents a Company of the Year award to the organization that demonstrates excellence in terms of growth strategy and implementation in its field. The award recognizes a high degree of innovation with products and technologies, and the resulting leadership in terms of customer value and market penetration.

Frost & Sullivan Best Practices awards recognize companies in various regional and global markets for demonstrating outstanding achievement and superior performance in leadership, technological innovation, customer service, and strategic product development. Industry analysts compare market participants and measure performance through in-depth interviews, analyses, and extensive secondary research to identify best practices in the industry.

About Frost & Sullivan

For six decades, Frost & Sullivan has been world-renowned for its role in helping investors, corporate leaders, and governments navigate economic changes and identify disruptive technologies, megatrends, new business models, and companies to action, resulting in a continuous flow of growth opportunities to drive future success. Contact us: Start the discussion. Contact us: Start the discussion.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Penta Security
Penta Security takes a holistic approach to cover all the bases for information security. The company has worked and is constantly working to ensure the safety of its customers behind the scenes through the wide range of IT-security offerings. As a result, with its headquarters in Korea, the company has expanded globally as a market share leader in the Asia-Pacific region.

As one of the first to make headway into information security in Korea, Penta Security has developed a wide range of fundamental technologies. Linking science, engineering, and management together to expand our technological capacity, we then make our critical decisions from a technological standpoint.

[Security News] Data Breaches from healthcare and engineering industries;OneBlood Bank, Cencora, HealthEquity, and McDowall

1. Pharma Giant Cencora confirmed the theft of personal and health information

Pharmaceutical giant Cencora confirmed that the threat actors had access to personally identifiable information (PII) and protected health information (PHI) following the February 2024 cyberattack. On February 21, Cencora announced a data breach in a filing with the Securities and Exchange Commission (SEC). At the time, the company announced that it was investigating the scope of the security breach to determine the type of data that has been infiltrated. In a new filing with the Securities and Exchange Commission (SEC), the company reported that the amount of exfiltrated data is greater than what was initially identified.

Source : Security AffairsSC MediaInfosecurity Magazine

 

2. Ransomware Attack Hits OneBlood Blood Bank, Disrupts Medical Operations

The organization, which provides blood services to more than 300 hospitals in Florida, Georgia and the Carolinas, said the security breach impacted its software system and slowed down operations. “Manual processes take significantly longer to perform and impact inventory availability. In an effort to further manage the blood supply we have asked the more than 250 hospitals we serve to activate their critical blood shortage protocols and to remain in that status for the time being,” Forbes added. OneBlood said it is working closely with anti-malware specialists and federal, state and local agencies as part of their incident response plan.

Sources: Security WeekSecurity Affairs,  CNNBleeping Computer

 

3. HealthEquity says data breach impacts 4.3 million people

HSA provider HealthEquity has determined that a cybersecurity incident disclosed earlier this month has compromised the information of 4,300,000 people. An investigation determined that the breach occurred on March 9, 2024, but was only verified by the firm on June 26, following an internal investigation. The data that has been exposed as a result of this breach varies per individual and includes: Full names, Home address, Telephone number, Employer and employee ID, Social Security Number (SSN), General dependent information, Payment card information (not numbers).

Source : Bleeping ComputerTech RadarTech Crunch

 

4. McDowall Affleck Confirms ‘Cyber Incident’ After RansomHub Claims Access to 470 GB Data

McDowall Affleck, an Australian engineering firm, has acknowledged being the target of a “cyber incident.” While the company has not identified a specific threat actor, the RansomHub ransomware group claimed responsibility for the McDowall Affleck cyberattack on August 1, 2024. The alleged perpetrator behind the attack, RansomHub, is a notorious ransomware group known for high-profile attacks. Details of the McDowall Affleck cyberattack were shared on a dark web site linked to the threat actor. According to RansomHub’s own communication, the group claims to have accessed 470 GB of McDowall Affleck’s internal data. The leaked information reportedly includes critical documents, insurance records, tender and contract details, and personal information of both employees and clients.

Source : The Cyber ExpressTeissCyber Daily

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Penta Security
Penta Security takes a holistic approach to cover all the bases for information security. The company has worked and is constantly working to ensure the safety of its customers behind the scenes through the wide range of IT-security offerings. As a result, with its headquarters in Korea, the company has expanded globally as a market share leader in the Asia-Pacific region.

As one of the first to make headway into information security in Korea, Penta Security has developed a wide range of fundamental technologies. Linking science, engineering, and management together to expand our technological capacity, we then make our critical decisions from a technological standpoint.