Welcome!

Silverlight Authors: Automic Blog, Michael Kopp, Jyoti Bansal, Kaazing Blog, Steven Mandel

Related Topics: Containers Expo Blog, Microservices Expo, Microsoft Cloud, Silverlight, Agile Computing, Cloud Security

Containers Expo Blog: Article

Bromium, The New Malware Cure

It will work initially on (presumably clean) 64-bit Windows 7 PCs using Internet Explorer 8 and 9

Please, God, let this work - even if it's not completely impenetrable, it sounds better than what we've got as we know from the Chinese.

"It" is widgetry called vSentry from a UK start-up called Bromium that promises to put an end to malware - at least in the enterprise. Bromium is too young to deal with consumers yet.

It will work initially on (presumably clean) 64-bit Windows 7 PCs using Internet Explorer 8 and 9. Later it will be moved to Intel-based Macs and other browsers. Presumably Bromium will prioritize ARM devices somehow and Windows 8 boxes will likely be supported when the enterprise actually starts deploying them.

What is does is use a lightweight second-generation species of virtualization the Bromium boys call a Microvisor to create a disposable virtual machine around every task you do on a PC - click on a URL, open a document or e-mail attachment, or a file on a thumb drive - anything can reportedly run in a Micro-VM provided the PC is based on one of the Intel Core i3, i5, or i7 processors that make what's called hardware-enforced isolation possible. And that's because of Intel's Virtualization Technology (VT).

Users won't even know vSentry and its Micro-VMs are there - at least that's what its creators say.

The virtual machine cages any undetectable malware you might happen upon in a poisoned e-mail or malicious site, gives it something harmless to play with to let it think it's doing its job, and kills it when the VM is killed.

Micro-VMs are automatically discarded when an untrusted task is completed. The Intel hardware nips in the bud any move by a task in a Micro-VM to access trusted files or resources like the network, file system, clipboard and printing, handing control over to the Microvisor to see if it's legit.

The evil malware can't leak into the rest of the machine and can't leak into the enterprise or the mobile devices connected to the corporate network. And it doesn't matter what the malware is or whether it's known or not.

vSentry protects desktops that haven't been patched (not a great safeguard anyway). Users are free to download apps, collaborate, access cloud-hosted programs and the web, and open unsafe documents and media without risking enterprise's data or infrastructure.

See, the hardware virtualization guarantees that the VMs are isolated from the operating system and each other, and enterprise assets are protected by restricting the ability of each Micro-virtual machine to access data, networks and other system resources. To penetrate, the malware would have to break Intel's hardware, which is supposed to be way harder than compromising software.

The widgetry is also supposed to provide in-depth forensic capabilities to determine the intent of the attack without risk of exposure and identify the vectors, targets and methods of new attacks in real-time.

Bromium calls this Live Attack Visualization and Analysis (LAVA), and says vSentry automatically generates signatures for new attacks that legacy detection-centric tools can neither identify nor block.

It lets the malware do what it wants to do - fooling it with fakes - so it can be fully analyzed. vSentry then uploads the data to security software from, say, Symantec, McAfee or Trend Micro to identify.

vSentry, which is configured through Active Directory, debuted Wednesday at a Gartner Security & Risk Management Summit in London and Gartner fixes the value of the market it's headed for at $17.7 billion last year.

However, the Wall Street Journal says Bromium's beta customers told the company they saw the widgetry as additive to old-fashioned endpoint (albeit easily compromised) security and that may translate into a cost hurdle.

vSentry is supposed to be licensed per-user, enterprise-wide, and priced according to volume. What those prices are exactly isn't clear. Maybe a few hundred dollars a head.

The boys who created this stuff are Simon Crosby, Ian Pratt and Gaurav Banga. Crosby and Pratt created the open source Xen virtualization project - Amazon uses Xen - and sold XenSource, the company that commercialized it, to Citrix for $500 million in 2007. Pratt worked with Intel on the virtualization support in its chips. Banga was CTO at Phoenix Technologies, the BIOS outfit.

Banga is now CEO of Bromium, Crosby is CTO and Pratt is SVP, products.

Bromium has raised $35.7 million in two rounds from Highland Capital, Andreessen Horowitz, Ignition, Lightspeed and Intel Capital which apparently see micro-virtualization as having the potential to be a disruptive change in information and infrastructure protection.

Business Insider said Bromium is doing for security what VMware did for servers.

More Stories By Maureen O'Gara

Maureen O'Gara the most read technology reporter for the past 20 years, is the Cloud Computing and Virtualization News Desk editor of SYS-CON Media. She is the publisher of famous "Billygrams" and the editor-in-chief of "Client/Server News" for more than a decade. One of the most respected technology reporters in the business, Maureen can be reached by email at maureen(at)sys-con.com or paperboy(at)g2news.com, and by phone at 516 759-7025. Twitter: @MaureenOGara

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


@ThingsExpo Stories
Bert Loomis was a visionary. This general session will highlight how Bert Loomis and people like him inspire us to build great things with small inventions. In their general session at 19th Cloud Expo, Harold Hannon, Architect at IBM Bluemix, and Michael O'Neill, Strategic Business Development at Nvidia, discussed the accelerating pace of AI development and how IBM Cloud and NVIDIA are partnering to bring AI capabilities to "every day," on-demand. They also reviewed two "free infrastructure" pr...
In his keynote at @ThingsExpo, Chris Matthieu, Director of IoT Engineering at Citrix and co-founder and CTO of Octoblu, focused on building an IoT platform and company. He provided a behind-the-scenes look at Octoblu’s platform, business, and pivots along the way (including the Citrix acquisition of Octoblu).
Data is an unusual currency; it is not restricted by the same transactional limitations as money or people. In fact, the more that you leverage your data across multiple business use cases, the more valuable it becomes to the organization. And the same can be said about the organization’s analytics. In his session at 19th Cloud Expo, Bill Schmarzo, CTO for the Big Data Practice at Dell EMC, introduced a methodology for capturing, enriching and sharing data (and analytics) across the organization...
The explosion of new web/cloud/IoT-based applications and the data they generate are transforming our world right before our eyes. In this rush to adopt these new technologies, organizations are often ignoring fundamental questions concerning who owns the data and failing to ask for permission to conduct invasive surveillance of their customers. Organizations that are not transparent about how their systems gather data telemetry without offering shared data ownership risk product rejection, regu...
Grape Up is a software company, specialized in cloud native application development and professional services related to Cloud Foundry PaaS. With five expert teams that operate in various sectors of the market across the USA and Europe, we work with a variety of customers from emerging startups to Fortune 1000 companies.
Financial Technology has become a topic of intense interest throughout the cloud developer and enterprise IT communities. Accordingly, attendees at the upcoming 20th Cloud Expo at the Javits Center in New York, June 6-8, 2017, will find fresh new content in a new track called FinTech.
SYS-CON Events announced today that Interoute, owner-operator of one of Europe's largest networks and a global cloud services platform, has been named “Bronze Sponsor” of SYS-CON's 20th Cloud Expo, which will take place on June 6-8, 2017 at the Javits Center in New York, New York. Interoute is the owner-operator of one of Europe's largest networks and a global cloud services platform which encompasses 12 data centers, 14 virtual data centers and 31 colocation centers, with connections to 195 add...
Multiple data types are pouring into IoT deployments. Data is coming in small packages as well as enormous files and data streams of many sizes. Widespread use of mobile devices adds to the total. In this power panel at @ThingsExpo, moderated by Conference Chair Roger Strukhoff, panelists will look at the tools and environments that are being put to use in IoT deployments, as well as the team skills a modern enterprise IT shop needs to keep things running, get a handle on all this data, and deli...
The age of Digital Disruption is evolving into the next era – Digital Cohesion, an age in which applications securely self-assemble and deliver predictive services that continuously adapt to user behavior. Information from devices, sensors and applications around us will drive services seamlessly across mobile and fixed devices/infrastructure. This evolution is happening now in software defined services and secure networking. Four key drivers – Performance, Economics, Interoperability and Trust ...
The Internet of Things is clearly many things: data collection and analytics, wearables, Smart Grids and Smart Cities, the Industrial Internet, and more. Cool platforms like Arduino, Raspberry Pi, Intel's Galileo and Edison, and a diverse world of sensors are making the IoT a great toy box for developers in all these areas. In this Power Panel at @ThingsExpo, moderated by Conference Chair Roger Strukhoff, panelists discussed what things are the most important, which will have the most profound e...
@ThingsExpo has been named the Most Influential ‘Smart Cities - IIoT' Account and @BigDataExpo has been named fourteenth by Right Relevance (RR), which provides curated information and intelligence on approximately 50,000 topics. In addition, Right Relevance provides an Insights offering that combines the above Topics and Influencers information with real time conversations to provide actionable intelligence with visualizations to enable decision making. The Insights service is applicable to eve...
SYS-CON Events announced today that Grape Up will exhibit at SYS-CON's 21st International Cloud Expo®, which will take place on Oct. 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Grape Up is a software company specializing in cloud native application development and professional services related to Cloud Foundry PaaS. With five expert teams that operate in various sectors of the market across the U.S. and Europe, Grape Up works with a variety of customers from emergi...
SYS-CON Events announced today that Hitachi, the leading provider the Internet of Things and Digital Transformation, will exhibit at SYS-CON's 20th International Cloud Expo®, which will take place on June 6-8, 2017, at the Javits Center in New York City, NY. Hitachi Data Systems, a wholly owned subsidiary of Hitachi, Ltd., offers an integrated portfolio of services and solutions that enable digital transformation through enhanced data management, governance, mobility and analytics. We help globa...
SYS-CON Events announced today that SoftLayer, an IBM Company, has been named “Gold Sponsor” of SYS-CON's 18th Cloud Expo, which will take place on June 7-9, 2016, at the Javits Center in New York, New York. SoftLayer, an IBM Company, provides cloud infrastructure as a service from a growing number of data centers and network points of presence around the world. SoftLayer’s customers range from Web startups to global enterprises.
20th Cloud Expo, taking place June 6-8, 2017, at the Javits Center in New York City, NY, will feature technical sessions from a rock star conference faculty and the leading industry players in the world. Cloud computing is now being embraced by a majority of enterprises of all sizes. Yesterday's debate about public vs. private has transformed into the reality of hybrid cloud: a recent survey shows that 74% of enterprises have a hybrid cloud strategy.
SYS-CON Events announced today that Super Micro Computer, Inc., a global leader in compute, storage and networking technologies, will exhibit at SYS-CON's 20th International Cloud Expo®, which will take place on June 6-8, 2017, at the Javits Center in New York City, NY. Supermicro (NASDAQ: SMCI), the leading innovator in high-performance, high-efficiency server technology, is a premier provider of advanced server Building Block Solutions® for Data Center, Cloud Computing, Enterprise IT, Hadoop/...
Amazon has gradually rolled out parts of its IoT offerings in the last year, but these are just the tip of the iceberg. In addition to optimizing their back-end AWS offerings, Amazon is laying the ground work to be a major force in IoT – especially in the connected home and office. Amazon is extending its reach by building on its dominant Cloud IoT platform, its Dash Button strategy, recently announced Replenishment Services, the Echo/Alexa voice recognition control platform, the 6-7 strategic...
Judith Hurwitz is president and CEO of Hurwitz & Associates, a Needham, Mass., research and consulting firm focused on emerging technology, including big data, cognitive computing and governance. She is co-author of the book Cognitive Computing and Big Data Analytics, published in 2015. Her Cloud Expo session, "What Is the Business Imperative for Cognitive Computing?" is scheduled for Wednesday, June 8, at 8:40 a.m. In it, she puts cognitive computing into perspective with its value to the busin...
Cognitive Computing is becoming the foundation for a new generation of solutions that have the potential to transform business. Unlike traditional approaches to building solutions, a cognitive computing approach allows the data to help determine the way applications are designed. This contrasts with conventional software development that begins with defining logic based on the current way a business operates. In her session at 18th Cloud Expo, Judith S. Hurwitz, President and CEO of Hurwitz & ...
Cybersecurity is a critical component of software development in many industries including medical devices. However, code is not always written to be robust or secure from the unknown or the unexpected. This gap can make medical devices susceptible to cybersecurity attacks ranging from compromised personal health information to life-sustaining treatment. In his session at @ThingsExpo, Clark Fortney, Software Engineer at Battelle, will discuss how programming oversight using key methods can incre...