반도체 AI 보안 인더스트리 4.0 SDV 스마트 IoT 컴퓨터 통신 특수 가스 소재 및 장비 유통 e4ds plus

"You took the bait" Kuntek launches domestically 'DeceptionGrid', a security solution based on cyber deception technology

기사입력2019.04.02 16:20

| Security solution based on deception technology that deceives attackers
| A new alternative that complements the limitations of existing honeypots
| Applicable to finance, medical, industrial control, IoT, etc.


As the financial gains from cybercrime increase by the day, cyber attackers' attacks are becoming more intense by the day.

Kuntech CEO Bang Hyuk-jun explains the concept of Deception Grid

On the 2nd, Kuntec announced that it has launched 'DeceptionGRID', a security solution based on TrapX's cyber deception technology, in Korea.

TrapX is a US security solution company with global customers in the finance, medical, IT, defense, and SCADA fields, and possesses world-class technology in the field of internal security based on deception technology, a deceptive technology that deceives attackers. Coontech, which has secured the domestic distribution rights for TrapX, is the first in Korea to supply a security solution based on a defense system based on deception technology to domestic customers.

Deception technology, a deceptive technique that fools attackers, is a modified form of HoneyPoT, which was created as a trap to lure cyber attackers when they attack servers or systems.

Early honeypots were useful for bolstering defenses, allowing security personnel to gather information about attacks. However, due to licensing issues, complexity, and limitations for large networks or various systems, it has been used very limitedly only by security analysts. However, in the past 10 years or so, it has overcome technical limitations and developed into a new defense solution called deception technology.

The concept of deception grid

TrapX's 'DeceptionGRID' provides hundreds of thousands of attacker deception elements, including credentials, database connections, and network shares. That is, the goal is to create a perfect fake interface that can fool attackers by imitating and disguising anything that could be a target of an attack.

It is characterized by almost 100% attack detection when an attacker touches the trap, and the accuracy of the warning is 99%, so there is almost no fatigue from false detection.

It also monitors network intrusions by attackers in real time to reconnoiter all actions taken by attackers, and secures data necessary for attacker forensics through in-depth monitoring of attack paths and exploitation protocols.

Here, the next-generation security technology certified by the U.S. Department of Homeland Security, 'Moving Target Defense', is applied to make attacks more difficult by continuously changing traps whenever an attacker accesses a company's assets.

DeceptionGrid enables creation and full deployment of large-scale networks of mixed equipment including financial, healthcare, industrial control systems, IoT devices, servers, and desktops in just a matter of hours, with Auto-Pilot capability that enables automated network scans.

It is easy to further expand the network, and because it is centrally managed and distributed, it can imitate various corporate security assets, which also has the advantage of being able to perfectly defend against IoT systems, which have been pointed out as existing security weaknesses.

Kuntech CEO Bang Hyuk-jun

Kuntech CEO Bang Hyuk-jun“Existing corporate security controls such as firewalls, malware detection tools, and intrusion prevention systems are relatively well-known processes and technologies, so sophisticated attackers can easily figure out how they work,” he said.

He continued, “This is causing continued leaks of sensitive data, and a vicious cycle of collected information being traded on the black market is being repeated,” and explained, “To prevent this, overseas companies are quickly adopting deception technology.”

In addition, “Through the domestic launch of DeceptionGrid, Kuntek will introduce deception technology to companies that require the highest level of network security defense in Korea and will not spare technical support to block sophisticated attacks and zero-day attacks,” he said.
이수민 기자
기사 전체보기