Presenting 'Trust No File' Prevention-Focused Strategy, Demonstrating MetaDefender Multi-AV·CDR·AI Sandbox
Insec Security, together with global cybersecurity firm OPSWAT, addressed a prevention-first security strategy that goes beyond detection through a seminar introducing a Zero Trust-based file security strategy that does not trust the files themselves and MetaDefender platform technology.
Insec Security announced on the 24th that it held Opswat's 'Zero Trust-based File Security Seminar' at its education center in Doksan-dong, Seoul on the 23rd.
Chief Information Security Officers (CISOs), security managers, and Security Operations Center (SOC) operators from companies and public institutions attended the seminar to share strategies for responding to file-based cyber attacks and implementation case studies.
Insec Security explained that advancements in generative AI technology are enabling attackers to create malware and carry out phishing more quickly and sophisticatedly, thereby shortening the time from vulnerability disclosure to actual attacks.
Accordingly, it was stated that prevention-oriented security, which blocks attacks before they enter the internal network, is becoming increasingly important.
The seminar covered the U.S. National Institute of Standards and Technology (NIST) Zero Trust Architecture Guidelines and Cybersecurity & MiddoBased on the CISA Zero Trust maturity model, the 'Trust No File' strategy, which does not trust files, and the 'Trust No Device' strategy, which does not trust endpoints, were introduced.
It is a method that treats files entering via email attachments, web downloads, file sharing systems, USBs, etc., as verification targets and applies multi-layered verification.
A live demo of the entire MetaDefender product line was conducted at the event.
MetaDefender Core has improved detection accuracy through multi-antivirus scanning that utilizes more than 30 antivirus engines simultaneously, and also introduced a File-Based Vulnerability Analysis (FBVA) feature that identifies vulnerabilities (CVEs) within files.
'MetaDefender Deep CDR' introduced Content Disarmament and Reconstruction (CDR) technology that removes malicious elements such as macros, hyperlinks, OLE objects, hidden sheets, and attached content within documents and reconstructs only safe files.
The company explained that it supports over 150 file formats, including HWP and HWPX.
The removable storage security 'MetaDefender Kiosk' and secure file transfer 'MetaDefender MFT' technologies were also demonstrated.
In the final session, the AI-based threat analysis platform 'MetaDefender Aether' was introduced.
The company stated that it is designed to identify everything from zero-day attacks to advanced persistent threats (APTs) by combining predictive AI, adaptive sandboxes, and threat intelligence.
Block malware sandbox evasion techniques through CPU-level emulation-based analysis and Technology for performing behavior-based analysis was also demonstrated.
Kim Jong-kwang, CEO of Insec Security, stated, “Files are still being utilized as the most effective penetration method for ransomware and supply chain attacks,” adding, “It is essential to establish a prevention-oriented security system that combines multi-AV, CDR, AI-based sandboxes, and data protection technologies.”
He added, “We plan to expand technical support and training programs to help domestic companies and public institutions respond to file-based threats.”