Announcing Threat Detection for Amazon S3 | AI-Powered Data … – SentinelOne
SentinelOne recently announced the launch of the new Singularity Cloud Data Security product line to help customers gain visibility and provide protection for their cloud data, storage, downstream applications, and users from risks associated with unscanned files. Threat Protection for NetApp provides protection for NetApp arrays, and Threat Detection for Amazon S3, which will be highlighted here, provides protection for S3 buckets. Both services provide powerful, low-latency security for cloud storage in a highly efficient and simple user experience.
Amazon S3 is one of the most commonly used AWS services. Due to its flexible, scalable, and available nature, it is possible to store and access nearly any object type from anywhere. With this flexibility, there are a variety of use cases for the service, but in todays environments, we see Amazon S3 being used more by applications than by humans looking for storage. S3 buckets being used by applications house critical application data for apps themselves but also sensitive data. Uptime and performance are mission critical.
Earlier this year, Amazon S3 turned 17 years old, and AWS shared that it currently holds more than 280 trillion objects and has an average of over 100 million requests per second. As part of the shared responsibility model, AWS ensures that the infrastructure itself is secure, and even ensures data integrity within S3. However, the security of what is in the bucket and its potential spread to downstream applications or workflows is the responsibility of the customer.
Many Amazon S3 users and security teams think of configuration management as the primary security challenge, and this used to be a bigger issue with buckets with sensitive data accidentally made public. AWS, though, has implemented new measures to encourage proper configuration. To combat this data loss risk, many organizations use a Cloud Security Posture Management (CSPM) solution to scan for potential misconfigurations, which is an important element of a defense-in-depth strategy. However, CSPM alone is not enough to prevent S3 from being an attack surface.
The sheer volume of data stored in S3, most of it unscanned and accessible to downstream applications and workflows (including user endpoints), poses a security risk to organizations in terms of malware, ransomware, remote access trojans (RATs), supply chain attacks, and more. Without additional protection, an organizations S3 buckets can become an accidental staging area for malware.
With Threat Detection for Amazon S3, organizations can decrease risk and increase visibility when it comes to the objects in their buckets. Reducing risk is important and so is meeting compliance requirements including data sovereignty. The solution was designed to meet the business, security, and cloud architecture needs of customers, focusing on the following features:
Existing solutions in the market have left many customers frustrated due to poor security performance such as a signature-only approach and a lack of visibility into the resources and their protection status. Other challenges include sluggish scanning or unnatural deployment patterns that slow applications down, or require time consuming re-architecture.
Threat Detection for Amazon S3 is centrally managed in the SentinelOne management console. To get started, onboard an AWS account or organization and create a Stackset to deploy and create an ARN role for SentinelOne to access your cloud environment.
The next step is to select the relevant CloudTrail that will be used by SentinelOne to analyze your cloud environment data and provide an inventory of your S3 buckets. Once done, users will receive multiple CloudFormation templates to be deployed, one for each region that the accounts S3 buckets reside in. Once deployed, the admin can then configure the policy to select which buckets will be protected for malware or fully scanned. Admins can also invoke an ad-hoc scanning of a bucket.
In a true set it and forget it approach, scanning of S3 buckets is triggered by configuring a cloud policy that will automatically scan every file added to the indicated bucket according to a predefined rule. For example, all buckets tagged as production should be automatically scanned and monitored for new files.
Configuring policy or rules is done in the SentinelOne management console. Policies can filter resources based on any AWS metadata such as tags, regions, name contains, OU, org, etc. There are a variety of policy based options available. For example, organizations could choose to apply scanning to new files, and quarantining of all suspected malicious files to all production tagged buckets, or to all buckets in a specific region due to compliance requirements. By using a tag-based approach, users save time by automating the policy application vs. applying policies to each bucket by name.
These options are configured at the policy level. When a suspicious or malicious file is identified in a bucket with a Quarantine policy enabled, the service will encrypt the file and move it to a customer-defined quarantine bucket. The file is also removed from the original bucket. If the policy is set not to quarantine, the service will tag the malicious file and create a threat in the SentinelOne management console.
Once the scanning service is done, it reports the findings into the SentinelOne Singularity console incidents page. If a file needs to be unquarantined, a user with appropriate privileges can unquarantine with one click, and also add an exclusion to the file for future scans.
Whether you are scanning a high-volume of files entering your S3 bucket or performing an on-demand scan, this solution has a built-in, auto-scaling feature to ensure files are being scanned for malware as quickly as possible while minimizing cost.
The actual files never leave the organizations AWS accounts. This service sends metrics, metadata, and logs from your AWS accounts to Singularity Cloud. Once a malicious file is detected, the file name, path, and the relevant user ID that uploaded the file are sent to the Singularity Cloud console for display. This ensures all compliance and data sovereignty requirements are met with respect to hosting your data in your environment.
After deploying the solution and configuring the policy definition, the appropriate policy will be applied to the buckets in the inventory: new file scanning, existing file scanning, both, or no scanning. An ad hoc scan on existing files can easily be initiated on demand from the Singularity console.
Configuration scanning is not enough danger resides in the data itself, being passed downstream. The popularity and flexibility of Amazon S3 leads to a potentially broad attack surface for many organizations that have not begun scanning and securing the data residing in their buckets. Regardless of cloud maturity or S3 use cases, organizations now have a simple and scalable solution to protect their data, their users, and their businesses with Threat Detection for Amazon S3.
Simple deployment, powerful AI-driven threat detection and response with in-line and in-bucket scanning will enable customers to protect their Amazon S3 buckets, critical business applications, and users from malware, ransomware, remote access trojans (RATs) and more.
To learn more about Threat Detection for Amazon S3, read the solutions brief, request a demo, or contact us today.
Go here to see the original:
Announcing Threat Detection for Amazon S3 | AI-Powered Data ... - SentinelOne
- Album Review: WO FAT The Singularity - Metal Injection - November 19th, 2024 [November 19th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through November 16) - Singularity Hub - November 19th, 2024 [November 19th, 2024]
- Could We Ever Decipher an Alien Language? Uncovering How AI Communicates May Be Key - Singularity Hub - November 19th, 2024 [November 19th, 2024]
- THE SINGULARITY | Georgetown Doesnt Need Engineering - Georgetown University The Hoya - November 17th, 2024 [November 17th, 2024]
- Simulation and kinematic analysis of a 3-DOF marine antenna pedestal focusing on singularity avoidance and its effects on angular velocity and angular... - November 17th, 2024 [November 17th, 2024]
- Book Review The many and the singularity - Morning Star Online - November 16th, 2024 [November 16th, 2024]
- MIT's New Robot Dog Learned to Walk and Climb in a Simulation Whipped Up by Generative AI - Singularity Hub - November 16th, 2024 [November 16th, 2024]
- Sweet CRISPR Tomatoes May Be Coming to a Supermarket Near You - Singularity Hub - November 16th, 2024 [November 16th, 2024]
- Outlier Ventures Partners with Singularity Finance on the RWA Base Camp Accelerator Program - CryptoGlobe - November 12th, 2024 [November 12th, 2024]
- AI Singularity might take place under Trump presidency, AI experts are worried - Firstpost - November 12th, 2024 [November 12th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through November 9) - Singularity Hub - November 12th, 2024 [November 12th, 2024]
- SentinelOne to showcase AI-powered Singularity Platform at Gitex Global this year - Gulf News - October 14th, 2024 [October 14th, 2024]
- Our Mutual Friend: A Review of The Singularity Is Nearer: When We Merge with AI by Ray Kurzweil - Newcity Lit - October 14th, 2024 [October 14th, 2024]
- Youll Soon Be Able to Book a Room at the Worlds First 3D-Printed Hotel - Singularity Hub - October 14th, 2024 [October 14th, 2024]
- THE SINGULARITY | What Artificial Intelligence Means for Academia - Georgetown University The Hoya - October 9th, 2024 [October 9th, 2024]
- Inside Singularity's second gathering of business heads in India | Mint - Mint - October 9th, 2024 [October 9th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through October 5) - Singularity Hub - October 9th, 2024 [October 9th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through September 21) - Singularity Hub - September 22nd, 2024 [September 22nd, 2024]
- Valorant Singularity 2.0 is Repeating the Worst Fortnite Blunder: Riot is Running Out of Ideas to Cash in on Old Skins - imdb - September 22nd, 2024 [September 22nd, 2024]
- SentinelOne Takes Top Honors at 2024 SC Media Awards as AI-Powered Singularity Platform Wins Best Enterprise Security Solution and Best Endpoint... - September 22nd, 2024 [September 22nd, 2024]
- Elderly Monkeys Aged More Slowly When Given a Cheap Diabetes Drug Used by Millions - Singularity Hub - September 22nd, 2024 [September 22nd, 2024]
- Christos Yannaras and the Hellenic Diaspora: Rediscovering Singularity - The National Herald - September 14th, 2024 [September 14th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through September 14) - Singularity Hub - September 14th, 2024 [September 14th, 2024]
- Jackalope Theatre Companys The Singularity Play - Choose Chicago - September 14th, 2024 [September 14th, 2024]
- SentinelOne Achieves FedRAMP High Authorization for Singularity Platform and Singularity Data Lake - StockTitan - September 14th, 2024 [September 14th, 2024]
- A New Gene Therapy Reprograms Cancer Cells to Fight Themselves - Singularity Hub - September 14th, 2024 [September 14th, 2024]
- The singularity of literary production: Nirmal Verma and Jorge Luis Borges in London, 1976 - Scroll.in - September 14th, 2024 [September 14th, 2024]
- Robots Are Coming to the KitchenWhat That Could Mean for Society and Culture - Singularity Hub - September 3rd, 2024 [September 3rd, 2024]
- 463. The Road to Singularity: Ben Goertzel on AGI and The Fate of Humanity - Skeptic Magazine - September 3rd, 2024 [September 3rd, 2024]
- We Think Singularity Future Technology (NASDAQ:SGLY) Can Afford To Drive Business Growth - Yahoo Finance - September 3rd, 2024 [September 3rd, 2024]
- Backyard Naturalist: The woods and The Singularity - Kennebec Journal and Morning Sentinel - September 3rd, 2024 [September 3rd, 2024]
- The US Is Adding Grid-Scale Batteries at 10 Times the Pace of Natural Gas This Year - Singularity Hub - September 3rd, 2024 [September 3rd, 2024]
- The singularity: How AI could become the final boss whale of crypto - Cointelegraph - August 27th, 2024 [August 27th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through August 24) - Singularity Hub - August 27th, 2024 [August 27th, 2024]
- The Singularity Is Coming Soon. Heres What It May Mean. - Forbes - August 27th, 2024 [August 27th, 2024]
- What Is Model Collapse? An Expert Explains the Rumors About an Impending AI Doom - Singularity Hub - August 27th, 2024 [August 27th, 2024]
- The singularity: How AI could become the final boss whale of crypto - StartupNews.fyi - August 27th, 2024 [August 27th, 2024]
- This AI Learns Continuously From New ExperiencesWithout Forgetting Its Past - Singularity Hub - August 27th, 2024 [August 27th, 2024]
- Short Interest in Singularity Future Technology Ltd. (NASDAQ:SGLY) Drops By 14.8% - Defense World - July 28th, 2024 [July 28th, 2024]
- This Weeks Awesome Tech Stories From Around the Web (Through July 27) - Singularity Hub - July 28th, 2024 [July 28th, 2024]
- What Is the Singularity? And Should You Be Worried? - Electronics | HowStuffWorks - July 28th, 2024 [July 28th, 2024]
- The Singularity by 2045, Plus 6 Other Ray Kurzweil Predictions - Electronics | HowStuffWorks - July 28th, 2024 [July 28th, 2024]
- AI-Powered Weather and Climate Models Are Set to Change Forecasting - Singularity Hub - July 28th, 2024 [July 28th, 2024]
- This Is What Could Happen if AI Content Is Allowed to Take Over the Internet - Singularity Hub - July 28th, 2024 [July 28th, 2024]
- Scientists Say They Extended Mices Lifespans 25% With an Antibody Drug - Singularity Hub - July 28th, 2024 [July 28th, 2024]
- Ray Kurzweil Still Says He Will Merge With A.I. - The New York Times - July 6th, 2024 [July 6th, 2024]
- Daybreak acquires Singularity 6 - GamesIndustry.biz - July 6th, 2024 [July 6th, 2024]
- Daybreak bought Palia studio Singularity 6 and aims to bring the game to launch - Massively Overpowered - July 6th, 2024 [July 6th, 2024]
- Palia developer Singularity 6 is now part of the Daybreak Game Company - PC Gamer - July 6th, 2024 [July 6th, 2024]
- Daybreak Acquires Palia Developer Singularity 6 - The Outerhaven - July 6th, 2024 [July 6th, 2024]
- Chinese company achieves breakthrough in race to fusion here's why it's a major step toward unlimited affordable power - The Cool Down - July 6th, 2024 [July 6th, 2024]
- Ray Kurzweil Predicts the AI Future by 2045 - The Dales Report - July 6th, 2024 [July 6th, 2024]
- Education in the spotlight at Singularity South Africa Summit 2024 - Bizcommunity.com - July 6th, 2024 [July 6th, 2024]
- Daybreak Has Acquired Palia Studio Singularity 6 - PlayStation Universe - July 6th, 2024 [July 6th, 2024]
- The Singularity Heist: When AIs Crave Crypto | by Anthony Williams | Jun, 2024 - DataDrivenInvestor - June 20th, 2024 [June 20th, 2024]
- What 70 Years of AI on Film Can Tell Us About the Human Relationship With Artificial Intelligence - Singularity Hub - June 20th, 2024 [June 20th, 2024]
- SNL: Anthony Michael Hall on RDJ Bond, Sketches, "Singularity" Update - Bleeding Cool News - June 16th, 2024 [June 16th, 2024]
- What "naked" singularities are revealing about quantum space-time - New Scientist - June 16th, 2024 [June 16th, 2024]
- Review: "The Singularity Play" by Jackalope Theatre Company - Chicago Tribune - June 16th, 2024 [June 16th, 2024]
- This Week's Awesome Tech Stories From Around the Web (Through June 15) - Singularity Hub - June 16th, 2024 [June 16th, 2024]
- The AI Singularity Is Nothing to Fear - hackernoon.com - June 16th, 2024 [June 16th, 2024]
- AI Unearths Nearly a Million Potential Antibiotics to Take Out Superbugs - Singularity Hub - June 16th, 2024 [June 16th, 2024]
- The Singularity Play tackles AI - Chicago Reader - May 31st, 2024 [May 31st, 2024]
- Black hole singularities defy physics. New research could finally do away with them. - Space.com - May 31st, 2024 [May 31st, 2024]
- This Week's Awesome Tech Stories From Around the Web (Through May 25) - Singularity Hub - May 31st, 2024 [May 31st, 2024]
- This Device Zaps the Spinal Cord to Give Paralyzed People Use of Their Hands Again - Singularity Hub - May 31st, 2024 [May 31st, 2024]
- Converging Towards The Radio Singularity - RadioInsight - RadioInsight - May 3rd, 2024 [May 3rd, 2024]
- This Week's Awesome Tech Stories From Around the Web (Through April 27) - Singularity Hub - May 3rd, 2024 [May 3rd, 2024]
- I never would have dreamed that I would hear this song performed by two of the guitar gods who inspired it: Joe ... - Guitar World - May 3rd, 2024 [May 3rd, 2024]
- Scientists Find a Surprising Way to Transform A and B Blood Types Into Universal Blood - Singularity Hub - May 3rd, 2024 [May 3rd, 2024]
- This Week's Awesome Tech Stories From Around the Web (Through March 16) - Singularity Hub - March 18th, 2024 [March 18th, 2024]
- Breakpoint: The promises and perils of artificial intelligence - Chattanooga Times Free Press - March 18th, 2024 [March 18th, 2024]
- Palia reaches over 3m players in six months thanks to "invaluable" Switch partnership - GamesIndustry.biz - March 18th, 2024 [March 18th, 2024]
- This Week's Awesome Tech Stories From Around the Web (Through February 3) - Singularity Hub - February 8th, 2024 [February 8th, 2024]
- EIA Says 40 Percent of US Electricity Is Now Emission-Free for the First Time - Singularity Hub - January 10th, 2024 [January 10th, 2024]
- The Crossroads of Humanity: Embracing the Singularity | by Michiel Meire | Jan, 2024 - Medium - January 10th, 2024 [January 10th, 2024]
- Debating the Claim of Consciousness by Haley AI and the Ethical Implications of AI - Medriva - January 10th, 2024 [January 10th, 2024]
- [Master Duel] November 9th Update - YGOrganization - November 9th, 2023 [November 9th, 2023]
- Palia Update Adds New Customization Options, Starstones, and More - GameRant - November 9th, 2023 [November 9th, 2023]
- Robby Krieger And The Soul Savages Announce Debut Album - Dig! - November 9th, 2023 [November 9th, 2023]