Concentric AI, a vendor of intelligent AI-based solutions for autonomous data security posture management (DSPM), has released what it is calling “the industry’s first deep-learning driven detection,” with the capabilities to find hardcoded secrets and key credentials (e.g. API keys, encryption keys, tokens, passwords, etc.) in enterprise on-premises and cloud data repositories, as well as email and messaging applications.
As a result, the updates to Concentric AI’s trademarked Semantic Intelligence DSPM solution enable security teams to address risks to sensitive data by deleting the information and reducing the threat of malware attacks that can result in lateral movement and potential loss of sensitive data.
“Recent data breaches have involved attackers looking for authentication credentials once inside the network to gain access to sensitive information and steal data. This capability offered by Concentric AI helps us detect instances of these credentials, such as secrets and keys lying around in our data repositories and clean them up. This allows us to significantly reduce our data attack risk surface and prevent data loss,” said a CISO of a Fortune 1000 high tech company.
New capabilities such as generative artificial intelligence (AI) have made spear phishing attacks more sophisticated by making it easier to trick employees into clicking on harmful links or downloading malicious attachments, leaving enterprises more vulnerable to a compromise.
Once malware and attackers compromise a network, they can search for and discover secrets and keys for access to applications in data. Gaining access to secrets and keys to repositories including SharePoint, Google Drive, Github, SSH, S3, Box, BiTBucket, and Windows File Systems gives attackers access to sensitive internet protocols such as source code, private client information and critical financial data.
By using deep learning and natural language processing (NLP), Concentric AI’s Semantic Intelligence detects secrets and keys for a variety of applications embedded in unstructured data within popular on-premises and enterprise cloud data repositories, as well as email and messaging applications.
Detection of secrets and keys beyond unstructured data is important because employees often leave secrets embedded within enterprise collaboration and email/messaging applications for easy access and sharing with other employees.
Concentric AI’s DSPM solution scans organizations’ data, detects sensitive or business critical content, identifies the most appropriate classification category, and tags the data. Concentric AI uses artificial intelligence to improve discovery and classification accuracy and efficiency to avoid endless regex rules and inaccurate end user labeling.
In addition, Concentric AI can monitor and identify risks to financial and other data from inappropriate permissions, wrong entitlements, risky sharing and unauthorized access. It can remediate permissions and sharing issues or leverage other security solutions and cloud APIs to protect exposed data.
For more information, see www.concentric.ai/product.