CYBERSEC 2022 uses cookies to provide you with the best user experience possible. By continuing to use this site, you agree to the terms in our Privacy Policy. I Agree

CyCraft Info

Booth Number:L09

CyCraft Technology is a cybersecurity company specializing in autonomous AI technology. CyCraft has developed the autonomous threat exposure management platform "XCockpit," which is providing a one-stop solution for comprehensive and autonomous cybersecurity protection, and received multiple recognitions from leading research organizations such as Gartner, IDC, and Frost & Sullivan, along with numerous awards locally and internationally.

Contact Representative

前往https://ccmsassets.ithome.com.tw/2022/6/13/e76cbcbe-1de5-4e4a-85a1-afa639ddc29f.gif
Product Type
  • Managed Detection Response
  • Threat Intelligence
  • Threat Intelligence Gateway

Products

CyCraft MDR
CyCraft MDR

CyCraft MDR

CyCraft MDR is purposely designed to detect malicious behavior and continuously monitor and manage the cyber situ...

Managed Detection Response
CyberTotal
CyberTotal

CyberTotal

CyberTotal operationalizes multi-sourced global threat intelligence on active and emerging threats in an optimal, ...

Threat Intelligence
ThreatWall
ThreatWall

ThreatWall

The CyCraft ThreatWall Threat Intelligence Gateway (TIG) unifies automated detection and response with the latest ...

Threat Intelligence Gateway

Solutions

RiskINT

RiskINT

Your brand, your customers, your accounts, your data, and your infrastructure are all at risk in today’s cybersecurity ecosystem. You and your partners’ sensitive data resides on the deep, dark, and even surface web. 

Every day, adversaries are buying and selling intelligence on potential targets: accounts, passwords, documents, spreadsheets, emails, as well as other data and communications. 

After that, it’s only a matter of time before your intel is leveraged against you in order to infiltrate your organization, exploit it, disrupt it, and exfiltrate even more sensitive data. Risk no longer exists solely within your digital environment but beyond your firewall as well. 

How do you gain visibility into the dark web, see exactly what adversaries have on you, and build an effective defense?

Gain sight beyond sight. Risk Intelligence (RiskINT) enhances proactive defense capabilities, giving you the time necessary to prepare an effective defense to better protect your brand, intellectual property, and technology infrastructure. Gain granular visibility into your leaked accounts, passwords, documents located on the dark web, and phishing domains targeting your enterprise. Be informed. Be prepared. Be protected.

RiskINT Pro: Phishing & BEC

In addition to leveraging valid accounts and leaked documents for initial access, adversaries also phish, leading to business email compromise (BEC). Phishing can come in the form of websites used to spread disinformation and damage your brand’s reputation. RiskINT Pro defends against this by providing proactive phishing intelligence. Know what domains to look out for, which ones mimic your domains, and which ones are malicious.

RiskINT Premium: Leaked Documents

Attackers use phishing emails and compromised accounts to break in often with the purpose of obtaining sensitive information. But in many cases, that information is already available on the deep and dark web. RiskINT Premium takes you behind the scenes to show you what is already out there for sale, allowing you to take action and prevent further damage.

AD Attack Path Assessment

AD Attack Path Assessment

Since Windows 2000 Server edition, the Active Directory (AD) has become one of the most commonly exploited attack vectors by cybercriminals and advanced persistent threats (APT). Access to the AD gives attackers unfettered access to your digital ecosystem, posing a serious risk to your defense posture. CyCraft AD Attack Path Assessment is a granular security assessment of your AD jointly conducted by both seasoned security analysts and the CyCraft AI Analyst.

Highlighted Features

⬥In-Depth Investigation: Analyze, visualize, and correlate abnormal relationships between AD objects.

⬥Expert Knowledge: Gain access to our team of security professionals as they scrutinize your AD security for potential, ongoing, and undetected past threats.

⬥Smart Analysis: Detect virtual groups, hidden privileged accounts, and hidden artifacts.

⬥Red Team: We calculate possible attack paths and simulate red team attacks.

⬥InfoSec Health Clinic: Assess and quantify the overall information security risk of your AD environment.

⬥Hardened Defense: Attack Path Simulation provides enhanced AD strategies to limit security threats and harden your defense posture.

White Papers

Smokescreen Supply Chain Attack Targets Taiwan Financial Sector, A Deeper Look
Smokescreen Supply Chain Attack Targets Taiwan Financial Sector, A Deeper Look

Valentine’s Day 2022 saw the end of a truly toxic relationship — a prolonged supply chain attack targeting the Taiwan financial and securities trading sector that had begun back in November 2021. Evidence uncovered during a CyCraft incident response (IR) investigation ties these attacks to APT10 — a China state-sponsored hacker group widely believed to be associated with the Chinese Intelligence Agency, the Ministry of State Security (MSS).

The November attacks were originally attributed to password mismanagement and credential stuffing; however, following a security incident response (IR) investigation conducted by CyCraft into a second wave of attacks peaking from the 10th to the 13th of February 2022, new evidence uncovered the exploitation of a severe vulnerability in commonly used financial software aided by the newly identified hacking technique, Reflective Code Loading.

The true objective of this sophisticated zero-day supply chain attack (dubbed Operation Cache Panda) does not appear to have solely been financial gain but rather the exfiltration of brokerage information, the scraping of high-value PII data (full name, home address, email, credit card numbers, passport number, date of birth, etc.), damaging the reputation of Taiwan financial institutions, and the disruption of investor confidence during a period of economic growth for Taiwan.

下載

Videos

CyCraft MDR Test Flight Demo Video

CyCraft MDR is forging the future of cybersecurity today by extending the frontiers of autonomous technology and human-AI collaboration. This test flight video walks you step-by-step through the CyCraft MDR user experience against a simulated ransomware attack. Gain firsthand experience into why government agencies, financial institutions, the semiconductor ecosystem, and more trust CyCraft.