Skip to content

Comment on Carbon Black S-1parent

Comments

Not all next-gen endpoint solutions do this. An endpoint application execution control can be much simpler.

1. Choose an existing trust list (over 1000 apps/dlls etc trusted) or build your own in a few minutes.

2. Install file filter driver - as soon as driver is installed on endpoint, instant protection, no scanning of drives, folders etc needed.

3. User runs a trusted app - intercepted at kernel, fingerprinted and matched allowed to run. Imperceptible to user.

4. Malware tries to execute - intercepted at kernel, check to see if on trust list, not on trust list - blocked.

5. Need to add a new trusted application? One click, no rules to amend, no whitelists to push to endpoints. All endpoints inherit new app trust and app can execute across global enterprise.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.