{"id":3181,"date":"2024-04-18T17:00:26","date_gmt":"2024-04-18T22:00:26","guid":{"rendered":"https:\/\/www.darkreading.com\/cloud-security\/cisco-faces-complex-road-to-deliver-on-its-complex-hypershield-promise"},"modified":"2024-04-18T17:00:26","modified_gmt":"2024-04-18T22:00:26","slug":"ciscos-complex-road-to-deliver-on-its-hypershield-promise","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/04\/18\/ciscos-complex-road-to-deliver-on-its-hypershield-promise\/","title":{"rendered":"Cisco&#8217;s Complex Road to Deliver on its Hypershield Promise"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/bltd29c5a2bbe8de7db\/65a18ad92d34b2040ae6843f\/peachshutterstock-cloud-security-shutterstock.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The cybersecurity industry has no shortage of problems: Attackers are using automation to shorten their time to exploit, patching software is burdensome, establishing defenses such as segmentation remains difficult, and a shortage of cybersecurity-skilled workers holds back efforts in all these areas.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">No wonder, then, that Cisco has decided to launch an AI-powered, distributed security platform for protecting cloud workloads and AI systems from cybersecurity threats. Dubbed Hypershield, the platform will push security out to the edge, using AI-augmented agents to maintain security controls around every workload in the data center, and even distributed, connected devices. Cisco claims the platform will be able to patch environments automatically, test software updates within the environment using simulated systems known as digital twins, and block attacks by detecting anomalous behavior.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Hyperbole was not in short supply, and &#8220;reimagined&#8221; seemed to be the word of the day.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Jeetu Patel, executive vice president and general manager of Cisco&#8217;s security and collaboration division called it &#8220;one of the largest platform shifts that we&#8217;ve experienced during our lifetimes.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;For the past gazillion years, when we&#8217;ve looked at security, the advantage has always been on the side of the adversary,&#8221; Patel said during a press conference announcing Hypershield. &#8220;We are now approaching an era &#8230; where &#8230; because [of this platform], you might have a world where you might have an advantage as a defender, and wouldn&#8217;t that be a wonderful world to live in.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Cybersecurity is certainly a field that could benefit from using AI for augmentation or as an assistant, and pushing security to the distributed edge \u2014 closer to the devices to be secured \u2014 can help simplify some aspects of vast networks that need to be secured.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The company&#8217;s choice of technologies makes sense, says David Holmes, a principal analyst with Forrester Research. By using eBPF, <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/ebpf.io\/what-is-ebpf\/#what-do-ebpf-and-bpf-stand-for\" rel=\"noopener\">a technology that allows sandboxed programs to run in a privileged context<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, pieces of the workload can be instrumented, and data processing units (DPUs) allow efficient processing of data using high-bandwidth network interfaces.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;They are describing a more modern approach to building a private cloud data center architecture, and that\u2019s good,&#8221; Holmes says. &#8220;eBPF for automation [and] security, container-like workloads \u2014 their DPUs \u2014 overall, this is good for the industry if they pull it off.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Digital Twins Allow Automated Patching\">Digital Twins Allow Automated Patching<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Craig Connors, chief technology officer of Cisco&#8217;s security business group, demonstrated how a workload or application could be automatically patched and run in parallel using digital-twin technology to test the stability and correctness of the updated software. <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyber-risk\/unlocking-the-cybersecurity-benefits-of-digital-twins\" rel=\"noopener\">Digital twins are simulations<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> \u2014 originally used in product development and manufacturing \u2014&nbsp;that allow software engineers to test and observe a version of a device or application.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">If patched code passes all tests and satisfies policies, then it can be promoted to production, Connors said during the demonstration.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;What we&#8217;ve done is we&#8217;ve essentially introduced the digital twin into every enforcement point that we deploy,&#8221; Connors stated. &#8220;So, we&#8217;re actually bringing CI\/CD [continuous integration and continuous delivery] to the embedded world by running the end-of-the-promotion pipeline as a digital twin on every single enforcement point for every single customer in the world in a transparent way. That allows us to test every possible combination that could happen in your real environment everywhere.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">While the company will start with Linux environments, Cisco hinted at future plans to support other operating systems.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The same digital twin approach can be applied to developing segmentation policies for networks of devices and workloads, according to Connors. The AI assistant built into the Hypershield platform could recommend micro-segmentation policies and give a confidence score that each policy would behave well inside a given environment.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;Imagine if AI wasn&#8217;t just recommending micro-segmentation policies, but it was modeling them in a digital twin of your environment, and telling you exactly how it tested those policies to make sure they were correct before it recommended them to you,&#8221; Connors said. &#8220;So we&#8217;re really trying to bring that trust aspect in and not just &#8216;AI bomb&#8217; you with recommendations.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Distributed Exploit Protection\">Distributed Exploit Protection<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Cisco says the platform will also protect against exploits in real-time by using threat intelligence to inform anomaly detection and response. Because companies never know which vulnerabilities will be picked up by an attacker, the system allow all high-impact vulnerabilities to be treated the same.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">This approach benefits companies with legacy hardware and software that has reached end of life and is no longer receiving updates, according to Connors.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;There are cases where we can never patch, because let&#8217;s say the software&#8217;s end of life, but my business still relies on it and a critical vulnerability exists,&#8221; Connors said. &#8220;So, while these are intended to be short-lived patches to bridge that gap between that availability and patch deployment and then we&#8217;ll automatically pull back these distributed shields, it is potentially feasible that you may want to run this for the life of the application to continue protecting you against [exploitation].&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Having the vision and the individual technologies is a good first step, but like the platform managing driver-assist features in cars, the trick is how it all comes together, says Jon Oltsik, analyst emeritus at Enterprise Strategy Group. Coordinating the pieces across multiple systems, rather than looking at each one in isolation \u2014 as well as figuring out \u2018normal\u2019 activity \u2014 and then respond will be tricky.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;It\u2019s a good goal, but a lot of things need to come together to make it happen, including user buy-in,&#8221; he says, adding: &#8220;AI-based security must go through rigorous testing and be proven in the field before security professionals will trust it.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Cisco has promised the platform will be generally available in four months by August 2024.<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/cloud-security\/cisco-faces-complex-road-to-deliver-on-its-complex-hypershield-promise\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The cybersecurity industry has no shortage of problems: Attackers are<\/p>\n","protected":false},"author":12,"featured_media":3182,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-3181","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=1600%2C800&ssl=1",1600,800,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=300%2C150&ssl=1",300,150,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=640%2C320&ssl=1",640,320,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=640%2C320&ssl=1",640,320,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=1536%2C768&ssl=1",1536,768,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=1600%2C800&ssl=1",1600,800,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=1024%2C512&ssl=1",1024,512,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/04\/ciscos-complex-road-to-deliver-on-its-hypershield-promise.jpg?fit=1600%2C800&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=3181"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3181\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/3182"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=3181"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=3181"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=3181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}