Detection of Advanced Malware, APT, and Bots in Enterprises

Home > Overview

The Business Impact

How serious are these threats to the enterprise? Recent news reports, such as the Operation Aurora; attacks waged against Google and Adobe, or the Kneber botnet that penetrated over 2500 major corporations, only begin to touch on what a botnet breach means in terms of business impact.

Consider these two examples, gathered from real-world Damballa on-site audits

Fortune 100 Technology Manufacturer
5000 assets protected by traditional enterprise security solutions

Damballa detected:
700 bot malware compromised assets with 50 unique botnets, including:

  • Zeus
  • Senowal
  • Koobface
  • Ghostnet

 

 
Fortune 500 Large Internet
& Retail Provider
1000 assets protected by traditional enterprise security solutions

Damballa detected: 175,000 pieces of evidence, 129 compromises, 46 suspicious assests and 34 unique botnets, including:

  • Zeus
  • Conficker
  • Koobface
  • Monkif

 

Both of these organizations have state-of-the-art defense-in-depth strategies for protecting their networks from attack and misuse. And yet, Damballa discovered that both companies had thousands of systems under active via malicious remote control. Neither organization was in any way aware of the scale or the severity of the problem before engaging Damballa.

Clearly, traditional defenses are no match for crimeware and industrial espionage - Damballa Failsafe is purpose-built to detect and terminate the organized, targeted nature of botnets and APTs.

Botnets represent a highly evolved business model that generates illicit profits using a variety of technologies and techniques.
Damballa protects enterprise organizations from bot-driven targeted attacks used for organized, online crime.