en.Wedoany.com Reported - South Korea's P&PSecure announced on the 22nd the launch of the attack surface identification and real-time control security platform "DBSAFER Shadow Control."

"Shadow IT," assets unnoticed by administrators, is becoming a major cause of network intrusion incidents. P&PSecure has launched this platform not only to identify externally exposed assets but also to block indirect access to internal infrastructure and data areas.
The solution divides an organization's attack surface into two axes—infrastructure and data—applying static scanning and runtime detection technologies. The infrastructure axis focuses on "Internal Attack Surface Management (Internel ASM)," integrating techniques that investigate whether major protocols like SSH are activated through designated frequency band packet transmission, as well as technologies for real-time detection of inter-terminal access. This method identifies unregistered assets and preemptively blocks hackers' lateral movement paths.
The data axis centers on the "Data Security Posture Management (DSPM)" solution, which not only possesses static analysis capabilities to identify the location of sensitive information within Database Management Systems (DBMS) but also features a runtime discovery engine that identifies sensitive information based on query results and ensures visibility.
The company emphasized that the new product completes the entire process from analysis to actual control within a single platform. For identified exposed elements, the solution assesses sensitivity, usage behavior, etc., providing prioritized guidance based on risk score ranking, allowing security administrators to address the most urgent risk elements first.
Analyzed threat assets can be registered as DBSAFER protected assets without the need for additional policy configuration. These incorporated protected assets will implement blocking and control based on tiered policies through Database Access Control (DAC) and System Access Control (SAC) functions.
P&PSecure CEO Park Cheon-oh stated that zero trust can only be achieved by combining internal attack surface management for infrastructure with security posture management for data. The company will eliminate security blind spots for enterprises through the process of discovery, analysis, and control.
This article is compiled by Wedoany. All AI citations must indicate the source as "Wedoany". If there is any infringement or other issues, please notify us promptly, and we will modify or delete it accordingly. Email: news@wedoany.com









