Cyber Security
8 min read

Next-gen endpoint detection & response (EDR) solution

Written by
Gaurav Khuntale
Published on
January 16, 2023

Client background

Industry: Technology

Geography: United States of America

Segment:Cybersecurity

Core competence: Providing next generation cybersecurity solutions.

Challenges VoidStarIndia Faced

Client tried collaborating with multiple vendors.

VoidStarIndia’s skillsets/ knowledge base leveraged

 Good understanding of Windows/Mac/Linux OS architecture.

More than 5 years of experience in developing cybersecurity solutions.

Kernel programming required on all 3 Operating Systems.

VoidStarIndia’s Solution

Kernel drivers (for example mini-filter driver, WFP callout driver on Windows, system extension on Mac, Kernel modules on Linux) to gather real time data of unknown applications.

Sending the data to our own implemented detection engine in user mode.

Real time system virtualization of unknown applications to avoid tampering of user’s sensitive data from the malicious application like Ransomware with a huge impact on overall product especially a ransomware attack.

Low level kernel drivers for complete user’s system visibility.

A functionality for admin to terminate any process or close any handle on the system or unload any driver / use mode service from the system which the admin sees as suspicious.

Web-based central server console, agent on endpoint and communication between these 2 modules.

Result

 We have an ongoing working relationship with the client for over 5 years now.

Have Any Thoughts...
Let us know if you have any thoughts on the article. We would like to discuss and here your point of view or resolve any queries that you have on the case study.
Write To Us