Advanced protection for communication service providers and their subscribers.
Advanced protection for communication service providers and their subscribers.
Core CSP (formerly Damballa CSP) is a security system designed specifically to monitor the Internet Service Provider and telecommunications subscribers for cyber threats. This lightweight, scalable solution for service providers passively monitors extremely large networks and identifies malicious activity on a subscriber network originating from PC, tablet, and mobile devices.
The challenge of protecting large networks
Internet service providers (ISPs) and telecommunications companies are increasingly fending off cyber threats that are hijacking bandwidth resources. In addition, these attacks are putting your subscribers at risk of having their credentials stolen, being victims of fraudulent transactions, or having their devices commanded and used for encryption, bot networks, or other persistent attacks. DDoS attacks, usually committed by botnets, are particularly problematic because they consume bandwidth with flood requests, disrupting normal traffic, or completely locking up infrastructure. Threat actors use service provider networks as a way to access any number of unwary targets. With more smart devices than ever before, subscribers often rely on their service providers to keep them safe from cybercrime.
Passive monitoring for actionable information
The main CSP passively monitors considerable service provider-scale networks, identifying infections with certainty and providing service providers with information about malicious activity originating in their network. The primary CSP is out of band within the service provider's network, leveraging more than 12 years of DNS-based passive threat historical intelligence to monitor DNS requests from subscribers' IP addresses for the presence of advanced malware.
Get maximum visibility into threat activity, with information such as threat names and intents, infected subscribers, malicious DNS queries, and more. Users can also track trends such as malicious activities by country, infections over time, or unique threats discovered. With this evidence, service providers can move quickly, notifying subscribers, enabling faster fix and reducing wait time.
Maximize subscriber protection and service
When working out of band within the service provider's network, Core CSP does not block bandwidth or impede network performance, ensuring that subscribers still get the service as quickly as possible. In addition, working outside the band makes Core CSP undetectable by criminal entities trying to avoid detection, allowing you to gain an advantage by gathering information about your techniques, so you can take both short-term steps to prevent them from causing harm, as well as long-term measures to ensure that these techniques don't work in the future.
The subscriber experience is also prioritized, with several options on how to better notify subscribers of an infection, including email or in the browser. In addition, the primary CSP identifies threats without compromising users' personally identifiable information (PII). Subscribers can have complete peace of mind with confidence in their security, without feeling that their privacy is being invaded.
Main features
Identify compromised subscribers
Sensors are placed in important locations on your subscriber access network. They listen for passive DNS traffic to identify IP addresses of compromised subscribers.
Global intelligence against threats to your devices
Advanced data science and machine learning systems regulate, correlate, and predict infections and threat agents to continuously improve your security.
Valuable information to reduce on-call time
Suspicious and malicious evidence is displayed in the management console in dashboards and can be aggregated to generate executive reporting, health check, and threat trend reports.
Business class service
For the specific purpose of communication service providers, Core CSP enables these large companies to protect their bandwidth resources and protect subscribers from malware and advanced threats.
How can your company benefit from the primary CSP?
The primary CSP does more than protect your bandwidth and reduce the risk of damage to your subscribers' devices and sensitive information. Reduces the risk of weak customer relationships, impaired reputation, and loss of subscribers. It also avoids the need for a drastic increase in the cost of time and money that arises when it is necessary to investigate the numerous queries posted on fraudulent data claims and SMS usage charges due to excessive traffic from malicious infections. With Core CSP identifying infections safely, service providers can immediately notify subscribers, reducing risk exposure, increasing customer goodwill, and offering rectification opportunities.
Enrich the main CSP with integrations
The primary CSP enables service providers to optimize their security by integrating with other solutions such as SIEMS, other registration systems, or correction tools. Organizations have an increasing number of solutions, enabling centralization through integration to enable security analysts to act even faster.
System requirements:
CPU: 1.8 GHz dual core processor
RAM: 2 GB
HDD / SSD: 50 GB of free space on the main drive
Operating system: Microsoft Windows 8 32-bit, Microsoft Windows 7 32-bit and Microsoft Windows Vista 32-bit
Resolution: 1024×768
You don't know what software you need or you haven't found what you were looking for? We have a team ready to help you choose the right software for your company.