Forcepoint > Case Studies > Wall Street Firm Discovers Zero-day Threat

Wall Street Firm Discovers Zero-day Threat

Forcepoint Logo
Company Size
11-200
Region
  • America
Country
  • United States
Product
  • Bitglass Breach Discovery Service
Tech Stack
  • Next-Gen-Firewall
Implementation Scale
  • Enterprise-wide Deployment
Technology Category
  • Cybersecurity & Privacy - Network Security
Applicable Industries
  • Finance & Insurance
Applicable Functions
  • Business Operation
Use Cases
  • Cybersecurity
Services
  • Cybersecurity Services
About The Customer
The customer is a mid-sized technology company that provides services to high-value targets on Wall Street. As a service provider to these high-profile clients, the company is a prime target for hackers looking to gain access to sensitive financial data. The company has invested in high-end cybersecurity measures, including a 'Next-Gen-Firewall', to protect its network and the data of its clients. However, despite these measures, the company discovered that it was still vulnerable to malware attacks, with several internal IPs contacting Malware Command and Control destinations outside the firewall.
The Challenge
The mid-sized technology company, which provides services to high-value targets on Wall Street, was facing a significant cybersecurity threat. Despite having a high-end 'Next-Gen-Firewall' installed, the firm discovered that ten internal IPs were contacting Malware Command and Control destinations outside the firewall. Some of the internal IPs had multiple malware infections. The firm was an ideal back door for hackers who could inject malware into the service provider, gain access credentials to their customers, and exfiltrate high-value data without being detected. The average breach lasts almost eight months, posing a significant risk to the firm and its clients.
The Solution
The company turned to Bitglass and its Breach Discovery Service to address this cybersecurity threat. The CTO of the firm uploaded one week of firewall logs to the Bitglass service, which included 'application logs,' 'unclassified URLs,' and 'layer 4 logs.' The Bitglass Breach Discovery Engine analyzed these logs and identified several high-risk cloud apps on the network, posing a compliance risk. More importantly, the engine discovered the malware infections on the internal IPs. Bitglass' Breach Discovery Engine tracks the latest risks to uncover breaches early, enabling the company to limit the damage caused by these breaches.
Operational Impact
  • The company was able to identify several high-risk cloud apps on its network, posing a compliance risk.
  • The company discovered malware infections on several internal IPs, highlighting a significant cybersecurity threat.
  • The company was able to uncover these breaches early, limiting the potential damage caused by these breaches.
Quantitative Benefit
  • 10 internal IPs were found to be contacting Malware Command and Control destinations outside the firewall.
  • Some of the internal IPs had multiple malware infections.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

Related Case Studies.

Contact us

Let's talk!
* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.