Embedded Application Whitelisting
Automatically built, prevents loading of unauthorized executables
Karamba XGuard Whitelisting: Deterministically Prevents The Loading Of Unsigned Executables
Application whitelisting is not a new idea in security, and in a confined application the “known good” list is a very effective security measure against dropper attacks.
Hackers looking to upload new scripts, binaries or libraries into memory during runtime will be blocked, as the whitelisting compares each executable with the contents of the authorized list.
Karamba's secret sauce is the automatic process to map and build this whitelist. In very large applications with thousands of executables, only an automatic and granular building of the whitelist is practical to protect the code.
Given the dynamic nature of the supply chain, Karamba XGuard Whitelisting has a built-in mechanism to allow external signed binaries from third-party suppliers as well as update diffs from the image authority.
XGuard Whitelisting Advantages
Self-Protection
Embedded security Whitelisting is immutable and always on. Only preapproved files can upload into memory, preventing executing of unknown scripts, libraries and binaries. No cloud connectivity is required.
Deterministic
The “known good” approach provides a deterministic algorithm which is inherently precise. Only legitimate files can execute to runtime memory. Unauthorized droppers are blocked.
Configurable Outcomes
Prevents unauthorized file load attempts as soon as they are detected.
See Why Our Security Solutions Win Awards
XGuard for Automotive
Read about the products of XGuard Suite and how they protect automotive systems and devices.
Download
XGuard for IoT Device Security
Read about the products of XGuard Suite and how they protect IoT devices.
Download
XGuard Bolt-On Security for IoT
XGuard controls can be added on after the build.
Download