Kaspersky has taken a step forward in the protection of business infrastructure with the presentation of version 7.0 of its Kaspersky Anti Targeted Attack (Kata) solution, an advanced platform designed to detect and respond to sophisticated cyber threats. The new edition introduces important improvements focused on the detection and response in the network (NDR), strengthening defense against internal attacks and raising the visibility of the corporate digital environment.
This launch becomes special relevance in a worrying context: 93% of Spanish companies have been the victim of some type of computer attack, according to the report ‘computer security economy’ prepared by the company itself. In response to this panorama, Kaspersky reaffirms its commitment to continuous innovation to offer solutions that are maintained at the height of constantly evolving challenges of the world of cybersecurity.
“With the launch of Kata 7.0, we reinforce our commitment to provide companies with a fully integrated security solution, capable of detecting and mitigating complex threats, both at the network level and endpoints. These IDR improvements, as well as greater visibility and intelligence in real time allow organizations to detect and mitigate threats more effectively than ever,” concludes Alexander Rumyantsev, senior production manager Cloud & Network Security in Kaspersky.
Total visibility and better threat management
One of Kata 7.0 bets is the expansion of its ability to offer a complete vision of IT infrastructure. Among the new functionalities, the export of network telemetry is from Kaspersky Endpoint Security, for both Windows and Linux. This improvement adds to the supervision of SPAN traffic, which together provides a more precise and rich panoramic data to detect suspicious behaviors.
The platform is also reinforced with graphic and interactive tools that allow a more effective management of assets and the network map. These profits, especially aimed at the Equipment of the Safety Operations Center (SOC), include advanced filtering and visual analysis functions, facilitating continuous and dynamic supervision of all connected devices.
More power against internal threats
One of the strengths of this new version is the improvement in internal traffic inspection. Thanks to the incorporation of new IDS rules (Intrusion Detection System) to analyze the east-west traffic, the solution is capable of identifying more precision lateral movements, information filtration and other malicious actions that could previously go unnoticed.
In addition, Kata 7.0 incorporates mechanisms to detect abnormal risks and behaviors, allowing companies to anticipate possible critical incidents and significantly reduce their attack surface. These proactive abilities are key at a time when cyber threats become increasingly sophisticated and persistent.
Reinforcement of the EDR functions and search for threats
The update also includes improvements in the EDR Expert functionality (detection and response in Endpoints). The quantity and variety of telemetry that is collected from the devices has increased, expanding the visibility of the events that occur in each of them and improving the ability to respond to directed attacks.
As for the search for threats, Kaspersky has enhanced the analysis engine allowing more precise consultations about all attributes of the registered events. This not only facilitates a more refined detection, but also helps reduce false positives through the creation of specific exceptions.
A significant addition in this area is the support for SIGMA rules, an open standard that allows describing malicious behavior patterns. This integration makes it possible to identify threats both in the data collected above and in the new events that are generated, increasing the capacity to respond to any indication of commitment.
A firm step towards integral cybersecurity
With this update, Kaspersky consolidates its holistic security approach that combines network protection and endpoints. Kata 7.0 not only responds to the current needs of companies, but also anticipates future risks, offering a smarter, automated and prepared defense environment for more complex attacks.
The solution is presented as an indispensable ally for organizations that seek to stay safely in an increasingly threatening and changing digital scenario.