Allows on-demand API access to turnkey cyberthreat expertise

OXFORD, U.K. — 12月 3, 2019 —

Sophos (LSE: SOPH), a global leader in next-generation cybersecurity solutions, today announced the availability of SophosLabs Intelix, a cloud-based threat intelligence and analysis platform that enables developers to build more secure applications. With SophosLabs Intelix, developers can make API calls into the platform for turnkey cyberthreat expertise that assesses the risk of artifacts such as files, URLs and IP addresses. The platform continuously updates and collates petabytes of real-time and historical intelligence, including: telemetry from Sophos’ endpoint, network and mobile security solutions; data from honeypots and spam traps; 30 years of threat research; predictive insights from machine and deep learning models; and much more

Through the use of secure RESTful APIs, developers can directly tap the platform with file submissions for static and dynamic analysis, queries on file hashes, URLs, IP addresses, and Android applications (APKs) to proactively answer questions like, “Is this file safe? What happens if I open or execute it?” or “Is this link safe? What happens if I call this URL?” SophosLabs Intelix is available through the AWS Marketplace and includes several free tier options, allowing developers to immediately access and start using the intelligence platform.

“Sophos is building a global community around its APIs to spark innovation among developers. By exposing a variety of intelligence from SophosLabs directly through RESTful APIs, we’re making it simpler than ever before to quickly and easily integrate threat intelligence into new and existing applications and operations,” said Joe Levy, CTO, Sophos. “With SophosLabs Intelix, we’re lowering the barrier to realize analysis for anyone developing an application or platform. The information breadth and depth are also valuable for IT admins, researchers, security analysts, or students in need of top-tier threat intelligence.”

SophosLabs Intelix offers three key service features:

  • Real-time Lookups: Enables quick classification of artifacts with direct access to the latest SophosLabs intelligence by querying file hashes, URLs, IPs, or Android application thumbprints. Reputation scores identify known bad and known good files, as well as those in the grey area
  • Static File Analysis: Leverages multiple machine learning models, global reputation, deep file scanning, and more without needing to execute the file in real time
  • Dynamic File Analysis: Provides dynamic file analysis and classification capabilities through execution and instrumentation of submitted files in sandboxes, utilizing the latest runtime detection techniques to reveal true behaviors of potential threats

Pay-as-you-go options for more advanced research are also available through the AWS Marketplace and part of the Sophos Cloud Security Provider (CSP) program for channel partners. More information is available at https://api.labs.sophos.com/ and https://www.sophos.com/intelix.

ソフォスについて

ソフォスは、サイバーセキュリティ業界のリーダー企業として、AI を駆使したプラットフォームや精鋭スタッフによるサービスを世界中の 600,000社以上のお客様にご利用いただいています。セキュリティの成熟度にかかわらず、あらゆるお客様のご要望にお応えし、サイバー攻撃を撃退すべくお客様とともに成長を続けています。機械学習や、自動化、リアルタイムの脅威インテリジェンスに、Sophos X-Ops の最前線スタッフから得た専門知識を組み合わせて、高度な脅威監視、検出、対応を 24時間 365日体制で行っています。
ソフォスは、業界最先端の MDR (managed detection and response) を提供しているのに加えて、エンドポイントをはじめ、ネットワーク、メール、クラウドセキュリティ、XDR (extended detection and response)、ITDR (identity threat detection and response)、次世代の SIEM まで、サイバーセキュリティテクノロジーのあらゆるラインナップを取り揃えています。さらに、専門家によるアドバイザリーサービスも提供しており、組織はこれらを組み合わせて利用することで、リスクをあらかじめ減らし、迅速な対応をとれるようになるだけでなく、進化し続ける脅威の一歩先をいくために必要な可視性および拡張性を確保することが可能となります。
ソフォスは、グローバルに広がるパートナーエコシステムを通じて市場展開しており、お客様は、MSP (Managed Service Provider)、MSSP (Managed Security Service Provider) や、リセラー、ディストリビューターのほか、マーケットプレイスにおける統合、ソフォスのサイバーリスクパートナーまで、信頼できる関係性を自由にお選びいただけます。  ソフォス本社は英国のオックスフォードにあります。詳細については www.sophos.com をご覧ください。