Big Data Security

Fortinet brings ML to Firewall for Behavioral Threat Detection

Two-step AI-based Machine Learning Improves Attack Detection Accuracy to Create a Nearly “Set and Forget” Web Application Firewall

Fortinet announced the latest version of its FortiWeb Web Application Firewall (WAF) software release 6.0, making it the only major WAFsecurity vendor to use machine learning for behavioral-based threat detection in web applications.

  • The new innovations to FortiWeb provide a dramatic increase in detecting web application threats with nearly 100 percent accuracy.
  • Increased threat detection accuracy enables faster response times for “set and forget” automated blocking, eliminating the need for staff reviews of alerts before taking action.
  • Seamless integration with the Fortinet Security Fabric delivers advanced threat protection with file scanning of application attachments, simplified deployment and shared threat intelligence, as well as integration with third party services for extensive vulnerability protection.

Unprotected web applications have become attractive targets for cybercriminals looking for easy entry points into enterprise networks. Web application vulnerabilities can lead to data breaches or shut down mission-critical systems, which is why many organizations are choosing to leverage web application firewalls (WAFs) to protect their network. Traditionally, WAFs have relied on application learning (AL) for anomaly and threat detection, but in today’s dynamic threat landscape, AL has proven to have limitations that lead to false positive attack detections and require a significant amount of time to manage for already bogged down security teams.

The newly introduced capabilities in the FortiWeb Web Application Firewall address these issues by introducing machine learning capabilities for better threat detection, faster response times and easier management. Unlike AL, which uses a one-layer approach to detect anomalies based on simply matching inputs to what it has observed and treating every variation as a threat, FortiWeb now uses a two-layer approach of AI-based machine learning and statistical probabilities to detect anomalies and threats separately. The first layer builds the mathematical model for each learned parameter and then triggers anomalies for abnormal requests. The second will then verify if the anomaly is an actual threat or if it is a benign variance (false positive). These new innovations allow FortiWeb to provide nearly 100 percent application threat detection accuracy while requiring virtually no resources to deploy and fine tune settings.

Related posts

New Cyber Risk Management can Anticipate and Eliminate Breaches

enterpriseitworld

Cisco reimagines security with Hypershield

enterpriseitworld

Rapid Incident Response for Enterprises Under Attack unveiled

enterpriseitworld
x