Transport Layer Security (TLS) is the modern version of the now-outdated Secure Socket Layer (SSL) protocol. It is located between the application protocol layer and the TCP/IP layer, where it can secure and send application data to the transport layer. TLS is more secure than SSL due to the multiple vulnerabilities associated with SSL, and is used to protect data as it is transmitted over the internet. However, malicious actors can still use TLS to introduce malware, and Trend Micro Cloud One™ - Workload Security uses zero-config TLS inspection to protect organizations from these attacks. TLS is used to encrypt web and email communications, and is especially vulnerable to Man-in-the-Middle (MITM) attacks, where a malicious element listens in on communications between parties and can insert their own data. Examples of this type of attack include the Raccoon attack in 2019 and the Heartbleed security bug in 2014. To protect against these threats, Trend Micro Cloud One uses a cloud-based intrusion prevention system to capture both ingress and egress traffic using Session Key Intercept (SKI). This allows organizations to decrypt TLS traffic and better recognize, access, and mitigate cyber risk.
This Cyber News was published on www.trendmicro.com. Publication date: Tue, 07 Feb 2023 04:37:03 +0000