Hyper-Converged Infrastructure, Data Storage
businesswire | August 03, 2023
Ermetic, a leading cloud infrastructure security company, today announced CNAPPgoat, an open source project that allows organizations to safely test their cloud security skills, processes, tools and posture in interactive sandbox environments that are easy to deploy and destroy. CNAPPgoat supports AWS, Azure and GCP platforms for assessing the security capabilities included in Cloud Native Application Protection Platforms (CNAPP).
The CNAPPgoat project will be officially presented at DEF CON Demo Labs in Las Vegas on Friday, August 11 from 12:00pm-1:55pm by Noam Dahan, Research Lead and Igal Gofman, Head of Research for Ermetic. On Wednesday, August 16 at 10am PST/1pm EST, Ermetic will present a webinar on using CNAPPgoat, to register visit thislink.
Unlike projects that illustrate possible attack paths, CNAPPgoat provides a large and expanding library of scenarios that security teams can execute to create a customized cloud environment for simulating unsecured and vulnerable assets and validating their defenses. The ability to easily provision a vulnerable environment with a broad range of risk scenarios provides the following benefits:
Create a sandbox for testing an organization’s security posture by assessing security team capabilities, procedures and protocols
Use vulnerable environments for hands-on workshops to train team members on new skills and techniques
Provision a “shooting range” for pentesters to test their skills at exploiting the scenarios and developing relevant capabilities
Benchmark CNAPP tools against known environments to evaluate their capabilities
“Compared to existing open-source projects that create ‘capture the flag’ scenarios where participants are expected to follow a certain path, CNAPPgoat spans the leading cloud provider platforms and CNAPP capabilities while providing a modular and granular approach for provisioning specific categories of risks and vulnerabilities,” said Igal Gofman, Director of Research for Ermetic.
“This breadth and depth allows pentesters and defenders to precisely isolate the elements they want to explore for training, new skills acquisition, prevention and security posture assessments,” added Noam Dahan, Research Lead.
CNAPPgoat enables security teams, trainers and pentesters to provision and run vulnerable scenarios from the following modules that make up the CNAPP specification defined byGartner:
Cloud Infrastructure Entitlement Management (CIEM) - covers risks associated with identities and entitlements, such as the unintended ability of an identity to escalate its privileges
Cloud Workload Protection Platform (CWPP) - includes the exposure of workloads to vulnerabilities such as running vulnerable/end of life software or OS versions
Cloud Security Posture Management (CSPM) - spans the misconfiguration of cloud infrastructure components, such as publicly exposed storage resources
Infrastructure as Code (IaC) scanning - will be added soon for finding misconfigurations directly in the code
CNAPPgoat is an open community initiative designed to be used by anyone for commercial, technical and educational purposes. See today’sblogfor implementation details. Additional artifacts including deeper technical dives and guides will be released soon. Contributions are encouraged including new scenarios, scenario proposals, issues, suggestions, feature requests or simply sharing feedback. To learn more and access CNAPPgoat visit thislink.
About Ermetic
Ermetic reveals and prioritizes security gaps in AWS, Azure and GCP and enables organizations to remediate them immediately. The Ermetic cloud native application protection platform (CNAPP) uses an identity-first approach to unify and automate cloud infrastructure entitlement management (CIEM), cloud security posture management (CSPM), cloud workload protection and Kubernetes security posture management (KSPM). It unifies full asset discovery, deep risk analysis, runtime threat detection and compliance reporting, combined with pinpoint visualization and step-by-step guidance. The company is one of America’s Best Startup Employers according toForbesand led by proven technology entrepreneurs whose previous companies have been acquired by Microsoft, Palo Alto Networks and others. Ermetic has received funding from Accel, Forgepoint, Glilot Capital Partners, Norwest Venture Partners, Qumra Capital and Target Global.
Read More
Application Storage, Data Storage
Globenewswire | July 07, 2023
PingCAP announced the introduction of TiDB Serverless, its newest offering of TiDB, the company’s open-source, distributed SQL database. As a fully-managed, autonomous database-as-a-service (DBaaS), TiDB Serverless delivers reliable scalability for developers who want to free themselves from manual database tasks, such as sharding. TiDB Serverless offers key advancements to PingCAP’s leading database architecture and provides developers with time-saving features, including
Auto Elasticity - TiDB Serverless automatically scales hundreds of nodes up and down to meet critical workloads in real-time. It enables separate scaling for storage and compute, allowing autonomous scalability of nodes without manual sharding—so development teams can focus on what’s next. TiDB Serveless maintains the ACID properties of data transactions.
Fully-Managed Operations - With built-in auto failover and self-healing to ensure continuous operations, multiple availability zones (Zs) are used to duplicate data, increasing overall resilience and prevention of failures. TiDB Serverless performs daily data backups, increasing safety measures and facilitating data recovery if necessary. TiDB Serverless also ensures auto-failover, minimizing downtime and guaranteeing business continuity.
Usage-Based Pricing - Lower overall infrastructure costs by only paying for the data processing and storage you use. TiDB Serverless eliminates the need for manual intervention by abstracting the underlying infrastructure and automatically adjusts to changing workloads. TiDB Serverless guarantees that developers only pay for the resources they actually need.
AI-Assisted Enhancements - New features such as Chat2Query, powered by OpenAI’s ChatGPT3, allow developers to generate SQL queries on the fly, increasing overall developer productivity. The service provides real-time insights into dynamic datasets, allowing developers to analyze and explore more data at a faster rate. The service ensures developers make smarter business decisions by providing timely and relevant information.
"Enter a new era of seamless scalability with our revolutionary TiDB Serverless," stated Max Liu, CEO of PingCAP. "This innovative product represents a significant milestone for PingCAP, offering developers exceptional flexibility and scalability. TiDB Serverless will drive growth and empower organizations to achieve significant improvements in database management. We are excited for developers to explore its endless opportunities while benefiting from unmatched efficiency."
For the first 5 clusters in an organization, TiDB Serverless will provide free usage up to 5GB of row storage, 5GB of column storage, and 50 million Request Units (RUs). Please review TiDB Serverless Pricing Details for an in-depth pricing breakdown.
Thought leaders from PingCAP will discuss key advancements to TiDB in a TiDB Serverless launch webinar on Monday, July 10, at 10 a.m. PT. To register for the webinar, please sign up here.
About PingCAP
PingCAP is the company behind TiDB, the most advanced, open source, distributed SQL database. TiDB powers modern applications with a streamlined tech stack, elastic scaling, real-time analytics, and continuous access to data—all in a single database. With these advanced capabilities, growing businesses can focus on the future instead of complex data infrastructure management. Some of the world’s largest companies across technology, financial services, travel, Web3, and gaming trust TiDB to handle their business-critical workloads.
Read More
Hyper-Converged Infrastructure, Data Storage
prnewswire | August 18, 2023
Pure Storage, the IT pioneer that delivers the world's most advanced data storage technology and services, today announced that Chungbuk Technopark, a regional innovation hub in Chungcheongbuk-do Province, has leveraged FlashBlade®, its unified fast file and object storage platform, to enhance the AI development environment it provides to local businesses by boosting storage data processing performance and significantly improving GPU usage.
Customer Challenge:
Chungbuk Technopark is an innovation hub that supports growth and economic development in the Chungcheongbuk-do province ofSouth Korea, including a development environment for deep learning and machine learning that helps local companies develop AI products. To support AI initiatives, the company needed storage with AI-optimized performance, simple management, and that was easily upgradeable.
Customer Impact:
Chungbuk Technopark built its AI environment around the NVIDIA DGX A100 system. After comparing flash storage solutions, it selected Pure Storage FlashBlade for a seamless integration with its DGX systems, maximizing the efficiency and management of data used to develop and train AI technologies. Benefits that Pure Storage delivers to Chungbuk Technopark include:
Advanced AI development infrastructure:Chungbuk Technopark increased data processing performance twofold, improved the GPU server's data read speed, and expanded GPU usage from 30% to 80%—an increase of about 2.6x. It also enhanced performance, scalability, and data availability for the AI development environment, while also achieving a tenfold increase in reliability.
Zero downtime to meet a growing workload:FlashBlade allows Chungbuk Technopark to increase performance and capacity without any downtime or data migrations. This means more reliable service for companies that rely on the AI platform.
Simple, efficient storage management:With Pure's AI-powered full-stack storage management and monitoring software, Pure1®, Chungbuk Technopark's staff spends much less time and cost managing storage capacity and performance.
Pure Storage supports Chungbuk Technopark's efforts to help local companies innovate AI-enabled services and products. A promising beauty-tech startup, for example, uses the AI platform to analyze skin and scalp conditions and market customized beauty products. A fast-growing local startup successfully developed AI technology to analyze the movement of wild boars. This helps livestock farmers prevent African Swine Fever (ASF), a development that earned the company the 'H1 2022 Best Patent Award of Korea' by The Hankook Ilbo.
Executive Insight:
"With the introduction of Pure StorageFlashBlade, we have trained our AI models faster with 2x faster data read speeds. FlashBlade has paved the way for us to build a better AI development environment, enabling many companies in the region to achieve significant business results."-- Cheol-hong Kim, Digital Strategy, Team Leader, Chungbuk Technopark
"The advancement of the AI development environment ofChungbuk Technopark has helped many local businesses maximize the potential of AI and data and accelerate innovation. We will continue to collaborate with companies and institutions in Korea by providing modern all-flash storage infrastructure to efficiently meet the exploding data demands of the AI era."--Jaesung Yoo, Managing Director, Pure Storage Korea
About Pure Storage
Pure Storage uncomplicates data storage, forever. Pure delivers a cloud experience that empowers every organization to get the most from their data while reducing the complexity and expense of managing the infrastructure behind it. Pure's commitment to providing true storage as-a-service gives customers the agility to meet changing data needs at speed and scale, whether they are deploying traditional workloads, modern applications, containers, or more. Pure believes it can make a significant impact in reducing data center emissions worldwide through its environmental sustainability efforts, including designing products and solutions that enable customers to reduce their carbon and energy footprint. And with the highest Net Promoter Score in the industry, Pure's ever-expanding list of customers are among the happiest in the world.
Read More