Le Lézard
Classified in: Science and technology
Subjects: Conference, Product/Service, Trade Show

Finite State Enhances Automated Zero Day Detection for Connected Devices


Vulnerabilities in the software supply chain are costing device manufacturers business. Threats like Treck TCP/IP and ThroughTek Kalay P2P SDK continue to emerge, and according to a recent Ponemon Institute report, nearly 60% of organizations have lost revenue due to product security concerns. Finite State, the product security leader for connected devices, has unveiled a way to reduce the business risk of those vulnerabilities through advanced binary analysis.

Device manufacturers use board support packages (BSPs) and software development kits (SDKs) from third-party vendors and developers, often without knowing what is inside them. Because these packages are essentially black boxes, any insecure configuration files make it easier for threat actors to carry out privilege escalation attacks, brute force attacks, and other potentially disastrous breaches.

Finite State's advanced binary analysis enhances automated zero-day vulnerability detection to eliminate blind spots in developer libraries. This capability goes beyond the source code-based software as a service (SaaS) offerings to catch the vulnerabilities those tools miss.

"Manufacturers are inherently trusting the developers of SDKs and BSPs, but recent vulnerabilities like Log4j, ThroughTek, Realtek, and DNSpooq prove they shouldn't be so trusting," said Jeff Martin, VP of Product at Finite State. "Our advanced binary analysis finally gives manufacturers visibility into these packages that are being added to their firmware unchecked."

In addition to making it possible for security teams to see into these black boxes, Finite State's advanced binary analysis saves them the time and effort of extensive manual testing. This essential feature ensures that products are more secure before they are shipped and allows organizations to quickly assess their third-party components for zero-day vulnerabilities and Common Vulnerabilities and Exposures (CVEs) to protect customer relationships, brand reputation, and potential loss of revenue.

Learn more about the advanced binary analysis works within the Finite State platform by visiting booth 6774 at CES 2022.

About Finite State

Finite State empowers organizations to gain control of product security for their connected devices and supply chains. Backed by a team of seasoned experts, our automated product security platform arms our customers with the actionable insights, critical vulnerability data, and remediation guidance necessary to mitigate product risk and protect the connected attack surface. For more information, visit www.finitestate.io.


These press releases may also interest you

at 22:33
The report titled "Identity Governance & Administration Market by Component (Services, Solution), Modules (Access Certification & Compliance Control, Access Management, Identity Lifecycle Management), Organization Size, Deployment, Vertical - Global...

at 22:03
The report titled "Contract Research Organization Services Market by Type (Clinical Research Services, Consulting Services, Data Management Services), Trial Phase (Phase I, Phase II, Phase III), Therapeutic Area, Molecule Type, End-User - Global...

at 20:35
Bristow Group Inc. , the global leader in innovative and sustainable vertical flight solutions, today announced it will release its first quarter 2024 financial results and selected financial outlook for 2025 and 2026 after market close on Tuesday,...

at 20:25
AIDS Healthcare Foundation applauds the government of Colombia for issuing a compulsory license on HIV drug dolutegravir, which will allow the country to access affordable generic versions of the treatment as an alternative to the costly branded...

at 20:00
SUNRATE, an intelligent global payment and treasury management platform has been named one of the Top 100 Cross-Border Payment Companies for 2024 by FXC Intelligence, which recognises and celebrates the most important players in the cross-border...

at 19:35
Fobi AI Inc. (FOBI:TSXV) (FOBIF:OTCQB) (the "Company" or "Fobi"), an industry leader in harnessing AI and data intelligence to enable digital transformation, is pleased to announce that, further to its press release dated October 18, 2023, it has...



News published on and distributed by: