Karamba Security

Karamba Security

Computer and Network Security

Hod Hasharon, Israel 7,634 followers

Securing the Future of Smart Mobility and IoT, automotive, medical, enterprise edge, and Industry 4.0 connected devices.

About us

Karamba Security is a global software company that focuses on securing connected devices and embedded software with full solution for Product Security. Karamba Security is led by a team comprised of security experts, serial entrepreneurs and business savvy executives with a track record of multiple IPOs and M&As. For more details contact us at contact@karambasecurity.com

Industry
Computer and Network Security
Company size
11-50 employees
Headquarters
Hod Hasharon, Israel
Type
Privately Held
Founded
2016
Specialties
Automotive Cybersecurity, Cyber Attack Prevention, Autonomous Security, IoT Security, IIoT Security, Industry 4.0, Field controllers Security, CAN Security, Inverters Security, Threat Analysis, Code Review, Remote Code Execution, Control Flow Integrity, and Medical Device Security

Locations

Employees at Karamba Security

Updates

  • View organization page for Karamba Security, graphic

    7,634 followers

    We were excited to take part in the Indian Automotive Component Manufacturers Association (ACMA) annual event in New Delhi. The Indian automotive industry is ramping up swiftly, thanks to local talent and global expansion. The need to meet cybersecurity regulations has resulted in significant traction for Karamba Security among Indian OEMs and tier-1 suppliers.

    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    Addressing Cyber Defense Magazine's request, Tal Ben-David has authored an article about the benefits of deterministic security, especially in mission-critical IoT devices and applications. The article was published in a timely manner, after August 27th's Washington Post report (https://lnkd.in/dUuimsjC) and a Lumen Technologies blog post (https://lnkd.in/dmUi5m9w) describe how Chinese hackers, specifically the state-sponsored group known as Volt Typhoon, have been exploiting a zero-day vulnerability in Versa Director, a software platform widely used by Internet Service Providers (ISPs) and Managed Service Providers (MSPs) to manage SD-WAN infrastructure. A deterministic security control (e.g., Allow List of binaries) would have blocked the vulnerability exploitation, as it would have prevented the malicious files from being executed, identifying them as foreign code: i.e., malware. Read the article via our September 3 posting here: https://bit.ly/3Zx4gMK Sign-up to the magazine is required.

    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    Last week, Karamba participated in Shanghai's AutoCS trade show. The event targets OEMs and Tier-1s aspiring to meet the ISO/SAE 21434, and the Chinese regulation, GB Standards for Vehicle Cybersecurity, which was ratified recently. Our partners at IoTSafe represented us and demonstrated how Karamba's products enable OEMs and suppliers to comply with the regulations without interfering with R&D or delaying their time-to-market.

    • No alternative text description for this image
    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    As reflected in recent FDA regulations, there is a heightened concern among HMOs and medical device manufacturers (MDMs) about medical devices becoming back doors for hackers, to infiltrate hospital networks, perform ransomware attacks, and gain access to sensitive patient records.   As shown in recent customer traction, XGuard enables MDMs to take a proactive approach by embedding security controls directly into device firmware. This approach hardens systems at the binary level, creating self-protected devices that address FDA requirements by hardening the device and significantly reducing the need for urgent patches. XGuard’s deterministic solution mitigates the risk of known vulnerabilities, to help streamline product roll-outs and maintenance processes. This means fewer interruptions and more focus on innovation. For a deeper dive into how XGuard can enhance your security posture, explore our latest white paper here: https://bit.ly/4gudrnw

    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    Introducing XGuard Bolt-On Security for IoT Devices XGuard's new bolt-on capability enables device manufacturers to harden their device firmware as-is, without needing to rebuild the software image. The security controls that are added seamlessly to the device are: **Binary allow list:** Run only legitimate software; detect and prevent malware from running.  **Mandatory Access Control:** Restrict file operations and ensure specific files are only accessible by authorized applications. Protect sensitive data from leakage and meet GDPR, FDA, and CRA regulations.  **Behavioral Monitoring:** Detect ransomware, brute force password hacking, command injection and more. Click the following link and download a white paper to learn more about these security features and how to add them as bolt-on to your IoT device: https://bit.ly/4ghXdNR #IoTSecurity #CyberSecurity #DeviceProtection #TechInnovation #SecurityControls #FirmwareSecurity #BoltOnSecurity

    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    Last week we announced XGuard's extension that enables Secure Boot for Containers. This world-first innovation addresses a critical vulnerability in IoT devices and automotive firmware by ensuring that locally-stored container images are validated before they are instantiated. To learn more, request our detailed paper on Container Authentication at https://bit.ly/4eakYpr.

    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    CrowdStrike global outage has shown inherent weaknesses caused by constantly changing Endpoint Detection and Response (EDR). Mission-critical applications that run as closed, predictable systems such as airport and hospital servers, vehicle systems, and medical devices should be hardened to ensure they only run authorized programs and deterministically prevent any foreign code from executing. As a result, deterministic embedded cybersecurity solutions enable securing IoT and closed-systems servers without being exposed to CrowdStrike-like business continuity risks. Read more about the deterministic approach, on our blog: https://bit.ly/4ft55vz #EDR #globaloutage #IoT #cybersecurity #deterministicapproach #deterministicprotection

    • No alternative text description for this image
  • View organization page for Karamba Security, graphic

    7,634 followers

    CrowdStrike’s recent outage was caused due to an update software bug. The constantly-updated EDR model is prone to bugs, which risk business continuity as happened last Friday. Ami Dotan, our CEO and Co-Founder shared that day how a deterministic security model enables to harden the endpoint, against foreign code (i.e. malware) without requiring updates and bug risks. #CyberSecurity #EndpointSecurity #AutonomousProtection #PatchManagement #RealTimeMonitoring

    --- **Enhancing Cyber Resilience with Autonomous Deterministic Protection: A Response to CrowdStrike’s Global Outage** The recent global outage experienced by CrowdStrike, a leading cybersecurity company, due to an update issue, underscores the critical need for robust security measures that go beyond traditional solutions. While CrowdStrike’s Falcon platform is highly regarded for its endpoint protection capabilities, the incident highlights potential vulnerabilities associated with update processes. At Karamba Security, we specialize in embedded cybersecurity solutions that address these exact challenges through autonomous deterministic protection. Here’s how our approach can prevent similar issues and ensure continuous protection and operational integrity: 1. **Autonomous Deterministic Protection**: Our solutions provide autonomous, deterministic security, meaning they operate independently to enforce security policies without requiring constant updates or connectivity. This ensures consistent protection and reduces the risk of disruptions caused by faulty updates. 2. **Robust Update Verification**: CrowdStrike’s outage was caused by a problematic update. Karamba’s solution includes a rigorous update verification process that ensures every update is thoroughly vetted and tested before deployment, preventing unauthorized or faulty updates from causing disruptions. 3. **Automated Policy Generation and Enforcement**: Unlike traditional endpoint protection solutions, Karamba automatically generates and enforces security policies for each device, ensuring that only authorized code and updates can run. This significantly reduces the risk of disruptions from unvetted updates 4. **Real-Time Anomaly Detection**: Our real-time monitoring continuously analyzes device behavior to detect any anomalies, such as unexpected behavior following an update 5. **Secure Patch Management**: Karamba’s approach to patch management includes automated testing and staged rollouts. This ensures updates do not compromise system stability and allows for quick rollback if any issues are detected, minimizing downtime and impact 6. **Comprehensive Incident Response**: In the event of an issue, Karamba provides detailed forensic data and collaborates closely with your security teams to resolve problems quickly and effectively. Our solutions are designed to support fast recovery and maintain business continuity CrowdStrike’s incident illustrates the importance of robust and resilient security measures. While traditional endpoint protection solutions are essential, they must be complemented with advanced features like autonomous deterministic protection that ensure secure and reliable update processes At Karamba Security, we are dedicated to delivering solutions that not only protect but also ensure the seamless operation of your critical systems #CyberSecurity #EndpointSecurity #AutonomousProtection #KarambaSecurity #PatchManagement #RealTimeMonitoring

Similar pages

Browse jobs

Funding

Karamba Security 5 total rounds

Last Round

Series B

US$ 10.0M

See more info on crunchbase