Rocketgraph ThreatWorx (often referred to as Rocketworx ) is a specialized integration that combines the high-speed graph analytics of Rocketgraph xGT with the proactive vulnerability management of ThreatWorx .
Its primary function is to transform a static list of security vulnerabilities into a dynamic, navigable map of business risk .
1. The Core Functionality: “Contextual Risk”
Traditional security tools give you a "laundry list" of thousands of vulnerabilities (CVEs).
Vulnerability Ingestion: ThreatWorx continuously scans your code, containers, cloud (AWS/Azure/GCP), and endpoints to find "holes."
Graph Mapping: Rocketgraph takes that data and links it to your business assets (databases, servers, user identities).
The Result: Instead of seeing "Server A has a bug," you see "Server A has a bug, is connected to the internet, and has a direct path to the Payments Database."
2. Key Operational Features
Attack Path Analysis (The "Blast Radius")
Using Rocketgraph's parallel Breadth-First Search (BFS), the system can instantly calculate the "blast radius" of a threat.
Intelligent Noise Reduction
One of the biggest problems in security is "alert fatigue." Rocketgraph ThreatWorx uses environmental context to prioritize:
High Priority: A vulnerability on an internet-facing asset with a path to "Crown Jewel" data.
Low Priority: A critical vulnerability on a server that is air-gapped or has no path to sensitive data.
Closed-Loop Remediation
Unlike tools that just report problems, ThreatWorx provides active remediation .
Toxic Combinations
The system looks for "Toxic Combinations" that traditional tools miss, such as:
Asset A has a Vulnerability + Asset A has Admin Privileges + Asset A is Internet Exposed.
3. The “Person, Password, Purpose” Integration
When combined with Equitus.ai ArcXOS , this functionality extends into a Zero Trust architecture:
Person: Verified via Equitus ICAM.
Password: Verified for safety by ThreatWorx (ensuring credentials aren't leaked).
Purpose: Verified by Rocketgraph xGT (ensuring the user's path and intent align with historical norms).
No comments:
Post a Comment