Blog

Petya/NotPetya Ransomware

Petya/NotPetya Created by Roshan Pokharel, June 29, 2017 A new ransomware outbreak named "Petya", similar to WannaCry malware, was seen on June 27, 2017. This malware spread quickly and affected various organizations in Europe and the US. The ransomware was thought to be a variant of Petya family but researcher determined that they are not related and now renamed to "NotPetya". Petya/NotPetya does not require EternalBlue SMB vulnerability for exploitation to spread in systems on a network. One infected host will allow ransomware to spread in any connected systems, provided that infected...

Introducing the WannaCry application

Introducing the WannaCry application  By Prabhat Pokharel, Roshan Pokhrel & Cintia Szabó, May 16, 2017 After our blog post on Sunday regarding the WannaCry malware breakout, LogPoint today is excited to announce our turn-key application to detect and respond to WannaCry. The application works on LogPoint and LogPoint Free, works for all types of devices  (firewalls, content security appliances, file-shares etc) and provides a simple effective tool to monitor and contain any further spread of the malware. In addition, as research moves forward with different samples of...

Responding to WannaCry Malware

By Christian Have, VP Products & Innovation, May 13, 2017   Update: Read our latest blog post on our newly released WannaCry Application   As WannaCry has wrecked havoc over the weekend, many organizations will face the impact of the malware during the beginning of the week. WannaCry is a ransomware attack that exploits the MS17-010 vulnerability. Infection After exploiting the vulnerability the malware attempts to connect to a domain: iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com The malware expects the connection to fail and then proceeds to install and infect...

What is CEO Fraud - and how can LogPoint detect it?

  About CEO Fraud By Prabhat Pokharel & Cintia Szabó, April 25, 2017 CEO fraud is the most recent generation of cyber crimes, which involves impersonation of the CEO and other senior business managers, by using social engineering attacks to trick someone at the organization into wiring business money to the fraudsters. The U.S. Federal Bureau of Investigation (FBI) has warned about a dramatic increase in Business E-Mail Scams, known as CEO fraud, which has, over the past three years, cost organizations more than $2.3 billion in losses. Many organizations think email...

LogPoint secures $10 million in funding led by Evolution Equity Partners

LogPoint positioned to accelerate growth with advanced analytics and machine learning driving the next generation of SIEM. Copenhagen – April 4, 2017 LogPoint, the next-generation security information and event management (SIEM) and big data analytics platform, today announced it has secured $10 million in Series B funding from Evolution Equity Partners. The funding will enable LogPoint to enter the next phase of growth; fueling expansion in new markets and providing for continuous enhancement of the LogPoint Enterprise SIEM platform. LogPoint enables enterprises to proactively monitor...

New Release of Logpoint Agent

Introducing the latest release of the LogPoint Agent. By Christian Have, VP of product management in LogPoint - March 2017 After a long period of development, we are now ready with the largest feature release of the LogPoint agent in the history of LogPoint. With this release the agent will be faster, more stable and offer more features. Combined with the recent changes in LogPoint 5.6 (Policy Based Routing), the new agent can make drastic cuts in resource consumption! New Features  File Integrity Monitoring and Windows Registry Scanning is now supported. The agent now...

Releasing 5.6.0

Releasing LogPoint 5.6.0 By Christian Have, VP of product management in LogPoint - March 2017 We are proud to announce LogPoint 5.6! Since our last large upgrade back in April 2016 (5.5.0), we have had minor releases and in parallel worked on this release.  Note: Please go through the release notes and ensure you have prepared your platform and fulfilled all the prerequisites before upgrading. New Features  Policy Based Routing The feature allows your organization to: Reduce costs of storage: Filter messages before they are stored. Optimize workflows:...

Detecting Ransomware with LogPoint

Detecting Ransomware with LogPoint By Thorsten Mandau, Senior Pre-Sales Consultant, CISSP, LogPoint - February 2017 Ransomware is doubtless a rising threat nowadays, putting all small, medium-sized and large businesses at risk. Our IT and security professionals at LogPoint are constantly working to help our clients withstand such attacks. When fighting ransomware, planning and forethought are crucial so you can limit the impact and quickly recover with minimal disruption. Keep in mind that ransomware variants are constantly changing, and it's hard to thwart every attack...

Ingesting Vulnerability Management data to LogPoint

Ingesting Vulnerability Management data to LogPoint  February 2017 Getting Qualys VM data into LogPoint is something many of our customers have been asking for. In this document we outline how data is pulled from the Qualys Reporting API, into LogPoint for easy analysis, correlation and reporting.  Overview  When you are using Qualys, either from the cloud or via an on premise appliance, the scan results and management of the scan is maintained from the Qualys Cloud. Qualys exposes an API that LogPoint uses to pull the data. To get started you have to download the Qualys...

Introducing LogPoint Free

Introducing LogPoint Free...! December 13, 2016 We are excited to announce that we are introducing a new way of experiencing LogPoint! LogPoint Free is a completely free version of LogPoint, which lets you ingest up to 350 events per second (eps), from up to 10 nodes. LogPoint Free provides full LogPoint functionality, access to support, Help Center and Community.    Free Extension The LogPoint Free license runs for 90 days but can be extended for free upon request. You can also easily upgrade to a LogPoint license if needed. Is LogPoint Free for you? LogPoint Free is...

VIEW MORE ENTRIES

Why LogPoint?

With LogPoint, you will discover a full enterprise SIEM solution. 

LogPoint is EAL 3+ certified and the solution is tailored to solve the specific security management challenges of your business - whether the goal is compliance, forensics or operational insight.

And the best part..? We have the most predictable licensing model in the industry.