Information Age: News, analysis & insight for IT & business leaders

 

Sanctum promises application layer security

9 February 2006  

Sanctum claims its software can automate the prevention of known, as well as unknown, security attacks. How does its technology work?

Gil Raanan is following in the footsteps of almost every software company to emerge from Israel. He spent his military service building highly-sophisticated applications for the Israeli army, and realised this expertise could be put to use in a commercial setting. In this case, protecting corporate organisations' web applications.

 
 

Company: Sanctum

Main activity: Application layer security software

Founded: 1997

CEO: Peggy Weigle

HQ: Santa Clara, California

Status: Privately held. Received over $54 million in four rounds of funding from Dell Computer, Sprout Group and Gemini Israel Funds.

Revenues: Not available.

Key competitors: KaVaDo, SPI Dynamics, Stratum8 Networks

Infoconomy comment: Sanctum claims its software can help organisations protect their web applications against both known and unknown security attacks. The company is well-funded and has few competitors in what is still an immature market.

www.sanctuminc.com

 
 

Raanan co-founded Perfecto Technologies in 1997 (later renaming it Sanctum) with a focus on implementing security at the application layer, an area that is still highly vulnerable to attack.

Security attacks on the application layer are more sophisticated than the average attempted hack by a 'script kiddie'. Attacks are typically channelled through an organisation's web server and try to abuse the business logic of an application to execute malicious activities, such as siphoning money from a customer account.

Addressing that threat, Santcum's core product is an application level firewall called AppShield. This is installed either on, or in front of, a web server to automate the process of monitoring traffic and blocking anomalies.

It protects against ten known security segment threats including 'cross site scripting' whereby hackers steal vital components of a system to set up a dummy web site, for example, and 'cookie poisoning', which can help hackers access unauthorised services.

A key differentiator is that AppShield also logs all user activity inside a firewall, not just suspicious behaviour. This may help customers detect any unknown security attacks that emerge, such as new computer 'worms', says Sanctum CEO Peggy Weigle.

Several factors suggest Sanctum is heading for robust growth. It already has more than 150 customers and has few competitors, apart from much smaller companies such as KaVaDo, SPI Dynamics and Stratum8 Networks. Sanctum has also had massive endorsement from investors, having received a total of $54 million in funding over its four years.

Sanctum now needs to increase awareness of the security threat to applications if it wants to mirror the success of other Israeli software giants such as Check Point Software.


Comments 

There are currently no comments on this article

People who read this also read...

Platform Computing - Category winner

Since 1992, Platform has established a reputation as an industry leader in High Performance Computing (HPC) management software, bringing the most powerful commercial HPC solutions to leading global enterprises.

Europe's IT strategy "is failing"

Report says that Europe is not investing enough in IT - or using it effectively.

 
Advertisement

White Papers

Read article

Developing ios Solutions for Business

Whitepapers

Quickly develop and deploy custom iPad and iPhone solutions. With FileMaker Pro, iPad and iPhone solutions can be prototyped and completed in hours or days versus weeks or months. No iOS application programming or design experience is required.

Read article

IDC Spotlight: Access Control and Certification

Whitepapers

Read this brief for best practices on managing user access compliance.

Read article

GPS World

Whitepapers

Is the PREMIER global media brand serving the exploding world of positioning and navigation for OEM, commercial and consumer applications.

More
div class="banner">