NeuVector Secures New Patents for Unique Container Security Capabilities

Container security and compliance platform provider NeuVector has secured two new patents for its Container Lifecycle Risk Scoring and Service Mesh Protections. NeuVector is making the announcement at KubeCon + CloudNativeCon North America, being held this week

NeuVector’s Container Lifecycle Risk Scoring, which is covered by patent #11106784, enables companies to rapidly and correctly analyze the risk posture of their container and Kubernetes installations. As a single computed score, Container Lifecycle Risk Scoring provides an at-a-glance assessment of exploit risk to container and Kubernetes settings. Multiple variables are considered in the risk rating, including ingress/egress connections, run-time safeguards, admission control policies, and significant vulnerabilities in running containers.

Photo Gary Duan, co-founder and CTO at NeuVector
“As more enterprises migrate to cloud native infrastructure and Kubernetes, robust and automated security must be in place from day one, must extend throughout the pipeline, and cannot impede the pace of application development,” said Gary Duan, co-founder and CTO at NeuVector.

Enterprises can also use NeuVector’s technology to monitor risk ratings across various Kubernetes clusters and multi-cloud deployments from a centralized single-pane-of-glass dashboard. Customers can customize their risk rating to exclude system containers or other apps when they are no longer relevant. Container Lifecycle Risk Scoring also includes a step-by-step wizard for addressing and mitigating known exploit risk.

Service Mesh Protections, as described in patent #11075884, allows enterprise security and DevOps teams to provide unique network protections to service mesh settings even when encryption is enabled. NeuVector’s Layer 7 container firewall secures service mesh-enabled containers by examining network packets before the service mesh encrypts them. These safeguards enforce application-layer network segmentation rules and identify embedded network threats such as SQL injection, DNS assaults, and DLP breaches for illegal data transfers using deep packet inspection (DPI).

These safeguards also keep an eye on and protect service mesh system containers (such as Istio Pilot, Istio Policy, Istio Sidecars, and Istio Ingress Gateway) as well as all network traffic to and from these containers.

8 Patents Cloud and Container Security Technology

The two new patents add to NeuVector’s portfolio of patented fundamental technologies for container network protection through deep packet inspection and the automated development of behavioral-based container security rules. NeuVector now has eight patents for its cutting-edge cloud and container security technology, with several more pending.

“Protecting container environments demands continuous innovation,” said Gary Duan, co-founder and Chief Technology Officer (CTO) at NeuVector. “As more enterprises migrate to cloud native infrastructure and Kubernetes, robust and automated security must be in place from day one, must extend throughout the pipeline, and cannot impede the pace of application development. We’re proud of our work to earn these patents, and to continue to deliver best-in-class container security to customers across industries.”