BluVector is a developer of an AI-based solution to deliver advanced threat detection and network coverage for enterprises.
BluVector's platform adheres to the STIX (Structured Threat Information eXpression) language to provide threat intelligencethreat intelligence within the indicator object type and offer an easy integration for users of TAXII (Trusted Automated eXchange of Indicator of Information). The TAXII services and messages exchanges are used to enhance information about cyber threats across an organization, and BluVector works to integrate their machine learning threat knowledge into these threat workflows.
BluVector's industry partners include IBM Security, Carbon Black, EndaceEndace, Garland Technology, Gigamon, Cisco, Splunk, and Dell. The company has been awarded various awards or recognitions for its work in network security.
The company's threat detection for cybersecurity and network securitynetwork security, BluVector Advanced Threat Detection, is developed using machine learning to help security teams detect, triage, and respond to security events. This includes threats such as ransomware, fileless malware, and zero-day malware, all in real time.
Through the automated collection and centralization of disparate data for threat investigations, BluVector offers hunt scores based on the correlated results from the engines and integrated intelligence, as well as network and file metadata surrounding an event, and integrations with threat lookup services like VirusTotal. These are used as part of the analytics behind the company's platform, which works to provide quality threat indicators. This is a based on a broad detection software stack, which includes supervised machine learning, speculative code execution, SuricataSuricata, Yara, and ClamAV integrated with the ETpro ruleset, AlienVault OTX, and a curated ClamAV feed—all of which runs on top of Zeek.