Athena Releases PathFinder With Predictive Network Path Analysis

Athena Security, makers of the advanced network security analytics solution, Athena FirePAC, recently announced a new product that extends the core analysis from a device-centric view to a network-based view. The Athena PathFinder product is a comprehensive and powerful tool that maps the relationships between firewall configurations, critical assets and the network infrastructure. It shows what services are available across the network and what paths they will traverse across multiple devices. Using the PathFinder, network security engineers can perform predictive topology path analysis to conduct more effective firewall troubleshooting and to find the optimal places to make rule changes.

The PathFinder imports configurations from network security devices such as firewalls, routers and switches to create an offline model of access policy across the network. PathFinder automatically determines the connections between devices, and the resulting topology diagram allows users to initiate queries from any source to any destination. The model constructed by PathFinder predicts what is reachable and how configuration settings will control traffic.

"Firewall configurations cause extremely complex rule and device interactions that are not easy to troubleshoot by simply injecting data packets in the network,” said David Hurst, CTO of Athena Security. “The beauty of an offline model is that a single query can determine all possible paths and devices where data can travel. It will also identify precisely which firewalls and which rules should be changed to impact traffic behavior."

PathFinder is based on patented technology developed by Athena Security and was evolved to offer security operations groups a focused, clean and highly interactive user experience. It is a handy tool that can be downloaded and installed in minutes.

Additional new features include:

  • Quick creation of topology diagram by one-step connections to adjacent nodes in the diagram. This includes an ability to find adjacent nodes in the inventory that are not in the diagram and place and connect them in the diagram.
  • Ability to specify the source, destination and service parameters for a node to node query.
  • Ability to save topology diagram in different image formats like GIF, BMP, JPEG, JPG and SVG etc. This allows users to repurpose, print and share the diagrams with team members.
  • A new Packet Tracer option provides the ability to inject a virtual packet, specified as source, destination, and service, into a selected subnet in the topology. PathFinder analyzes the routes from the selected subnet to determine where the packet should end up and then identifies how ACLs and NATs along the path would affect the packet. The specific devices allowing or denying the packet along the path are identified and highlighted on the diagram. You can drill down into the device configurations to see precisely the effect of each rule acting on the packet.

Athena’s PathFinder is available immediately. Licensing is based on the number of devices selected for topology modeling. The product currently supports the following:

  • Cisco Security Appliances: PIX, ASA(up to version 8.3), FWSM.
  • Cisco IOS routers: Version 12.0 to 12.14, excluding X* Series.
  • Juniper firewalls: Netscreen, SSG, ISG.
  • Check Point products: SmartCenter NG/NGX, Security Management R70
  • Check Point platforms: SecurePlatform, Check Point IPSO (formerly Nokia), Crossbeam, Linux, Solaris.

Support for additional device types and vendor platforms are released on a frequently updated basis.

Featured

  • Maximizing Your Security Budget This Year

    Perimeter Security Standards for Multi-Site Businesses

    When you run or own a business that has multiple locations, it is important to set clear perimeter security standards. By doing this, it allows you to assess and mitigate any potential threats or risks at each site or location efficiently and effectively. Read Now

  • Survey: 72% of CISOs Are Concerned Generative AI Solutions Could Result In Security Breach

    Metomic recently released its “2024 CISO Survey: Insights from the Security Leaders Keeping Critical Business Data Safe.” Metomic surveyed more than 400 Chief Information Security Officers (CISOs) from the U.S. and UK to gain deeper insights on the state of data security. The report includes survey findings on various cybersecurity issues, including security leaders’ top priorities and challenges, SaaS app usage across their organization, and biggest concerns with implementing generative AI solutions. Read Now

  • New Research Shows a Continuing Increase in Ransomware Victims

    GuidePoint Security recently announced the release of GuidePoint Research and Intelligence Team’s (GRIT) Q1 2024 Ransomware Report. In addition to revealing a nearly 20% year-over-year increase in the number of ransomware victims, the GRIT Q1 2024 Ransomware Report observes major shifts in the behavioral patterns of ransomware groups following law enforcement activity – including the continued targeting of previously “off-limits” organizations and industries, such as emergency hospitals. Read Now

  • OpenAI's GPT-4 Is Capable of Autonomously Exploiting Zero-Day Vulnerabilities

    According to a new study from four computer scientists at the University of Illinois Urbana-Champaign, OpenAI’s paid chatbot, GPT-4, is capable of autonomously exploiting zero-day vulnerabilities without any human assistance. Read Now

Featured Cybersecurity

Webinars

New Products

  • Hanwha QNO-7012R

    Hanwha QNO-7012R

    The Q Series cameras are equipped with an Open Platform chipset for easy and seamless integration with third-party systems and solutions, and analog video output (CVBS) support for easy camera positioning during installation. A suite of on-board intelligent video analytics covers tampering, directional/virtual line detection, defocus detection, enter/exit, and motion detection. 3

  • PE80 Series

    PE80 Series by SARGENT / ED4000/PED5000 Series by Corbin Russwin

    ASSA ABLOY, a global leader in access solutions, has announced the launch of two next generation exit devices from long-standing leaders in the premium exit device market: the PE80 Series by SARGENT and the PED4000/PED5000 Series by Corbin Russwin. These new exit devices boast industry-first features that are specifically designed to provide enhanced safety, security and convenience, setting new standards for exit solutions. The SARGENT PE80 and Corbin Russwin PED4000/PED5000 Series exit devices are engineered to meet the ever-evolving needs of modern buildings. Featuring the high strength, security and durability that ASSA ABLOY is known for, the new exit devices deliver several innovative, industry-first features in addition to elegant design finishes for every opening. 3

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation. 3