Shortcut to Body Shortcut to main menu

Future Unicorns

  • Home
  • Information Center
  • Future Unicorns
From Internet Network to OT Network: CTILab, a Global Cyber Security Innovator
Date
2022.05.11

About the Company

Established in November 2015, CTILab has 21 members consisting of AI modeling specialists, data scientists, security specialists, and platform developers. Based on its solid technological competence, CTILab has implemented projects for Shinhan Bank, KEPCO KDN, the Ministry of Trade, Industry and Energy, the National Information Resources Service, Company K and others. Its main product is the AI-based next-generation security platform DTI (Deep Threat Intelligence™), a next-generation convergence cyber security platform capable of detecting anomalies in not just IT networks but operational technology (OT) networks including SCADA/ICS. The Ministry of Science and ICT selected CTIBLab’s technology as an "Excellent Information Protection Technology" in November 2021, and Gartner is in the process of performing a global innovation technology verification.

Background

Existing cybersecurity systems have limitations in defending intelligent cyber threats like Advanced Persistent Threats (APTs), and OT networks such as SCADA/ICS employ limited security technologies despite their crucial role in the operation of critical national infrastructure.
* OT network (Operational Technology Network) : Industrial control systems including SCADA/ICS with no standardized or disclosed protocols. Commercial off-the-shelf products are difficult to develop, and generic products cannot be developed with existing technology.

About the Product and Technology

  • CTILab owns the world’s first innovative technology capable of using AI to detect anomalies in OT networks including SCADA/ICS as well as in general IT networks.
    ※ CTILab’s patented technology detects network anomalies regardless of the operational protocol type.
  • Korea’s first AI-based cyber security technology
    • Employed XAI (eXplainable AI) in cyber security for the first time in Korea: Provides clear visualization of AI’s threat assessment. AI model’s reliability and excellent threat traceability ensured.
    • Korea’s first auto profiling of cyber threats: Cyber threats that have previously been manually analyzed by security specialists are automatically classified by AI through variables generation and application.
    • Developed the Treat Scoring technology that automatically quantifies the level of cyber threats for the first time in Korea.

Competitive Edge and Business Strategy

  • Exploring Korea’s SOAR market based on the nation’s best AI-based cyber security technology
    SOAR (Security Orchestration, Automation and Response)
    • SOAR refers to the technologies that allow swift and immediate responses to cyber threats based on automated processes built with robust AI (Gartner, 2017)
    • he key is using robust AI to automate processes against cyber threats.
    • The key to the SOAR system lies in the ability to automate the processes against cyber threats.
    • Having the total visibility of threats is crucial in effectively handing cyber threats, and CTILab has the required technology.
    • CTILab plans to develop by 2022 a threat group identification technology needed for determining the source of threat.
      ⇒ Potential of dominating Korea’s SOAR market before others
  • CTILab holds a patent for the world’s first technology capable of detecting anomalies in OT networks such as SCADA/ICS.
  • In recognition of CTILab’s technological competence,
    • The Ministry of Science and ICT selected CTIBLab’s technology as an "Excellent Information Protection Technology" in 2021.
      ※ DTI, the world’s first AI-based next-generation convergence cyber threat detection technology.
    • Gartner, a world-renowned IT research firm, is performing a global innovation technology verification process.
AI-based Preemptive and Proactive Defense System SOAR
  • Operational technology (OT) networks refer to industrial control networks such as SCADA and ICS. A breach in the OT network that control national infrastructure such as electricity and energy may bring catastrophic consequences
  • CTILab's patented deep learning-based technology can detect anomalies regardless of the OT network protocol type.

    CTILab's patented deep learning-based technology can detect anomalies regardless of the OT network protocol type.
    Type IT network OT network
    Protocol TCP/IP standard More than 100 including Modbus and DNP3
    Main security target Data Physical production, operation and facilities

Future Plans

  • Exploring the global SOAR market and the OT network market
    • Seeking business opportunities related to the latest global security trend of SOAR by using its AI-based cyber security technologies (i.e., XAI, Auto Profiling, and Threat Scoring).
    • Seeking business opportunities in the global OT market based on the experience of having detected anomalies in power control networks and power generation control networks with its patented technology capable of detecting network anomalies regardless of the OT network operational protocol
  • Targeting the global market based on the experience of having managed power control networks and power generation control networks with CTILab’s patented technology
  • Insight into the data of control networks obtained from detecting anomalies in power control networks and power generation control networks
    * KEPCO's power control networks and power generation control networks represent a global benchmark due to their scale and IoT application

By Henry CHO, CEO , CTILab Co., Ltd.
http://ctilab.ai

Meta information