Palo Alto Networks

Palo Alto Networks, Inc. is an American multinational cybersecurity company with headquarters in Santa Clara, California. The core product is a platform that includes advanced firewalls and cloud-based offerings that extend those firewalls to cover other aspects of security. The company serves over 70,000 organizations in over 150 countries, including 85 of the Fortune 100.[6] It is home to the Unit 42 threat research team[7] and hosts the Ignite cybersecurity conference.[8] It is a partner organization of the World Economic Forum.[9]

Palo Alto Networks, Inc.
TypePublic
IndustryNetwork security
Cybersecurity[1]
Cloud Computing[2]
Founded2005 (2005)
FounderNir Zuk
Headquarters,
U.S.
Area served
Worldwide
Key people
Nikesh Arora (CEO)
ProductsPA 220, 4x0, 8x0, 32x0, 34x0, 54x0, 70x0, VM, CN firewall series[3]
Prisma SASE[4] Prisma Cloud, Cortex XDR, Cortex Xpanse, Cortex XSOAR, Cortex XSIAM
RevenueIncrease US$6.89 billion (2023)
Increase US$387 million (2023)
Increase US$440 million (2023)
Total assetsIncrease US$14.5 billion (2023)
Total equityIncrease US$1.75 billion (2023)
Number of employees
13,948 (2023)
Websitepaloaltonetworks.com
Footnotes / references
Financials as of July 31, 2023[5]

In 2018, Palo Alto Networks was listed 8th in the Forbes Digital 100.[10] In June 2018, former Google and SoftBank executive Nikesh Arora joined the company as Chairman and CEO.[11]

History

Palo Alto Networks was founded in 2005 by Israeli-American Nir Zuk,[12] a former engineer from Check Point and NetScreen Technologies, and was the principal developer of the first stateful inspection firewall and the first intrusion prevention system.[13] Zuk created Palo Alto Networks with the intention of solving problems enterprises faced with existing network security solutions, namely: the inability to allow employees to use modern applications safely, which entailed developing a firewall capable of identifying and providing fine-grained control of applications.[14]

In 2007, the company produced and shipped its first product, an enterprise firewall.[15] In 2009, Gartner released a publication defining a next-generation firewall.[16] In contrast to traditional firewalls, which at the time relied on simple rules such as port numbers and protocol to block traffic, the authors stated that next-generation firewalls should operate on and inspect all layers of the network stack and be intelligent enough to block threats independently of port numbers or protocols used. In particular, the publication defined this next-generation firewall as containing (in addition to the full capabilities of both traditional firewalls and intrusion prevention systems): Support for in-line deployment without disrupting network operations, application awareness, and full stack visibility allowing for fine-grained detection and control of applications, extra-firewall intelligence, and upgrade paths.

Starting in 2011, Gartner began listing Palo Alto Networks as a leader on its enterprise firewall, Magic Quadrant.[17] In 2019, they were named a leader in the Gartner Magic Quadrant for Network Firewalls for the 8th year in a row.[18] The company debuted on the NYSE on July 20, 2012, raising $260 million with its initial public offering, which was the 4th-largest tech IPO of 2012.[19][20][21] It remained on the NYSE until October 2021 when the company transferred its listing to Nasdaq.[22]

In 2014, Palo Alto Networks founded the Cyber Threat Alliance with Fortinet, McAfee, and NortonLifeLock (formerly known as Symantec), a not-for-profit organization with the goal of improving cybersecurity "for the greater good" by encouraging collaboration between cybersecurity organizations by sharing cyber threat intelligence amongst members.[23][24] By 2018, the organization had 20 members including Cisco, Check Point, Juniper Networks, and Sophos.[25]

The company expanded over the years, offering a wide selection of enterprise cybersecurity services beyond its original next-generation firewall offering, such as Traps endpoint protection and Wildfire malware prevention.[26] In 2017, Palo Alto Networks announced Logging Service, a cloud-based service allowing customers to amass their own data for machine learning and data analytics.[27]

In 2018, the company began opening dedicated cybersecurity training facilities around the world as part of the Global Cyber Range Initiative.[28]

In May 2018, the company announced Application Framework, an open cloud-delivered ecosystem where developers can publish security services as SaaS applications that can be instantly delivered to the company's network of customers.[2]

In 2018, several high-profile tech executives joined Palo Alto Networks. In June 2018, former Google Chief Business Officer and SoftBank President Nikesh Arora joined the company as chairman and CEO.[11] His predecessor, Mark McLaughlin, became vice chairman of the board of directors. Arora received a pay package worth about $128 million, making him one of the highest-paid executives in the United States.[29] In September 2018 Liane Hornsey, formerly Chief People Officer at Uber, joined Palo Alto Networks as Chief People Officer.[30] In October 2018, Amit Singh, formerly President of Google Cloud, succeeded Mark Anderson as President of Palo Alto Networks.[31] In August 2021, William (BJ) Jenkins succeeded Singh as president, with Singh assuming the role of Chief Business Officer.[32]

In 2019, the company announced the K2-Series, a 5G-ready next-generation firewall developed for service providers with 5G and IoT requirements.[33] In February 2019, the company announced Cortex, an AI-based continuous security platform. CEO Nikesh Arora described Cortex as an "Application Framework 2.0".[34]

Acquisitions

  • Morta Security was acquired for an undisclosed sum in January 2014.[35][36]
  • Cyvera was acquired for approximately $200 million in April 2014.[37][38]
  • CirroSecure was acquired for an undisclosed sum in May 2015.[39]
  • LightCyber was acquired for approximately $100 million in March 2017.[40]
  • Cloud Security company Evident.io was acquired for $300 million in cash in March 2018, creating the Prisma Cloud division.[41]
  • Secdo was acquired for an undisclosed sum in April 2018.[42]
  • Cloud security company RedLock was acquired for $173 million in October 2018.[43]
  • In February 2019, Palo Alto Networks acquired security orchestration company Demisto for $560 million.[44]
  • In May 2019, Palo Alto Networks acquired container security startup Twistlock for $410 million.[45]
  • In June 2019, Palo Alto Networks acquired serverless security startup PureSec for $47 million.[46][47]
  • In September 2019, Palo Alto Networks announced its intent to acquire IoT startup Zingbox for $75 million.[48]
  • In November 2019, Palo Alto Networks announced its intent to acquire machine identity-based micro-segmentation company Aporeto, Inc. for $150 million.[49]
  • In March 2020, Palo Alto Networks announced its intent to acquire SD-WAN company CloudGenix, Inc. for $420 million. This acquisition was completed in April 2020.[50][51]
  • In August 2020, Palo Alto Networks announced its intent to acquire Crypsis Group for $265 million.[52]
  • In November 2020, Palo Alto Networks announced its intent to acquire Expanse for $800 million.[53]
  • In February 2021, Palo Alto Networks announced it acquired Bridgecrew for around $156 million.[54]
  • In November 2022, Palo Alto Networks announced its intent to acquire Cider Security for an enterprise value of around $300 million.[55]

Products

Enterprise products

Palo Alto Networks offers an enterprise cybersecurity platform that provides network security, cloud security, endpoint protection, and various cloud-delivered security. Components of the security platform listed on the Palo Alto Networks website include:[56]

  • Next-generation firewalls, running PAN-OS,[57] offered in multiple forms including:[58]
    • As a physical appliance through the PA series, which includes small form-factor firewalls such as the PA-220 for small businesses and offices, to the PA-7000 series built for large enterprises and service providers.
    • As a virtualized appliance through the VM series, allowing the firewall to be run as a virtual machine to secure virtualized data centers and private clouds. It is also compatible with public cloud environments such as Amazon Web Services, Microsoft Azure, Google Cloud, and Oracle Cloud Infrastructure.
    • As a streamlined cloud service provided by Palo Alto Networks through GlobalProtect Cloud Service.
  • Panorama, a network security control center that allows customers to manage a fleet of firewalls at an enterprise scale from a single console.[59]
  • Traps, advanced endpoint protection. Unlike traditional antivirus, Traps does not rely on signatures to detect malware. Instead, it focuses on analyzing the behavior of programs to detect zero-day exploits. Threat intelligence is shared with and obtained from Wildfire.[60]
  • Wildfire, a cloud-based threat-analysis service that uses dynamic analysis, static analysis, machine learning, and bare-metal analysis to discover and prevent unknown threats.[61]

Cloud storage and analysis products

In 2019, Palo Alto Networks reorganized its SaaS offerings under the Cortex branding.[62]

  • Cortex Data Lake Cortex data lake is a cloud-delivered log aggregation service for Palo Alto Networks devices located in on-premise networks, directly from endpoints, or cloud-based products such as Prisma Access. This data lake information is then fed into the Hub apps that provide analysis, response, and other added services.[63]
  • Hub Hub is an open cloud-delivered ecosystem where customers can subscribe to security applications developed by 3rd-party developers or Palo Alto Networks. Some applications from Palo Alto Networks such as XDR (analytics) and Auto Focus (threat intelligence) are Cortex-branded apps on Hub.[64]
  • Cortex XDR XDR is the primary tool for data analysis from Palo Alto Networks that leverages modern threat detection and response capabilities on the centralized data collected in the Cortex Data Lake.[65]
  • AutoFocus This service provides threat intelligence to enhance the analytic capabilities of the hub applications as an external source of relevant security information.
  • Cortex XSOAR Integrating its acquisition of Demisto into the Cortex cloud suite, XSOAR is the Security Orchestration And Response component responsible for automation and integration with other security and network systems for the automation of incident response and intelligence gathering processes.
  • Prisma Access Prisma Access is the Palo Alto Networks offering for moving the enterprise network monitoring and analysis functions into the cloud. It is the most comprehensive SASE solution of its kind, secures access, protects users and applications, and controls data for remote users and locations.
  • Prisma Cloud Prisma Cloud secures any cloud environment and all compute form factors used to build and run cloud-native applications, including multi- and hybrid-clouds environments. It addresses the majority of cloud security use cases a customer might have, such as CSPM, containers, serverless, and identity-based micro-segmentation. It is Palo Alto Networks cloud-native security solution that integrates with DevOps continuous integration and continuous development (CI/CD) processes for a more holistic control of the security life-cycle of cloud assets.[66][67]

Threat research

Unit 42 is the Palo Alto Networks threat intelligence and security consulting team. They are a group of cybersecurity researchers and industry experts who use data collected by the company's security platform to discover new cyber threats, such as new forms of malware and malicious actors operating across the world.[68] The group runs a popular blog where they post technical reports analyzing active threats and adversaries.[69] Multiple Unit 42 researchers have been named in the MSRC Top 100, Microsoft's annual ranking of top 100 security researchers.[70] In April 2020, the business unit consisting of Crypsis Group which provided digital forensics, incident response, risk assessment, and other consulting services merged with the Unit 42 threat intelligence team.[71]

According to the FBI, Palo Alto Networks Unit 42 has helped solve multiple cybercrime cases, such as the Mirai Botnet and Clickfraud Botnet cases,[72] the LuminosityLink RAT case,[73][74] and assisted with "Operation Wire-Wire".[75]

In 2018, Unit 42 discovered Gorgon, a hacking group believed to be operating out of Pakistan and targeting government organizations in the United Kingdom, Spain, Russia, and the United States. The group was detected sending spear-phishing emails attached to infected Microsoft Word documents using an exploit commonly used by cybercriminals and cyber-espionage campaigns.[76]

In September 2018, Unit 42 discovered Xbash, a ransomware that also performs cryptomining, believed to be tied to the Chinese threat actor "Iron". Xbash is able to propagate like a worm and deletes databases stored on victim hosts.[77] In October, Unit 42 warned of a new crypto mining malware, XMRig, that comes bundled with infected Adobe Flash updates. The malware uses the victim's computer's resources to mine Monero cryptocurrency.[78]

In November 2018, Palo Alto Networks announced the discovery of "Cannon," a trojan being used to target United States and European government entities.[79][80] The hackers behind the malware are believed to be Fancy Bear, the Russian hacking group believed to be responsible for hacking the Democratic National Committee in 2016. The malware communicates with its command and control server with email and uses encryption to evade detection.[81]

References

  1. PCmag (2018-01-26). "Millions of PCs targeted by cryptocurrency-mining malware". Fox News. Retrieved 2018-03-11.
  2. "Application Framework - Palo Alto Networks". paloaltonetworks.com. 2018. Retrieved 2018-09-15.
  3. "Firewalls & Appliances".
  4. "Prisma SASE".
  5. "Palo Alto Networks Inc. 2023 Annual Report (Form 10-K)". SEC.gov. U.S. Securities and Exchange Commission. 2023-09-01.
  6. "About Us - Palo Alto Networks". paloaltonetworks.com. 2018. Retrieved 2020-07-13.
  7. "Unit 42 Twitter". twitter.com. 2018. Retrieved 2018-09-12.
  8. "Ignite Conference Twitter". twitter.com. 2018. Retrieved 2018-09-12.
  9. "Palo Alto Networks". World Economic Forum. Archived from the original on 2022-03-21. Retrieved 2023-05-26.
  10. "Forbes Releases Digital 100". forbes.com. 2018-06-02. Retrieved 2018-11-27.
  11. "What to Expect of Google and Softbank Star Nikesh Arora, Palo Alto Network's New CEO". fortune.com. 2018-06-02. Retrieved 2018-09-15.
  12. Blacharski, Dan (2010-04-05). "How I Got Here: Nir Zuk, CTO, Palo Alto Networks". ITworld. Retrieved 2018-03-11.
  13. Leyden, John (22 October 2010). "US and UK gov cyber defences = big boys' trough-slurp". The Register. Retrieved 8 September 2014.
  14. "The Entrepreneur Questionnaire: Nir Zuk, Founder and CTO of Palo Alto Networks". Greylock Partners. Archived from the original on 8 September 2014. Retrieved 8 September 2014.
  15. "Next Generation Firewall: The Enterprise Story". NSS Labs. 2013. Retrieved 2018-10-26.
  16. Pescatore, John; Young, Greg, Defining the Next Generation Firewall (PDF), retrieved 2 December 2012
  17. "Palo Alto Networks Recognized as a Leader in Gartner Magic Quadrant for Enterprise Network Firewalls Seven Times in a Row". PR Newswire. 8 October 2018. Retrieved 27 November 2018.
  18. "2019 Gartner MQ for Network Firewalls – Palo Alto Networks". start.paloaltonetworks.com. Retrieved 2020-02-19.
  19. Savitz, Eric (20 July 2012). "Kayak, Palo Alto Networks IPOs Off To Strong Debuts". Forbes. Retrieved 8 September 2014.
  20. Owens, Jeremy (20 July 2012). "Palo Alto Networks stunning IPO a good sign for some tech niches". Mercury News. Retrieved October 3, 2018.
  21. "The 10 largest tech IPOs of 2012". VentureBeat. 31 December 2012. Retrieved 26 October 2018.
  22. "Palo Alto Networks to Transfer Stock Exchange Listing to Nasdaq" (Press release). PR Newswire. October 12, 2021.
  23. Albanesius, Chloe (February 13, 2015). "Obama Wants Tech Firms to Alert Feds to Cyber Threats". PC Magazine. Retrieved March 13, 2015.
  24. "Who We Are - Cyber Threat Alliance". Retrieved October 3, 2018.
  25. "Membership - Cyber Threat Alliance". Retrieved October 3, 2018.
  26. "Palo Alto Networks". 2019. Retrieved March 9, 2019.
  27. "Palo Alto Networks Announces Availability of New Cloud-Based Logging Service". markets.businessinsider. 2017-09-27. Retrieved 2018-03-11.
  28. Aasha Bodhani, ITP Net. "Palo Alto Networks introduces global Cyber Range initiative." Jan 16, 2018. Retrieved Feb 6, 2018.
  29. "Ex-SoftBank COO Awarded $128 Million to Lead Palo Alto Networks". Bloomberg. 2018-06-04. Retrieved 2018-09-15.
  30. "Palo Alto Networks hire former Uber HR exec". Silicon Valley Business Journal. 2018-09-25. Retrieved 2019-03-09.
  31. "Palo Alto Networks names Google's Amit Singh as new president". ZDNet. 2018-10-16. Retrieved 2018-10-26.
  32. Inc, Palo Alto Networks. "Palo Alto Networks Announces Expansion of Management Team". www.prnewswire.com (Press release). Retrieved 2021-10-23. {{cite press release}}: |last= has generic name (help)
  33. "Palo Alto Networks Introduces Fastest-Ever Next-Generation Firewall and Integrated Cloud-Based DNS Security Service to Stop Attacks". PR Newswire. 2019-02-12. Retrieved 2019-03-09.
  34. "Edited Transcript of PANW earnings conference call or presentation 26-Feb-19 9:30pm GMT". 26 February 2019. Archived from the original on 12 June 2019. Retrieved March 9, 2019.
  35. Rao, Leena (6 January 2014). "Palo Alto Networks Buys Cyber Security Startup Founded By Former NSA Engineers, Morta". TechCrunch. Retrieved 8 September 2014.
  36. "Palo Alto Networks® Acquires Morta Security". Palo Alto Networks. 6 January 2014. Retrieved 8 September 2014.
  37. Rao, Leena (24 March 2014). "Palo Alto Networks Buys Cyber Security Company Cyvera For $200M". TechCrunch. Retrieved 8 September 2014.
  38. "Palo Alto Networks® Completes Acquisition of Cyvera". Palo Alto Networks. 10 April 2014. Retrieved 8 September 2014.
  39. King, Rachel (27 May 2015). "Palo Alto Networks acquires cybersecurity company CirroSecure". Zdnet. Retrieved 27 May 2015.
  40. "Palo Alto Networks acquires LightCyber". Palo Alto Networks. 28 February 2017.
  41. "Palo Alto Networks Closes Acquisition of Evident.io". Palo Alto Networks. Mar 26, 2018.
  42. "Palo Alto Networks Closes Acquisition of Secdo". Palo Alto Networks. Apr 24, 2018.
  43. "Palo Alto Networks to acquire RedLock for $173 M to beef up cloud security". TechCrunch. October 3, 2018.
  44. "Palo Alto Networks to acquire Demisto for $560M". TechCrunch. February 19, 2019.
  45. "Palo Alto Networks to acquire container security startup Twistlock for $410M". TechCrunch. 29 May 2019. Retrieved 2019-05-30.
  46. "Palo Alto Networks to acquire Twistlock, PureSec". ZDNet. Retrieved 2019-06-13.
  47. "SEC Form 10-Q, Fiscal Third Quarter 2019, period ended April 30, 2019" (PDF). Palo Alto Networks. 2019-05-30. p. 29.
  48. "Palo Alto Networks intends to acquire Zingbox for $75M". TechCrunch. 2019-09-04.
  49. Inc, Palo Alto Networks. "Palo Alto Networks Announces Intent to Acquire Aporeto". www.prnewswire.com (Press release). Retrieved 2019-11-25. {{cite press release}}: |last= has generic name (help)
  50. "Palo Alto Networks Completes Acquisition of CloudGenix". www.prnewswire.com. 2020-04-21. Retrieved 2020-04-21.
  51. "Palo Alto Networks completes $420m acquisition of CloudGenix in three weeks". Data Economy. 2020-04-22. Retrieved 2020-04-23.
  52. "Palo Alto Networks to buy digital forensics consulting firm for $265M". TechCrunch. 24 August 2020. Retrieved 2020-09-02.
  53. "Palo Alto Networks acquires attack surface manager Expanse in $800m deal". ZDNet. 2020-11-11. Retrieved 2020-11-11.
  54. "Prisma Cloud Shifts Left With Proposed Acquisition of Bridgecrew". 2021-02-16. Retrieved 2021-02-16.
  55. Lunden, Ingrid (2022-11-17). "Sources: Palo Alto Networks is buying Cider Security for up to $300M". TechCrunch.
  56. "Security Operating Platform - Palo Alto Networks". 2018. Archived from the original on June 16, 2019. Retrieved September 13, 2018.
  57. "PAN-OS".
  58. "Next-Generation Firewalls - Palo Alto Networks". 2018. Retrieved September 13, 2018.
  59. "Panorama - Palo Alto Networks". 2018. Retrieved September 13, 2018.
  60. "Traps - Advanced Endpoint Protection - Palo Alto Networks". 2018. Archived from the original on September 14, 2018. Retrieved September 13, 2018.
  61. "Wildfire Malware Analysis - Palo Alto Networks". 2018. Archived from the original on September 15, 2018. Retrieved September 14, 2018.
  62. Inc, Palo Alto Networks. "Palo Alto Networks Introduces Cortex, the Industry's Only Open and Integrated, AI-Based Continuous Security Platform". www.prnewswire.com (Press release). Retrieved 2020-10-10. {{cite press release}}: |last= has generic name (help)
  63. "About Cortex Data Lake". docs.paloaltonetworks.com. Retrieved 2020-10-10.
  64. "Hub - Palo Alto Networks". apps.paloaltonetworks.com. Retrieved 2020-10-10.
  65. "Cortex XDR - Extended Detection and Response". Palo Alto Networks. Retrieved 2020-10-10.
  66. "Comprehensive Cloud Security | Prisma". Palo Alto Networks. Retrieved 2020-10-10.
  67. "What is a Cloud-Native Security Platform (CNSP)?". Palo Alto Networks. Retrieved 2020-10-10.
  68. "Unit 42 FAQs". 2018. Retrieved November 28, 2018.
  69. "Unit 42 Archives". 2018. Retrieved November 28, 2018.
  70. "Four Unit 42 Vulnerability Researchers Make MSRC Top 100 for 2018". 16 August 2018. Retrieved November 28, 2018.
  71. "Unit 42 and Crypsis Combine to Offer Threat Intel, Incident Response". Palo Alto Networks Blog. 2021-04-20. Retrieved 2021-07-19.
  72. "Hackers' Cooperation with FBI Leads to Substantial Assistance in Other Complex Cybercrime Investigations". 18 September 2018. Retrieved 28 November 2018.
  73. "Creator of remote access tool LuminosityLink sent behind bars". 17 October 2018. Retrieved 28 November 2018.
  74. "Stanford Man Sentenced to 30 Months for Computer Intrusion Crimes". 15 October 2018. Retrieved 28 November 2018.
  75. "Business E-Mail Compromise (BEC) Task Force in Los Angeles Announces Local Arrests as the Department of Justice Announces the Results of "Operation Wire-Wire" Including 74 Charged in Bec Schemes Internationally". 11 June 2018. Retrieved 28 November 2018.
  76. "Hacking group combines spear-phishing with mass malware campaign". 2 August 2018. Retrieved 28 November 2018.
  77. "Chinese-speaking cybercrime group launches destructive malware family". 18 September 2018. Retrieved 28 November 2018.
  78. "Hack Brief: Fake Adobe Flash Installers Come With A Little Malware Bonus". 12 October 2018. Retrieved 28 November 2018.
  79. "Russian hacking tool gets extra stealthy to target US, European computers". 20 October 2018. Retrieved 28 November 2018.
  80. "Russia's Elite Hackers May Have New Phishing Tricks". 20 October 2018. Retrieved 28 November 2018.
  81. "Sofacy Continues Global Attacks and Wheels Out New 'Cannon' Trojan". 20 October 2018. Retrieved 28 November 2018.
  • Official website Edit this at Wikidata
  • Business data for Palo Alto Networks, Inc.:
This article is issued from Wikipedia. The text is licensed under Creative Commons - Attribution - Sharealike. Additional terms may apply for the media files.