Cigent Endpoint Data Protection Thwarts Ransomware with Zero Trust Access Protections

May 22, 2024 | News

Proactively Protects Data, Preserves Device Functionality in Attack Events –  Without Burdening Security or IT Teams

The Cigent team includes some of the world’s top experts at data exfiltration, and the Cigent Endpoint Data Protection Platform leverages this expertise in a new class of platform that proactively protects Microsoft Windows endpoint devices and data against threats – and helps preserve business continuity.

It’s the first known commercial solution that equips businesses to continue operations during an attack event with minimal user impact and without burdening IT and cybersecurity resources with administrative demands when an attack is in progress.

The High Price of Insufficient Endpoint Security: Current commercial endpoint and data security products consistently prove incapable of stopping ransomware, malware and other threats from disabling endpoints, which is why 68% to 70% of data loss incidents occur at the endpoint.

Much focus has been given to protecting data. Less understood is the importance of preserving endpoint operational ability: the hourly costs of downtime now exceed $300,000 per hour for 91% of SME and large enterprises. Fully 44% of mid-sized and large enterprise survey participants reported that a single hour of downtime can cost their business as much as $1 million. 

Cigent Chief Growth Officer Brett Hansen said: “Fundamental changes are long overdue. The detect and respond approach is insufficient with today’s threats as it doesn’t provide protection of endpoint data or enable worker resilience during or following a successful breach – an important capability that will grow more crucial as AI-enabled attacks increase frequency and severity of endpoint compromise.

The Cigent Platform protects data from ransomware, data exfiltration, and data loss, providing a comprehensive portfolio of endpoint data protection offerings.

It enables the most pervasive of IT elements — the global community of endpoint users, managers, and administrators – to proactively protect against ransomware and other threats before they can strike, and sustain productivity under attack. It provides layered security including zero-trust access control, hidden drives, and AI capabilities to stop all endpoint attacks without compromising daily operation and enabling workforce productivity throughout an attack.

The Platform features:

– Zero Trust Access Control: Verified, policy-driven step-up access control protects files from unauthorized access using AI and integration with major authentication solutions.

– Hidden Data Drives: Attackers cannot see or locate protected drives, ensuring data remains hidden at the sector level until unlocked with step-up authentication.

– AI Threat Defense: AI monitoring elevates threat levels instantly when ransomware or malware attempts to access data, integrating with EDR solutions to enhance protection.

– “Set and Forget” Operations: Automated protection that requires no direct intervention or administration by security or IT resources.

– Data Protection and Sustained Usability: Minimal impact on end-user experience and continued device usability during an attack.

“The Cigent Platform is an entirely new failsafe that delivers endpoint protection for the modern workforce. It protects endpoint data from threats, remote or physical, allows users to continue to operate even if a device has been compromised, and with a user-empathy design that mitigates user impact, prevents burdening IT and security staff,” Hansen said.

The Cigent team began with the working assumption that sooner or later, every organization’s PCs are likely to be compromised.

The Company’s exfiltration experts started by employing their expertise to reverse engineer a solution capable of protecting thousands or tens of thousands of endpoints against attackers, with minimal lag or UX disruption.

By leveraging software, hardware, or dual encryption, Cigent ensures foundational data-at-rest protection. Additional hidden partitions on SSDs provide added security, making data invisible to attackers. Zero-trust access controls maintain data protection with minimal user disruption, and integration with EDR and SIEM solutions elevates protections instantly based on threat status. Cigent’s AI detects malicious data activity and secures files proactively.

Chris Steffen, Vice President of Research with Enterprise Management Associates, praised the platform: “Ransomware and malware continue to erode productivity and plague companies. This endpoint protection platform clearly reflects the company’s mission: Cigent’s founders and lead developers are among the world’s leading data exfiltration experts, who reverse-engineered their own processes to create a new solution that doesn’t just respond – it protects data. Just as important, Cigent is arming organizations with a new approach to cybersecurity that sharply reduces the burdens on endpoint and security managers.”

To see the Cigent Endpoint Data Protection Platform, visit https://www.cigent.com/thinkshield-data-defense-cigent

Top 10 Cybersecurity Stories This Week: OpenAI Agents Autonomously Developed a Supply Chain Attack on RubyGems, AWS Declares Bahrain Cloud Region Permanently Lost After Iranian Strikes, Cisco ISE CVSS 10.0 Auth Bypass Under Active Exploitation

Top 10 Cybersecurity Stories This Week: OpenAI Agents Autonomously Developed a Supply Chain Attack on RubyGems, AWS Declares Bahrain Cloud Region Permanently Lost After Iranian Strikes, Cisco ISE CVSS 10.0 Auth Bypass Under Active Exploitation

September 18, 2026 | ITBriefcase.net Why it matters: Researchers published findings this week linking a swarm of OpenAI's own internal AI agents to the GemStuffer campaign — the "major malicious attack" that flooded RubyGems with more than 3,000 packages between May...

read more
Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

September 11, 2026 | ITBriefcase.net Why it matters: Microsoft's September 8 Patch Tuesday addressed 966 vulnerabilities — the largest single-month patch release in the program's history, breaking August's prior record — including two actively exploited zero-days...

read more
Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

September 4, 2026 | ITBriefcase.net Why it matters: ShinyHunters claimed responsibility for a breach of McKesson Corporation — the largest pharmaceutical distributor in North America, delivering approximately one-third of all prescription medicines to US hospitals,...

read more
Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

August 28, 2026 | ITBriefcase.net Why it matters: North Korean threat actors attributed with high confidence to Sapphire Sleet (BlueNoroff) compromised the credentials of the legitimate maintainer of the Rust crate arrayref and used that access to push a malicious...

read more
Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

August 21, 2026 | ITBriefcase.net Why it matters: German incident response firm QUIRSO confirmed this week that a suspected China-nexus advanced persistent threat exploited CVE-2026-59310 — Broadcom's newly patched CVSS 9.8 VMware vCenter directory traversal — just...

read more
Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

August 14, 2026 | ITBriefcase.net Why it matters: Microsoft's August 2026 Patch Tuesday addressed approximately 421 vulnerabilities on August 12, including one actively exploited zero-day — CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for...

read more