You are on page 1of 2

Protection for Data-in-Transit

for Oil & Gas


Protecting Oil & Gas Communications VPNs can be difficult to manage and are prone to performance
To ensure the safety and reliability of oil and gas (ONG) upstream, challenges due to:
midstream, and downstream operations and industrial IoT (IIoT) - High IPsec VPN overhead that reduces throughput
communications, ONG companies must protect their industrial - Shared CPU resource utilization for encryption that slows
control systems (ICS) devices and supervisory control and data firewall performance
acquisition (SCADA) networks. More than 85% of connected - Application layer protocols that are impacted by IPsec and GRE
industrial devices are more than ten years old and are particularly
- Chatty security protocols increasing latency
vulnerable to cyber attacks.
- Complex configuration of IPsec and GRE tunnels
While companies are using IPsec and TLS Virtual - Security and compliance policies
Private Networks (VPNs) to secure onshore and offshore
communications, encrypted VPNs are only as secure as the There is an urgent need for solutions that can withstand
devices and methods used to encrypt and decrypt the network persistent, sophisticated, and costly cyber threats without
traffic. Malicious actors target system vulnerabilities that allow compromising performance or flexibility. VPNs need to be
them to: hardened to protect data at rest and in transit.

- Steal plaintext keys that reside in memory Cyphre BTX Security Platform
- Decrypt IPsec VPN tunnels Cyphre BTX is a hardware-based network encryption solution
- Impersonate devices with stolen/predicted credentials for site-to-site communications that is delivered as an appliance.
- Compromise mission-critical data and applications Deployed at each site, BTX appliances leverage Cyphre’s
patented BlackTIE® security engine that offloads encryption
Cybersecurity breaches continue to increase by attacking
operations to hardware in a way that protects plaintext
vulnerabilities in defense-in-depth security solutions that expose
encryption keys from ever being exposed in the CPU or system
unencrypted data in system memory, the CPU, network and
memory.
storage. Attackers that gain unauthorized access to a valve
controller, programmable logic controller (PLC), gateway, or
network device, may be able to compromise drilling, ship-to-
shore communications, plant operations, and distribution.

OIl and Gas Networks Are Vulnerable to Attacks

Inbound and
Side Channel Attacks and Eavesdropping
Man-in-the-Middle Attacks

Upstream VPN Untrusted VPN Midstream VPN Untrusted VPN Downstream Edge & IIoT
Device Network Device Device Network Device

Cache Memory Attacks Fireware and Software Vulnerabilities

06/2020
Cyphre BTX appliances are available in multiple form factors to Cyhpre’s turnkey solution is comprised of:
protect remote, edge and cloud deployments. The BTX extends - Cyphre BTX Security Appliances available in multiple form
defense-in-depth approaches and provides: factors for data center or edge deployment
- Tamper-resistant hardware-based security that never exposes - Cyphre BlackTIE Technology hardware-based Security Engine
private keys and encryption keys to the CPU or memory that is integrated with the BTX appliance
- Resistance to side-channel, cache memory and MITM attacks - CyphreLink Application secure site-to-site encryption solution
- Better application performance over high latency, low that leverages BlackTIE
bandwidth links
By handling cryptographic operations in hardware and not
- Reduction of typical IP VPN packet overhead by more than exposing keys in the CPU and memory, Cyphre is able to ensure
50% trustworthy communications to protect critical assets.
- Offload of crypto operations to hardware to reduce CPU load
for encryption and decryption FIPS
- Simple VPN configuration and tunnel management VAꢀIDATED

140-2
IT Schedule 70
- Support for any IP-based network

Cyphre, a RigNet company (NASDAQ:RNET), is a cybersecurity


company deploying disruptive data protection innovations by
enhancing industry standard encryption protocols with our
patented BlackTIE® technology.

For more information


visit our website www.cyphre.com
or contact us at info@cyphre.com

© 2020 RigNet. RigNet is a registered trademark of RigNet, Inc. Enabling Intelligence. Delivering Results.

You might also like