Big OT Security, Smaller Footprint – Meet DiodeCore!
Lior Frenkel
CEO and Co-Founder, Waterfall Security
And now, DiodeCore™
The fact that AI found hundreds of vulnerabilities in the Firefox open-source browser is really alarming. Firefox is a veteran, relatively highly secured open-source product that has been pen tested and code reviewed by governments, cyber companies and experts, multiple times. The Mythos AI found 250+ zero days in Firefox despite all this.
What about products that are not open source, not as widely used, and not as seasoned. AI tools will find thousands of vulnerabilities, develop exploits, and chain those exploits together in ways that would have taken years for humans to figure out, code and test.
AI is taking nation-state grade tools and techniques and democratizing them, making nation-state grade attack capabilities available to a much wider audience, a much wider set of potential attackers. Within 12 or 24 months, I believe we are going to see fully automated and autonomous attacks on OT networks.
What is DiodeCore?
What can be done about this? The answer to these threats is not more software, but stronger hardware. Today we are officially launching the WF-600 DiodeCore, our newest addition to the WF-600 family. DiodeCore is a modern Unidirectional Gateway designed for simpler deployment scenarios: entry-level or simpler needs, smaller sites, and larger numbers of sites.
DiodeCore’s level of security, cybersecurity concepts, and unidirectionality are at the same hardware-enforced standard of protection Waterfall has always provided. And DiodeCore is a product that fits a different use case. I am very proud to introduce this to the market.
How DiodeCore Works
The hardware is a small, half-depth 1U rack-mount device. Open it up and there is a transmit circuit board, a receive circuit board, and a fiber between them. That fiber is the only physical connection between the two sides. The hardware is physically able to send information in only one direction. There is no laser in the receiving circuit board, and no photocell on the sending. It does not matter how clever the enemy is, and it does not matter if they are a human or an AI or a nation state. All cyber sabotage is based on information passing. The only way a control system can change from a normal state to a compromised state is if attack information enters the system. Interrupt the flow of attack information and you interrupt the attack.
The DiodeCore uses the same software as is used in the WF-600 Performance series, with the DiodeCore software delivered as a closed virtual machine image. This image can run on any standard customer virtualization infrastructure, from a VM server to a workstation, running Windows, Linux, ESXi and similar platforms. There is one virtual image for the OT network side, and another for the external network side. There’s no need for any dedicated wiring any more, directly connected servers or hosts. A lot of modern automation systems use virtualization – this is the modern method of deploying this technology.
The hardware in DiodeCore is the smallest amount of hardware you can have to still get the ultimate security value of a Unidirectional Gateway. DiodeCore has a small footprint, half the depth of a standard 1U appliance. DiodeCore is easy to deploy, easy to install and manage, and easy to purchase.
Hardware-Enforced Protection Anywhere You Need It
Today, customers can use our flagship WF-600 Performance where they need high-end performance, resilience, throughput, scale, and capability, while DiodeCore is designed to support:
- Smaller and simpler sites
- Distributed facilities
- Large scale rollouts across many locations
We already have customers saying: “Okay, okay, launch it already. We want these!” And so, I am pleased to say today, DiodeCore is available now!
Talk to an OT Security Expert
If you are securing a smaller site, scaling protection across distributed facilities, or modernizing a virtualized OT environment, and you are wondering where a Unidirectional Gateway can fit in your architecture, please reach out to Waterfall.
There is no cost for a consultation – let our experts surprise you with strong unidirectional designs.
About the author
Lior Frenkel
CEO and Co-Founder, Waterfall Security
Lior Frenkel is a cybersecurity entrepreneur, author, and global expert in OT and critical infrastructure security with more than 25 years of industry experience. As the CEO and co-founder of Waterfall Security Solutions, he has led the deployment of innovative unidirectional security technologies protecting critical infrastructure worldwide. Lior is a recognized thought leader who contributes to international cybersecurity policy, regulatory initiatives, and industry strategy. He also serves in leadership roles across major Israeli technology and manufacturing organizations, helping advance the global cybersecurity industry.
Share
Trending posts
Big OT Security, Smaller Footprint – Meet DiodeCore!
Mythos, Zero Days and OT Cybersecurity
Stay up to date
Subscribe to our blog and receive insights straight to your inbox