Rubrik Upgrades Data Protection Platform for Speedier Threat Hunting

Data security specialist Rubrik is upgrading its data protection platform to allow for quicker recoveries in the familiar backup & recovery process. The new Turbo Threat Hunting functionality more quickly scans an enterprise network to find clean recovery points after malware attacks, according to the company.

The new approach changes the current method that requires mounting and scanning data on a file-by-file basis to find signs of tampering, instead leveraging other techniques — including pre-computed hash values within Rubrik's metadata — that significantly speed up the process.

"Traditional recovery methods involve manually scanning each backup file, which can take an excruciatingly long time. Imagine having to sift through hundreds of thousands of backups to locate clean recovery points. For many organizations, that process can take days or even weeks, leaving them vulnerable to ongoing disruption and significant financial losses," the company said in a blog post. By contrast, the new tech reduces the time to find a backup that is free from Indicators of Compromise (IOCs) "from days to mere seconds."

In addition to those pre-computed hashes for instant scanning, other highlights of the upgrade include:

  • Automated Threat Hunts: During an incident, users input known malware indicators, and Rubrik's Turbo Threat Hunting feature will scan an entire backup environment to find unaffected recovery points.
  • Cluster-Level Scanning: Instead of tediously selecting individual servers or backups, users can scan entire clusters with a single click, speeding up the search for clean recovery points.
  • Quick Results: In a recent internal test, Turbo Threat Hunting scanned an estimated 75,000 backups within 60 seconds, identifying the one affected server and enabling a quick path to recovery.
  • Quarantining: Automatically quarantine impacted files and backups to ensure the attacker is not re-introduced into the environment.
  • Recovery Orchestration: Mass-recovery orchestration of all backups from the most recent non-anomalylous, non-quarentined backup in just a few clicks to massively reduce the recovery time objective of the data and applications.

The upgrade is being rolled out automatically around the end of January to Enterprise Edition and cloud customers.

For more information, visit the Rubrik site.

About the Author

David Ramel is an editor and writer at Converge 360.

Featured

  • Hand holding a stylus over a tablet with futuristic risk management icons

    Why Universities Are Ransomware's Easy Target: Lessons from the 23% Surge

    Academic environments face heightened risk because their collaboration-driven environments are inherently open, making them more susceptible to attack, while the high-value research data they hold makes them an especially attractive target. The question is not if this data will be targeted, but whether universities can defend it swiftly enough against increasingly AI-powered threats.

  • geometric grid of colorful faculty silhouettes using laptops

    Top 3 Faculty Uses of Gen AI

    A new report from Anthropic provides insights into how higher education faculty are using generative AI, both in and out of the classroom.

  • abstract metallic cubes and networking lines

    Call for Speakers Now Open for Tech Tactics in Education: Roadmap to AI Impact

    The virtual conference from the producers of Campus Technology and THE Journal will return on May 13, 2025, with a focus on emerging trends in with a focus on emerging trends in AI, cybersecurity, data, and ed tech.

  • Red alert symbols and email icons floating in a dark digital space

    Google Cloud Report: Cyber Attackers Are Fully Embracing AI

    According to Google Cloud's 2026 Cybersecurity Forecast, AI will become standard for both attackers and defenders, with threats expanding to virtualization systems, blockchain networks, and nation-state operations.