Defending the Edge: Kaspersky Boosts Behavioral Protection for Embedded Infrastructure

New KESS update brings advanced anti-ransomware and BadUSB prevention to low-power and legacy devices. By Embedded Systems Engineering / 28 Nov 2025
Follow ESE

Embedded devices across the financial, medical, and retail sectors—including ATMs and point-of-sale systems—are increasingly facing sophisticated cyberattacks once reserved for high-profile targets. To address the rise in complex tactics, Kaspersky has released a significant update to Kaspersky Embedded Systems Security (KESS). The update focuses on expanding behavioral analysis and reinforcing protection layers specifically for low-power and legacy hardware that may lack the resources for traditional endpoint security.

The core of this release is an enhanced behavioral analysis engine. This technology powers several critical subsystems: Automatic Exploit Prevention, a Remediation Engine, and an improved Anti-Cryptor. These tools are designed to detect evasive threats that bypass static detection or standard hardening-based countermeasures. The goal is to provide embedded devices with the same level of protection mechanisms typically found on full-scale workstations.

Specific to the hardware challenges of embedded environments, the update introduces BadUSB attack prevention. This feature blocks malicious USB devices that attempt to mimic keyboards or human-input peripherals to execute unauthorized commands. Additionally, KESS now includes a proprietary application-level firewall, allowing organizations to control how embedded applications communicate with external peers and reducing the surface area for suspicious network interactions.

For ease of monitoring, a new “traffic-light” Security Level Indicator has been added. This provides operators with an instant visual cue regarding a device’s security posture, identifying when further adjustments are necessary.

KESS is designed to support high-diversity device fleets, ranging from very old, low-performance hardware to modern, more powerful systems. It operates in low-bandwidth environments and minimizes cloud reliance. Through an opt-in approach, organizations can choose to apply pure hardening for legacy devices or full-spectrum security for newer hardware, all managed through a unified ecosystem with consistent policies.

“Embedded systems are no longer isolated or too limited to be worth targeting. They face the same sophisticated threats as traditional endpoints, but protecting them requires addressing their specific constraints,” says Oleg Gorobets, Cybersecurity Expert at Kaspersky. “This updated solution gives organizations stronger, smarter, more flexible protection while keeping operational complexity low. As embedded infrastructures continue to grow, so does the need for security that is both lightweight and deeply effective – and this KESS update delivers exactly that.”

Posted by Embedded Systems Engineering Connect

Latest Articles

ThunderSoft Debuts AI-Native Operating System Architecture Across Automotive and Robotics Sectors

New AIOS platform integrates system-level artificial intelligence to bridge the gap between digital models and physical hardware execution.

Jan 12, 2026
Modular Development Kit Streamlines Zone Controller Design for Software-Defined Vehicles

Infineon and Flex debut a scalable ZCU platform featuring 30 unique building blocks to accelerate automotive E/E architecture transitions.

Jan 07, 2026
TDK Advances Wearable Intelligence with Edge-Processing Motion Sensors

New SmartMotion IMUs offload computational tasks from the central processor to the sensor, enabling high-fidelity spatial audio and AR overlays with ultra-low power consumption.

Jan 07, 2026
NXP Launches S32N7 Processor Series to Centralize Core Vehicle Functions

New 5 nm super-integration processors enable OEMs to consolidate propulsion, safety, and body domains into a single hub, reducing architecture complexity and costs.

Jan 05, 2026
High-Endurance NVMe BGA SSDs Gain Traction in Mission-Critical Programs

Greenliant’s NVMe NANDrive EX Series targets aerospace and industrial applications with ultra-high endurance and advanced security features.

Jan 04, 2026
High-Performance Edge Platform Debuts to Accelerate AI-Driven Clinical Diagnostics

Axiomtek introduces a medical-grade computing system featuring 13th Gen Intel Core processing and dedicated GPU expansion for real-time imaging and surgical monitoring.

Jan 04, 2026

Featured Content

Voyant Photonics Unveils Fully Solid-State 4D FMCW LiDAR Platform

The new Helium family leverages silicon photonics to provide high-resolution depth and velocity sensing in an ultra-compact, software-defined package for autonomous systems.

Dec 18, 2025