Product
VMware Live Recovery

VMware Live Recovery

Ensuring cyber resiliency with VMware Live Recovery: reliable infrastructure protection against ransomware

The modern cyber threat landscape requires businesses to move to a qualitatively new level of protection. Attackers are constantly improving their methods, and today traditional backup is no longer enough. Companies face complex challenges where the continuity of critical business processes is at stake. To minimize risks, a reliable strategy for cyber resiliency is essential.

Cybersecurity challenges in modern realities

According to IBM's Cost of a Data Breach study, the global average cost of a data breach has reached USD 4.88 million. Business disruption and post-breach response activities drove most of this cost increase. The situation is further complicated by the fact that the threat landscape has changed dramatically:

  • Fileless attacks: Most modern cybercrimes are carried out without using traditional malware. Attackers use legitimate applications, authorized protocols, and embed malicious code directly into memory or hijack native system tools such as PowerShell.
  • Backup targeting: Backups have become the primary target. Statistics from Sophos analysts show that in 94% of ransomware cases, attackers targeted backups, and in more than half of those cases, these attacks were successful.
  • Data fragmentation and operational complexity: Data dispersion across local data centers, public clouds, and edge devices complicates centralized visibility. Using disjointed tools makes the recovery process long and unpredictable.

Comprehensive response: VMware Live Recovery capabilities

To address these critical challenges, Broadcom offers VMware Live Recovery — a powerful tool for ensuring cyber and data resiliency for the VMware Cloud Foundation (VCF) ecosystem. This solution provides a unified management experience and guarantees confident, accelerated recovery for virtual machines across both on-premises infrastructure and public clouds.

VMware Live Recovery combines two proven technology recovery models that seamlessly complement one another.

Key differences between recovery models

Cyber Recovery

  • Purpose: On-demand ransomware and disaster recovery in a safe environment.
  • Managed recovery environment: The process is deployed in an isolated cloud environment, secured and managed by VMware.
  • Live behavioral analysis: Integration of Next-Gen AV and behavioral analysis of powered-on workloads to identify hidden fileless attacks.
  • Push-button VM network isolation: Isolating virtual machines from one another at restore to prevent ransomware lateral movement and reinfection of the production environment.
  • Immutable snapshots: Storing backups in a secure, isolated Scale-Out Cloud File System to preserve data integrity.

Site Recovery

  • Purpose: Automated orchestration and non-disruptive testing of centralized disaster recovery plans on an active SDDC site.
  • Replication flexibility: Integration with vSphere Replication and array-based replication solutions from major VMware storage partners.
  • Minimum RPO metrics: Support for granular recovery with a recovery point objective (RPO) ranging from 1 minute to 24 hours.
  • Simple, policy-based management: Easy automation to protect thousands of virtual machines using centralized recovery plans managed from the vSphere Web Client.

Flexible licensing for cost optimization

VMware Live Recovery offers a single subscription that dramatically simplifies resource consumption. Customers no longer need to purchase disjointed point products. The flexible licensing model allows businesses to allocate resources based on their current needs: for example, a customer using a license for Cyber Recovery on a VM node can use another license to enable Site Recovery on the same node, taking advantage of both technologies.