News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Endpoint Detection and Response Expert Award
Kaspersky_news

The Kaspersky Endpoint Detection and Response Expert solution has received Strategic Leaders status after extensive testing by AV-Comparatives. In particular, the automated blocking and correct reporting of all attacks as well as the consistent mapping of MITER's tactics, techniques and procedures (TTPs) were recognized. The testers also praised the product for its high return on investment (ROI) and low total cost of ownership (TCO). It was also ranked in the top 3 for best results in the Prevention\Response Capability category. Short time to detect and respond to malware incidents Ability to reduce time…

Read more

Managed NDR services to analyze network traffic
Managed NDR services to analyze network traffic

ForeNova expands its NDR protection with three new managed detection and response services for analyzing network traffic, such as for emergencies or for security analyst reports. ForeNova, provider of Network Detection and Response (NDR) solutions and services, is expanding its Managed Detection and Response (MDR) offering with three new services. With ForeNova TA, certified ForeNova security experts provide a one-time security posture assessment based on traffic across the network. With ForeNova IR (Incident Response), the experts support companies in analyzing and blocking malware during an attack. SME: Managed NDR for analysis As part of ForeNova Managed NDR…

Read more

MDR Service open to cyber security technologies from other manufacturers
MDR Service open to cyber security technologies from other manufacturers

Sophos MDR now also integrates telemetry from endpoint, firewall, cloud, identity, email and other third-party security solutions into the Sophos Adaptive Cybersecurity Ecosystem. Companies are free to choose which service they use. Sophos today announced new compatibilities between third-party security technologies and its Sophos Managed Detection and Response (MDR) service. The goal is to detect and fix attacks in different customer and operating environments even faster and more precisely. Sophos MDR, currently with more than 12.000 customers, integrates the telemetry of endpoint, firewall, cloud, identity, email and other...

Read more

Intrusion prevention even with encrypted network traffic
Intrusion prevention even with encrypted network traffic NDR

A reliable IPS - Intrusion Prevention System should also protect against encrypted network traffic and zero-day attacks. However, since many solutions work with signature-based detection, they cannot usually protect against zero-day attacks. The new NDR from ExeonTrace does IPS at the same time. With ExeonTrace, the Swiss security company Exeon Analytics offers a solution for detecting intruders that goes far beyond the capabilities of conventional intrusion prevention systems (IPS). In particular, ExeonTrace can also detect zero-day attacks, against which IPS solutions cannot offer any protection due to their signature-based detection. Such systems are suitable...

Read more

Kaspersky EDR: improved detection mechanisms and responses
Kaspersky EDR: improved detection mechanisms and responses

Kaspersky Endpoint Detection and Response Optimum: new version simplifies protection against complex threats. The current solution has forward-looking detection mechanisms to react to cyber attacks. Damage to relevant operating system files is prevented and file reputation information is provided. Kaspersky Endpoint Detection and Response Optimum now offers advanced automated detection mechanisms and tailored incident response recommendations. The updated solution now also protects against damage to critical operating system files and provides file reputation information from Kaspersky's Threat Intelligence Portal. More defense against increasing attacks The protection of increasingly complex IT infrastructures is...

Read more

BlackByte hijacks EDR solutions with “Bring Your Own Driver” principle
SophosNews

The security specialists from Sophos uncovered a new scam by the relatively young ransomware gang BlackByte. These use the "Bring Your Own Driver" principle to bypass more than 1.000 drivers used in Endpoint Detection and Response (EDR) solutions industry-wide. Sophos describes the attack tactics, techniques and procedures (TTPs) in the new report “Remove all the Callbacks – BlackByte Ransomware Disables EDR via RTCore64.sys Abuse”. BlackByte, which was named as a threat to critical infrastructure in a special report by the Secret Service and FBI earlier this year, surfaced in May after a brief hiatus...

Read more

EDR without NDR with weaknesses in protection
EDR without NDR with weaknesses in protection

The Swiss security company Exeon Analytics warns against only relying on conventional EDR solutions (Endpoint Detection & Response) when securing endpoints. Because the agent software does not always run at the end point, which creates weaknesses in the defense network. Many endpoints in modern, hybrid networks do not support the agents required for this, and where such agents are running, they can be undermined and deactivated by sophisticated attacks. Also, because of the trend towards working from home and BYOD (Bring Your Own Device), IT and security teams often don't have access to privately owned endpoints...

Read more

MDR with improved attack detection and mitigation

Bitdefender's new managed detection and response service MDR Foundations promises improved detection and mitigation of attacks through 24×7 monitoring and proactive threat hunting by experts. Bitdefender is expanding its Managed Detection and Response (MDR) offering with the new MDR Foundations service. The new service, which can be booked on a monthly basis and is customizable according to user needs, offers guided and fully managed detection and mitigation of attacks by human security experts. Thanks to the offering, Managed Security Providers (MSPs), Value Added Resellers (VADs) and their customers, who only have limited internal resources and skills, can monitor and defend against threats around the clock. Smart…

Read more

Cyber ​​Attackers Market RaaS: Ransomware-as-a-Service
Cyber ​​Attackers Market RaaS: Ransomware-as-a-Service

Behind many cyber attackers are not just loners in dark rooms. Rather, some APT groups see themselves as business companies that no longer act themselves, but only sell their services and technology and collect heavily. That makes money and reduces risk. Here is a brief explanation of how RaaS – Ransomware as-a-Service works. In IT, products are now primarily offered as services, such as Platform-as-a-Service (PaaS) or Infrastructure-as-a-Service (IaaS). These consist of a large number of sub-services, which in turn are made available by different providers in terms of the division of labor and professionalization...

Read more

Kaspersky Endpoint Detection and Response Expert
Kaspersky Endpoint Detection and Response Expert

The new Kaspersky Endpoint Detection and Response Expert solution offers better detection and investigation and can be used on-premises or via the cloud. The solution is intended to provide more protection against APT attacks and combines individual alerts into one incident. Kaspersky is updating its Endpoint Detection and Response solution, aimed at organizations with mature IT security processes. Under the new name of Kaspersky Endpoint Detection and Response Expert, the solution offers companies additional protection against advanced, APT-like attacks. For better investigation and incident response, alerts are now automatically merged into incidents and rule-based scanning with YARA…

Read more