Test: endpoint security with some weak results

Share post

The AV-Comparatives laboratory tested and evaluated 17 enterprise endpoint solutions. When tested with 0-day malware, only 4 products were able to reach the 100 percent mark. Only 3 products when tested for known malware.

The independent ISO-certified security software evaluation laboratory AV-Comparatives has released the latest test results from its Business Main-Test Series, which evaluates a range of antivirus products in corporate environments. The published factsheet contains results from the ongoing Enterprise Main-Test Series, which includes real-world protection and malware protection tests for August and September 2022.

🔎 Result of live test with 316 malware samples. Info: Compromised was wrongly translated as compromise (AVC image). 

17 corporate solutions tested

In business environments, it is common for endpoint products to be configured by the system administrator according to vendor manuals. For the Enterprise Main-Test Series, AV-Comparatives invited all vendors to configure their respective products for an enterprise-oriented environment. The applied settings are then used for all enterprise tests throughout the year. AV-Comparatives has listed all relevant deviations from the standard settings.

The following products have been tested (at the time of testing with the currently available version) on Windows 10 64-bit systems:

  • Acronis Cyber ​​Protect Cloud with Advanced Security Pack
  • Avast Ultimate Business Security
  • Bitdefender GravityZone Elite
  • Cisco Secure Endpoint Essentials
  • Crowd Strike Falcon Pro
  • Cybereason Enterprise
  • elastic security
  • ESET PROTECT Entry with ESET PROTECT Cloud
  • G Data Endpoint Protection Business
  • K7 On-Premises Enterprise Security Advanced
  • Kaspersky Endpoint Security for Business Select with KSC
  • Malwarebytes EDR
  • Microsoft Defender Antivirus with Microsoft Endpoint Manager
  • Sophos Intercept X Advanced
  • Trellix FireEye Endpoint Security
  • VIPRE Endpoint Protection Cloud
  • WatchGuard Endpoint Protection Plus on Ether

Real world test with 316 live cases

The Real-World Protection Test results published by AV-Comparatives are based on 316 live full-chain attack test cases, including working exploits and URLs pointing directly to malware. The test cases used cover a wide range of current malicious websites and underline the protection quality of different products. This AV Test by AV-Comparatives provides in-depth insights into the capabilities of 18 popular enterprise security products.

🔎 Only 1.005 products managed to recognize 3 samples (Image: AVC).

Detection of 1.005 samples at the endpoint

In addition to detection rates, the test also examines a product's ability to prevent a malicious program from making changes to the system. The test set used for this test consisted of 1.005 malware samples. To ensure that the tested programs do not protect the system at the expense of high false alarm rates, a false positive test is also carried out in the Malware Protection Test. The results of the false alarm test are also included in the fact sheet.

More at AV-Comparatives.org

 


About AV-Comparatives

AV-Comparatives is an independent AV test laboratory based in Innsbruck, Austria, and has been publicly testing computer security software since 2004. It is certified according to ISO 9001: 2015 for the area of ​​"Independent tests of anti-virus software". It also has EICAR certification as a "Trusted IT Security Testing Lab".


 

Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

Test: Security software for endpoints and individual PCs

The latest test results from the AV-TEST laboratory show very good performance of 16 established protection solutions for Windows ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more

DSPM product suite for Zero Trust Data Security

Data Security Posture Management – ​​DSPM for short – is crucial for companies to ensure cyber resilience against the multitude ➡ Read more