Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
AV-Test.org - New Lines of Defense: EPPs and EDRs Put to the Test Against APT and Ran
#1
Bug 
Quote:
[Image: avtest_logo_300_113.png]


New Lines of Defense: EPPs and EDRs Put to the Test Against APT and Ransomware Attacks

Security leaks, like the recently discovered Microsoft Exchange vulnerability, underscore the dangers facing companies, government agencies and critical infrastructure worldwide. It took only a few days following the news of the massive hack by Hafnium with DearCry for the first ransomware to be unleashed, exploiting the Exchange vulnerability. Following the completion of comprehensive tests, AV-TEST has now released the initial test report of EPP and EDR products, placing a special focus on their detection and threat prevention against APT attacks where ransomware is deployed. In the labs of the IT security institute, 6 endpoint protection platform and 3 endpoint detection & response solutions were put under the microscope.

APT & Ransomware – tactical sabotage attacks are rapidly increasing

Complex technical and targeted strategic cyberattacks are no longer a celestial event, but have rather become part of the everyday life of companies and public agencies. So the question is not if an APT attack will occur, but when. Accordingly, cyberattacks on companies, public agencies, and critical infrastructure, with Hafnium exploiting security leaks and the use of ransomware such as DearCry, already reached a dramatic high point last year. The lion's share of APT attacks identified and analyzed were aimed at espionage, targeting both confidential as well as financially exploitable information. At the same time, there was a rise in the number of APT attacks seeking to block IT infrastructure and to blackmail its owners, to damage or even to destroy data for tactical reasons. In the last quarter of 2020 alone, both government IT structures as well as the networks of important and system-relevant companies increasingly came into the crosshairs of digital acts of sabotage. 

Thus, in November the renowned Center for Strategic and International Studies (CSIS) detected an attack on the electronics conglomerate Foxconn. In the course of a sophisticated ransomware attack, the hackers encrypted 1,200 servers, deleted 30 TB of backups, and took credit for making off with 100 GB of confidential corporate data. In September 2020, the US healthcare provider Universal Health Services, the French shipping company CMA CGM, the largest Pakistani energy utility, along with several government organizations in the Middle East, became the victims of targeted APT attacks deploying ransomware.
...
Full Report
[-] The following 1 user says Thank You to harlan4096 for this post:
  • silversurfer
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AdGuard for Mac 2.14
AdGuard for Mac 2....harlan4096 — 09:03
AdGuard VPN for Mac 2.3
AdGuard VPN for Ma...harlan4096 — 08:58
INTEL Arc Graphics 31.0.101.5444
INTEL Arc Graphics...harlan4096 — 08:56
AMD “Strix Halo” Zen5 & RDNA3.5 premium ...
AMD first ultra-hi...harlan4096 — 08:54
Malwarebytes 5.1.3.110
Malwarebytes 5.1.3...Mohammad.Poorya — 00:51

[-]
Birthdays
Today's Birthdays
avatar (42)techlignub
avatar (41)Stevenmam
avatar (48)onlinbah
Upcoming Birthdays
avatar (43)wapedDow
avatar (49)steakelask
avatar (43)Termoplenka
avatar (41)bycoPaist
avatar (47)pieloKat
avatar (41)ilyagNeexy
avatar (49)donitascene
avatar (49)Toligo

[-]
Online Staff
There are no staff members currently online.

>