▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Bitdefender Excels in MITRE ATT&CK® Evaluations with Outstanding Alert Accuracy and Low False Positives, Critical for Security Team Efficiency

Bitdefender, a global cybersecurity leader, today announced exceptional results in the 2024 MITRE Engenuity ATT&CK® Enterprise Evaluations. Bitdefender demonstrated unmatched efficiency, requirin...

Business Wire

Independent Testing Emulating Advanced Attack Techniques Reveals Bitdefender’s Superior Capabilities in Alert Actionability in Two Newly Introduced Metric Categories

BUCHAREST, Romania & SANTA CLARA, Calif.: Bitdefender, a global cybersecurity leader, today announced exceptional results in the 2024 MITRE Engenuity ATT&CK® Enterprise Evaluations. Bitdefender demonstrated unmatched efficiency, requiring an average of just three alerts to identify and report incidents to the security operations center (SOC), far surpassing the median of 209 alerts from other tested solutions. The evaluations, conducted through rigorous independent tests simulating adversary behavior and techniques, assessed the detection and protection capabilities of 19 participating vendors. This year, MITRE introduced two new key metrics—‘Total Alerts Generated’ and ‘False Positives’—to better measure the actionability and effectiveness of vendor solutions.

“Security teams are under pressure to improve response time as ransomware and sophisticated state-sponsored attacks become more frequent,” said Dragos Gavrilut, vice president of threat research at Bitdefender. “Improving efficiency within teams and inside SOCs is what matters most to security practitioners. Bitdefender’s ability to increase threat visibility through detailed, actionable alerts with low false positives to quickly remediate threats before they do severe damage is what sets us apart, with independent tests like the MITRE ATT&CK Evaluations helping to serve as validation.”

The 2024 ATT&CK Evaluations tested cybersecurity vendors on their ability to detect techniques and tactics from two adversary focus areas: ransomware campaigns (specifically Cl0p and LockBit) targeting Windows and Linux, and macOS attacks linked to the Democratic People’s Republic of Korea (DPRK). These tests emulated common ransomware behaviors, such as the abuse of legitimate tools, data encryption, and disabling critical services, while the macOS evaluation highlights DPRK-inspired multi-staged and modular malware used to elevate privileges and target credentials.

Each participant was evaluated based on detection rates and their performance in the framework’s attack kill chain, spanning from initial compromise to the final stage of execution. This year, MITRE introduced two key changes to the evaluation process: False Positives and Reporting on Total Generated Alerts. The False Positives metric assessed the accuracy of detections by measuring instances where a benign activity is incorrectly flagged as malicious, while Reporting on Total Generated Alerts evaluated the volume and quality of alerts generated, ensuring a balance between comprehensive detection and operational efficiency.

Alongside outstanding performance around alert actionability, Bitdefender achieved 100% analytical coverage and zero false positives in both Linux and macOS environments with overall analytical coverage at 91% with just six false positives, well above the average of all participating vendors.

MITRE Engenuity evaluated Bitdefender GravityZone Platform, a unified security and risk analytics platform that provides advanced endpoint protection including endpoint detection and response (EDR), extended detection and response (XDR) and cloud security for physical, virtual, and multi-cloud environments. The platform delivers deep security context to detections and offers a direct path to Bitdefender Managed Detection and Response (MDR) services.

In addition to excelling in the MITRE Engenuity ATT&CK Enterprise Evaluations 2024, Bitdefender was also a top performer in the 2024 ATT&CK Evaluation for Managed Services. Bitdefender’s MDR services were evaluated on the ability to detect, analyze, and describe adversary behavior. Bitdefender delivered near-total coverage across all steps (no vendor achieved complete coverage) and achieved the highest result (32% above the average) in the category of Actionability, a measurement of whether a SOC analyst is provided with enough information in the alert to take immediate action. These results highlight the effectiveness of the GravityZone Platform in real-world security operations.

To get a better understanding of why alert volumes and false positives matter in these tests read our full analysis here.

About MITRE Engenuity

MITRE Engenuity, a subsidiary of MITRE, is a tech foundation for the public good. MITRE’s mission-driven teams are dedicated to solving problems for a safer world. Through our public-private partnerships and federally funded R&D centers, we work across government and in partnership with industry to tackle challenges to the safety, stability, and well-being of our nation.

MITRE Engenuity brings MITRE’s deep technical know-how and systems thinking to the private sector to solve complex challenges that government alone cannot solve. MITRE Engenuity catalyzes the collective R&D strength of the broader U.S. federal government, academia, and private sector to tackle national and global challenges, such as protecting critical infrastructure, creating a resilient semiconductor ecosystem, building a genomics center for public good, accelerating use case innovation in 5G, and democratizing threat-informed cyber defense. www.mitre-engenuity.org

About Bitdefender

Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry’s most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioral analytics, and artificial intelligence and its technology is licensed by more than 180 of the world’s most recognized technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit https://www.bitdefender.com.

Trusted. Always.

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

SnapLogic Named a Visionary in the 2024 Gartner® Magic Quadrant™ for Data…

SnapLogic, the leader in generative integration, today announced that it has been named by Gartner as a Visionary in the 2024 “Magic Quadrant for Data…

JetBlue Names Justin Thompson Vice President, IT Data and Analytics

JetBlue (Nasdaq: JBLU) today announced the promotion of Justin Thompson to vice president, IT data and analytics. In this role, Thompson will oversee…

InfoVision Wins Top Spot at the Prestigious North American Software Testing…

#BestOverallTestingProject--InfoVision, a global leader in IT services and enterprise digital transformation, has been named the winner in the ‘Best Overall…

China and Global Automotive Software Business Models and Suppliers' Layout…

The "Automotive Software Business Models and Suppliers' Layout Research Report, 2024" report has been added to ResearchAndMarkets.com's offering. Software…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!